Principal Product Manager, Portfolio Security
- Location
- OTTAWA
- Workplace
- On-site
- Compensation
- $150k – $200k
About this role
Role Overview
Ribbon is seeking a strategic and technically strong Product Management leader to own security strategy, governance, and regulatory compliance across the Cloud & Edge portfolio. This role serves as the business owner for portfolio security, driving a secure-by-design approach, unified security requirements, compliance readiness, risk management, and security investments across all products.
The successful candidate will partner with Product Management, Engineering, Security, Operations, Sales, Services, Legal, and Executive Leadership to strengthen Ribbon's security posture, meet evolving customer and regulatory requirements, and ensure consistent security practices across the portfolio.
Key Responsibilities
- Define and lead the Cloud & Edge Secure-by-Design strategy and multi-year security roadmap.
- Establish and maintain a unified portfolio-wide security requirements framework.
- Own security prioritization, investment planning, and the consolidated security backlog.
- Serve as the primary customer-facing security product management leader for audits, reviews, questionnaires, and strategic customer engagements.
- Develop security KPIs, dashboards, scorecards, and executive reporting.
- Lead portfolio risk management, vulnerability oversight, and remediation governance.
- Drive compliance readiness for key industry and regulatory frameworks, including CRA, NIS2, DORA, FedRAMP, IEC 62443, NIST, FIPS, and telecom-specific requirements.
- Monitor emerging threats, industry trends, and competitive security positioning to proactively shape product strategy.
- Establish governance processes, review boards, security communications, and executive reporting mechanisms.
- Define security and governance requirements for AI-enabled products and emerging technologies.
Success Measures
Within 12–18 months, deliver:
- Secure-by-Design roadmap
- Portfolio security maturity framework
- Security requirements catalog
- Portfolio security dashboard and executive scorecards
- Centralized security backlog
- Security governance board
- Regulatory compliance framework
- AI security governance framework
Qualifications
Required
- 10+ years of product management experience in enterprise software, telecommunications, networking, cloud, or cybersecurity.
- Expertise in secure software development, cloud-native platforms, vulnerability management, and software supply chain security.
- Experience leading cross-functional initiatives across multiple product portfolios.
- Strong customer-facing, executive communication, and stakeholder management skills.
Preferred
- Experience in telecom, cloud-native networking, SBCs, IMS, edge computing, or carrier software.
- Knowledge of secure-by-design methodologies and security compliance frameworks.
- Relevant certifications such as CISSP, CISM, or SABSA.
Please Note:
'All qualified applicants will receive consideration for employment without regard to race, age, sex, color, religion, sexual orientation, gender identity, national origin, protected veteran status, on the basis of disability, or other characteristic protected by applicable law.'
Tired of cold applications?
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Know someone who'd be great for this?