Principal Product Mgr

Posted 8 Days Ago
Be an Early Applicant
Pune, Mahārāshtra, IND
In-Office
Senior level
Information Technology • Security • Cybersecurity
The Role
Lead the ASPM product within Qualys’ Enterprise TruRisk Management platform. Define the roadmap, execution strategy, and success metrics; build application risk discovery, prioritization, remediation, intelligence, and AI-assisted capabilities; and collaborate with engineering, design, threat research, customers, marketing, and sales. The role focuses on increasing adoption, enabling risk-based application security decisions, and growing the ASPM business.
Summary Generated by Built In

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!

Principal Product Manager, ASPM

Qualys is looking for a Principal Product Manager to lead ASPM (Application Security Posture Management), within the Enterprise TruRisk Management platform. ASPM provides unified visibility, risk-based prioritization, and integrated remediation to help organizations manage application security risk continuously and autonomously. As the PM, you will define the roadmap and execution strategy for how customers discover, consume, prioritize, and remediate application security risk, while driving ideas to increase product adoption and grow the ASPM business.

This is a high-impact role at the intersection of Application Security, vulnerability management, and Agentic AI. You will work closely with Engineering and Design to turn ideas into scalable, customer-facing capabilities; validate them with customers; partner with Marketing on go-to-market execution; and work with Sales to drive adoption and business growth.

What You’ll Own 

  • Define the roadmap, execution plan and success metrics for ASPM. 
  • Build capabilities that help customers discover, prioritize, and remediate application security risk based on discovery, exploitability, application criticality, and business impact.
  • Partner with Engineering and Design and Threat teams to build the intelligence foundation for ASPM, including data ingestion, normalization, correlation, enrichment, scoring, and AI-assisted experiences.
  • Engage AppSec leaders, vulnerability managers, DevOps practitioners to uncover customer problems, validate solutions, and shape the ASPM roadmap.
  • Shape how ASPM intelligence powers ETM, TruRisk, risk operations, and Agentic AI-driven decision-making.
  • Partner with GTM teams on launches, enablement, positioning, and competitive differentiation. 

What Success Looks Like 

  • ASPM becomes the application risk intelligence layer for ETM customers.
  • Customers cut through application security noise and focus on the exposures that matter most.
  • Qualys research and threat intelligence are transformed into scalable, actionable application security insights.
  • ASPM drives adoption, expansion, and differentiation for ETM.
  • AI and automation accelerate analyst productivity and decision-making without introducing black-box risk.

Required Experience 

  • Minimum 8 years of product management experience, including 5+ years in cybersecurity or enterprise SaaS. 
  • Experienced in one or more of the following domains: ASPM, API security, Web App Security (SAST, DAST, and SCA), Vulnerability Management
  • Ability to work deeply with engineering, threat research, design, and security teams. 
  • Strong product judgment, customer discovery skills, and ability to translate complex technical concepts into clear customer value. 
  • Excellent written and verbal communication skills for executive, customer, analyst, and internal audiences. 
  • Ability to learn quickly and keep up with fast changing AppSec domain
  • Familiarity with CVE, CVSS, EPSS, CISA KEV, MITRE ATT&CK, and related security frameworks. 

Preferred Experience 

  • Some knowledge of Agentic AI and AI security would be highly preferred
  • Prior hands-on experience as Application Security Analyst or Pen-tester is a big plus

Why This Role Matters 

ASPM is a critical part of Qualys’ vision for Enterprise TruRisk Management. It brings together application findings, vulnerability management, Qualys research, asset context, and business risk to help customers move from reactive application security to proactive, risk-based Application Security Posture Management.

This role will help shape how Application Security, Vulnerability Management, AI, and automation come together to power the next generation of Application Security Posture Management.

Skills Required

  • Minimum 8 years of product management experience
  • At least 5 years of experience in cybersecurity or enterprise SaaS
  • Experience in ASPM, API security, web application security, SAST, DAST, SCA, or vulnerability management
  • Ability to work deeply with engineering, threat research, design, and security teams
  • Strong product judgment and customer discovery skills
  • Ability to translate complex technical concepts into clear customer value
  • Excellent written and verbal communication skills
  • Ability to learn quickly and keep up with the changing application security domain
  • Familiarity with CVE, CVSS, EPSS, CISA KEV, MITRE ATT&CK, and related security frameworks
  • Knowledge of Agentic AI and AI security
  • Hands-on experience as an Application Security Analyst or penetration tester

Qualys Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Qualys and has not been reviewed or approved by Qualys.

  • Affordable Benefits Benefits costs are widely viewed as low for employees and dependents, with healthcare often described as almost fully paid for. Feedback suggests this affordability helps offset perceptions of lower base pay in some roles.
  • Healthcare Strength Healthcare offerings are broad, including multiple medical plan options, dental and vision coverage, mental health support, and disability insurance. Benefits are described as “pretty amazing” or “great,” reinforcing perceived quality and coverage depth.
  • Equity Value & Accessibility Equity participation is accessible through company stock plans and an employee stock purchase plan. Compensation packages commonly include equity alongside salary and bonus, which some consider a meaningful part of total rewards.

Qualys Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Foster City, CA
2,736 Employees
Year Founded: 1999

What We Do

Qualys, Inc. (NASDAQ: QLYS) is a pioneer and leading provider of disruptive cloud-based security, compliance and IT solutions with more than 10,000 subscription customers worldwide, including a majority of the Forbes Global 100 and Fortune 100. Qualys helps organizations streamline and automate their security and compliance solutions onto a single platform for greater agility, better business outcomes, and substantial cost savings. The Qualys Cloud Platform leverages a single agent to continuously deliver critical security intelligence while enabling enterprises to automate the full spectrum of vulnerability detection, compliance, and protection for IT systems, workloads and web applications across on premises, endpoints, servers, public and private clouds, containers, and mobile devices. Founded in 1999 as one of the first SaaS security companies, Qualys has strategic partnerships and seamlessly integrates its vulnerability management capabilities into security offerings from cloud service providers, including Amazon Web Services, the Google Cloud Platform and Microsoft Azure, along with a number of leading managed service providers and global consulting organizations. For more information, please visit http://www.qualys.com

Similar Jobs

TransUnion Logo TransUnion

Specialist I, Compliance Monitoring

Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Hybrid
Pune, Mahārāshtra, IND
13000 Employees
Remote or Hybrid
2 Locations
289097 Employees

Capco Logo Capco

Business Analyst

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
India
6000 Employees

Capco Logo Capco

Architect

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
India
6000 Employees

Similar Companies Hiring

Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account