Octane is unlocking the power of financial products for merchants and consumers, and they are seeking a highly motivated and experienced Senior Technical Product Manager to lead their Data & Product Security initiatives. This role involves defining and executing a comprehensive data security roadmap while collaborating with various stakeholders to ensure the protection of sensitive data across the organization.
Responsibilities:
- Define and drive the product strategy for the controls that protect our most sensitive data (PII, financial, company confidential) across Octane’s platform, partners, and data systems. You will own the roadmap of initiatives to minimize data, application and process threat vectors, balancing robust protection with developer velocity and internal and external customer experience
- Partner closely with Security, Engineering, Platform/Infra, Data Platform, Legal, Risk, Capital Markets, and Sales to deliver secure‑by‑default, enterprise‑grade features and policies that keep our data secure. This is a high‑impact IC role with significant cross‑functional influence and room for growth as Octane continues to scale
- Set the vision & roadmap for Octane’s data security, data governance platforms spanning the full data lifecycle: classification, collection, storage, processing, access, sharing, and deletion/retention
- Measure & improve with clear KPIs/SLOs (e.g., PII obfuscation, encryption coverage, key rotation compliance, audit log completeness, time‑to‑remediate)
- Embed security in the SDLC: threat modeling (like STRIDE, MITRE), design reviews, paved‑road patterns, secure defaults, and friction‑free guardrails in CI/CD
- Collaborate across data: work with the Data Platform on data masking/synthetic data for dev/test, lineage, governance, data residency, and safe analytics. Aware of privacy implications in financial servicing and protecting our customers
- Own outcomes: author crisp PRDs, ruthlessly prioritize, run high‑signal experiments, align stakeholders, and ship iteratively
- Set a security-first mindset: help further engineering and stakeholder best practices by ensuring the data security is top-of-mind
Requirements:
- 5+ years of related experience with a Bachelor's degree or equivalent along with 4+ years in Product Management and 2+ years focused on security, data protection, platform, or identity products in cloud environments, or 8 years and a Master's degree; or a PhD with 5 years experience; or equivalent experience
- Strong technical fluency in modern cloud security (preferably AWS: KMS/CloudHSM, IAM, Secrets Manager), encryption and key management patterns, tokenization, and secrets hygiene
- Working knowledge of auth/federation (OAuth2/OIDC/SAML), provisioning (SCIM), and authorization models (RBAC/ABAC, policy‑as‑code). Experience delivering internal platforms/SDKs adopted by multiple product teams; passion for developer experience
- Excellent product craft: problem framing, PRDs, metrics, sequencing, and stakeholder communication from engineers to executives
- Fintech, lending, payments, or consumer credit background
- Experience with DLP, egress controls, data classification/governance, and retention/expungement workflows
- Hands‑on background as an engineer or in AppSec/Platform Security; or relevant certifications (e.g., CISSP, CISM, CCSP, CIPP/US)