Penetration Testing Manager

Jobtailor

Thiruvananthapuram

On-site

INR 1,400,000 - 2,200,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

EY Advisory Services in India seeks an experienced security professional to perform penetration testing across networks, apps, and social-engineering scenarios, and to lead red team engagements. You will mentor junior staff, drive client relationships, and contribute to service development and thought leadership.

The role demands deep technical security knowledge, strong reporting skills, and the ability to communicate complex concepts to executives and technical teams alike.

Qualifications

  • Graduates / BE / M Sc (Stats, Maths, Computer Science) / MBA with background in computer science and programming / MCA
  • Minimum 8 years of work experience in penetration testing
  • Experience covering internet, intranet, web application, wireless, social engineering, and Red Team assessments
  • Any two of: CISSP, OSCP, OSWP, GPEN, GWAPT, OSCE, OSEE, GXPN
  • Network security certifications such as C|EH, Security+, SANS, ISACA, or product certifications
  • Quality Management training/certification, e.g. ITIL, Six Sigma, or TQM
  • Knowledge of Windows, Linux, UNIX, and other major operating systems
  • Deep understanding of TCP/IP network protocols
  • Deep understanding and experience with Active Directory attack techniques
  • Understanding of network security and popular attack vectors
  • Understanding of web application vulnerabilities and OWASP Top 10
  • Experience with manual attack and penetration testing
  • Scripting/programming skills such as Python, PowerShell, Java, or Perl
  • Familiarity with latest exploits and security trends
  • Experience leading technical teams for remote and on-site penetration testing
  • Familiarity with stealth network penetration testing
  • Understanding of software security, network security, and information technology management technologies and principles
  • Knowledge of vulnerability, patch, and configuration management best practices
  • Project management skills
  • CREST certification preferred
  • Technical writing ability, including engagement reports, presentations, and operating procedures

Responsibilities

  • Perform internet, intranet, wireless, web application, social engineering, and physical penetration testing
  • Execute red team scenarios to identify gaps in organizational security postures
  • Lead technical testers on penetration testing and red team engagements
  • Provide technical leadership and guidance to junior team members
  • Identify and exploit security vulnerabilities across varied systems
  • Analyze penetration testing results and prepare reports covering findings, exploitation procedures, risks, and recommendations
  • Execute projects using established methodologies, tools, and rules of engagement
  • Explain complex technical security concepts to technical and non-technical audiences, including executives
  • Develop and maintain client relationships
  • Build internal relationships across EY Advisory Services and other service lines
  • Contribute to client engagements, service development, methodologies, internal initiatives, and thought leadership
  • Manage accounts, engagement quality, project plans, teams, work products, and deliverables
  • Identify business development opportunities and support proposal preparation
  • Review junior team work to ensure EY quality standards
  • Coach, counsel, train, mentor, and manage the performance of junior and direct-report team members
  • Participate in organization-wide people initiatives

Skills

Penetration Testing
Red Team Assessments
Technical Leadership
Scripting Skills
Client Relationship Management
Coaching & Mentoring

Education

Graduates / BE / M Sc / MBA with CS background / MCA

Tools

CISSP
OSCP
CREST Certification
Security+

Job description

  • Perform internet, intranet, wireless, web application, social engineering, and physical penetration testing
  • Execute red team scenarios to identify gaps in organizational security postures
  • Lead technical testers on penetration testing and red team engagements
  • Provide technical leadership and guidance to junior team members
  • Identify and exploit security vulnerabilities across varied systems
  • Analyze penetration testing results and prepare reports covering findings, exploitation procedures, risks, and recommendations
  • Execute projects using established methodologies, tools, and rules of engagement
  • Explain complex technical security concepts to technical and non-technical audiences, including executives
  • Develop and maintain client relationships
  • Build internal relationships across EY Advisory Services and other service lines
  • Contribute to client engagements, service development, methodologies, internal initiatives, and thought leadership
  • Manage accounts, engagement quality, project plans, teams, work products, and deliverables
  • Identify business development opportunities and support proposal preparation
  • Review junior team work to ensure EY quality standards
  • Coach, counsel, train, mentor, and manage the performance of junior and direct-report team members
  • Participate in organization-wide people initiatives
Requirements
  • Graduates / BE / M Sc (Stats, Maths, Computer Science) / MBA with background in computer science and programming / MCA
  • Minimum 8 years of work experience in penetration testing
  • Experience covering internet, intranet, web application, wireless, social engineering, and Red Team assessments
  • Any two of: CISSP, OSCP, OSWP, GPEN, GWAPT, OSCE, OSEE, GXPN
  • Network security certifications such as C|EH, Security+, SANS, ISACA, or product certifications
  • Quality Management training/certification, e.g. ITIL, Six Sigma, or TQM
  • Knowledge of Windows, Linux, UNIX, and other major operating systems
  • Deep understanding of TCP/IP network protocols
  • Deep understanding and experience with Active Directory attack techniques
  • Understanding of network security and popular attack vectors
  • Understanding of web application vulnerabilities and OWASP Top 10
  • Experience with manual attack and penetration testing
  • Scripting/programming skills such as Python, PowerShell, Java, or Perl
  • Familiarity with latest exploits and security trends
  • Experience leading technical teams for remote and on-site penetration testing
  • Familiarity with stealth network penetration testing
  • Understanding of software security, network security, and information technology management technologies and principles
  • Knowledge of vulnerability, patch, and configuration management best practices
  • Project management skills
  • CREST certification preferred
  • Technical writing ability, including engagement reports, presentations, and operating procedures
Core Competencies

Demonstrates expertise in penetration testing across various environments, including web applications and networks, while providing technical leadership and mentoring to junior team members. Proficient in analyzing security vulnerabilities and communicating complex concepts to diverse audiences.

Highest-signal resume keywords
  • Penetration Testing
  • Red Team Assessments
  • CISSP Certification
  • Scripting Skills (Python, PowerShell)
  • Technical Writing
Hard Skills
  • Penetration Testing
  • Red Team Assessments
  • Scripting Skills (Python, PowerShell, Java, Perl)
  • TCP/IP Network Protocols
  • Active Directory Attack Techniques
  • Web Application Vulnerabilities
  • Manual Attack Testing
  • Network Security
  • Vulnerability Management
  • Project Management
Soft Skills
  • Technical Leadership
  • Coaching and Mentoring
  • Client Relationship Management
  • Communication Skills
Certifications & Qualifications
  • CISSP
  • OSCP
  • C|EH
  • Security+
  • CREST Certification
Industry Keywords
  • Information Security
  • Quality Management
  • ITIL
  • Six Sigma
  • Social Engineering
Tools & Technologies
  • Windows
  • Linux
  • UNIX
  • OWASP Top 10
  • Stealth Network Penetration Testing
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Penetration Tester
Senior Penetration Tester

Jobtailor • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Senior Consultant, Offensive Security
Senior Consultant, Offensive Security

Jobtailor • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Senior Penetration Tester
Senior Penetration Tester

NTT DATA BUSINESS SOLUTIONS • Hyderabad

Hybrid
INR 2,500,000 - 4,000,000
Hybrid Working
TC-CS-CTM-Pentest-Manager
TC-CS-CTM-Pentest-Manager

EY • Gurugram District

On-site
INR 4,000,000 - 7,000,000
TC-CS-CTM-Pentest-Manager
TC-CS-CTM-Pentest-Manager

EY • Hyderabad

On-site
INR 4,000,000 - 6,000,000
Support & coaching
Career development
Flexible work style
TC-CS-CTM-Pentest-Manager
TC-CS-CTM-Pentest-Manager

EY • Chennai District

On-site
INR 3,000,000 - 4,500,000
Coaching and feedback
Career development
Flexible work style
TC-CS-CTM-Pentest-Manager
TC-CS-CTM-Pentest-Manager

EY • Mumbai

On-site
INR 4,000,000 - 7,000,000
Coaching & feedback
Career development
Flexible work style
TC-CS-CTM-Pentest-Manager
TC-CS-CTM-Pentest-Manager

EY • Ernakulam

On-site
INR 2,500,000 - 4,200,000
Support & coaching
Career development
Flexible work style
TC-CS-CTM-Pentest-Manager
TC-CS-CTM-Pentest-Manager

EY • Thiruvananthapuram

On-site
INR 1,500,000 - 2,100,000
TC-CS-CTM-Pentest-Senior
TC-CS-CTM-Pentest-Senior

EY • Hyderabad

On-site
INR 1,500,000 - 2,100,000
Support and coaching
Skills development opportunities
Flexible work style