Back to jobs

Principal Product Manager, SIEM and Security Operations

Gurucul · El Segundo, CA, US

Spotted 20h ago

Job details

Pay
$170,000 – $195,000 a year
Work mode
Hybrid
Level
Staff / principal
Experience
3+ years
Posted
Oct 10, 2026
Last confirmed open
Oct 10, 2026
Job description

About this role

About Gurucul

-----------------

Attackers now use AI to automate vulnerability scanning and exploit development, run phishing at scale, and get through compromised networks faster, with less human effort by the day. In enterprise environments, AI agents and unapproved AI tools hold credentials and touch sensitive data, and some of them will act in ways nobody intended.

In the SOC, agents are starting to take on triage and investigation, and the industry hasn’t settled how far analysts should trust them.

Gurucul was built for this moment. We are a Leader in the 2025 Gartner® Magic Quadrant™ for SIEM and are the pioneers in UEBA with more than a decade of behavioral research across users, host, service account and now AI Agents. Customers rely on Gurucul to find and stop emergent, sophisticated threats before they escalate.

And SOC agents are built right into the workflows to support analysts at every stage of the work. But we must do more to meet the demands of this moment.

Role Summary

----------------

You’ll own the strategy and roadmap for Gurucul Next-Gen SIEM and SecOps. Many of the decisions in front of you haven’t been made by anyone yet. You’ll help us in defining what the future of the SOC looks like.

This is a flagship product, and you’ll get the opportunity to make a lot of those calls for Gurucul, back them with evidence from real SOCs, and see them through from first practitioner conversations to shipped capability. In this role, you’ll work closely with colleagues across multiple time zones.

Success in this position requires flexibility in working hours and the ability to work effectively across a distributed organization.

This is a high-visibility, senior individual contributor role reporting to our VP of Product Management. You’ll work closely with Engineering, Research, UX, and Product Marketing, set priorities with Product leadership, and represent the product to customers, industry analysts, and conference audiences.

Key Responsibilities:

-------------------------

Product vision and business ownership

  • Set target customers, priority problems, and differentiation for SIEM and SecOps. Turn customer and market insights into a roadmap and investment choices, with clear reasons for what we pursue, defer, or stop.
  • Understand who buys, who uses the product, and what makes a team commit its budget. Use market research, competitive analysis, win and loss insights, and analyst feedback to identify opportunities and build business cases.
  • Partner with Product Marketing, Sales, and Finance on pricing, packaging, messaging, content, and go-to-market plans. Track adoption, time to value, detection quality, and investigation and response outcomes. Assess retention, expansion, and win rate with commercial teams.

Product discovery and validation

  • Work out how attacks that use AI show up in telemetry and behavior, and where detections need to change to catch them. Find where Behavioral AI and AI agents can take on detection tuning, alert prioritization, investigation, and response work, and where analysts need to stay in charge. Use telemetry, Unified Entity Intelligence, and investigation evidence to guide what we build and how we evaluate it.
  • Spend time with SOC leaders, analysts, detection engineers, and platform teams. Watch how they work and learn what slows them down. Test ideas through prototypes, usability studies, design partners, and pilots before committing to substantial development.
  • Define what a successful pilot must prove about value, usability, feasibility, and willingness to pay. Evaluate AI capabilities for evidence quality, false positives, missed threats, analyst effort, latency, cost, and how often analysts overturn an agent’s conclusion. Use results to improve or stop ideas, and check outcomes after launch.

Engineering partnership and delivery

  • Turn validated customer problems into clear requirements, workflows, user stories, and testable acceptance criteria with Engineering, Research, and UX. Cover SIEM ingestion, normalization, analytics, search, and retention, plus investigation evidence, SOAR integrations, and response playbooks.
  • Work with Engineering and Product Owners in backlog refinement, sprint planning, and sprint reviews. Clarify requirements, resolve dependencies, and review demos and test results. Make timely scope and priority decisions as customer commitments, technical debt, and quality needs compete for attention.
  • Own product priorities and constraints; work through feasibility and tradeoffs with Engineering, which owns architecture and implementation. Agree on release readiness for security, privacy, access controls, human approval, reliability, scale, and performance. Coordinate shared capabilities with the IRM and AI Risk and Response product teams, including how SIEM data and detections support monitoring of AI agents.

Market representation and leadership across teams

  • Make the case for product priorities and earn support across teams and leadership. Raise risks early, use evidence to resolve disagreements, and explain roadmap decisions and delivery expectations clearly.
  • Represent Gurucul in analyst briefings, customer discussions, webinars, and conferences. Demonstrate the product and explain where it’s headed. Partner with Product Marketing on positioning, launches, competitive guidance, and sales enablement. Join strategic evaluations and set clear expectations about capabilities and delivery.

Required Qualifications

---------------------------

  • 8+ years of product management or equivalent product leadership experience, including 3+ years in enterprise cybersecurity or SecOps products, with ownership of strategy and delivery.
  • Experience operating in a fast-growing environment with startup-like constraints, balancing strategic investments, customer commitments, and engineering capacity.
  • You understand SIEM architecture and SOC workflows, from telemetry ingestion and normalization through analytics, detection, investigation, and response. You have working knowledge of SOAR integrations and playbooks.
  • You understand how AI and ML apply to security analytics, including behavioral models, AI agents, evidence quality, evaluation, and human oversight. You can judge whether a capability will help analysts in a customer environment, and you follow how attackers are starting to use AI.
  • You can assess market opportunities, buyers, competitors, and investment choices, and contribute to pricing or packaging. You can point to decisions that improve adoption or business results.
  • You’re comfortable discussing data architecture, integrations, APIs, analytics, and enterprise SaaS with Engineering. You write clear requirements and can work through difficult product tradeoffs.
  • You’ve used interviews, hypothesis testing, prototypes, and pilots to guide product decisions. You can explain when evidence changed your roadmap and how you measured the results.
  • You communicate clearly, lead customer discussions and demonstrations, and earn support across teams. You’re willing and able to brief analysts, speak to public audiences, and answer challenging questions.

Preferred Qualifications (Nice-to-Have)

---------------------------------------------

  • Experience delivering AI- or ML-powered detection, security analytics, or investigation capabilities, including agentic or LLM-based features, and evaluating their performance in production.
  • Experience with security data lakes, customer-owned storage, distributed analytics, or large-scale SIEM deployments.
  • Experience with SOAR playbooks, response integrations, and deployment in SaaS, cloud, on-premises, or hybrid environments.
  • Experience launching or expanding products at a smaller or growing enterprise software company, or leading industry analyst briefings and public presentations.

Compensation & Benefits

----------------------------

  • Annual base salary range: $170,000–$195,000.
  • Gurucul offers a competitive compensation package, including medical, dental, vision, and life insurance, EAP, 401K, Paid Time Off, and paid Holidays

Location

------------

  • Hybrid in El Segundo, CA, or remote within the US.

Equal Opportunity

Employer ------------------------------

Gurucul Solutions, LLC is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

To apply ------------

Please send resumes to jobs@gurucul.com for consideration.

Interested in this role?Continue on Gurucul's careers page.
Apply on Gurucul