We are looking for a Chief Product Owner to lead end-to-end delivery and coordination of security vulnerability remediation across a web application ecosystem. You will align stakeholders, drive the remediation backlog to closure, and improve delivery with AI-assisted practices.
Responsibilities
- Own and prioritize the security vulnerability remediation backlog
- Translate security findings into clear requirements, backlog items, and acceptance criteria
- Coordinate remediation execution across engineering, QA, security, and business stakeholders
- Drive vulnerabilities through analysis, remediation, testing, validation, release, and closure
- Prioritize work based on severity, business risk, deadlines, and technical dependencies
- Track progress, risks, blockers, dependencies, and remediation commitments
- Coordinate validation of findings from SAST/SCA/DAST tools such as Veracode
- Facilitate planning and Agile ceremonies to ensure delivery commitments are met
- Coordinate release planning and regression and security validation
- Maintain clear status reporting and escalate critical risks or delays
- Promote AI-assisted practices that improve analysis, remediation, testing, and team productivity
Requirements
- 7+ years of experience as a Product Owner or Business Analyst within software engineering teams
- Strong leadership skills to align engineering, QA, security, and business stakeholders on priorities and delivery
- Proven project delivery experience driving work from analysis through release and closure with clear commitments
- Deep understanding of web application security, OWASP vulnerabilities, and remediation processes
- Hands-on knowledge of backlog management, prioritization, and acceptance criteria definition
- Strong analytical skills to translate security findings into actionable requirements and risks
- Excellent communication skills for status reporting, escalation, and cross-team coordination
- Upper-Intermediate English (B2) proficiency, both written and spoken
Nice to have
- Agile and Scrum facilitation experience
- Experience validating and triaging findings from Veracode or similar SAST/SCA/DAST tools
- Practical knowledge of security vulnerabilities and remediation patterns