Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
M-Files

Product Security Manager

M-Files

. Lead and prioritize the Product Security team's work.

Posted 9/29/2026full-timeTampere • FinlandMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Product Security strategy, secure development lifecycle, and vulnerability management while effectively leading and mentoring technical teams. Proficient in integrating security tools within CI/CD pipelines and ensuring compliance with industry standards.

Highest-signal resume keywords
Product Security StrategySecure Development LifecycleVulnerability ManagementCloud Security Posture ManagementAI-Assisted Security Tools

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Threat ModelingSecurity AssessmentsSecure Coding StandardsSASTDASTSCAVulnerability ManagementCVSS ScoringCloud-Native ArchitecturesContainer Security
Soft Skills
Excellent Communication SkillsMentoring
Tools & Technologies
CI/CD PipelinesMicrosoft Defender for CloudAzurePenetration Testing ToolsAI Tools
Certifications & Qualifications
Microsoft Security CertificationsOSCPCSSLP
Industry Keywords
ISO/IEC 27001SOC 2GDPRNIS 2CRA

Tech Stack

Tools & technologies
AzureCloudKubernetes

About the role

Key responsibilities & impact
  • Lead and prioritize the Product Security team's work.
  • Own the Product Security strategy and roadmap and represent Product Security in Product organization planning.
  • Coach developers and Security Champions and raise the company-wide technical security baseline.
  • Build a strong technical Product Security team and drive AI adoption in security work.
  • Embed the secure development lifecycle across the product organization.
  • Lead threat modeling, security assessments, secure coding guidance, and AI-assisted and manual code reviews for higher-risk changes.
  • Integrate SAST, DAST, SCA, and container scanning tools into CI/CD pipelines.
  • Own software supply chain security, including SBOM generation and dependency monitoring.
  • Maintain product security policies, SOPs, and guidelines aligned with ISO/IEC 27001, ISAE 3000 / SOC 2, and ISO 9001.
  • Design and implement the vulnerability advisory process and vulnerability disclosure policies.
  • Support product security incident response and develop vulnerability management metrics and reporting.
  • Run the external penetration testing program end to end.
  • Participate in cloud security planning and own cloud security posture management across Azure.
  • Drive Microsoft Defender for Cloud recommendations to closure and contribute to monitoring and incident response using Defender and Sentinel.
  • Support customer-facing security work and collaborate with Legal, Privacy, and Compliance on GDPR, SOC 2, and ISO/IEC 27001 matters.

Requirements

What you’ll need
  • Bachelor's or Master's degree in Computer Science, Information Security or a related technical field.
  • 5+ years of hands-on experience in product security or application security, with a track record of implementing security programs at enterprise scale and readiness to lead or mentor a technical team.
  • Strong understanding of cloud-native architectures, including AKS / Kubernetes, container security, and cloud security posture management.
  • Deep knowledge of the secure development lifecycle: threat modeling, security architecture review, secure coding standards (OWASP ASVS / Top 10), SAST/DAST/SCA tooling, and interpreting penetration testing findings.
  • Practical experience with vulnerability management, CVSS scoring, prioritization across multiple product lines, and driving remediation through engineering teams.
  • Experience or strong interest in using AI tools to make security work more efficient (e.g. AI-assisted code review, threat modeling, or reporting).
  • Working knowledge of security and compliance frameworks and regulations (e.g. SOC 2, ISO/IEC 27001, GDPR, NIS 2, CRA).
  • Excellent written and verbal communication skills, with the ability to translate technical security concepts for non-technical and executive audiences.
  • Relevant security certifications are appreciated — for example, Microsoft security certifications (SC-100, AZ-500), OSCP, or CSSLP.
  • Role based in Finland; applicants must already have valid residency and work authorization in Finland. No relocation support or visa sponsorship.

Benefits

Comp & perks
  • A dynamic, supportive, and international team culture where your ideas matter.
  • Clear career progression and personal development opportunities.
  • Access to world-class sales and marketing technology.
  • Competitive salary and uncapped commission structure.
  • Flexible remote work, with opportunities to travel for team meetings and events.
  • The chance to make a real impact at a fast-growing, innovative company.