×
Register Here to Apply for Jobs or Post Jobs. X

Senior Product Manager, AppSec

Job in Plano, Collin County, Texas, 75086, USA
Listing for: Capital One
Full Time, Part Time position
Listed on 2026-09-12
Job specializations:
  • IT/Tech
    Cybersecurity, IT Project Manager
Salary/Wage Range or Industry Benchmark: 209000 - 238500 USD Yearly USD 209000.00 238500.00 YEAR
Job Description & How to Apply Below

Senior Product Manager, App Sec The Mission

As an Application Security Product Manager, you will drive strategy for Appsec scanning tools with a shift left mindset to improve developer experience. You won't just manage tools; you will define the vision, roadmap, and partnership model that allows our engineering teams to innovate at speed without compromising security. You will serve as the bridge between high-level security strategy and technical execution, ensuring that our security testing service area provides comprehensive coverage while meeting the demands and scale of the customers, without compromising trust and accountability.

Roles and Responsibilities:
  • Strategy &

    Roadmap:

    Own the multi-year product roadmap for Application Security ensuring alignment with enterprise risk appetites and the evolving threat landscape.

  • Engineering Partnership: Act as the primary liaison to Security Engineering Enablement and Architecture to translate security requirements into scalable, fix-first developer workflows.

  • Vendor & Capability Evaluation: Lead the strategic evaluation of Appsec security tools (e.g., SAST/DAST/SCA), ensuring we maximize ROI and maintain a best-in-class toolset.

  • AI Transformation: Define the product strategy for AI-application security, including the secure integration of AI agents into the SDLC, prompt engineering guardrails, and automated remediation pipelines.

  • Stakeholder Management: Evangelize the App Sec mission through Office Hours and community forums; simplifying complex technical risks for executive leadership to drive informed decision-making.

  • Operational Governance: Establish the governance model for vulnerability disposition (SAST/DAST/Off Sec, ensuring clear SLAs, audit trails, and exception workflows that don't hinder velocity.

What You Will Bring:
  • A Strategic Mindset: The ability to look past individual vulnerabilities to see systemic patterns and architectural gaps.

  • Product Rigor: Experience managing a security product through its entire lifecycle from requirement gathering and vendor bake-offs to enterprise-wide adoption.

  • Technical Credibility: Technical breadth and enough depth in Dev Sec Ops  and App Sec to partner effectively with senior engineers and architects.

  • Customer Obsession: A focus on the Developer Experience, ensuring security tools are seen as enablers rather than blockers. Scan slack channels, meet customers to hold empathy interviews, send surveys and anything needed to ensure customer pain points are evaluated and assessed on a weekly basis and incorporated in the strategy and during planning and prioritization.

Basic Qualifications:
  • High School Diploma, GED or equivalent certification

  • At least 6 years of experience in cybersecurity or information technology

  • At least 3 years of experience translating cybersecurity strategy and analysis into product requirements

  • At least 3 years of application security experience

Preferred Qualifications
  • Bachelor's degree in Computer Science

  • 4+ years in Application or Product Security or Software Engineering with an emphasis on App Sec and vulnerability management strategy.

  • 4+ years of experience managing App Sec products in a large-scale enterprise.

  • 2+ years of experience defining standards for AI-augmented development and ethical AI usage.

  • Professional certifications (CISSP, CISM, OSCP)

  • 2+ years of experience working in cloud-native environments (APIs, Web, Mobile, Containers, IaC, and CI/CD).

  • Knowledge of OWASP Top 10 and software supply chain security.

  • Experience with automated DAST and manual Penetration Testing to develop adversarial-based threat prevention roadmaps

At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, or another type of work authorization).

The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

McLean, VA: $229,900 - $262,400 for Sr Manager, Cyber Technical

New York, NY: $250,800 - $286,200 for Sr Manager, Cyber Technical

Plano, TX: $209,000 - $238,500 for Sr Manager, Cyber Technical

Richmond, VA: $209,000 - $238,500 for Sr Manager, Cyber Technical

San…

Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary