Zeta Global

Senior Product Manager, Application Security

Zeta Global$170K — $190K *
US-AnywhereRemote in United States
Enterprise Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 4-6+ years of product management experience in enterprise Application Security or related domains.
  • Strong knowledge of AppSec practices and tools like SAST, DAST, and vulnerability management.
  • Experience in driving security programs with risk prioritization and cross-organizational governance.
  • Technical background in Computer Science or similar; credible in discussions on security topics.
  • Experience delivering developer-facing security products or workflows.
  • Excellent communication skills for influencing cross-functional teams.
  • Ability to operate independently in ambiguous situations, creating processes and metrics.

Responsibilities

  • Own the Application Security product strategy and roadmap, encompassing risk mapping and tool upgrades.
  • Build and ship core AppSec products, including AI-powered threat modeling and risk platforms.
  • Prioritize critical security risk surfaces across the platform.
  • Define user stories and success metrics for AppSec capabilities.
  • Drive execution alongside engineering and InfoSec teams.
  • Establish governance frameworks for incident management and secure coding.
  • Lead tool procurement decisions based on risk analysis and budget considerations.
  • Measure security posture with data and KPIs to inform prioritization.
  • Align AppSec initiatives with company goals and communicate status to stakeholders.
  • Identify delivery risks and facilitate post-incident improvements.
  • Mentor and develop cross-functional partners in security best practices.

Benefits

  • Unlimited PTO
  • Comprehensive medical, dental, and vision coverage
  • Employee equity opportunities
  • Discounts and perks, including virtual wellness classes and pet insurance.
Full Job Description


About the Role

We are seeking a Senior Product Manager, Application Security to own Zeta's Application Security product and program end-to-end. You will set strategy, prioritize the roadmap, and drive delivery of an enterprise-grade AppSec capability that protects Zeta's platform, data, and customers, while enabling engineering teams to ship with confidence.

This role sits at the intersection of product, security, and platform engineering. You will turn our Application Security vision into a system based on secure-by-design practices across the SDLC, AI-assisted threat modeling and code review, CI/CD enforcement, vulnerability prioritization and remediation at scale, and executive-ready risk visibility. Success means security is invisible when it should be, and highly visible when it must be.

Responsibilities
  • Own the Application Security product strategy and multi-quarter roadmap-from visibility and tooling inventory, through architecture and risk-surface mapping, tool procurement and upgrades, CI/CD enforcement, proactive threat reduction, and scaled institutionalization (Security Champions, architecture review, executive reporting).
  • Build and ship the core AppSec product surfaces: AI-powered threat modeling and code evaluation, and a unified security risk, signal, and remediation platform.
  • Prioritize critical risk surfaces across the Zeta platform.
  • Define clear requirements, user stories, success metrics, and acceptance criteria for AppSec capabilities.
  • Drive day-to-day execution with Application Security engineering, platform/DevOps, Architecture, InfoSec, and product engineering pods.
  • Establish and evolve governance: severity and SLA frameworks, incident intake and escalation, secure coding standards, third-party application integration guardrails, and architecture security review for high-risk changes.
  • Lead tool strategy and procurement decisions with clear risk justification, coverage gaps, budget tradeoffs, and integration into developer workflows.
  • Use data and KPIs to measure posture and inform prioritization.
  • Align AppSec initiatives with company objectives; communicate risk, progress, and asks clearly to engineering and executive stakeholders.
  • Identify and mitigate delivery and security risks; run post-incident learning loops that convert findings into durable product and process improvements.
  • Mentor and elevate AppSec and adjacent product/engineering partners; help scale a Security Champions program across the organization.
  • Comfortably use AI tools as part of everyday product work, and productize AI defensively for threat modeling, triage, code review, and remediation guidance with appropriate human oversight.

Qualifications
  • 4-6+ years of product management experience, with meaningful ownership of enterprise Application Security, platform security, DevSecOps, or adjacent security-product domains in SaaS/B2B environments.
  • Deep working knowledge of modern AppSec practices and tooling (SAST, DAST, SCA, container/IaC/secrets scanning, vulnerability management, threat modeling, API security, and secure SDLC).
  • Proven ability to drive enterprise-tier security programs: risk-based prioritization, remediation SLAs, cross-org governance, and executive risk communication-not only feature delivery.
  • Strong technical background (Computer Science or related field preferred); credible with security engineers, architects, and engineering leaders on topics such as authn/authz, multi-tenancy, cryptography boundaries, supply chain, and AI/LLM security risks.
  • Demonstrated experience shipping developer-facing security products or workflows (CI/CD gates, IDE/MR integrations, security dashboards, or remediation orchestration).
  • Excellent communication and stakeholder influence skills across Engineering, InfoSec, DevOps/Infrastructure, Architecture, and leadership.
  • Proven ability to work independently in ambiguity while building durable process, metrics, and operating cadence.


Preferred Skills
  • Experience building or operating AI-assisted security capabilities (threat modeling automation, AI code review, exploitability/reachability-informed triage, or unified findings platforms).
  • Familiarity with MarTech/AdTech or other high-scale multi-tenant platforms handling sensitive customer data.
  • Experience with tool evaluation and vendor management for AppSec platforms (e.g. Snyk, Wiz, Rapid7, or equivalents).


What We're Looking For
  • A proactive owner who can run Application Security as a product and a program: curious, decisive, and ready to tackle complex enterprise risk.
  • Someone who thrives in ambiguity, takes end-to-end ownership, and converts strategy into measurable reduction of platform risk.
  • A partner to engineering who values pragmatic, risk-based tradeoffs and continuous improvement over checkbox security.
  • A leader who can make security scalable through automation, clear standards, and AI-native workflows-without becoming a bottleneck.

BENEFITS & PERKS
  • Unlimited PTO
  • Excellent medical, dental, and vision coverage
  • Employee Equity
  • Employee Discounts, Virtual Wellness Classes, and Pet Insurance And more!!

SALARY RANGE

The salary range for this role is $170,000 - $190,000, depending on location and experience.

ZETA IN THE NEWS!

https://zetaglobal.com/press/?cat=press-releases

#LI-TS1

About Zeta Global

Zeta Global is a data-driven marketing technology company that combines the power of artificial intelligence with the scale of data, applying insights from over 2.4 billion user profiles to generate business outcomes. Zeta Global?s products and services include programmatic media buying, email marketing, CRM, data and analytics, and marketing automation. The company serves a wide range of industries, including financial services, insurance, automotive, telecommunications, retail, publishing, and travel. Zeta Global has offices in North America, Europe, and Asia-Pacific.
Learn more about Zeta Global
Size
1,300 employees
Market Cap
$1.7 billion
Industry
Founded
2007
NASDAQ

Similar Jobs

More Jobs at Zeta Global

More Enterprise Technology Jobs

Find similar Senior Product Manager, Application Security jobs: