Director - Pentesting Solutions

2 months ago
Full-time
Executive
Cybersecurity
BreachLock

BreachLock

BreachLock provides a proactive cybersecurity solution that helps organizations identify and remediate potential vulnerabilities to prevent future cyber breaches.

Professional Services
51-250
Founded 2019

Description

  • Lead and oversee penetration testing engagements across web applications, APIs, cloud environments, networks, mobile applications, wireless infrastructure, and enterprise systems.
  • Establish and maintain testing methodologies, quality standards, reporting frameworks, and operational best practices.
  • Ensure timely and high-quality delivery of client engagements while managing competing priorities and resource allocation.
  • Review technical findings, risk ratings, remediation recommendations, and final assessment reports for accuracy and quality.
  • Drive continuous improvement in offensive security capabilities, tooling, automation, and testing approaches.
  • Provide subject matter expertise in offensive security, adversary simulation, vulnerability assessment, and security architecture weaknesses.
  • Guide complex security assessments and assist with advanced exploitation or high-risk engagements when required.
  • Build, mentor, and manage a small pentesting and offensive security team.
  • Conduct technical reviews, performance coaching, and skill development initiatives for consultants.
  • Serve as a trusted advisor to clients and support scoping discussions, technical presentations, executive briefings, and pre-sales activities.
  • Contribute to delivery processes, utilization planning, practice metrics, strategic planning, and service expansion efforts.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related technical discipline.
  • 10+ years of experience in cybersecurity with significant focus on penetration testing and offensive security.
  • Demonstrated experience leading penetration testing teams or offensive security practices.
  • Strong hands-on experience performing and reviewing penetration tests across multiple technology domains.
  • Experience interacting directly with enterprise clients and executive stakeholders.
  • Prior experience working in fast-paced, lean, or startup-oriented environments preferred.
  • Strong understanding of web application, network, cloud, API, mobile, and infrastructure security.
  • Experience with offensive security tools, frameworks, and methodologies.
  • Knowledge of industry frameworks and standards such as OWASP, NIST, PTES, MITRE ATT&CK, and CIS benchmarks.
  • Understanding of cloud platforms, container security, identity security, and modern enterprise environments.
  • OSCP, OSWE, OSEP, CRTP, LPT Master, CISSP, or equivalent offensive security certifications preferred.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Data Loss Prevention (DLP) Implementation Consultant - Part Time

Muller Internet Software & Services

Data Loss Prevention (DLP) Implementation Consultant at a company deploying enterprise security controls for customer environments, responsible for implementing and operationalizing a DLP solution aligned to security requirements.

Active Directory HIPAA macOS SIEM
1 day, 18 hours ago

Senior Consultant - ICS/OT Cybersecurity

Dragos 251-1K Professional Services

Dragos is hiring a Senior Consultant for its Professional Services team to lead cybersecurity engagements that help industrial organizations protect critical infrastructure.

Active Directory Cybersecurity SIEM SSH
2 days, 18 hours ago

RMF, Security & ATO Manager

Lever 251-1K Professional Services

Latitude IT Solutions is hiring an RMF, Security & ATO Manager to own compliance and authorization for a complex, multi-tenant VA health IT platform.

DevSecOps HIPAA
4 days, 18 hours ago

Business Information Security Officer - Remote/Defense Industrial Base (DIB) Exp

EVOTEK 51-250 IT Services

EVOTEK is hiring a Business Information Security Officer to help lead and evolve the company’s security strategy across business, technology, and compliance initiatives for client-facing operations.

Cybersecurity
4 days, 18 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers