Principal Product Manager (Identity Threat Detection & Response)

Elastic

Ottawa

Remote

CAD 150,000 - 210,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health coverage
Flexible location and schedule
Parental leave
Volunteer time off
Charitable matching

Job summary

Elastic is seeking a Principal Product Manager to guide ITDR within Elastic Security by defining the vision, strategy, and roadmap for identity-based threat detection and response. You will own identity-related non-human and AI agent identities, modeling service accounts, workloads, secrets, and self-directed agents with lifecycle ownership.

You will collaborate with threat researchers, data scientists, and engineers to evolve our Entity Analytics and Entity Store foundation, driving a credible,

Qualifications

  • 10+ years in product management for security products.
  • Deep knowledge of identity-based attack techniques.
  • Fluent in AI/ML and collaboration with data scientists.
  • Experience partnering with security operations teams and customers.

Responsibilities

  • Define vision, strategy, and roadmap for ITDR in Elastic Security.
  • Own the ITDR product area including identity-based threat detection, investigation, and response.
  • Collaborate with threat researchers, data scientists, and engineers across teams.
  • Evangelize Elastic identity capabilities to customers, partners, and the broader security community.

Skills

Identity security
AI/ML fluency
Leadership
Security products

Tools

SIEM
XDR
UEBA

Job description

  • We’re looking for a Principal Product Manager to guide the vision, strategy, and execution for Identity Threat Detection and Response (ITDR) within Elastic Security. Attackers not only break in - they log in. Identity is now a major target for attacks
  • These attacks can happen in on-premises setups, cloud environments, or with self-directed agents
  • Detecting and responding to identity-based attacks is essential for any modern Security Operations Center (SOC)
  • In this high-impact role, you will define how Elastic detects, investigates, and responds to identity-based threats, building on our Entity Analytics and Entity Store foundation to deliver a credible, differentiated ITDR function
  • You will also own the roadmap for securing non-human and AI agent identities within Elastic Security, one of the fastest-growing and least-governed attack surfaces in the enterprise
  • You will work at the intersection of identity, detection engineering, and AI, partnering with threat researchers, data scientists, and engineers, and evangelizing our approach to a global community of security practitioners
  • Define and own the vision, strategy, and roadmap for a credible ITDR function within Elastic Security, evolving our Entity Analytics and Entity Store foundation from behavioral analytics into an identity-defense outcome
  • Manage the plan for non-human and AI agent identities in Elastic Security. This involves modeling service accounts, workloads, secrets, and self-directed agents as important identities. Each identity will have its own behavior standards, ownership, and lifecycle. You will also establish how to detect identities that operate continuously and at machine scale
  • Work with threat research and detection engineering. Focus on identity-specific threats. These threats include credential access, privilege escalation, and identity-based lateral movement. They also involve the abuse of identity providers and tokens. Ensure that these threats relate to real-world adversary tactics
  • Drive the response and containment strategy. This is the ‘R’ in ITDR. Turn detections into action. Use identity-system integrations and automated responses. Make sure there is human oversight for important actions
  • Work closely with our enterprise customers. Collaborate with security operations teams, sales, and solution architects. Your goal is to understand the requirements for identity attacks. You will also discuss priorities and clarify product needs
  • Work with the design team to develop investigation and response experiences. These experiences will emphasize identity in the analyst workflow. Integrate identity signals with endpoint, cloud, and network data in the SIEM and XDR functions of our security operations platform
  • Gain deep knowledge of the identity-security market. Know its major trends and the changing threat landscape. Use this information to develop a unique strategy and engage with analysts
  • Be the product expert and evangelize Elastic’s identity capabilities through content such as blog posts, talks, and open community interaction
Benefits
  • Toast to your health: Fully paid health coverage for you and your family, in many locations.
  • Craft your calendar: Flexible location and schedule for most roles.
  • Create space for you: Distributed by design workforce, plus generous number of vacation days each year.
  • Embrace parenthood: Minimum of 16 weeks of parental leave, plus generous family formation benefits.
  • Give back your time: 40 hours each year to use toward volunteering with organizations and causes you’re passionate about.
  • Amplify your impact: Double your charitable giving — we match donations up to $1500 USD (or local currency equivalent).

Management and Influence: Demonstrated ability to lead across a matrixed organization, align multiple stakeholders toward a common vision, and drive execution in a dynamic, remote-first environment. You operate with the autonomy and judgment expected of a principal-level product leaderExtensive Experience: 10+ years of experience in product management or solution delivery for security products such as SIEM, XDR, EDR, identity security, or detection and response. A consistent record of leading sophisticated, data-intensive products from inception through launch and iterative growthIdentity Security Depth: A solid knowledge of identity-based attack techniques and the identity fabric. This includes Active Directory, cloud identity providers, SSO, OAuth, and privileged access. It also involves knowing how identity threats can occur in both on-premises and cloud environments. Knowledge of ITDR as a discipline and with entity behavioral analytics (UEBA)AI and ML Fluency: Deep technical comprehension of the AI/ML landscape, including behavioral analytics, anomaly detection, LLMs, and agentic systems. You are comfortable working closely with data scientists and engineers, and you treat AI agents both as a subject to be secured and as a tool that consumes identity contextYou need to be fluent in non-human identities. This includes service accounts, workloads, secrets, and AI agents. You should also understand why traditional human-identity rules don’t apply to identities that act independently and continuouslyCommunication Excellence: Outstanding spoken and written communication skills and practices. You can distill complex detection engineering and identity concepts into compelling narratives for both technical and non-technical audiences, including executive leadershipBias to action: You are able to advance fast and quickly learn from experiments and tests. You utilize AI tools to help accelerate your processes and bring clarity to your decisionsCustomer Obsession: An interest for industry trends and a commitment to solving real-world customer problems. You are an advocate for the security analyst and detection engineer, and you are focused on building products that help defenders stay ahead of identity-based threats

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal Product Manager - Identity Threat Detection & Response
Principal Product Manager - Identity Threat Detection & Response

Referral Board • Canada

Remote
CAD 180,000 - 260,000
Health coverage for you and family
Flexible locations and schedules
Generous vacation days
+3
Principal Product Manager - Identity Threat Detection & Response
Principal Product Manager - Identity Threat Detection & Response

Elasticsearch B.V. • Canada

Hybrid
CAD 154,000 - 244,000
Health coverage
Flexible locations
Vacation days
+3
Principal PM: Identity Threat Detection & Response
Principal PM: Identity Threat Detection & Response

Referral Board • Canada

Remote
CAD 180,000 - 260,000
Health coverage for you and family
Flexible locations and schedules
Generous vacation days
+3
Senior Product Manager (XDR) - Security Solutions
Senior Product Manager (XDR) - Security Solutions

Elasticsearch B.V. • Canada

On-site
CAD 153,000 - 192,000
Stock options
RRSP matching up to 6%
Flexible locations & schedules
+1
Sr. Product Manager - Falcon Privileged Access (Hybrid)
Sr. Product Manager - Falcon Privileged Access (Hybrid)

CrowdStrike • Toronto

On-site
CAD 150,000 - 200,000
Equity awards
Wellness programs
Vacation & holidays
+5
Senior Director of Product Management, Endpoint Security & XDR
Senior Director of Product Management, Endpoint Security & XDR

Elasticsearch B.V. • Canada

Hybrid
CAD 193,000 - 305,000
Health coverage
Flexible locations
Generous vacation days
+1
Principal Product Manager (Strategic Account Interactions) - Security Solutions
Principal Product Manager (Strategic Account Interactions) - Security Solutions

Elastic • Canada

On-site
CAD 154,000 - 244,000
Health coverage for you and family
Competitive pay
Flexible locations and schedules
+4
Senior Security Research Engineer
Senior Security Research Engineer

Elasticsearch B.V. • Canada

On-site
CAD 128,000 - 203,000
Stock program
RRSP matching
Health coverage
+5
Senior Product Security Engineer
Senior Product Security Engineer

BeyondTrust, Inc. • Ottawa

On-site
CAD 120,000 - 180,000
Senior Technical Consultant
Senior Technical Consultant

Okta • Bellevue

On-site
CAD 195,000 - 265,000