Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!
Job Description: Director/Sr Director of Product Management - RBVM, ASM, CTEM - Risk Operation Center (ROC)
Date posted: April 2026
About the job
Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!
Director/Sr Director of Product Management - RBVM, CTEM, ASM - Risk Operation Center (ROC)
Location: Foster City, CA, USA
Organization: Product GTM & SME
Reports To: SVP of Product Management
Role Overview
Qualys is seeking a Director / Sr. Director of Product Management to lead its flagship Risk-Based Vulnerability Management (RBVM) product powered by Qualys VMDR and drive the evolution toward Continuous Threat Exposure Management (CTEM) via Qualys ETM.
This leader will own the end-to-end product strategy, execution, and business performance of VMDR, serving 8,000+ global customers, while driving the transition from vulnerability management risk-based prioritization autonomous remediation CTEM platform adoption.
You will lead a team of 5+ product managers, partner with engineering, GTM, and field teams, and directly influence revenue growth, customer retention, and platform expansion.
What You Will Be Doing
Product Ownership: VMDR (RBVM)
This role sits at the intersection of VMDR (execution) ETM (risk platform), part of ROC (Risk Operation Center)
What Makes This Role Unique
Strategic Mandate (What You'll Really Be Doing)
This role is fundamentally about:
Key Responsibilities
Product Leadership - Own VMDR as a Business (P&L Mindset)
Business Ownership (Revenue + Growth)
Own end-to-end business metrics:
ARR / revenue growth for VMDR product line
Customer renewals and retention
Cross-sell and upsell into:
ETM
CSAM
Patch / Remediation solutions
Partner with GTM teams to:
Drive pipeline generation
Enable Sales with product positioning
Define pricing and packaging strategy
Customer-Centric Innovation (Short-Mid Term)
Drive customer deal-breaker capabilities including:
Translate customer friction product wins revenue growth
Lead RBVM CTEM Evolution
Define roadmap to evolve VMDR into:
Risk-based vulnerability management (RBVM)
Exposure management platform
CTEM-aligned workflows
Build tight integration with:
CSAM (asset context)
ETM (risk aggregation and prioritization)
Drive VMDR "Deal Breaker" Requirements (0-18 months)
Identify and deliver top customer gaps blocking large deals, such as:
Faster prioritization accuracy (TruRisk improvements)
Better remediation workflows (ownership, SLA tracking)
Reporting and executive dashboards
Scalable performance for large enterprises
Partner with field (SEs, TAMs) to capture:
Competitive losses
Renewal risks
Enterprise feature gaps
Design Agentic AI Workflows (Next-Gen Differentiation)
Success Metrics
Experience required
Experience working with platforms like Qualys and competitive vendor landscape focusing on RBVM, CTEM, AppSec, ASPM, CNAPP etc.
10-15+ years in Product Management (cybersecurity preferred)
Deep expertise in:
Vulnerability Management
Risk-Based VM (RBVM)
Exposure Management / CTEM
Proven experience owning large-scale enterprise products
Strong understanding of:
cloud, endpoint, identity, and application security
Experience working with:
CISOs, CIOs, and security teams
Preferred
Experience building AI/ML-driven security products
Knowledge of:
attack surface management
remediation workflows
ITSM / DevOps integrations
Track record of:
scaling products from platform ecosystem
driving upsell / cross-sell motions
Product Context
Qualys VMDR
Qualys CSAM
Qualys ETM
Qualys is an Equal Opportunity Employer, please see our EEO policy.
Qualys, Inc., is the pioneer and leading provider of cloud security and compliance solutions with over 8,800 customers in more than 100 countries, including a majority of each of the Forbes Global 100 and Fortune 100. The Qualys Cloud Platform and integrated suite of solutions helps organizations simplify security operations and lower the cost of compliance by delivering critical security intelligence on demand and automating the full spectrum of auditing, compliance and protection for IT systems and web applications. Founded in 1999, Qualys has established strategic partnerships with leading managed service providers and consulting organizations including Accenture, BT, Cognizant Technology Solutions, Dell SecureWorks, Fujitsu, HCL Comnet, Infosys, Optiv, NTT, Tata Communications, Verizon and Wipro. The company is also a founding member of the Cloud Security Alliance (CSA).
Qualys is always looking for great talent. For career opportunities, please see http://www.qualys.com/careers