Cyber Attack & Penetration Testing Manager – Consulting

Jobtailor

Deutschland

Remote

EUR 120.000 - 180.000

Vollzeit

Vor 5 Tagen
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Verschicke keinen generischen Lebenslauf — erstelle einen Lebenslauf und ein Anschreiben, die genau auf diese Rolle zugeschnitten sind.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

EY is seeking an experienced offensive security leader to identify threats and vulnerabilities in enterprise environments and to oversee red team, purple team, and penetration testing engagements. You will mentor analysts and deliver concise executive-ready reports, working with security and business teams to strengthen defenses.

The role requires deep knowledge of attack techniques, MITRE ATT&CK, and hands-on leadership across multiple projects, with travel up to 50%.

Qualifikationen

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Information Technology, Engineering or a related major with 6+ years of related work experience, or a Master’s degree with approximately 3–4+ years of related work experience.
  • Experience in managing and executing penetration testing projects.
  • Experience with manual attack and penetration testing.
  • Experience establishing and managing Red Team or application penetration testing programs.
  • Scripting/programming skills, such as Python, PowerShell, Java, or Perl.
  • Familiarity with the latest exploits and security trends.
  • Experience leading technical teams in remote and on-site penetration testing within defined rules of engagement.
  • Ability to oversee multiple attack and penetration testing projects simultaneously while navigating strict deadlines.
  • Familiarity with stealth network penetration testing.
  • Any two certifications: OSCP, OSWP, GPEN, GWAPT, OSCE, OSEE, GXPN, CISSP, CISM, PMP, or CREST Certified Simulated Attack Manager.
  • A driver’s license valid in the U.S.
  • Willingness and ability to travel domestically and internationally.
  • Knowledge of Windows, Linux, Unix, or other major operating systems.
  • Familiarity with cloud vulnerability remediation, TTPs, exploits, and security trends.
  • Deep understanding of MITRE ATT&CK framework.
  • Deep understanding of TCP/IP network protocols.
  • Deep understanding and experience with Active Directory attack techniques.
  • Understanding of network security and popular attack vectors.
  • Understanding of web application vulnerabilities, including OWASP Top 10.
  • Experience developing harnesses and agentic workflows for offensive security

Aufgaben

  • Identify threats and vulnerabilities in enterprise environments.
  • Lead technical teams conducting penetration testing, red team, and purple team exercises.
  • Apply offensive security analysis to enhance other cybersecurity areas.
  • Oversee delivery of offensive security engagements.
  • Collaborate with security and business teams.
  • Deliver clear, concise, and actionable reports and support to technical and executive audiences.
  • Mentor senior and junior analysts.
  • Build a collaborative and trust-based team culture.
  • Enhance team skillsets and capabilities.
  • Monitor emerging cyber threat trends and technologies.
  • Plan and execute internet, intranet, wireless, web application, cloud, social engineering, and physical penetration testing.
  • Develop and execute red team scenarios.
  • Analyze penetration testing results and report findings, exploitation procedures, risks, and recommendations.
  • Manage testing projects using established methodologies, tools, and rules of engagement.

Kenntnisse

Penetration Testing
Red Team
Offensive Security
Scripting
MITRE ATT&CK
Team Leadership
Reports & Communication

Ausbildung

Bachelor’s degree + 6+ years
Master’s degree + 3-4+ years

Tools

Windows
Linux
Unix
Cloud Technologies
Security Tools

Jobbeschreibung

  • Identify potential threats and vulnerabilities in enterprise environments
  • Lead technical teams conducting penetration testing, red team, and purple team exercises
  • Apply offensive security analysis to enhance other cybersecurity areas
  • Oversee delivery of offensive security engagements
  • Collaborate with security and business teams
  • Deliver clear, concise, and actionable reports and support to technical and executive audiences
  • Mentor senior and junior analysts
  • Build a collaborative and trust-based team culture
  • Enhance team skillsets and capabilities
  • Monitor emerging cyber threat trends and technologies
  • Represent EY in industry groups, conferences, and events
  • Plan and execute internet, intranet, wireless, web application, cloud, social engineering, and physical penetration testing
  • Develop and execute red team scenarios
  • Analyze penetration testing results and report findings, exploitation procedures, risks, and recommendations
  • Manage testing projects using established methodologies, tools, and rules of engagement
Requirements
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Information Technology, Engineering or a related major with 6+ years of related work experience, or a Master’s degree with approximately 3–4+ years of related work experience
  • Experience in managing and executing penetration testing projects
  • Experience with manual attack and penetration testing
  • Experience establishing and managing Red Team or application penetration testing programs
  • Scripting/programming skills, such as Python, PowerShell, Java, or Perl
  • Familiarity with the latest exploits and security trends
  • Experience leading technical teams in remote and on-site penetration testing within defined rules of engagement
  • Ability to oversee multiple attack and penetration testing projects simultaneously while navigating strict deadlines
  • Familiarity with stealth network penetration testing
  • Any two certifications: OSCP, OSWP, GPEN, GWAPT, OSCE, OSEE, GXPN, CISSP, CISM, PMP, or CREST Certified Simulated Attack Manager
  • A driver’s license valid in the U.S.
  • Willingness and ability to travel domestically and internationally
  • Estimated travel required up to 50%
  • Knowledge of Windows, Linux, Unix, or other major operating systems
  • Familiarity with cloud vulnerability remediation, TTPs, exploits, and security trends
  • Deep understanding of MITRE ATT&CK framework
  • Deep understanding of TCP/IP network protocols
  • Deep understanding and experience with Active Directory attack techniques
  • Understanding of network security and popular attack vectors
  • Understanding of web application vulnerabilities, including OWASP Top 10
  • Experience developing harnesses and agentic workflows for offensive security
Core Competencies

Demonstrates expertise in penetration testing, red team operations, and offensive security analysis, with a strong ability to manage multiple projects and mentor team members. Proficient in scripting and programming, with a deep understanding of cybersecurity trends and frameworks.

Highest-signal resume keywords
  • Penetration Testing Management
  • Red Team Operations
  • Offensive Security Analysis
  • Scripting Skills (Python, PowerShell, Java, Perl)
  • MITRE ATT&CK Framework
Hard Skills
  • Penetration Testing
  • Red Team Exercises
  • Vulnerability Analysis
  • Network Security
  • Web Application Security
  • Cloud Vulnerability Remediation
  • Active Directory Attack Techniques
  • TCP/IP Network Protocols
  • Stealth Network Penetration Testing
  • OWASP Top 10
Soft Skills
  • Team Leadership
  • Collaboration
  • Mentoring
  • Communication
  • Project Management
Certifications & Qualifications
  • OSCP
  • OSWP
  • GPEN
  • GWAPT
  • OSCE
  • OSEE
  • GXPN
  • CISSP
  • CISM
  • PMP
Industry Keywords
  • Cybersecurity
  • Offensive Security
  • Threat Analysis
  • Exploits
  • Security Trends
  • Technical Reports
  • Emerging Threats
  • Attack Vectors
  • Red Team Programs
  • Penetration Testing Methodologies
Tools & Technologies
  • Windows
  • Linux
  • Unix
  • Cloud Technologies
  • Security Tools
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Associate Penetration Tester
Associate Penetration Tester

Jobtailor • Deutschland

Remote
EUR 60.000 - 95.000
Penetration Tester / Ethical Hacker
Penetration Tester / Ethical Hacker

Hhw Group • Deutschland

Vor Ort
EUR 65.000 - 100.000
Security Advisor – Threat Exposure Management
Security Advisor – Threat Exposure Management

Jobtailor • Deutschland

Remote
EUR 110.000 - 140.000
Mid-Level Cybersecurity Analyst
Mid-Level Cybersecurity Analyst

Jobtailor • Deutschland

Remote
EUR 70.000 - 100.000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Jobtailor • Deutschland

Remote
EUR 90.000 - 130.000
Security Engineer – Vulnerability Management
Security Engineer – Vulnerability Management

Jobtailor • Deutschland

Remote
EUR 70.000 - 110.000
Exposure Management - Threat Analyst (Offensive Security)
Exposure Management - Threat Analyst (Offensive Security)

TEKNEWGEN LLC • Deutschland

Remote
EUR 90.000 - 130.000
Presales Engineer, Japan
Presales Engineer, Japan

Jobtailor • Deutschland

Remote
EUR 70.000 - 110.000
Senior Pentester (Red Team) - Cybersecurity Audit (all gender)
Senior Pentester (Red Team) - Cybersecurity Audit (all gender)

ALTEN Consulting Services • München

Vor Ort
EUR 90.000 - 120.000
A home where people learn and thrive
Permanent Employment
Attractive Salary
+2
Cyber Security Pentester (m/f/d)
Cyber Security Pentester (m/f/d)

ECSO • Mülheim an der Ruhr

Vor Ort
EUR 45.000 - 65.000