





Mid-level generalist product role in a metro location with moderate brand and broad requirements.
Role requires specialized CyberGRC, regulatory and security domain expertise, limiting cross-industry transferability.
Explicit 6–10 years requirement plus mandatory CyberGRC and regulatory domain expertise increases hiring filter strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Own the product strategy and multi-quarter roadmap for MetricStream's AI-powered CyberGRC product suite covering full cyber risk and compliance lifecycle.
Lead development and enhancement of capabilities including vulnerability management integration, AI-driven risk quantification, continuous compliance automation, and regulatory reporting.
Engage with CISOs and stakeholders to validate product direction, prioritize backlog, and support go-to-market and adoption metrics.
6–10 years experience in Cyber Risk Management, IT GRC, Compliance, or Security Product roles, preferably in enterprise SaaS or regulated industries.
Bachelor's or Master's degree in Cybersecurity, IT, Risk Management, Computer Science, or related field.
Deep expertise in cyber risk frameworks (e.g. FAIR), vulnerability management, compliance standards (ISO 27001, NIST CSF/SP 800-53, SOC 2, PCI DSS, GDPR, HIPAA, DORA, NIST AI RMF).
Familiarity with AI/ML in cybersecurity, API integrations, cloud security architecture; product development experience using agile and design thinking methods.
Experienced product professional combining cybersecurity domain expertise with modern AI-driven product innovation in CyberGRC.
Skilled in translating complex cyber risk and regulatory workflows into scalable product requirements and user stories.
Strong collaborator comfortable engaging C-level cyber risk stakeholders and cross-functional teams to drive strategic product initiatives and adoption.