The opportunity
Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the…
What you'll do
Own XDR strategy and delivery across cross-domain detection and response: across endpoint, cloud, identity, and network. Work from correlation and incident building through response actions and the closed-loop automation that runs at machine speed without taking the analyst out of the loop.
Lead Elastic's XDR expansion into exposure and vulnerability management. This: includes features like patch management, advanced device control, host firewall management, and remediation workflow. You'll also manage noise reduction to ensure these capabilities are used successfully.
Draw the line between XDR, exposure, and the adjacent surfaces such as attack: surface and cloud posture, bringing those signals in as inputs rather than standing up separate products.
Partner with the Entity Analytics team on the asset criticality and entity: context that exposure prioritization depends on, so the two areas compound rather than collide.
Serve as the product voice with senior customer stakeholders, including the: CISO and VP of Security Operations, and deliver roadmap direction, including deprioritizations, without losing the room.
Become the internal authority on the competitive landscape, including major: security vendors and MDR service providers, and turn that into differentiated direction rather than talking points.
What they're looking for
- Partner with engineering leads and Security Labs to write requirements they: can act on without follow-up clarification meetings, and to ground detection and exposure scoring in real threat research.
- Create the artifacts, such as roadmap trackers, decision memos, and: competitive briefs, that give customers and internal stakeholders visibility without requiring a meeting.
- Extensive Experience: 7–10 years of product management experience, with at least 4 years in security or B2B enterprise software. A consistent record of owning a product area with meaningful revenue impact and of leading products from strategy through shipped, iterated outcomes.
- Endpoint Detection and Response Domain Knowledge: Hands-on knowledge of XDR, EDR, SIEM, or broader security operations, either as a product manager or as a practitioner such as a SOC analyst, detection engineer, or incident responder. You can credibly discuss correlation, response automation, and detection engineering without a solutions engineer in the room. A practitioner background before transitioning into product is a solid plus and brings credibility that is hard to teach.