Senior Product Manager, Appsec

Capital One

McLean, VA, US
Base: $209,000 - $286,200 (location dependent); bo...
Not specified
6+ years cybersecurity or it experience
3+ years translating security strategy to product requirements
3+ years application security experience
Capital One is seeking a Senior Product Manager for Application Security who will drive strategy and product vision for AppSec scanning tools to enhance developer experience while maintaining security. The role requires a blend of technical expertise in cybersecurity and product management, focusing on effective stakeholder communication and operational governance

Job Summary

  • The role drives the multi-year product roadmap for Application Security, ensuring alignment with enterprise risk appetites and the evolving threat landscape.
  • You will serve as the bridge between high-level security strategy and technical execution, focusing on improving developer experience through a shift-left mindset.
  • The position includes defining the product strategy for AI-application security, including secure integration of AI agents into the SDLC and automated remediation pipelines.

Matching Summary

Match Score: 85

Capital One is seeking a Senior Product Manager for Application Security who will drive strategy and product vision for AppSec scanning tools to enhance developer experience while maintaining security. The role requires a blend of technical expertise in cybersecurity and product management, focusing on effective stakeholder communication and operational governance.

Salary

Base: $209,000 - $286,200 (location dependent); Bonus/Equity: Performance based incentive compensation eligible; Benefits: Comprehensive health, financial, and well-being benefits included

Skills & Requirements

Must-have

  • 6+ years cybersecurity or IT experience
  • 3+ years translating security strategy to product requirements
  • 3+ years application security experience
  • DevSecOps and AppSec technical depth
  • Vendor evaluation for SAST/DAST/SCA tools
  • AI application security strategy definition

Nice-to-have

  • Bachelor's degree in Computer Science
  • Experience with cloud-native environments
  • Knowledge of OWASP Top 10
  • Automated DAST and manual penetration testing
  • Ethical AI usage standards
  • Strong stakeholder management skills

Key Requirements

  • High School Diploma or equivalent
  • At least 6 years in cybersecurity or IT
  • At least 3 years in AppSec
  • No visa sponsorship provided

Work Rights

Not specified

Tailored Resume

Cover Letter