Principal Product Mgr: AppSec and ASPM

qualys· QLYS_IN Qualys Security TechServices Private Ltd.
Apply Now ↗
📍 PuneFull time

About this role

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!

Principal Product Manager, ASPM

Qualys is looking for a Principal Product Manager to lead ASPM (Application Security Posture Management), within the Enterprise TruRisk Management platform. ASPM provides unified visibility, risk-based prioritization, and integrated remediation to help organizations manage application security risk continuously and autonomously. As the PM, you will define the roadmap and execution strategy for how customers discover, consume, prioritize, and remediate application security risk, while driving ideas to increase product adoption and grow the ASPM business.

This is a high-impact role at the intersection of Application Security, vulnerability management, and Agentic AI. You will work closely with Engineering and Design to turn ideas into scalable, customer-facing capabilities; validate them with customers; partner with Marketing on go-to-market execution; and work with Sales to drive adoption and business growth.

What You’ll Own 

  • Define the roadmap, execution plan and success metrics for ASPM. 
  • Build capabilities that help customers discover, prioritize, and remediate application security risk based on discovery, exploitability, application criticality, and business impact.
  • Partner with Engineering and Design and Threat teams to build the intelligence foundation for ASPM, including data ingestion, normalization, correlation, enrichment, scoring, and AI-assisted experiences.
  • Engage AppSec leaders, vulnerability managers, DevOps practitioners to uncover customer problems, validate solutions, and shape the ASPM roadmap.
  • Shape how ASPM intelligence powers ETM, TruRisk, risk operations, and Agentic AI-driven decision-making.
  • Partner with GTM teams on launches, enablement, positioning, and competitive differentiation. 

What Success Looks Like 

  • ASPM becomes the application risk intelligence layer for ETM customers.
  • Customers cut through application security noise and focus on the exposures that matter most.
  • Qualys research and threat intelligence are transformed into scalable, actionable application security insights.
  • ASPM drives adoption, expansion, and differentiation for ETM.
  • AI and automation accelerate analyst productivity and decision-making without introducing black-box risk.

Required Experience 

  • Minimum 8 years of product management experience, including 5+ years in cybersecurity or enterprise SaaS. 
  • Experienced in one or more of the following domains: ASPM, API security, Web App Security (SAST, DAST, and SCA), Vulnerability Management
  • Ability to work deeply with engineering, threat research, design, and security teams. 
  • Strong product judgment, customer discovery skills, and ability to translate complex technical concepts into clear customer value. 
  • Excellent written and verbal communication skills for executive, customer, analyst, and internal audiences. 
  • Ability to learn quickly and keep up with fast changing AppSec domain
  • Familiarity with CVE, CVSS, EPSS, CISA KEV, MITRE ATT&CK, and related security frameworks. 

Preferred Experience 

  • Some knowledge of Agentic AI and AI security would be highly preferred
  • Prior hands-on experience as Application Security Analyst or Pen-tester is a big plus

Why This Role Matters 

ASPM is a critical part of Qualys’ vision for Enterprise TruRisk Management. It brings together application findings, vulnerability management, Qualys research, asset context, and business risk to help customers move from reactive application security to proactive, risk-based Application Security Posture Management.

This role will help shape how Application Security, Vulnerability Management, AI, and automation come together to power the next generation of Application Security Posture Management.

Frequently Asked Questions

Is the salary disclosed for the Principal Product Mgr: AppSec and ASPM position at qualys?
The salary for this Principal Product Mgr: AppSec and ASPM role at qualys is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Principal Product Mgr: AppSec and ASPM position at qualys located?
This Principal Product Mgr: AppSec and ASPM role at qualys is based in Pune. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Principal Product Mgr: AppSec and ASPM role at qualys full-time or part-time?
This is listed as a Full time position. It is posted as a Principal Product Mgr: AppSec and ASPM role in the QLYS_IN Qualys Security TechServices Private Ltd. department at qualys.
Which team or department does the Principal Product Mgr: AppSec and ASPM at qualys belong to?
This Principal Product Mgr: AppSec and ASPM position is part of the QLYS_IN Qualys Security TechServices Private Ltd. department at qualys. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Principal Product Mgr: AppSec and ASPM position at qualys?
Click the "Apply Now" button on this page. You will be redirected to qualys's official application portal hosted on workday where you can submit your application directly.
When was the Principal Product Mgr: AppSec and ASPM job at qualys posted?
This Principal Product Mgr: AppSec and ASPM position at qualys was posted on Aug 31, 2026. Apply as soon as possible — early applications are often reviewed first.
Principal Product Mgr: AppSec and ASPM
qualys
Apply for this role ↗

You'll be redirected to qualys's official application page on Workday.