Über diese Group Product Manager (Device & RASP) Stelle bei Bureau

About Bureau
Bureau is a unified risk decisioning platform for Compliance, Fraud, and Transaction risks. Our platform is a single decision-making engine, powered by a 1 billion+ identity knowledge graph. Over 150 Banks, fintechs, retailers, and digital platforms use Bureau to verify identities faster and stop fraud earlier globally.
Bureau has raised $50M+ from renowned Silicon Valley and global investors including Sorenson Capital and PayPal Ventures and is expanding rapidly from APAC to Americas, Europe, and beyond.
Why Bureau?
Bureau is building the infrastructure that makes digital identities and transactions safe and trustworthy for billions of people. The mission is big, the problems are complex, and the impact is real.
We hire people who want that level of responsibility. People who move fast, build systems from scratch, and care deeply about turning strategy into execution. If you want predictability or narrow scope, this won't be your place. If you want to shape how a scaling global company operates—keep reading.
About the Role: Group Product Manager - Device & RASP
Bureau Device ID creates a persistent, privacy-centered identifier for every device and browser, resilient to factory resets, firmware changes, and incognito mode, with device graphs that expose fraud rings and 160+ signals for behavioral continuity.
Bureau RASP protects the app from the inside, where sophisticated mobile fraud actually executes. Four Zero Trust layers cover application integrity, runtime and environment threats, network channel protection, and per-threat enforcement, configurable without code changes.
As Group Product Manager, you will own both products as a single portfolio: strategy, roadmap, detection efficacy, packaging, and the PM team that builds them.
What you’ll be doing
Own portfolio strategy for Device Intelligence and Runtime Security, including where the two products converge on a shared SDK, signal set, and enforcement model
Treat detection efficacy as a product metric, own catch rate, false positive rate, and fingerprint persistence, with labelled datasets, adversarial testing, and regression gates before every release
Run quarterly planning across Android, iOS, web, backend, and other relevant stakeholders.
Hold the line on client-side constraints: SDK size, runtime overhead, crash-free rate, OS compatibility, upgrade adoption, and RASP's under-two-minute no-code integration
Own the privacy posture of device identification — signal minimisation, consent, retention, GDPR/DPDP, and App Store and Play policy, and defend it in customer security reviews
Own pricing and packaging, standalone and bundled, plus portfolio revenue, adoption, and gross retention
Equip the field with the demo, POC playbook, and competitive bake-off kit; join strategic deals and escalations
What You’ll Bring
6-10 years in product management owning a multi-product portfolio
Depth in fraud and risk, identity, device intelligence, mobile application security, or anti-abuse, with genuine familiarity with attacker techniques
Experience shipping an SDK or client-side product, and an understanding of why mobile is unforgiving: OS fragmentation, store review, release trains you don't control
Fluency in detection trade-offs, precision and recall, threshold selection, drift, label quality, and the judgment to spot a weak evaluation
Technical literacy to read an architecture document, query the data yourself, and hold your own with a security researcher
Enterprise B2B instincts: security and risk buyers, procurement, vendor security reviews, and POCs that convert
Exceptional written communication
Our Culture
We hire self-motivated people and get out of their way
We value performance, not hours worked
Speed, ownership, and impact matter most
Compensation
Competitive salary + potential equity
Health benefits, flexible PTO, learning budget

