Tech Stack
AWSAzureCloudGrafanaKafkaKubernetesPrometheusTerraformVault
About the role
- Define the BYOC strategy, positioning, and multi-cloud roadmap; translate customer and market needs into crisp PRDs for day 0/1/2 operations; align with next-gen architecture and enterprise requirements (sovereignty, isolation, control); shape pricing, packaging, and FinOps guardrails with business partners.
- Own end-to-end requirements for secure networking and compliance (VPC/VNet topologies, PrivateLink/Private Endpoint, IAM/RBAC, KMS, audit logging, least-privilege) aligned to SOC 2/ISO 27001; deliver a remotely managed, upgrade-safe control/management/data-plane model with first-class telemetry and diagnostics (CloudWatch, Azure Monitor, Prometheus, Grafana); productize repeatable IaC patterns and "golden" blueprints (Terraform/CloudFormation/Bicep), enable SSO (SAML/OIDC), and integrate with customer key, networking, and logging stacks.
- Run private previews/EAPs with lighthouse customers; equip field teams with solution guides, runbooks, and migration playbooks; drive ICP, messaging, and competitive differentiation across launches; define and iterate on KPIs (time-to-provision, time-to-first-value, SLO attainment, upgrade success, cost accuracy, NRR, NPS) to steer continuous improvement.
- Partner closely with engineering, security, solutions, and GTM teams to take BYOC from 0 to 1 and scale it globally across AWS, Azure, and other clouds.
- Deliver a secure, compliant, and highly automated deployment model that runs TiDB in customers' cloud accounts while being managed from TiDB Cloud.
Requirements
- Bachelor’s degree in Computer Science, Engineering, or a related field; advanced degree is a plus.
- 7+ years of product management experience building cloud infrastructure, databases, or managed services for enterprises.
- Strong technical depth with major clouds, especially one or more of: AWS (VPC, IAM, KMS, PrivateLink, TGW), Azure (VNet, Managed Identities, Key Vault, Private Endpoint), or equivalent.
- Hands on familiarity with infrastructure as code and deployment patterns (Terraform, CloudFormation, or Bicep) and with Kubernetes based services.
- Solid understanding of security and compliance requirements for customer managed environments, including encryption, least privilege access, auditing, and change management.
- Experience defining day 2 operations for stateful services: upgrades, backups, PITR, DR, and SLOs.
- Ability to lead cross functional initiatives and work directly with enterprise customers and partners.
- Excellent written and verbal communication; can author clear PRDs, solution guides, and executive level narratives.
- Nice to Have: Background with distributed databases, OLTP or HTAP systems, or large scale data platforms.
- Nice to Have: Experience delivering BYOC, customer managed, or hybrid control plane products.
- Nice to Have: Knowledge of CDC and data movement ecosystems (for example Kafka, Debezium), and observability stacks.
- Nice to Have: Financial and pricing acumen related to usage-based products and cloud cost management.