Senior Technical Product Manager - Security (WAF)
Fastly, Inc.About the role
Fastly helps people stay better connected with the things they love. Fastly’s edge cloud platform enables customers to create great digital experiences quickly, securely, and reliably by processing, serving, and securing our customers’ applications as close to their end-users as possible — at the edge of the Internet. The platform is designed to take advantage of the modern internet, to be programmable, and to support agile software development. Fastly’s customers include many of the world’s most prominent companies, including GitHub, Yelp, Paramount, and JetBlue.
We're building a more trustworthy Internet. Come join us.
Posting Open Date: Feb 10, 2026
Anticipated Posting Close Date*: Mar 10, 2026
*Job posting may close early due to the volume of applicants.
Senior Technical Product Manager, Security (WAF)
Fastly is seeking a curious, collaborative, and customer-obsessed Senior Technical Product Manager to lead the evolution of our Next-Gen WAF. In this role, you will unite the precision of Fastly’s detection engine with the simple, elegant design our customers rely on, turning complex security signals into automated confidence for platform engineering, DevOps, and security teams.
As a Senior Technical Product Manager on Fastly’s Security Product Team, you will drive the strategy for our flagship Next-Gen WAF, leveraging our proprietary SmartParse technology to deliver essential protection for the world’s most critical applications. You will collaborate on our ambitious vision for a resilient future where engineers thrive and disruptions are neutralized.
What You'll Do:
- Drive the strategy and roadmap: lead the definition and execution of Fastly’s Next-Gen WAF roadmap, expanding our capabilities to protect modern applications. You will synthesize product opportunities across disparate data points, including attack trends, customer tickets, and market research, to prioritize features with pragmatism. You will collaborate with engineering and fellow Product Managers to ensure these capabilities interact cohesively with the broader Fastly platform
- Security at the speed of code: obsess over the “shift left” experience. You will refine our workflows to ensure our Next-Gen WAF integrates seamlessly into customer workflows, from CI/CD pipelines to data monitoring tools, on-premises or at the edge
- Evangelize and empower: be the voice of the product. Build a strong feedback loop with Sales, Security Research, Revenue, and Support teams. You will arm the field with the confidence to win competitive opportunities. Present the product vision to diverse audiences ranging from technical deep dives to high-level strategic updates
- Elevate observability and trust: connect with customers to understand their need for visibility. You will define features that move beyond opaque mitigation, instead providing transparent, granular attack insights that prove the value of our protection
What We're Looking For:
- Experience: 5+ years of experience in product management or technical product leadership, ideally within the application security, developer tools, or platform engineering spaces
- AppSec fluency: Deep expertise in the technical fundamentals of the Web (including HTTP/S, JSON, GraphQL, gRPC). You have a commanding understanding of the OWASP Top 10, common attack vectors (such as SQLi, XSS), and the mechanisms used to thwart them
- Collaborative leadership: a proven ability to lead without authority, fostering strong relationships with Engineering, Design, Marketing, and Revenue teams. You thrive when solving problems across organizational boundaries
- Communication and presence: you are a clear, confident communicator who can tailor your narrative in real-time. You are comfortable presenting complex technical concepts to executives and customers alike with clarity and conviction.
- Customer empathy: An enthusiastic focus on discovering the “why” that underlies market problems. You can translate complex technical capabilities into clear value
We’ll be super impressed if you have experience in any of these:
- Experience launching or managing application security products (such as WAF, RASP, API security, Bot Management)
- Hands-on experience with modern DevOps toolchains
- A genuine passion for analyzing Web application vulnerabilities, bot behaviors, or attack patterns
Work Hours: This position will require you to be available during core business hours.
Work Location(s) & Travel Requirements:
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s