Member of Product, Security
Anchorage Digital
Product
United States
Security is Anchorage Digital's core differentiator. As our first Security Product Manager, you will own the product strategy and execution that strengthens our defense-in-depth architecture and operational controls across custody, wallets, authorization, policy, and risk systems. You'll partner with Security, Platform, Core Experience, Protocols, and Compliance to ship secure-by-default capabilities that meet bank-grade and auditor expectations while preserving developer velocity and client experience.
You will define and own the roadmap for security platform capabilities across cloud defense, secrets management, HSM-bound workflows, and secure-by-default developer tooling. You'll translate regulatory, audit, and risk requirements into usable product surfaces and guardrails for internal teams and client-facing flows. You will also establish crisp product requirements, success metrics, and post-ship control evidence so Security, Risk, and Audit can verify effectiveness without slowing teams.
Technical Skills:
- Work closely with the security engineering team on the detail prioritization of the security product roadmap, balancing new capability development with technical debt retirement to ensure long-term platform health.
- Demonstrate deep strategic thinking in shaping the roadmap, considering threat landscape, regulatory requirements, competitive positioning, and customer needs to drive long-term security product success.
- Deliver complex, cross-functional security projects with multiple dependencies (Security Engineering, Platform, Core Experience, Compliance), demonstrating strong product management skills and ability to drive swift execution while maintaining quality.
- Drive comprehensive go-to-market strategy for security capabilities, including defining success metrics, tracking KPIs, and iterating based on data-driven insights.
- Demonstrate ability to understand system architecture (cryptographic primitives, HSMs, authN/Z, secure enclaves) and communicate clear requirements to engineering.
Complexity and Impact of Work:
- Contribute strategic insights that significantly impact company direction, control coverage, and the security roadmap.
- Demonstrate product leadership that elevates team performance and effectiveness across security and platform domains.
Organizational Knowledge:
- Develop deep understanding of Anchorage's business model, organizational structure, regulatory posture, and strategic priorities.
- Build and maintain strong relationships with stakeholders across Security, Engineering, Compliance, Risk, and Ops to ensure effective collaboration.
- Navigate and improve organizational processes to enhance efficiency, safety, and auditability across teams.
- Contribute to organizational strategy through security product expertise, control design insights, and market intelligence.
- Drive company objectives through strategic security product decisions and initiatives.
Communication and Influence
- Effectively influence and motivate others through respectful engagement, aligning teams with broader organizational security and product goals.
- Enable cross-functional collaboration through clear, consistent communication and strategic influence on decision-making at every level of the organization.
- Communicate clearly with executives, auditors, and prospective customers on control intent, coverage, evidence, and roadmap tradeoffs.
- Act as a thoughtful knowledge partner to senior leadership, helping improve organizational security dynamics through empathetic understanding.
You may be a fit for this role if you have:
- 6+ years in product management with 3+ focused on platform or security products in regulated or high-assurance environments.
- Strong technical fluency in one or more: cryptographic primitives, authN/Z, HSMs and key management, secrets management, secure software delivery, runtime isolation, threat modeling.
- Proven record shipping platform controls that are both developer-friendly and audit-ready.
- Experience converting regulatory or control frameworks (e.g., SOC 2, FFIEC, OCC expectations, ISO 27001) into practical product requirements.
- Comfortable operating across deeply technical teams and non-technical stakeholders (Security, Compliance, Risk, Ops, Client Success).
- Excellent written and verbal communication skills, adept at conveying complex security concepts clearly to diverse audiences.
- Experience in driving and managing complex projects across multiple teams, demonstrating exceptional leadership and problem-solving skills.
- Your empathy and adaptability not only complement others' working styles but also embody our culture of curiosity, creativity, and shared understanding.
- You self describe as some combination of the following: creative, humble, ambitious, detail oriented, hard working, trustworthy, eager to learn, methodical, action oriented, and tenacious.
Although not a requirement, bonus points if:
- Experience in digital assets or financial infrastructure.
- Hands-on experience with hardware signing flows, policy engines, or secure enclave/HSM integrations.
- Built systems for straight-through-processing with pre-authorization risk decisions.
- Familiarity with incident response and detection engineering product needs.
- You have written your own smart contract or dApp.
- You have built 0 to 1 products for financial institutions either as a PM or a developer.
- You were emotionally moved by the soundtrack to Hamilton, which chronicles the founding of a new financial system. :)