Job Description
We are seeking an experienced Principal Product Manager of Product Security to lead the definition and delivery of our product security features, ensuring that our products are meeting our customers’ security and compliance requirements across the globe.
As the Principal Product Manager of Product Security, you will define and deliver application product security features for our products as well drive compliance efforts such as FedRAMP, ensuring that compliance requirements are understood and satisfied across our product lines This role involves working closely with customers, the security team, product teams, engineering, and DevOps teams to ensure that security is embedded throughout the product development lifecycle. Key tasks include evangelizing security across the organization, ensuring regulatory compliance for our products, and driving security best practices cross the product teams, The role also entails developing our overall external messaging and positioning of Procore’s Security posture
This position reports into the VP of Product, Platform and will be based in our Austin, TX office. We’re looking for someone to join us immediately.
What you’ll do:
Define and deliver application security features as part of the Procore suite of products.
Collaborate with the security team, engineering, DevOps, and product teams to integrate security best practices.
Ensure US and global compliance with industry regulations and standards (e.g., GDPR, ISO, FedRAMP) are met across our products
Lead the adoption of security tools and practices across product development.
Be the voice of security for the company across GTM teams and internal teams.
What we’re looking for:
Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field.
Proven experience in product security leadership roles.
Expertise in security protocols, cryptography, threat modeling, and risk management.
Strong knowledge of industry security standards and regulation
Excellent written and verbal communication and leadership skills.
Preferred:
Experience in cloud security and securing SaaS products, ideally in a vertical SaaS company
Relevant certifications such as CISSP, CISM, or CEH.
Experience in the construction industry
Experience with compliance programs, FedRAMP, CMMC, SOC, ISO
Qualifications