Product Policy Manager specializing in Cyber at OpenAI. Evaluating product launches and guiding cybersecurity governance.
Responsibilities
Provide cyber policy advice to technical and product teams based on a deep understanding of model capabilities, product architecture, abuse pathways, defensive security use cases, and the practical needs of cybersecurity teams.
Evaluate cyber-relevant product launches and model capabilities, including how they may support legitimate security work and how they could be misused by malicious or irresponsible actors.
Translate cyber threat risk into clear product requirements, launch guidance, enforcement standards, user-facing policy, and internal implementation guidance.
Develop operationalizable standards, enforcement protocols, and escalation paths for cyber abuse scenarios, including vulnerability exploitation, credential abuse, social engineering, malware enablement, phishing, data exfiltration, and misuse of security automation.
Partner with safety, security, product, engineering, research, legal, operations, communications, and global affairs teams to make principled, timely decisions about cyber risk in high-ambiguity situations.
Help build scalable policy frameworks for dual-use cyber capabilities, including where to draw boundaries between beneficial security research, defensive operations, and harmful cyber activity.
Requirements
Have 5+ years of experience, or equivalent depth, in one or more of the following areas: cybersecurity, security engineering, threat intelligence, incident response, abuse investigations, detection engineering, product policy, cyber policy, trust and safety, or a closely related field.
Bring strong technical fluency in one or more cyber domains, such as vulnerability management, malware analysis, threat intelligence, incident response, phishing and credential abuse, detection engineering, secure software development, cloud security, identity and access management, or security automation.
Understand the modern cyber threat environment, including how sophisticated and opportunistic actors operate, how defenders detect and respond, and where AI can create both meaningful defensive value and misuse risk.
Can evaluate dual-use cyber capabilities with nuance, distinguishing between legitimate security research, authorized defensive activity, risky automation, and malicious or abusive behavior.
Communicate clearly with product managers, engineers, researchers, executives, security practitioners, and policy stakeholders, and enjoy turning ambiguous technical risk into practical decisions, requirements, and guidance.
Are comfortable building new policy frameworks, processes, and decision criteria in ambiguous or fast-moving areas.
Use data, threat intelligence, user feedback, and operational signals to improve policy quality, measure effectiveness, and identify emerging risks.
Care deeply about enabling beneficial cybersecurity work while preventing abuse.
Benefits
Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts
Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)
401(k) retirement plan with employer match
Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)
Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees
13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick or safe time (1 hour per 30 hours worked, or more, as required by applicable state or local law)
Mental health and wellness support
Employer-paid basic life and disability coverage
Annual learning and development stipend to fuel your professional growth
Daily meals in our offices, and meal delivery credits as eligible
Relocation support for eligible employees
Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.
Deliver tailored post - sales software services to local accounts at HP. Maintain customer satisfaction and promptly resolve requirements and issues while troubleshooting IT infrastructure problems.
Sr. Manager, Post Market Quality at BD overseeing end - to - end field action processes within North America. Collaborating with global PMQ representatives to ensure effective execution and compliance.
Medical Affairs Manager at BD, a global health technology company. Leading clinical strategy for infusion preparation and delivery platform in cross - functional teams.
Transport Manager managing traffic safety advisory projects for GCC in the Middle East. Leading road safety audits and strategy development across UAE and Saudi Arabia.
Manager, Compensation & Benefits responsible for Total Rewards Strategy at Quva. Leading the design and implementation of compensation and benefits programs to attract top talent.
Clinical Pharmacology Lead managing drug development strategies in Internal Medicine. Working with multifunctional teams to optimize clinical pharmacology methodologies and regulatory compliance.
Fleet Manager overseeing fleet operations including deployment, maintenance, and vendor coordination for JLL. Focused on safety compliance and cost efficiency at client sites across multiple locations.
Gerente Comercial leading sales team to drive results in Jundiaí. Defining sales strategies and managing key accounts while ensuring performance metrics are met.
Assistant Plant Manager overseeing plant operations and customer satisfaction for pallet management services company. Driving production, safety, and inventory management while leading the team in a dynamic environment.
Vendor Relations Manager coordinating with vendors and overseeing contracts for Alliance services. Leading staff development and vendor performance monitoring with project management focus.