jobs in Aventra Group

全职 Product Owner (Cyber Security) 工作, 薪水, Aventra Group Federal Territory 公司招聘中 - Ricebowl

Product Owner (Cyber Security)

KL City, Federal Territory

分享
保存

工作地点

  • Kuala Lumpur Federal Territory Malaysia

职位描述

岗位职责

We are seeking an experienced Product Owner (Cybersecurity Products) to define, prioritize, and drive the delivery of cybersecurity and compliance-focused digital solutions. This role is responsible for translating cybersecurity requirements, regulatory obligations, market opportunities, and customer needs into actionable product roadmaps and releases.


The successful candidate will work closely with cybersecurity subject matter experts, engineering teams, UI/UX designers, QA teams, regulators, and enterprise customers to deliver products that help organizations improve their security posture, compliance readiness, risk visibility, and operational resilience.


The Product Owner will own product planning, business case development, cost-to-serve analysis, backlog prioritization, sprint execution, and release governance while ensuring alignment with cybersecurity best practices and industry standards.


Key Responsibilities

Product Strategy & Roadmap

  • Translate cybersecurity market demands, regulatory requirements, and customer feedback into product initiatives.
  • Develop and maintain a 3 to 6-month execution roadmap aligned with business objectives and cybersecurity industry trends.
  • Prioritize initiatives based on business value, customer impact, security risk reduction, and strategic importance.
  • Work with Product Managers to define product vision, positioning, and go-to-market priorities.


Business Case & Cost-to-Serve Analysis

  • Develop business cases for new cybersecurity products, modules, and enhancements.
  • Conduct cost analysis covering:
  • Development and implementation costs
  • Cloud infrastructure and security service costs
  • Third-party security technology licensing
  • External threat intelligence subscriptions
  • AI and automation platform costs
  • Operational support and maintenance costs
  • Evaluate business viability, ROI, and scalability before introducing initiatives into the product backlog.


Product Backlog Management

  • Own and manage the cybersecurity product backlog.
  • Prioritize requirements based on risk reduction, customer demand, compliance obligations, and business objectives.
  • Ensure backlog items meet Definition of Ready (DoR) standards before sprint inclusion.
  • Work closely with Engineering and Security SMEs to validate technical feasibility.


Requirements & User Story Definition

  • Define Epics, Features, User Stories, and Acceptance Criteria.
  • Translate cybersecurity requirements into clear, testable, and measurable deliverables.
  • Define:
  • Security controls
  • Compliance requirements
  • Security workflows
  • Reporting requirements
  • Audit and evidence collection requirements
  • Role-based access and governance requirements
  • Collaborate with UI/UX teams to design intuitive security management experiences.


Agile Delivery Leadership

  • Lead Agile ceremonies including:
  • Sprint Planning
  • Backlog Refinement
  • Sprint Reviews
  • Product Demonstrations
  • Release Readiness Reviews
  • Provide ongoing clarification to delivery teams throughout the development lifecycle.
  • Monitor delivery progress and manage dependencies and risks.


Release Governance & Product Quality

  • Validate product functionality against approved acceptance criteria and security requirements.
  • Participate in security validation and release readiness reviews.
  • Provide final functional sign-off for production deployments.
  • Ensure delivered capabilities meet security, compliance, auditability, and usability requirements.
  • Monitor post-release adoption, usage, and customer feedback.

Requirements

Minimum Qualifications

  • Bachelor's Degree in Cybersecurity, Information Security, Computer Science, Information Technology, Software Engineering, or a related discipline.
  • Minimum 5 years of experience in Product Ownership, Product Management, Business Analysis, or Solution Consulting.
  • Minimum 3 years of experience delivering cybersecurity, governance, risk, compliance (GRC), or security operations solutions.


Cybersecurity Domain Experience

Candidates must have practical experience in one or more of the following areas:

  • Governance, Risk & Compliance (GRC)
  • Security Operations Center (SOC)
  • Threat Intelligence
  • Vulnerability Management
  • Security Awareness & Training
  • Identity & Access Management (IAM)
  • Third-Party/Vendor Risk Management
  • Cyber Risk Assessment
  • Security Configuration Management
  • Incident Management & Response
  • Continuous Security Monitoring
  • Compliance Automation
  • Security Audit Management
  • Cloud Security
  • Security Posture Management


Preferred Experience

Experience developing or managing products related to:

  • Continuous Controls Monitoring (CCM)
  • ISMS Platforms
  • Cybersecurity Assessment Platforms
  • Compliance Management Solutions
  • Security Governance Portals
  • Risk Management Platforms
  • Security Awareness Platforms
  • Attack Surface Management
  • Vulnerability Assessment Solutions
  • Security Scorecards
  • Third-Party Risk Platforms
  • Digital Trust Platforms
  • Cybersecurity Marketplaces
  • AI-Powered Security Solutions


Interested? Apply directly or drop your CV to my mailbox ************* to explore this opportunity!

重要安全守则

申请工作时,切勿提供您的银行或信用卡详细资料。不要转账或完成无关的在线调查问卷。如果您发现可疑内容,请举报此招聘广告。

了解更多