Senior Manager, Cybersecurity Product Management

Capital One Capital One · Banking · New York, NY +2

Senior Manager, Cybersecurity Product Management role focused on developing and delivering cybersecurity solutions, managing product roadmaps, analyzing risks, and leading RFI/RFPs. The role requires strong analytical, communication, and leadership skills, with experience in enterprise cybersecurity projects and a focus on enabling the business through technology.

What you'd actually do

  1. Develop and communicate a risk-based and data-driven strategy and outcome-driven roadmaps for enterprise security services, solutions, and capabilities, in partnership with engineering and operations partners, customers, and other stakeholders
  2. Analyze and select alternatives based on threat, risk, desirability, feasibility, and viability
  3. Keep abreast of advances in industry to address the threat landscape
  4. Advise executive decision makers based on business and technology risk grounded in threat
  5. Facilitate build vs. buy decisions to identify optimal strategies for addressing business and technology risks

Skills

Required

  • High School Diploma, GED or equivalent certification
  • At least 6 years of experience working in cybersecurity or information technology
  • At least 3 years of experience translating cybersecurity strategy and analysis into product requirements
  • strong consulting and analytical skills
  • ability to foster collaborative, open, working relationships with technology groups and other stakeholders, including vendor relationships
  • demonstrated clear communication skills and ability to interact effectively at all levels of an organization, and to influence senior management and executives (Including translating technical information based on specific audiences)
  • experience managing multiple high-visibility and high-impact enterprise cybersecurity projects with cross-functional teams while maintaining superior results including planning, development and management of technical requirements, design, testing and deployment of security solutions

Nice to have

  • Bachelor's Degree in Cybersecurity, Systems Engineering, or Computer Science
  • 7+ years of experience solving cyber technical challenges
  • 7+ years of experience translating business strategy and analysis into products
  • 4+ years of Cyber product owner experience
  • 2+ years of experience in technical writing
  • 2+ years of hands-on JIRA experience
  • Experience in regulated financial services organizations or tech companies
  • 2 or more professional certifications: SAFe, PMP, CSPO, CISSP, GIAC, CISM, CCSP, AWS Security, AWS Advanced Networking Specialty, or AWS Solutions Architect
  • Deep expertise in endpoint security domains, including telemetry-driven detection and response, forensics, insider threat, ecosystem security, malware protection, and endpoint control frameworks such as allowlisting or device governance.
  • Strong understanding of endpoint security architectures and systems, including endpoint agents, telemetry pipelines, detection workflows, and integration with SIEM/XDR platforms.
  • Experience leading end-to-end product lifecycle for endpoint security capabilities including evaluation, vendor selection, onboarding, and enterprise-scale rollout in partnership with third-party, engineering, architecture, ISO, and risk teams.
  • Experience with developer security ecosystem including IDE security, AI-powered development tools governance, and modern software supply-chain security controls.
  • Experience translating regulatory requirements such as SOX, PCI, or SOC into actionable endpoint security product requirements and control frameworks, with ability to balance compliance requirements with business enablement.

What the JD emphasized

  • technical security product leader
  • enterprise security services
  • business and technology risk
  • cybersecurity projects
  • regulated financial services organizations