×
Register Here to Apply for Jobs or Post Jobs. X

Senior Product Manager, Application Security

Job in New York, New York County, New York, 10261, USA
Listing for: Socket.dev
Full Time position
Listed on 2026-08-07
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 170000 - 185000 USD Yearly USD 170000.00 185000.00 YEAR
Job Description & How to Apply Below
Location: New York

WHO WE ARE

Zeta Global (NYSE: ZETA) is the AI-Powered Marketing Cloud that leverages advanced artificial intelligence (AI) and trillions of consumer signals to make it easier for marketers to acquire, grow, and retain customers more efficiently. Through the Zeta Marketing Platform (ZMP), our vision is to make sophisticated marketing simple by unifying identity, intelligence, and omnichannel activation into a single platform – powered by one of the industry’s largest proprietary databases and AI.

Our enterprise customers across multiple verticals are empowered to personalize experiences with consumers at an individual level across every channel, delivering better results for marketing programs. Zeta was founded in 2007 by David

A. Steinberg and John Sculley and is headquartered in New York City with offices around the world. To learn more, go to

About the Role

We are seeking a Senior Product Manager, Application Security to own Zeta’s Application Security product and program end-to-end. You will set strategy, prioritize the roadmap, and drive delivery of an enterprise-grade App Sec capability that protects Zeta’s platform, data, and customers, while enabling engineering teams to ship with confidence.

This role sits at the intersection of product, security, and platform engineering. You will turn our Application Security vision into a system based on secure-by-design practices across the SDLC, AI-assisted threat modeling and code review, CI/CD enforcement, vulnerability prioritization and remediation at scale, and executive-ready risk visibility. Success means security is invisible when it should be, and highly visible when it must be.

Responsibilities
  • Own the Application Security product strategy and multi-quarter roadmap—from visibility and tooling inventory, through architecture and risk-surface mapping, tool procurement and upgrades, CI/CD enforcement, proactive threat reduction, and scaled institutionalization (Security Champions, architecture review, executive reporting).
  • Build and ship the core App Sec product surfaces: AI-powered threat modeling and code evaluation, and a unified security risk, signal, and remediation platform.
  • Prioritize critical risk surfaces across the Zeta platform.
  • Define clear requirements, user stories, success metrics, and acceptance criteria for App Sec capabilities.
  • Drive day-to-day execution with Application Security engineering, platform/Dev Ops, Architecture, Info Sec, and product engineering pods.
  • Establish and evolve governance: severity and SLA frameworks, incident intake and escalation, secure coding standards, third-party application integration guardrails, and architecture security review for high-risk changes.
  • Lead tool strategy and procurement decisions with clear risk justification, coverage gaps, budget tradeoffs, and integration into developer workflows.
  • Use data and KPIs to measure posture and inform prioritization.
  • Align App Sec initiatives with company objectives; communicate risk, progress, and asks clearly to engineering and executive stakeholders.
  • Identify and mitigate delivery and security risks; run post-incident learning loops that convert findings into durable product and process improvements.
  • Mentor and elevate App Sec and adjacent product/engineering partners; help scale a Security Champions program across the organization.
  • Comfortably use AI tools as part of everyday product work, and productize AI defensively for threat modeling, triage, code review, and remediation guidance with appropriate human oversight.
Qualifications
  • 4-6+ years of product management experience, with meaningful ownership of enterprise Application Security, platform security, Dev Sec Ops , or adjacent security-product domains in SaaS/B2B environments.
  • Deep working knowledge of modern App Sec practices and tooling (SAST, DAST, SCA, container/IaC/secrets scanning, vulnerability management, threat modeling, API security, and secure SDLC).
  • Proven ability to drive enterprise-tier security programs: risk-based prioritization, remediation SLAs, cross-org governance, and executive risk communication—not only feature delivery.
  • Strong technical background (Computer Science or related…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary