CBTS Logo

CBTS

Manager – Penetration Testing

Reposted 15 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
89K-134K Annually
Senior level
Remote
Hiring Remotely in United States
89K-134K Annually
Senior level
The Manager - Penetration Testing leads offensive security efforts, managing a team of experts to deliver penetration tests and drive practice growth through client engagement and methodology development.
The summary above was generated by AI

CBTS serves enterprise and midmarket clients in all industries across the United States and Canada. CBTS combines deep technical expertise with a full suite of flexible technology solutions--including Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, CBTS delivers comprehensive technology solutions for its clients' transformative business initiatives. For more information, please visit www.cbts.com.

The Manager – Penetration Testing leads CBTS’s Offensive Security practice, overseeing the delivery of high‑quality penetration tests, red‑team engagements, and threat‑emulation services. This role ensures technical excellence, consistent methodology, team development, and exceptional client value while driving practice growth.

 

Key Responsibilities

Leadership & Team Management

  • Lead, coach, and develop a team of penetration testers, red‑team operators, and offensive security consultants.
  • Oversee capacity planning, engagement assignments, and resource utilization to ensure timely delivery.
  • Create a culture of continuous learning, ethical conduct, technical innovation, and operational excellence.
  • Mentor team members through advanced exploitation techniques, reporting best practices, and client communication.

Service Delivery Excellence

  • Oversee execution of internal/external network penetration tests, application and API testing, cloud testing, wireless assessments, and social engineering.
  • Ensure all engagements follow CBTS playbooks, methodologies, and compliance standards.
  • Review technical findings, reports, and remediation guidance for accuracy, clarity, and completeness.
  • Ensure engagements align with scope, timelines, and client expectations.

Practice & Methodology Development

  • Maintain and enhance the CBTS offensive security methodology, tooling, and reporting standards.
  • Develop new service offerings, including adversary emulation, purple‑team services, cloud offensive testing, and industrial/OT security (as applicable).
  • Oversee internal R&D to build custom tools, automation, and repeatable frameworks.

Client Engagement & Stakeholder Management

  • Act as executive‑level escalation point for clients during and after penetration testing engagements.
  • Present findings to technical, security, and C‑suite stakeholders in business‑aligned language.
  • Support the creation of Statements of Work (SOWs), scoping calls, and proposal development in partnership with Solutions Architects and Sales.
  • Build long‑term client relationships and support new and repeat business opportunities.

Quality Assurance & Risk Management

  • Ensure adherence to legal, ethical, and contractual requirements in all offensive engagements.
  • Manage operational risks, documenting and escalating critical issues appropriately.
  • Maintain high standards for confidentiality, testing authorization, and data handling.

Cross‑Functional Collaboration

  • Partner with the Defensive Security, Cloud, and Managed Services teams to deliver integrated security offerings.
  • Coordinate purple‑team engagements with detection engineering and SOC analysts.
  • Work with Sales, Delivery, PMO, and Marketing teams to enable practice visibility and growth.

 

Key Performance Indicators (KPIs)

  • On‑time delivery and engagement quality
  • Client satisfaction (CSAT/NPS)
  • Team development, upskilling, and retention
  • Revenue growth and utilization targets
  • Standardization and maturity of offensive security playbooks
  • Practice innovation and tool development
  • Reduced rework and improved reporting quality

 

Required Skills & Competencies

Technical Expertise

  • Advanced knowledge of:
    • Network, application, API, and mobile penetration testing
    • Red‑team operations, adversary simulation, and MITRE ATT&CK frameworks
    • Cloud offensive security (AWS, Azure, GCP)
    • Active Directory exploitation and post‑exploitation
    • Scripting/exploitation using Python, PowerShell, Bash, Go, or C#
  • Familiar with blue‑team technologies, detection engineering, and EDR evasion.

Leadership & Functional Skills

  • Team development, performance coaching, and hiring talent
  • Ability to simplify technical risk for business leaders
  • Strong documentation, communication, and presentation skills
  • Project oversight, scoping, and workload management
  • Strategic thinking around cybersecurity program maturity

Behavioral Competencies

  • High integrity and ethical responsibility in offensive testing
  • Ownership mindset and proactive leadership
  • Collaboration across technical and business teams
  • Adaptability in fast‑paced, evolving threat environments

 

Qualifications & Experience

  • 7–10+ years in penetration testing, red‑team, or offensive security roles
  • 2–4+ years in a leadership, team lead, or management capacity
  • Bachelor’s degree in Cybersecurity, Computer Science, or equivalent experience
  • Preferred Certifications:
    • OSCP, OSCE, OSEP, OSWE
    • GPEN, GXPN, GWAPT
    • PNPT
    • Cloud security certifications (Azure/AWS/GCP security‑focused)



#LI-REMOTE #LI-PK1 #LI-USA

Due to U.S. Government requirements applicable to foreign-owned telecommunications providers, non-US citizens may be required to submit to an extensive government agency background check which will necessitate disclosure of sensitive Personally Identifiable Information.

Top Skills

Bash
C#
Go
Powershell
Python

Similar Jobs

22 Minutes Ago
Easy Apply
Remote or Hybrid
San Jose, CA, USA
Easy Apply
74K-105K Annually
Entry level
74K-105K Annually
Entry level
Cloud • Information Technology • Security • Software • Cybersecurity
Develop instructor-led and interactive eLearning, labs, assessments, and PPT decks by translating SME workflows into task-based training. Build and validate hands-on product labs and create engaging, modular course content mapped to learning objectives.
Top Skills: Adobe CaptivateAdobe RiseAdobe StorylineAi ToolsArticulatePowerPointZscaler
25 Minutes Ago
Remote or Hybrid
3 Locations
186K-268K Annually
Expert/Leader
186K-268K Annually
Expert/Leader
Cloud • Information Technology • Security • Software • Cybersecurity
The Principal Technical Engagement Manager drives technical adoption of solutions, resolves challenges, and enhances customer satisfaction through strategic leadership and partnership in China.
Top Skills: Advanced NetworkingComplianceCross-Border ConnectivityEdge ComputingHybrid CloudIcp ComplianceLocal Cloud EcosystemsNetwork IntegrationPerformance OptimizationSaseTraffic AccelerationZtna
29 Minutes Ago
Remote or Hybrid
New York, NY, USA
166K-207K Annually
Senior level
166K-207K Annually
Senior level
Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Big Data Analytics • Automation
Lead a sales team focused on enterprise technology sales, develop strategic go-to-market plans, and drive revenue growth while mentoring team members.
Top Skills: Salesforce

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account