Allstate is a leading insurance company dedicated to protecting families and their belongings. They are seeking an experienced Digital Product Manager to lead the strategy, roadmap, and delivery of security-focused products that protect enterprise assets. The role involves managing the lifecycle of critical security tools, incorporating AI for efficiency, and ensuring compliance with security standards.
Responsibilities:
- Define Product Strategy & Vision: Establish and communicate the vision, roadmap, and success metrics for security products aligned to enterprise risk posture and compliance requirements
- Set Clear Outcomes: Define what success looks like for each product, including measurable KPIs
- Plan for Scalability & Future Needs: Anticipate evolving security threats and compliance requirements. Design products that scale and adapt to future enterprise needs
- Incorporate AI for Efficiency: Identify opportunities to integrate AI into daily workflows to automate repetitive tasks, improve decision-making, and maximize efficiency
- Manage Product Development: Collaborate with engineering and security teams to design and deliver secure-by-default capabilities integrated into developer workflows (IDE, CI/CD pipelines). Maintain backlog, write and groom user stories, and drive iterative releases using Agile methodologies
- Enable Data-Driven Decisions: Define and monitor KPIs for success. Use analytics and risk reporting to validate assumptions and optimize adoption
- Stakeholder Communication: Lead product ceremonies and communicate progress, risks, and trade-offs to engineering leadership, security teams, and partners
Requirements:
- Minimum of 5 years' experience conducting product scoping, discovery, framing, owning and managing a backlog (in agility or similar tools) of products for a digital product team
- Minimum of 1 years' experience operating as a ‘coach' partnering & mentoring early in trade product management peers across a broader technology organization
- Strong understanding of security principles, secure SDLC, and DevSecOps practices
- Demonstrated ability to define success metrics (KPIs/OKRs), make data-driven decisions and plan strategically for long term product impact
- Proven experience in Agile product delivery (backlog management, ceremonies, iterative releases)
- Understanding of CI/CD pipelines, policy-as-code, and automation in security workflows
- Familiarity with application security tools (SAST, DAST, SCA), secrets management (Vault/KMS), IAM/PAM, vulnerability management, and cloud security posture management
- Experience with cloud platforms (Azure/AWS/GCP) and PaaS; tools like Postman, Mural/Figma, Jira/Azure DevOps/VersionOne
- Relevant certifications (e.g., Security+, CSSLP, CISSP, CCSP) or equivalent experience
- Knowledge of AI-assisted development tools (Copilot, Cursor) and ability to leverage them for productivity gains