Job Description
Company Information
For more than 20 years, AEG has played a pivotal role in transforming sports and live entertainment. Annually, we host more than 160 million guests, promote more than 10,000 shows and present more than 22,000 events around the world. We are committed to innovation, artistry, and community, and leverage the power of our 300+ venues, leading sports franchises, marquee music brands, integrated entertainment districts, premier ticketing platform and global sponsorship activations, to create memorable moments that give the world reason to cheer.
Our business is interwoven with the human mind and heart, and we strive to build a diverse and inclusive company that reflects the artists, athletes, and fans that we host; reach beyond traditional boundaries to support the communities in which we operate; and minimize our impact on the environment by adopting sustainable practices throughout our business operations.
If you want to be challenged to up your game and make a difference, then join us in giving the world reason to cheer!
Job Summary
The Security Awareness Training & Education (SATE) Program Manager leads the development and execution of global security education initiatives to foster a culture of security awareness. This role partners with IT, HR, Legal, and business units to design and deliver engaging, effective training programs that promote secure behaviors and reduce organizational risk. Reporting to the CISO, the position requires strong communication skills, cybersecurity knowledge, and expertise in adult learning.
Essential Functions
- Training Content Development & Delivery: Design, develop, and deliver security awareness materials in various formats, including e-learning modules, newsletters, infographics, videos, phishing simulations, and live or virtual training sessions. Tailor content to meet the needs of diverse audiences across departments, geographies, and technical backgrounds. Incorporate real-world threats and lessons learned from incidents to ensure relevance and impact.
- Security Awareness Program Strategy: Establish and maintain a comprehensive enterprise-wide security awareness strategy aligned with organizational risk reduction, compliance goals, and emerging threat landscapes. Define program roadmaps, key performance indicators (KPIs), and maturity metrics to guide continuous improvement and measure effectiveness.
- Phishing Simulations and Behavior Metrics: Plan, execute, and manage phishing simulation campaigns to evaluate employee response to social engineering tactics. Analyze campaign data to identify trends, assess behavioral change, and implement targeted follow-up actions. Leverage results for program refinement and executive reporting.
- Compliance, Policy, and Audit Support: Ensure awareness initiatives align with relevant regulatory frameworks and organizational policies, including PCI-DSS, GDPR, and HIPAA. Support audit readiness by maintaining training records, providing documentation, and responding to internal and external audit requests.
- Cross-Functional Collaboration: Partner with internal stakeholders including HR, IT, Legal, Privacy, and GRC to integrate security training into employee onboarding and continuous learning platforms. Champion a positive security culture through global campaigns, gamified learning, events, and the development of a distributed network of security champions.
- Executive and VIP Awareness: Develop customized training and awareness materials for high-risk roles such as executives, privileged users, and departments handling sensitive data. Coordinate with executive assistants and chiefs of staff to ensure consistent, high-impact security messaging at the leadership level.
- Program Communication and Engagement: Create and execute a communication plan to promote awareness initiatives across the organization. Use internal platforms such as the intranet, newsletters, digital signage, and town halls to increase visibility, drive engagement, and reinforce key messages.
- Learning Management and Reporting: Collaborate with LMS administrators to ensure training modules are delivered and tracked accurately. Maintain training records and generate regular reports and dashboards that demonstrate program participation, effectiveness, and risk reduction to stakeholders and leadership.
Required Qualifications
- 4-6 years experience communicating, designing and managing enterprise-wide training or awareness programs, preferably in a security, risk, or compliance role.
- BA/BS Degree
- Experience communicating, designing and managing enterprise-wide training or awareness programs, preferably in a security, risk, or compliance role.
- Excellent communication, storytelling, and visual design skills with the ability to simplify complex topics into relatable, engaging content for diverse audiences.
- Strong background in instructional design, communication strategy, and behavior change methodologies.
- Experience presenting to executives and managing sensitive topics like insider threats, data privacy, and social engineering.
- Passion for culture change, education, and empowering people through knowledge.
- Experience working in complex, global, and matrixed organizations.
- Strong understanding of cybersecurity principles, social engineering tactics, and employee risk behaviors.
- Proficiency with Microsoft Office Suite, graphic design tools (e.g., Canva, Adobe Creative Cloud), and e-learning software.
- Strong analytical skills for measuring program effectiveness and improving based on data insights.
Preferred Qualifications
- Experience with phishing simulation platforms (e.g., KnowBe4 or other LMS platforms.)
- Collaborative mindset with ability to build partnerships across HR, Legal, IT, and business teams.
- SANS Security Awareness Professional (SSAP) a plus
- CISSP, CISA or Certified Security Awareness Practitioner (CSAP) a plus
Pay Scale: $97,451 - $127,905
AEG reserves the right to change or modify the employee’s job description whether orally or in writing, at any time during the employment relationship. AEG may require an employee to perform duties outside their normal description.