Technical Project Manager

Polymarket
2 months
New York Competitive salary & equity
Security Crypto Fintech Full-time Project Management On-site Incident Response Software Engineering Security Engineering Vulnerability Management SOC 2 NIST CSF Roadmap Planning Security Reviews Jira Endpoint Security IT Technical Project Management Security Programs Infrastructure Programs Pen Testing Vulnerability Remediation Risk Registers Status Dashboards Escalation Paths Retrospective Processes Third-party Security Assessments Audits Device Management SaaS Tooling Identity and Access Management Sprint Ceremonies Backlog Management Internal Security Tooling Detection Pipelines CIS v8 Vanta Drata Linear PMP PMI-ACP CSM
Polymarket is the world's largest prediction market platform, enabling individuals to trade on outcomes across politics, economics, sports, culture, and current affairs. Built as a peer-to-peer marketplace, it aggregates diverse opinions into transparent, market-based probabilities. The company is experiencing rapid growth, with $21B traded in 2025, aiming to become a ubiquitous beacon of truth in global media. The Security and IT teams are responsible for protecting a platform handling billions in trading volume and maintaining user trust. This role seeks a Technical Project Manager to own the execution of security programs, ensuring infrastructure security and a strong compliance posture. You will work directly with Security Engineering, IT, Legal, and Compliance teams to drive initiatives from pen testing to SOC 2 compliance. This is a hands-on role involving building program management infrastructure from scratch, translating complex security work into clear milestones, and removing blockers. The ideal candidate thrives in fast-moving environments, communicates risk clearly to executives, and has deep experience managing security programs at scale, acting as a coordination layer for security engineers. Responsibilities include: Owning end-to-end program management for security initiatives including pen testing cycles, vulnerability remediation tracking, incident response readiness, and security reviews for new product launches. Building and maintaining program infrastructure including risk registers, status dashboards, escalation paths, and retrospective processes. Coordinating third-party security assessments and audits across Engineering, Legal, and Compliance teams. Driving IT programs spanning device management, SaaS tooling, identity and access management, and endpoint security. Facilitating sprint ceremonies and maintaining healthy backlogs for security and IT teams while balancing sprint-level execution with multi-quarter roadmap planning. Embedding with security engineering teams to track delivery of internal security tooling and detection pipelines, translating complex work into clear org-wide visibility. Identifying and removing blockers early, escalating with context and proposed solutions to keep programs moving.