Remote Security Product Manager Jobs
Remote Security Product Manager jobs are in active demand across the U.S., with remote-first firms and distributed teams in cybersecurity, fintech, and enterprise software hiring security product managers to define roadmaps and drive security strategy without a physical office. Employers hiring remotely right now include CrowdStrike, GitHub, and Zeta Global. See the openings below and apply to the ones that match your experience.
Find JobsOverview
Showing 5 of 39+ Remote Security Product Manager jobs











WHO WE ARE
Zeta Global (NYSE: ZETA) is the AI-Powered Marketing Cloud that leverages advanced artificial intelligence (AI) and trillions of consumer signals to make it easier for marketers to acquire, grow, and retain customers more efficiently. Through the Zeta Marketing Platform (ZMP), our vision is to make sophisticated marketing simple by unifying identity, intelligence, and omnichannel activation into a single platform – powered by one of the industry's largest proprietary databases and AI. Our enterprise customers across multiple verticals are empowered to personalize experiences with consumers at an individual level across every channel, delivering better results for marketing programs. Zeta was founded in 2007 by David A. Steinberg and John Sculley and is headquartered in New York City with offices around the world. To learn more, go to www.zetaglobal.com.
About the Role
We are seeking a Senior Product Manager, Application Security to own Zeta's Application Security product and program end-to-end. You will set strategy, prioritize the roadmap, and drive delivery of an enterprise-grade AppSec capability that protects Zeta's platform, data, and customers, while enabling engineering teams to ship with confidence.
This role sits at the intersection of product, security, and platform engineering. You will turn our Application Security vision into a system based on secure-by-design practices across the SDLC, AI-assisted threat modeling and code review, CI/CD enforcement, vulnerability prioritization and remediation at scale, and executive-ready risk visibility. Success means security is invisible when it should be, and highly visible when it must be.
Responsibilities
- Own the Application Security product strategy and multi-quarter roadmap—from visibility and tooling inventory, through architecture and risk-surface mapping, tool procurement and upgrades, CI/CD enforcement, proactive threat reduction, and scaled institutionalization (Security Champions, architecture review, executive reporting).
- Build and ship the core AppSec product surfaces: AI-powered threat modeling and code evaluation, and a unified security risk, signal, and remediation platform.
- Prioritize critical risk surfaces across the Zeta platform.
- Define clear requirements, user stories, success metrics, and acceptance criteria for AppSec capabilities.
- Drive day-to-day execution with Application Security engineering, platform/DevOps, Architecture, InfoSec, and product engineering pods.
- Establish and evolve governance: severity and SLA frameworks, incident intake and escalation, secure coding standards, third-party application integration guardrails, and architecture security review for high-risk changes.
- Lead tool strategy and procurement decisions with clear risk justification, coverage gaps, budget tradeoffs, and integration into developer workflows.
- Use data and KPIs to measure posture and inform prioritization.
- Align AppSec initiatives with company objectives; communicate risk, progress, and asks clearly to engineering and executive stakeholders.
- Identify and mitigate delivery and security risks; run post-incident learning loops that convert findings into durable product and process improvements.
- Mentor and elevate AppSec and adjacent product/engineering partners; help scale a Security Champions program across the organization.
- Comfortably use AI tools as part of everyday product work, and productize AI defensively for threat modeling, triage, code review, and remediation guidance with appropriate human oversight.
Qualifications
- 4-6+ years of product management experience, with meaningful ownership of enterprise Application Security, platform security, DevSecOps, or adjacent security-product domains in SaaS/B2B environments.
- Deep working knowledge of modern AppSec practices and tooling (SAST, DAST, SCA, container/IaC/secrets scanning, vulnerability management, threat modeling, API security, and secure SDLC).
- Proven ability to drive enterprise-tier security programs: risk-based prioritization, remediation SLAs, cross-org governance, and executive risk communication—not only feature delivery.
- Strong technical background (Computer Science or related field preferred); credible with security engineers, architects, and engineering leaders on topics such as authn/authz, multi-tenancy, cryptography boundaries, supply chain, and AI/LLM security risks.
- Demonstrated experience shipping developer-facing security products or workflows (CI/CD gates, IDE/MR integrations, security dashboards, or remediation orchestration).
- Excellent communication and stakeholder influence skills across Engineering, InfoSec, DevOps/Infrastructure, Architecture, and leadership.
- Proven ability to work independently in ambiguity while building durable process, metrics, and operating cadence.
Preferred Skills
- Experience building or operating AI-assisted security capabilities (threat modeling automation, AI code review, exploitability/reachability-informed triage, or unified findings platforms).
- Familiarity with MarTech/AdTech or other high-scale multi-tenant platforms handling sensitive customer data.
- Experience with tool evaluation and vendor management for AppSec platforms (e.g. Snyk, Wiz, Rapid7, or equivalents).
What We're Looking For
- A proactive owner who can run Application Security as a product and a program: curious, decisive, and ready to tackle complex enterprise risk.
- Someone who thrives in ambiguity, takes end-to-end ownership, and converts strategy into measurable reduction of platform risk.
- A partner to engineering who values pragmatic, risk-based tradeoffs and continuous improvement over checkbox security.
- A leader who can make security scalable through automation, clear standards, and AI-native workflows—without becoming a bottleneck.
BENEFITS & PERKS
- Unlimited PTO
- Excellent medical, dental, and vision coverage
- Employee Equity
- Employee Discounts, Virtual Wellness Classes, and Pet Insurance And more!!
SALARY RANGE
The salary range for this role is $170,000 - $190,000, depending on location and experience.
PEOPLE & CULTURE AT ZETA
Zeta considers applicants for employment without regard to, and does not discriminate on the basis of an individual's sex, race, color, religion, age, disability, status as a veteran, or national or ethnic origin; nor does Zeta discriminate on the basis of sexual orientation, gender identity or expression.
We're committed to building a workplace culture of trust and belonging, so everyone feels invited to bring their whole selves to work. We provide a forum for employees to celebrate, support and advocate for one another. Learn more about our commitment to diversity, equity and inclusion here: https://zetaglobal.com/blog/a-look-into-zetas-ergs/
ZETA IN THE NEWS!
https://zetaglobal.com/press/?cat=press-releases
#LI-TS1
See All 39 Remote Security Product Manager Jobs
Find roles that match your experience and apply in just a few clicks.
Find JobsRemote Security Product Manager Job Market
Who's Hiring



Top Industries Hiring
- Technology & Software12
- Banking & Financial Services2
- Consulting & Professional Services2
- Healthcare & Medical Services1
What Employers Look For
The qualifications that appear most often in remote security product manager jobs.
- 5+ years of product management experience with at least 2 years in a security-focused role
- Deep understanding of security frameworks such as NIST, ISO 27001, SOC 2, or Zero Trust
- Experience defining product roadmaps for cybersecurity or enterprise security software
- Ability to translate technical security requirements into user stories and prioritized backlogs
- Familiarity with threat modeling, vulnerability management, and secure software development lifecycle
- Security certification such as CISSP, CISM, or CompTIA Security+ preferred or required
Tips for Your Remote Security Product Manager Job Search
Apply early to remote roles that fit
Migrate Mate lists remote security product manager openings from across the U.S. in one place. Search by role and apply directly to the listings that match your experience level and security domain before competition builds.
Show your async communication skills upfront
Remote security product manager hiring managers can't observe how you run a meeting, so your application materials do the work. Write your resume bullets and cover note the way you'd write a product brief: clear, structured, and decision-ready without follow-up questions.
Build a visible remote product artifact
A public one-pager, threat model write-up, or security roadmap sample shows remote employers you can produce structured output independently. Security product managers who share real work, even sanitized examples, stand out in distributed hiring pipelines.
Sharpen your distributed collaboration credentials
Remote security product managers work across engineering, legal, and go-to-market teams without shared office space. Highlight specific experience driving alignment in tools like Notion, Confluence, or Slack, and name the cross-functional outcomes you owned, not just the meetings you joined.
Remote Security Product Manager Jobs: Frequently Asked Questions
How do I get a remote security product manager job?
Target companies that already run distributed security or product teams, since they have the tooling and culture to support remote security product managers from day one. Remote employers screen hard for async written communication, the ability to drive cross-functional alignment without in-person meetings, and hands-on fluency with threat modeling, security roadmaps, and tools like Jira and Confluence. Demonstrating self-direction through a public portfolio, case studies, or shipped security features gives you a clear edge.
Which companies hire remote security product managers?
Employers currently hiring remote security product managers include CrowdStrike, GitHub, and Zeta Global, per current remote listings on Migrate Mate as of August 2026. Remote-first technology companies, distributed fintech platforms, and cloud security vendors make up the largest share of these openings.
Can you get a remote security product manager job with no experience?
Yes, but remote entry-level security product manager roles are harder to land because you're expected to operate independently from the start without on-site mentorship. Focus on remote-first startups and smaller security vendors, which are more open to candidates who show demonstrated product thinking through side projects, open-source security contributions, or documented outcomes from adjacent roles in engineering or security analysis.
Do you need a degree for remote security product manager jobs?
Not always. Remote employers hiring security product managers weigh demonstrated product sense, security domain knowledge, and a history of shipping features or influencing roadmaps more heavily than a specific credential. Certifications like CISSP, CISM, or a CSPM-focused credential carry real weight, and a strong portfolio of shipped work or written product specs can substitute for a traditional four-year degree at many remote-first companies.
Which industries hire the most remote security product managers?
Most remote security product manager openings sit in Technology & Software, Banking & Financial Services, and Consulting & Professional Services, per current remote listings on Migrate Mate as of August 2026. These sectors rely on distributed engineering and security teams, which makes remote security product managers a natural operational fit.
See All 39 Remote Security Product Manager Jobs
Find roles that match your experience and apply in just a few clicks.
Find Jobs