AI Scanning Product Owner

Eliassen Group
Washington, DC, United States
1 day ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Compensation
$166,400.0 - $176,800.0
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Agile Methodology Artificial Intelligence Amazon Web Services Cloud Computing Security Cloud Engineering Cyber Security Continuous Integration Github Systems Development Life Cycle Regression Testing Software Engineering
+10 more
Systems Integration Software Vulnerability Management Large Language Models Software Security Technical Debt Git AI Platforms Jenkins Static Application Security Testing Vulnerability Analysis

Job description

  • Define and communicate the product vision, strategy, objectives, and roadmap for the AI-driven code vulnerability detection capability.
  • Own and prioritize the product backlog based on security risk, exploitability, regulatory impact, customer value, operational requirements, and engineering capacity.
  • Translate business, security, technical, and regulatory needs into clear Features, Stories, acceptance criteria, and measurable outcomes.
  • Partner with Information Security Engineering, Application Security, Technology, Architecture, Risk, Compliance, Legal, Finance, Operations, and Lines of Business to define and execute product strategy.
  • Guide delivery of the scanner, evaluation harness, CI/CD integrations, reporting capabilities, operational telemetry, and supporting infrastructure.
  • Establish success measures for detection effectiveness, precision, recall, reproducibility, coverage, adoption, reliability, cost, and delivery performance.
  • Define evaluation approaches, regression testing, ground-truth datasets, and release acceptance criteria with engineering and security experts.
  • Ensure material changes to models, prompts, agents, detection logic, integrations, or evaluation methods are tested, documented, reviewed, and governed.
  • Prioritize technical debt, reliability improvements, defects, security requirements, and operational enhancements alongside new capabilities.
  • Provide transparency on roadmap priorities, delivery status, risks, dependencies, performance, and key decisions.
  • Collaborate across analysis, design, implementation, testing, deployment, and support phases.
  • Coordinate integrations with GitHub, CI/CD pipelines, enterprise reporting, security monitoring, and vulnerability management workflows.
  • Engage product consumers and development teams to understand workflow requirements, validate usability, and improve adoption.
  • Define disposition and workflow for scanner outputs with clear accountability for operations, triage, and remediation.
  • Maintain documentation, procedures, control evidence, training materials, and stakeholder communications.
  • Maintain a healthy backlog and participate in planning, refinement, prioritization, demos, retrospectives, and ceremonies.
  • Communicate capabilities, limitations, roadmap, and performance to technical teams, leadership, and governance bodies.
  • Maintain controls and documentation to support company, audit, regulatory, and Information Security requirements.
  • Perform other duties as assigned.

Requirements

Our client seeks a Senior Product Owner to define, prioritize, and drive the roadmap for an AI-driven code vulnerability detection and reporting capability. The product leverages large language models and automation to identify potential security weaknesses in source code, evaluate detection quality, and integrate actionable results into enterprise security and software development workflows. This role will partner with Information Security, Technology, Application Development, Risk, Compliance, Architecture, Finance, and other stakeholders to translate requirements into capabilities and measurable outcomes. The Senior Product Owner will guide a squad of engineers building and operating the scanner, evaluation harness, integrations, and telemetry. Technical knowledge of application security, AI and LLM systems, cloud platforms, and software development practices is preferred., * 4+ years of related product ownership, product management, information security, software development, or technology delivery experience.

  • Experience managing a technical product through design, implementation, deployment, adoption, and operations.
  • Ability to define strategy, maintain a roadmap, manage a backlog, and make prioritization decisions across competing objectives.
  • Experience translating technical, security, risk, and business requirements into Features, Stories, acceptance criteria, and outcomes.
  • Working knowledge of SDLC, Git-based development, CI/CD pipelines, APIs, cloud platforms, and production support practices.
  • Understanding of application security concepts, common vulnerability classes, workflows, and software security testing.
  • General understanding of AI and large language models, including limitations, prompt or agent behavior, evaluation, and human review.
  • Ability to interpret metrics such as precision, recall, false positives and negatives, reproducibility, coverage, and reliability.
  • Ability to evaluate tradeoffs among security risk reduction, customer experience, engineering effort, cost, support, and regulatory impact.
  • Experience in Agile or SAFe environments.
  • Strong written and verbal communication skills.
  • Ability to influence decisions and build alignment across stakeholders without direct authority.
  • Analytical skills, curiosity, and structured problem solving.
  • Self-motivated and able to work independently across multiple teams in a regulated environment.
  • Eligible to work in the United States without sponsorship now or in the future.
  • Preferred: Product ownership for application security, vulnerability management, developer security, cloud security, or AI-enabled products.
  • Preferred: Experience with SAST, SCA, composition analysis, or vulnerability detection.
  • Preferred: Familiarity with AWS hosted AI services or enterprise LLM platforms.
  • Preferred: Familiarity with GitHub, Jenkins, IaC, containers, and cloud-native architectures.
  • Preferred: Experience defining evaluation frameworks or quality measures for probabilistic or AI-enabled systems.
  • Preferred: Experience in regulated financial services.
  • Preferred: Experience with audit, compliance, model governance, risk assessment, or control evidence.
  • Preferred: Relevant certifications in product management, Agile, SAFe, cloud, AI, or information security.

Recruitment Transparency Notice

Benefits & conditions

We can facilitate w2 and corp-to-corp consultants. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.

Rate: $80.00 to $85.00/hr. w2, Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.

W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.

If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:

· When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.

About the company

Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients’ capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

1:02 min

Applying an ETL methodology to infrastructure configuration management

Axel Barbier · World Congress 2023

2:14 min

Exploring internal AI product initiatives and global engineering roles

Maria Apazoglou · Coffee With Developers

56 sec

Favorite git commands and the importance of patch commits

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

1:25 min

Expanding AI across the product development lifecycle

Daniel Geisel Daniel Geisel +1 · World Congress 2026 Europe

Videos

See all

Related articles

See all