We are seeking a Senior Product Manager to join Security team. In this role, you will own the strategy, roadmap, and execution for our Application Security Posture Management (ASPM) capabilities within Falcon Cloud Security, driving our vision of comprehensive code-to-cloud protection. You will work at the intersection of application security and cloud security to help customers prioritize and remediate the risks that matter most. This position requires a strategic thinker who understands both the developer experience and enterprise security operations, and can bridge the gap between AppSec and CloudSec teams to deliver innovative solutions that stop breaches before they happen.
What Youll Do:
You will be responsible for translating the ASPM vision into a detailed product strategy, roadmap, and development backlog that drives code-to-cloud visibility and risk prioritization across the entire application lifecycle
You will own and manage the end-to-end product development lifecycle for ASPM capabilities, leading product release cycles, identifying and proactively solving bottlenecks, and raising flags when needed to ensure successful delivery
You will drive the convergence of ASPM and CNAPP by defining requirements and user stories that correlate application security with cloud runtime and proactive context (CSPM, CWPP, CIEM) to eliminate security silos and deliver a unified risk and security platform.
You will be accountable for gathering and synthesizing insights from AppSec engineers, CloudSec teams, DevOps practitioners, and CISOs through customer interviews, user research, and competitive analysis to identify high-impact product opportunities
You will define and own key product metrics and success criteria including mean-time-to-remediation, vulnerability prioritization accuracy, developer adoption rates, and reduction in exploitable attack surface, using data to drive continuous product optimization
You will lead cross-functional collaboration with engineering, design, marketing, sales, and customer success to deliver developer-centric features including pull-request scanning, policy-as-code enforcement, and automated remediation workflows
You will serve as the subject matter expert and evangelist for ASPM, presenting to customers, industry analysts executives, and at conferences to position CrowdStrike as the leader in the converging ASPM/CNAPP market.
Requirements: Bachelor's degree in Computer Science, Engineering, or related technical field
5+ years of product management experience in application security, cloud security, DevSecOps tooling, or related B2B SaaS domains
Deep understanding of application security testing tools (SAST, SCA, DAST, IAST, secrets scanning) and their role in the software development lifecycle
Strong technical knowledge of cloud-native architectures, containers, Kubernetes, CI/CD pipelines, and infrastructure-as-code (Terraform, CloudFormation)
Proven ability to build products for technical personas including developers, AppSec engineers, and CloudSec/DevOps teams, with empathy for their distinct workflows and priorities
Data-driven approach to product decisions with experience using analytics to measure security outcomes, risk reduction, and developer productivity
Exceptional communication skills with ability to translate complex technical concepts for executive audiences and influence cross-functional stakeholders
This position is open to all candidates.