> Markdown version of [/jobs/ext/2691780-sr-product-manager-falcon-privileged-access-hybrid](https://www.wearedevelopers.com/jobs/ext/2691780-sr-product-manager-falcon-privileged-access-hybrid). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Product Manager - Falcon Privileged Access (Hybrid) - **Company:** CrowdStrike - **Location:** Boston, MA, United States - **Experience:** Expert - **Salary:** $140,000.0 - $215,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Distributed Systems, Identity and Access Management, Kerberos (Protocol), OAuth, OpenID, PCI Data Security Standards, Ping (Networking Utility), Security Assertion Markup Language (SAML), Okta, Cyberark, Falcon Platform, Hashicorp - **Published:** September 3, 2026 - **Apply:** https://dejobs.org/x/x/C737537EDFB14F5292A5DB78F71F1D0B/job/ ## About the Role * 5+ years in product management, with proven experience bringing products from 0 to 1 and scaling them once shipped. * Comfortable driving ambiguous areas from problem definition to delivered product, without waiting for the spec to be handed to you. * AI agents are a core part of how you work today: research, analysis, spec iteration, customer synthesis, stakeholder prep. You have formed specific opinions about which models, tools, and patterns work for PM work and which don't. * Strong instinct for simplification: you've taken something genuinely complex (a privileged access workflow, a session brokering architecture, a JIT approval matrix) and made it usable by someone who doesn't live in it every day. * Able to mock and iterate on ideas rapidly using Claude Code, Lovable, Replit, or similar tools before anything touches design or engineering. When you come to a product discussion, you bring a working prototype or a concrete visual. Bring examples that show you've done this. * Able to explain a complex privileged risk concept in plain language to whoever is in front of you, whether that's an engineer, an executive, or a customer's audit team. * Strong written communication across whatever format the work calls for: a spec, a prompt chain, an eval, a one-pager, a working prototype. * Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes. Bonus Points: * Prior experience with and broad knowledge of related Identity Management areas (SSO, MFA, IGA, SAML, OAuth, ITDR, ISPM, etc.) * Prior experience successfully migrating customers off legacy PAM solutions. * Prior work at a CrowdStrike partner, competitor, or large enterprise security team. * Experience treating compliance and audit requirements (e.g., SOC2, PCI-DSS privileged access controls) as a product design constraint rather than a legal review step. * Prior work in adversarial thinking, red-teaming, or threat modeling. #LI-IL1 ## Description As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn't changed - we're here to stop breaches, and we've redefined modern security with the world's most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We're always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you. About the Role: Privileged access delivers the keys to the kingdom and must be protected. Adversaries don't need to break through a firewall when they can hijack an administrative account, extract a hardcoded secret, or ride an active privileged session. Traditional Privileged Access Management (PAM) solutions rely on heavy, friction-filled processes that vault shared credentials and leave gaps in modern, dynamic environments. Enterprises are modernizing their identity management services, moving beyond traditional PAM and vaults, to just-it-time, continuous identity solutions that enforce contextual policies to deliver access only when appropriate, not before or after. This role owns CrowdStrike Falcon Privileged Access, focusing on eliminating standing privileges and shrinking the attack surface without hindering productivity. You will define the future of how we enforce Just-In-Time (JIT) access, secure secrets, broker isolated administrative sessions, and integrate privileged context directly with our endpoint and cloud telemetry. It's an area with significant scope for a Sr. Product Manager to disrupt legacy approaches and define a frictionless, AI-native PAM strategy. This is a hybrid position requiring at least 2 days a week in the office at our NYC, Boston, Arlington or Toronto, Canada office locations. What You'll Do: * Own the transition to continuous identity and modern PAM: Define the product strategy to deliver market leading, modern privileged access and zero standing privileges across endpoints, infrastructure, and cloud environments. * Deliver best-in-class user experiences for privilege elevation: Work with Product Designers to deliver multi-channel user experiences that provide end users and administrators experiences that are in the flow of work, easy to use and ideally completely transparent, operating in the background. * Leverage the power of the CrowdStrike Falcon platform: Every privileged management decision is better when informed by contextual security and business data about the user, their device, and the target resource. You'll work across product teams to deliver privileged access that leverages the rich security data, threat analysis, security controls, process automation and AI capabilities of the Falcon platform * Be the expert: Serve as the expert for Falcon Privileged Access to all internal and external parties. You will deliver core messaging, enablement materials, demos, and FAQs. You will also engage directly with internal teams, prospects and current customers to gather requirements, answer questions and convey our product vision and roadmap. * Use AI agents as a core part of how you work: Research, analysis, spec iteration, and customer synthesis should run through agentic tooling as a default, not an occasional experiment. What You'll Need: Privileged Access and Identity Depth: * Hands-on background in Privileged Access Management, secrets management, identity governance, or a closely adjacent technical domain. You know the friction points of legacy vendors (e.g., CyberArk, BeyondTrust, Delinea, HashiCorp) because you've worked with their products and their customers. * Real understanding of how privilege elevation works across endpoint, applications, infrastructure and cloud; and the difference between assigned administrative roles and effective privileged access. * Direct product experience with delivering just-in-time access through policy-driven provisioning operations that leverage direct connectors, claim-based authorization, and integrations with third party solutions. * Real understanding of non-human identity (NHI): service accounts, workload identity, machine credentials, AI agents and secrets rotation. You know why securing machine-to-machine privilege is fundamentally different from human PAM. * Fluency with core administrative protocols (SSH, RDP, Kerberos, LAPS) and where legacy vaulting and brokering architectures create operational bottlenecks or exploitable risk. * Fluency with core identity providers (Entra ID, Okta, Ping, and similar) and identity protocols (oAuth, OIDC, SAML) and how they can be leveraged to deliver authentication, MFA and claims-based authorization. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Marketing x Product: How We Stopped Gaslighting Each Other and Built AI Products That Actually Work](https://www.wearedevelopers.com/videos/100244-marketing-x-product-how-we-stopped-gaslighting-each-other-and-built-ai-products-that-actually-work) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [Dev Digest 132 - Binging WADFlix?](https://www.wearedevelopers.com/magazine/473-dev-digest-132-binging-wadflix)