hirly

Qualys

Principal Product Mgr: AppSec and ASPM

Pune

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at Qualys first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

hirly's read of this role

Role family
Product management
Seniority
Lead / management
Country
IN
Work mode
On-site / unstated
First seen by hirly
1 Sept 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!

Principal Product Manager, ASPM

Qualys is looking for a Principal Product Manager to lead ASPM (Application Security Posture Management), within the Enterprise TruRisk Management platform . ASPM provides unified visibility, risk-based prioritization, and integrated remediation to help organizations manage application security risk continuously and autonomously. As the PM, you will define the roadmap and execution strategy for how customers discover, consume, prioritize, and remediate application security risk, while driving ideas to increase product adoption and grow the ASPM business.

This is a high-impact role at the intersection of Application Security, vulnerability management, and Agentic AI. You will work closely with Engineering and Design to turn ideas into scalable, customer-facing capabilities; validate them with customers; partner with Marketing on go-to-market execution; and work with Sales to drive adoption and business growth.

What You’ll Own

  • Define the roadmap, execution plan and success metrics for ASPM.
  • Build capabilities that help customers discover, prioritize, and remediate application security risk based on discovery, exploitability, application criticality, and business impact.
  • Partner with Engineering and Design and Threat teams to build the intelligence foundation for ASPM, including data ingestion, normalization, correlation, enrichment, scoring, and AI-assisted experiences.
  • Engage AppSec leaders, vulnerability managers, DevOps practitioners to uncover customer problems, validate solutions, and shape the ASPM roadmap.
  • Shape how ASPM intelligence powers ETM, TruRisk, risk operations, and Agentic AI-driven decision-making.
  • Partner with GTM teams on launches, enablement, positioning, and competitive differentiation.

What Success Looks Like

  • ASPM becomes the application risk intelligence layer for ETM customers.
  • Customers cut through application security noise and focus on the exposures that matter most.
  • Qualys research and threat intelligence are transformed into scalable, actionable application security insights.
  • ASPM drives adoption, expansion, and differentiation for ETM.
  • AI and automation accelerate analyst productivity and decision-making without introducing black-box risk.

Required Experience

  • Minimum 8 years of product management experience, including 5+ years in cybersecurity or enterprise SaaS.
  • Experienced in one or more of the following domains: ASPM, API security, Web App Security (SAST, DAST, and SCA), Vulnerability Management
  • Ability to work deeply with engineering, threat research, design, and security teams.
  • Strong product judgment, customer discovery skills, and ability to translate complex technical concepts into clear customer value.
  • Excellent written and verbal communication skills for executive, customer, analyst, and internal audiences.
  • Ability to learn quickly and keep up with fast changing AppSec domain
  • Familiarity with CVE, CVSS, EPSS, CISA KEV, MITRE ATT&CK, and related security frameworks.

Preferred Experience

  • Some knowledge of Agentic AI and AI security would be highly preferred
  • Prior hands-on experience as Application Security Analyst or Pen-tester is a big plus

Why This Role Matters

ASPM is a critical part of Qualys’ vision for Enterprise TruRisk Management. It brings together application findings, vulnerability management, Qualys research, asset context, and business risk to help customers move from reactive application security to proactive, risk-based Application Security Posture Management.

This role will help shape how Application Security, Vulnerability Management, AI, and automation come together to power the next generation of Application Security Posture Management.

Original posting on Qualys's site ↗

Browse similar roles

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job