Senior Manager, Offensive Security

Vanguard

Malvern (Chester County)

On-site

USD 150,000 - 210,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Vanguard is seeking a Senior Manager, Offensive Security to lead the advanced offensive security program within the OSFT team. You will drive red team engagements, targeted penetration testing, and AI-augmented initiatives to proactively identify vulnerabilities and strengthen defenses.

Success is measured by risk reduction, improved detection, and stakeholder trust. Responsibilities include defining strategy, leading a distributed team, overseeing complex engagements, and reporting outcomes to

Qualifications

  • 10+ years in offensive security engagements (penetration testing, red teaming)
  • Proven leadership of security teams or programs
  • Familiarity with AI/ML in security and automation

Responsibilities

  • Define and drive strategic vision for offensive security testing and roadmaps.
  • Lead and coach a geographically distributed team of offensive security professionals.
  • Oversee complex engagements (Red Team, pen testing) and AI-augmented initiatives.
  • Coordinate cross-functional exercises to test detective controls and align offense/defense.
  • Ensure comprehensive reporting of findings, risk insights, and remediation actions.

Skills

Penetration testing
Red teaming
Threat modeling
Leadership
AI/Automation

Job description

The Senior Manager, Offensive Security leads our advanced offensive security program within the Offensive Security & Fraud Testing (OSFT) team. This role oversees all offensive security operations - including full-scope Red Team engagements , targeted penetration testing , AI-augmented offensive security initiatives - with the mission of proactively identifying vulnerabilities and strengthening the organization's defenses. Success in this role is measured by the maturity and impact of our offensive security program: meaningful risk reduction, improved detection & response capabilities, strong stakeholder trust, and continuous team development .

Key Responsibilities:
  • Offensive Security Program Leadership: Define and drive the strategic vision for offensive security testing, translating high-level cyber risk objectives into actionable testing plans and operations . Establish annual roadmaps for red teaming, and pen testing exercises aligned with emerging threats and business priorities.
  • Team Management & Development: Lead and coach a geographically distributed team of offensive security professionals. Oversee hiring, performance management, and skill development , ensuring a high-performing, collaborative culture. Foster innovation within the team by encouraging the adoption of new techniques (e.g., AI-driven tools ) and by mentoring staff in advanced offensive tradecraft.
  • Operational Oversight & Execution: Plan, scope, and approve complex offensive engagements such as Red Team operations ensuring they are conducted safely, ethically, and with clear goals. Oversee GenAI-enabled offensive security projects , setting guidelines for responsible use of AI/automation as force multipliers in our operations. Provide hands-on guidance when needed, leveraging your own red team experience to support critical operations or complex exploit development.
  • Purple Team & Cross-Functional Collaboration: Coordinate Purple Team exercises that bring together our offensive team with CSOC Team and fraud teams to test and improve detective controls. Serve as the primary liaison with defensive stakeholders, ensuring findings are immediately actionable and bridging gaps between offense and defense . Champion a partnership approach - sharing threat intelligence, aligning on TTPs (Tactics, Techniques, Procedures) to emulate, and jointly prioritizing remediation efforts.
  • Reporting & Program Governance: Ensure comprehensive documentation and communication of all offensive testing activities and outcomes. Review and finalize detailed reports for each engagement, highlighting identified vulnerabilities, their business impact, and recommended fixes. Present program results and risk insights to senior security leadership and risk governance forums. Continuously refine methodologies , enforce adherence to frameworks (e.g., MITRE ATT&CK , internal policies), and track metrics to measure program effectiveness (coverage of attack surface, detection rates, time-to-remediation, stakeholder satisfaction).
  • Strategic Improvement & Innovation: Identify opportunities to expand or enhance the program - such as integrating new offensive techniques, improving automation, or refining Purple Team processes - and drive these initiatives to increase program maturity. Stay current on industry trends and ensure our team remains at the forefront of offensive security practices , especially regarding AI augmentation, cloud security, and evolving threat landscapes .
Required Qualifications:
  • Offensive Security Expertise: 10+ years in penetration testing, red teaming, or adversary simulation , with proven success as a hands‑on operator delivering high-impact engagements. Deep knowledge of network, application, and cloud security vulnerabilities, exploitation techniques, and attacker methodologies (MITRE ATT&CK, kill chain, etc.).
  • Leadership & Program Management: 3+ years of experience leading offensive security teams or programs . Demonstrated ability to manage and develop high-performing teams , including setting goals, mentoring senior engineers, and attracting top talent. Skilled in strategic planning and multi-project management - able to prioritize and allocate resources to meet objectives across simultaneous operations
  • AI & Automation Familiarity: Exposure to or strong interest in AI/ML technologies and security automation . While not a data scientist, you understand how generative AI and tools like LLMs can be leveraged in offensive security (e.g. for recon or automating tasks). Experience overseeing or implementing innovative solutions (like advanced scripting, C2 frameworks, or integrating AI agents) in security testing is a plus.
  • Stakeholder Engagement & Communication: Excellent communication skills with both technical and executive audiences. Able to clearly articulate risk and influence senior stakeholders to take action on security findings. Experience collaborating with defensive security teams, fraud/risk teams, and engineering groups to driv
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Manager, Offensive Security
Senior Manager, Offensive Security

Vanguard • Dallas (TX)

Hybrid
USD 180,000 - 240,000
Senior Manager, Offensive Security
Senior Manager, Offensive Security

Vanguard • Charlotte (NC)

Hybrid
USD 180,000 - 240,000
Principal Offensive Security Engineer
Principal Offensive Security Engineer

Postman • San Francisco (CA)

On-site
USD 150,000 - 200,000
Senior Associate, Offensive Security
Senior Associate, Offensive Security

Jobtailor • New York (NY)

Hybrid
USD 120,000 - 160,000
Senior System Security Specialist
Senior System Security Specialist

Compunnel, Inc. • Baltimore (MD)

On-site
USD 120,000 - 150,000
Senior Manager Purple Team
Senior Manager Purple Team

Vanguard • Malvern

On-site
USD 180,000 - 260,000
Senior Manager Purple Team
Senior Manager Purple Team

Vanguard • Philadelphia

On-site
USD 180,000 - 240,000
Sr Application Security Engineer - AI-First Development
Sr Application Security Engineer - AI-First Development

Las Vegas Sands Corp. • United States

On-site
USD 120,000 - 150,000
Head of Offensive Security & Red Team (Hybrid)
Head of Offensive Security & Red Team (Hybrid)

Vanguard • Charlotte (NC)

Hybrid
USD 180,000 - 240,000
Offensive Cyber Operations Lead
Offensive Cyber Operations Lead

ZETTALOGIX INC • Tampa (FL)

Hybrid
USD 150,000 - 210,000