Manager – Penetration Testing jobs in United States
cer-icon
Apply on Employer Site
company-logo

CBTS · 18 hours ago

Manager – Penetration Testing

CBTS is a technology solutions provider serving enterprise and midmarket clients in various industries across the United States and Canada. The Manager – Penetration Testing leads the Offensive Security practice, ensuring high-quality penetration tests and driving practice growth while mentoring team members and managing client engagements.

Cloud ComputingCloud InfrastructureConsultingInformation TechnologyService Industry
check
Comp. & Benefits
badNo H1BnoteU.S. Citizen Onlynote

Responsibilities

Lead, coach, and develop a team of penetration testers, red‑team operators, and offensive security consultants
Oversee capacity planning, engagement assignments, and resource utilization to ensure timely delivery
Create a culture of continuous learning, ethical conduct, technical innovation, and operational excellence
Mentor team members through advanced exploitation techniques, reporting best practices, and client communication
Oversee execution of internal/external network penetration tests, application and API testing, cloud testing, wireless assessments, and social engineering
Ensure all engagements follow CBTS playbooks, methodologies, and compliance standards
Review technical findings, reports, and remediation guidance for accuracy, clarity, and completeness
Ensure engagements align with scope, timelines, and client expectations
Maintain and enhance the CBTS offensive security methodology, tooling, and reporting standards
Develop new service offerings, including adversary emulation, purple‑team services, cloud offensive testing, and industrial/OT security (as applicable)
Oversee internal R&D to build custom tools, automation, and repeatable frameworks
Act as executive‑level escalation point for clients during and after penetration testing engagements
Present findings to technical, security, and C‑suite stakeholders in business‑aligned language
Support the creation of Statements of Work (SOWs), scoping calls, and proposal development in partnership with Solutions Architects and Sales
Build long‑term client relationships and support new and repeat business opportunities
Ensure adherence to legal, ethical, and contractual requirements in all offensive engagements
Manage operational risks, documenting and escalating critical issues appropriately
Maintain high standards for confidentiality, testing authorization, and data handling
Partner with the Defensive Security, Cloud, and Managed Services teams to deliver integrated security offerings
Coordinate purple‑team engagements with detection engineering and SOC analysts
Work with Sales, Delivery, PMO, and Marketing teams to enable practice visibility and growth

Qualification

Penetration TestingRed-team OperationsCloud Offensive SecurityActive Directory ExploitationScripting with PythonTeam DevelopmentTechnical DocumentationProject OversightEthical ResponsibilityCommunication SkillsStrategic ThinkingCollaboration SkillsAdaptabilityOwnership Mindset

Required

Advanced knowledge of network, application, API, and mobile penetration testing
Advanced knowledge of red‑team operations, adversary simulation, and MITRE ATT&CK frameworks
Advanced knowledge of cloud offensive security (AWS, Azure, GCP)
Advanced knowledge of Active Directory exploitation and post‑exploitation
Advanced knowledge of scripting/exploitation using Python, PowerShell, Bash, Go, or C#
Familiar with blue‑team technologies, detection engineering, and EDR evasion
Team development, performance coaching, and hiring talent
Ability to simplify technical risk for business leaders
Strong documentation, communication, and presentation skills
Project oversight, scoping, and workload management
Strategic thinking around cybersecurity program maturity
High integrity and ethical responsibility in offensive testing
Ownership mindset and proactive leadership
Collaboration across technical and business teams
Adaptability in fast‑paced, evolving threat environments
7–10+ years in penetration testing, red‑team, or offensive security roles
2–4+ years in a leadership, team lead, or management capacity
Bachelor's degree in Cybersecurity, Computer Science, or equivalent experience

Preferred

OSCP, OSCE, OSEP, OSWE
GPEN, GXPN, GWAPT
PNPT
Cloud security certifications (Azure/AWS/GCP security‑focused)

Company

CBTS provides end-to-end IT and communications solutions that allow businesses to improve efficiency, enable innovation, and mitigate risk.

Funding

Current Stage
Late Stage
Total Funding
unknown
2024-02-06Acquired

Leadership Team

leader-logo
Kristin Russell
Chief Executive Officer
linkedin
leader-logo
Phil Clark
SVP, National Territory Sales
Company data provided by crunchbase