What you will do
- Lead product execution for runtime threat detection across containers, hosts, and cloud environments - from detections to end-to-end threat workflows reporting to Director, Product Management.
- Manage roadmap for advanced detection outcomes including: FIM, malware discovery, behavioral threat analytics, workload runtime signals, identity-based detections, and active response capabilities.
- Partner with engineering and research (threat intel, detection engineering, ML/AI) to ship high-signal detections that materially reduce Mean Time to Detect / Investigate for customers.
- Define UX and workflows for SOC, IR, cloud security engineering - minimizing noise, driving actionability, and accelerating containment.
- Engage directly with security customers (from hands-on operators to exec stakeholders) to understand modern runtime threat pain and convert it into unique products.
- Stay ahead of the threat landscape and ecosystem to ensure our runtime engine + detection portfolio is always leading the market.
What you will bring with you
- Direct experience building runtime detection, threat response, malware defense, or threat workflow products.(e.g. CDR, runtime CNAPP components, advanced detection engines, FIM platforms, EDR/XDR runtime engines.)
- Strong technical depth. Able to credibly partner with cloud security engineers, threat researchers, and backend engineers.
- Demonstrated success owning / driving product workstreams end-to-end - roadmap, prioritization, backlog, delivery.
- Strong understanding of modern cloud stacks: Kubernetes, containers, cloud native deployment patterns, plus at least one major cloud (AWS / Azure / GCP).
What we look for
- 4–5+ years of product management experience building security products (ideally threat detection & response, CDR/EDR/XDR, CNAPP, runtime security, or similar)
- You bias toward measurable outcomes: reducing noise, increasing true positive threat signal, and improving operational speed for defenders.
- You care deeply about shipping what matters, not just shipping something.
- You stay current on threat techniques, attacker behavior, and emerging runtime research.
- Excellent communication across engineering, research, design, GTM, and customers - ability to simplify highly technical conversations and influence direction through clarity.
When you join Sysdig, you can expect:
- Extra days off to prioritize your well-being
- 401(k) Retirement Savings Plan with a 3% company match
- Maternity and Parental Leave
- Mental health support for you and your family through the Modern Health app
- Full health benefits package for you and your family
Top Skills
What We Do
Sysdig delivers cloud security the right way with open innovation, agentic AI, and the uncompromising truth of runtime. In a world of black boxes and blind spots, Sysdig helps security and development teams prevent, detect, and respond to threats in the moment.
AI is only as powerful as the signals it receives, and Sysdig Sage™ – the first agentic AI analyst for cloud security – is fueled by the deepest runtime intelligence in the industry. It doesn’t just observe. It reasons and acts with the context, speed, and precision that modern teams need to build and defend innovation in real time. Founded by the creators of Falco and Wireshark, Sysdig is trusted by more than 60% of the Fortune 500 and is built for those who refuse to compromise on security.
Why Work With Us
Sysdig's global expansion is fueled by our dedicated "Sysdiggers," known for collaboration, innovation, & transparency. With a diverse, international presence, we value every voice & are committed to our core values. We prioritize well-being with a top-tier benefits package. Join us to empower our team, thrive, & deliver our best work globally.
Gallery






