
Cybersecurity - Product Manager
at J.P. Morgan
Posted 19 days ago
No clicks
- Compensation
- Not specified
- City
- Plano
- Country
- United States
Currency: Not specified
As a Cybersecurity Product Manager based in Plano, TX, you will lead the end-to-end product lifecycle for network security and control products, acting as the voice of the customer to deliver scalable, resilient solutions. You will define product strategy and vision, manage discovery and roadmaps, and track key success metrics while embedding security best practices such as threat modeling, secure code review, and automation. The role requires deep knowledge of traditional firewalls, cloud WAFs, cloud services, network segmentation, orchestration via APIs, and scripting. You will collaborate across product, technology, and third-party teams to drive secure product launches, manage risk, and support audit and regulatory engagements.
Location: Plano, TX, United States
- Develops a product strategy and product vision that delivers value to customers
- Manages discovery efforts and market research to uncover customer solutions and integrate them into the product roadmap
- Owns, maintains, and develops a product backlog that enables development to support the overall strategic roadmap and value proposition
- Builds the framework and tracks the product's key success metrics such as cost, feature and functionality, risk posture, and reliability
- Cultivate security culture with your product technology and business colleagues. Products that have the right security culture will strive to prioritize sustainable controls and driving real risk reduction outcomes. Embed threat modelling, solutions architecture, secure code review into product and application teams so they adopt our control products and create products that are secure from the start.
- Know your product across its breadth and depth. Be fluent in your product’s strategy and roadmap as well as its key investment programs. Identify unfamiliar technology components, capabilities, and business concepts and be self-motivated to learn all about them, applying critical thinking to identify hidden issues along the way.
- Be your product’s security thought leader. Learn from your product and cybersecurity teams and share best practice in both directions. Be recognized in your product as the clear point of escalation and subject matter expert for IT Risk and Cyber domains.
- Act with urgency managing emerging issues. Proactively monitor Key Risk Indicators to ensure issues are identified, quantified, communicated, and managed in a timely manner, including recommendations for resolution and identifying the root cause/key themes.
- Partner and lead end-to-end across your product’s supply chain. Work collaboratively with product, technology, and business colleagues on an on-going basis for business-as-usual audit and regulatory engagements, risk activities and project initiatives. Work closely with Third Party Oversight teams to ensure effective technology risk management of vendors engaged by technology partners, with a focus on Cloud computing / emerging technologies.
- Creating and maintaining Product Documentation including but not limited to Strategy and Vision, Road Mapping, Customer Journey Maps, Objectives and Key Results (OKRs), Key Performance Indicators (KPIs), Customer-Facing Guides, etc.
Required qualifications, capabilities, and skills
- 5+ years of experience or equivalent expertise in product management or a relevant experience in the end-to-end information technology (IT) processes, including architecture, design & engineering, implementation, and operations.
- Advanced knowledge of the product development life cycle, design, and data analytics. Proven ability to lead product life cycle activities including discovery, ideation, strategic development, requirements definition, and value managementfor Network Security solutions.
- Usage of best practice agile scrum development and lean principles.
- Advanced knowledge of Traditional Firewall, Cloud based Web Application Firewall (WAF) and Connectivity Governance, how to configure them at scale, how to manage policy, how to integrate with them, and automation.
- Knowledge of public cloud services cloud services (e.g., IaaS, PaaS, SaaS, etc.) offered from public cloud service providers (e.g., AWS, Microsoft Azure, etc.).
- Understanding of Network Firewall Rules, Segmentation, and IP Addressing and Ports/Protocols
- Understanding of Network Security Standards and Frameworks (e.g., OWASP, Zero-Trust, Service Edge)
- Understanding of Orchestration, Automation and Integration of Network Security applications via API.
- Understanding of other Network Security Controls (e.g., Firewall and Security Groups).
- Understanding of Platform Ops, DevSecOps, Hybrid cloud infrastructure, Identity Access Management (IAM) around Network Security.
- Understanding of a scripting language, Python, JavaScript, and/or PowerShell.
- Demonstrated prior experience working in a highly matrixed, complex organization
#CTC




