companyAnthropic logo

Technical Program Manager, Security - Coordinated Vulnerability Disclosure

AnthropicSan Francisco, CA | New York City, NY | Seattle, WA
On-site Full-time $290K/yr - $405K/yr

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Unlock Your Potential

Generate Job-Optimized Resume

One Click And Our AI Optimizes Your Resume to Match The Job Description.

Is Your Resume Optimized For This Role?

Find Out If You're Highlighting The Right Skills And Fix What's Missing

Experience Level

Manager

Qualifications

Qualifications:Proven experience in managing technical programs, particularly in security or vulnerability disclosure. Strong understanding of software security principles and vulnerability management. Excellent communication and collaboration skills, with the ability to work across various teams. Experience with AI-driven tools and methodologies is a plus. Ability to navigate complex regulatory environments and ensure compliance. Proven organizational skills and attention to detail.

About the job

About Anthropic

At Anthropic, we are dedicated to developing trustworthy, interpretable, and controllable AI systems. Our vision is to ensure that AI remains safe and beneficial for our users and society. Our rapidly expanding team consists of passionate researchers, engineers, policy specialists, and business leaders collaborating to create forward-thinking AI solutions.

About the Role

In the position of Technical Program Manager for Security, focusing on Coordinated Vulnerability Disclosure (CVD), you will establish and steer the initiatives that dictate how Anthropic responsibly reveals software vulnerabilities identified by our AI-driven tools, such as Claude, Patchy, and Claude Code. These advanced tools have already uncovered genuine zero-day vulnerabilities in critical software including Firefox and the Linux kernel. The challenge now extends beyond merely identifying vulnerabilities; it encompasses managing the fallout of these discoveries at an unprecedented scale and speed.

Conventional coordinated disclosure frameworks were designed for a time when a researcher might uncover a significant vulnerability every few weeks. The AI-powered discovery landscape has dramatically transformed this paradigm; for instance, Claude can identify hundreds of issues within a single codebase in just one day. Your role is crucial in guaranteeing that every finding is communicated to the appropriate maintainer, at the right speed, with the necessary context, while ensuring Anthropic adheres to its Responsible Scaling Policy (RSP) commitments.

You will oversee the complete CVD lifecycle: from internal assessment and human validation of AI-generated findings to tiered disclosure timelines and external coordination with vendors, open-source maintainers, and relevant organizations. This role necessitates extensive collaboration across Security Engineering, Legal, Communications, Product, and Frontier Red Team to ensure Anthropic serves as a responsible steward of the vulnerabilities its tools reveal.

Responsibilities:

  • Lead the CVD program strategy and implementation: Define and steer the roadmap for coordinated vulnerability disclosure, from AI-generated findings to maintainer notifications, remediation tracking, and public disclosure. Ensure alignment with Anthropic’s security posture and RSP compliance requirements.
  • Oversee internal triage and quality assurance: Establish and manage a human review process to validate all AI-generated findings before external disclosure. Set minimum confidence thresholds and deduplicate against known CVEs.

About Anthropic

Anthropic is at the forefront of AI development, committed to creating technologies that prioritize safety and ethics. Our mission is to foster a future where AI is not only powerful but also a force for good in society, ensuring that our innovations benefit everyone.

Similar jobs

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.