TL;DR
Senior Product Manager (Cloud Security): Leading Orca’s Attack Surface Management (ASM) product offerings, covering asset exposure, attack path analysis, and API Security portfolio, with an accent on defining the strategy for discovering internet-exposed and cloud-connected assets and prioritizing critical exposures. Focus on turning complex security signals into simple, actionable, and measurable outcomes for enterprise security teams.
Location: Based in Israel, working with a remote engineering team in the UK and reporting to an Israeli manager based in the US.
Company
hirify.global is a global cloud security innovation leader, a well-capitalized unicorn company specializing in agentless cloud security technology.
What you will do
- Own the vision, strategy, and roadmap for Orca’s ASM, Exposure Management, and Attack Paths products, including continuous discovery and inventory across external and cloud attack surface.
- Drive attack path analysis connecting exposure to lateral movement and crown-jewel impact, with remediation guidance.
- Own the API Security strategy, including API discovery, inventory, authentication posture, sensitive exposure signals, and risk prevention/detection.
- Establish and track success metrics such as coverage, precision, adoption, time-to-triage/remediate, and measurable risk reduction.
- Lead cross-functional execution with engineering, security research, sales engineering, customer success, design, and marketing teams to deliver features on time.
- Engage with CISOs, security architects, and exposure management owners to understand ASM challenges and stay ahead of industry trends in cloud security.
Requirements
- 3+ years of relevant cybersecurity background, including security research, threat intelligence, offensive security, or closely related roles.
- 2+ years of product management experience in B2B SaaS, preferably cybersecurity, building products for enterprise customers.
- Strong cloud security knowledge in at least one major cloud platform (AWS, Azure, or GCP), including networking, IAM, compute, and Kubernetes/serverless concepts.
- Technical depth to partner with engineering and customer-facing teams and translate complex problems into clear requirements.
- Ability to think with an attacker mindset and prioritize exposure and risk.
- Fluent English (written and spoken).
- High level of independence, ownership, and initiative is required.
Nice to have
- Experience working with large-scale security data, signal quality, false positives, and prioritization tradeoffs.
Culture & Benefits
- High growth environment with rapid expansion in product capabilities and customer count.
- Disruptive innovation in agentless cloud security technology.
- Well-capitalized unicorn company with strong investor backing.
- Respectful and transparent culture with accessible executives and employee involvement in shaping the industry.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →