远程工作雷达

高级产品经理,应用安全

Senior Product Manager, Application Security

开发工程职能支持限定地区(需当地身份)
公司zetaglobal
薪资未公开
工作地点Remote - United States
地域资格限定地区(需当地身份)
时区要求无特别要求
用工类型未标注
发布时间2026-08-03
数据来源Greenhouse
前往企业招聘页投递 →
注意地域限制:该职位明确限定在 Remote - United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

WHO WE ARE

Zeta Global (NYSE: ZETA) 是一家基于人工智能的营销云平台,利用先进的人工智能(AI)和数万亿的消费者数据信号,帮助营销人员更高效地获取、增长和留住客户。通过 Zeta 营销平台(ZMP),我们的愿景是通过将身份识别、智能分析和全渠道激活整合到一个平台上——由行业内最大的专有数据库和 AI 驱动——让复杂的营销变得简单。我们跨多个垂直领域的企业客户能够通过每个渠道为每位消费者提供个性化体验,从而提升营销活动的效果。Zeta 由 David A. Steinberg 和 John Sculley 于 2007 年创立,总部位于纽约市,并在全球设有办事处。如需了解更多信息,请访问 www.zetaglobal.com。

关于该职位

我们正在寻找一位高级产品经理,负责应用安全产品和项目的全流程管理。你将制定战略、规划路线图,并推动企业级应用安全能力的交付,以保护 Zeta 的平台、数据和客户,同时使工程团队能够自信地发布产品。

该职位位于产品、安全和平台工程的交汇点。你将把我们的应用安全愿景转化为一个系统,基于整个软件开发生命周期(SDLC)的安全设计实践、AI 辅助的威胁建模和代码审查、CI/CD 强制执行、大规模漏洞优先级排序与修复,以及面向高管的风险可见性。成功意味着在应该隐形时安全是隐形的,在必须可见时是高度可见的。

职责

  • 负责应用安全产品的战略和多季度路线图——从可见性与工具清单,到架构和风险面映射、工具采购与升级、CI/CD 强制执行、主动威胁减少以及规模化制度化(安全大使、架构评审、高管报告)。
  • 构建并交付核心应用安全产品功能:AI 驱动的威胁建模与代码评估,以及统一的安全风险、信号和修复平台。
  • 优先处理 Zeta 平台上的关键风险面。
  • 定义清晰的需求、用户故事、成功指标和验收标准。
  • 与应用安全工程、平台/DevOps、架构、信息安全部门和产品工程团队一起推动日常执行。
查看英文原文

WHO WE ARE

Zeta Global (NYSE: ZETA) is the AI-Powered Marketing Cloud that leverages advanced artificial intelligence (AI) and trillions of consumer signals to make it easier for marketers to acquire, grow, and retain customers more efficiently. Through the Zeta Marketing Platform (ZMP), our vision is to make sophisticated marketing simple by unifying identity, intelligence, and omnichannel activation into a single platform – powered by one of the industry’s largest proprietary databases and AI. Our enterprise customers across multiple verticals are empowered to personalize experiences with consumers at an individual level across every channel, delivering better results for marketing programs. Zeta was founded in 2007 by David A. Steinberg and John Sculley and is headquartered in New York City with offices around the world. To learn more, go to www.zetaglobal.com.

About the Role

We are seeking a Senior Product Manager, Application Security to own Zeta’s Application Security product and program end-to-end. You will set strategy, prioritize the roadmap, and drive delivery of an enterprise-grade AppSec capability that protects Zeta’s platform, data, and customers, while enabling engineering teams to ship with confidence.

This role sits at the intersection of product, security, and platform engineering. You will turn our Application Security vision into a system based on secure-by-design practices across the SDLC, AI-assisted threat modeling and code review, CI/CD enforcement, vulnerability prioritization and remediation at scale, and executive-ready risk visibility. Success means security is invisible when it should be, and highly visible when it must be.

Responsibilities

  • Own the Application Security product strategy and multi-quarter roadmap—from visibility and tooling inventory, through architecture and risk-surface mapping, tool procurement and upgrades, CI/CD enforcement, proactive threat reduction, and scaled institutionalization (Security Champions, architecture review, executive reporting).
  • Build and ship the core AppSec product surfaces: AI-powered threat modeling and code evaluation, and a unified security risk, signal, and remediation platform.
  • Prioritize critical risk surfaces across the Zeta platform.
  • Define clear requirements, user stories, success metrics, and acceptance criteria for AppSec capabilities.
  • Drive day-to-day execution with Application Security engineering, platform/DevOps, Architecture, InfoSec, and product engineering pods.
  • Establish and evolve governance: severity and SLA frameworks, incident intake and escalation, secure coding standards, third-party application integration guardrails, and architecture security review for high-risk changes.
  • Lead tool strategy and procurement decisions with clear risk justification, coverage gaps, budget tradeoffs, and integration into developer workflows.
  • Use data and KPIs to measure posture and inform prioritization.
  • Align AppSec initiatives with company objectives; communicate risk, progress, and asks clearly to engineering and executive stakeholders.
  • Identify and mitigate delivery and security risks; run post-incident learning loops that convert findings into durable product and process improvements.
  • Mentor and elevate AppSec and adjacent product/engineering partners; help scale a Security Champions program across the organization.
  • Comfortably use AI tools as part of everyday product work, and productize AI defensively for threat modeling, triage, code review, and remediation guidance with appropriate human oversight.

Qualifications

  • 4-6+ years of product management experience, with meaningful ownership of enterprise Application Security, platform security, DevSecOps, or adjacent security-product domains in SaaS/B2B environments.
  • Deep working knowledge of modern AppSec practices and tooling (SAST, DAST, SCA, container/IaC/secrets scanning, vulnerability management, threat modeling, API security, and secure SDLC).
  • Proven ability to drive enterprise-tier security programs: risk-based prioritization, remediation SLAs, cross-org governance, and executive risk communication—not only feature delivery.
  • Strong technical background (Computer Science or related field preferred); credible with security engineers, architects, and engineering leaders on topics such as authn/authz, multi-tenancy, cryptography boundaries, supply chain, and AI/LLM security risks.
  • Demonstrated experience shipping developer-facing security products or workflows (CI/CD gates, IDE/MR integrations, security dashboards, or remediation orchestration).
  • Excellent communication and stakeholder influence skills across Engineering, InfoSec, DevOps/Infrastructure, Architecture, and leadership.
  • Proven ability to work independently in ambiguity while building durable process, metrics, and operating cadence.

Preferred Skills

  • Experience building or operating AI-assisted security capabilities (threat modeling automation, AI code review, exploitability/reachability-informed triage, or unified findings platforms).
  • Familiarity with MarTech/AdTech or other high-scale multi-tenant platforms handling sensitive customer data.
  • Experience with tool evaluation and vendor management for AppSec platforms (e.g. Snyk, Wiz, Rapid7, or equivalents).

What We’re Looking For

  • A proactive owner who can run Application Security as a product and a program: curious, decisive, and ready to tackle complex enterprise risk.
  • Someone who thrives in ambiguity, takes end-to-end ownership, and converts strategy into measurable reduction of platform risk.
  • A partner to engineering who values pragmatic, risk-based tradeoffs and continuous improvement over checkbox security.
  • A leader who can make security scalable through automation, clear standards, and AI-native workflows—without becoming a bottleneck.

BENEFITS & PERKS

  • Unlimited PTO
  • Excellent medical, dental, and vision coverage
  • Employee Equity
  • Employee Discounts, Virtual Wellness Classes, and Pet Insurance And more!!

SALARY RANGE

The salary range for this role is $170,000 - $185,000, depending on location and experience.

PEOPLE & CULTURE AT ZETA

Zeta considers applicants for employment without regard to, and does not discriminate on the basis of an individual’s sex, race, color, religion, age, disability, status as a veteran, or national or ethnic origin; nor does Zeta discriminate on the basis of sexual orientation, gender identity or expression.

We’re committed to building a workplace culture of trust and belonging, so everyone feels invited to bring their whole selves to work. We provide a forum for employees to celebrate, support and advocate for one another. Learn more about our commitment to diversity, equity and inclusion here:  https://zetaglobal.com/blog/a-look-into-zetas-ergs/

ZETA IN THE NEWS!

https://zetaglobal.com/press/?cat=press-releases

#LI-TS1

本页面信息整理自 Greenhouse,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

合作营销经理

zetaglobalRemote - California; Remote - Chicago, IL;19 天前
市场运营限定地区(需当地身份)

应用安全总监

zetaglobalRemote - United States20 天前
开发工程限定地区(需当地身份)

← 返回全部职位