FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Cyber Attack & Penetration Testing Manager – Consulting
EYEY cybersecurity consulting manager leading penetration testing, red team, and purple team engagements. Advising clients through actionable offensive-security findings and mentoring technical teams.
Posted 9/11/2026full-timeRemote • 🇺🇸 United StatesMid-LevelSenior💰 $144,900 - $265,800 per yearWebsite
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in penetration testing, red team operations, and offensive security analysis, with a strong ability to manage multiple projects and mentor team members. Proficient in scripting and programming, with a deep understanding of cybersecurity trends and frameworks.
Highest-signal resume keywords
Penetration Testing ManagementRed Team OperationsOffensive Security AnalysisScripting Skills (Python, PowerShell, Java, Perl)MITRE ATT&CK Framework
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Penetration TestingRed Team ExercisesVulnerability AnalysisNetwork SecurityWeb Application SecurityCloud Vulnerability RemediationActive Directory Attack TechniquesTCP/IP Network ProtocolsStealth Network Penetration TestingOWASP Top 10
Soft Skills
Team LeadershipCollaborationMentoringCommunicationProject Management
Tools & Technologies
WindowsLinuxUnixCloud TechnologiesSecurity Tools
Certifications & Qualifications
OSCPOSWPGPENGWAPTOSCEOSEEGXPNCISSPCISMPMP
Industry Keywords
CybersecurityOffensive SecurityThreat AnalysisExploitsSecurity TrendsTechnical ReportsEmerging ThreatsAttack VectorsRed Team ProgramsPenetration Testing Methodologies
Tech Stack
Tools & technologiesCloudCyber SecurityJavaLinuxPerlPMPPythonTCP/IPUnix
About the role
Key responsibilities & impact- Identify potential threats and vulnerabilities in enterprise environments
- Lead technical teams conducting penetration testing, red team, and purple team exercises
- Apply offensive security analysis to enhance other cybersecurity areas
- Oversee delivery of offensive security engagements
- Collaborate with security and business teams
- Deliver clear, concise, and actionable reports and support to technical and executive audiences
- Mentor senior and junior analysts
- Build a collaborative and trust-based team culture
- Enhance team skillsets and capabilities
- Monitor emerging cyber threat trends and technologies
- Represent EY in industry groups, conferences, and events
- Plan and execute internet, intranet, wireless, web application, cloud, social engineering, and physical penetration testing
- Develop and execute red team scenarios
- Analyze penetration testing results and report findings, exploitation procedures, risks, and recommendations
- Manage testing projects using established methodologies, tools, and rules of engagement
Requirements
What you’ll need- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Information Technology, Engineering or a related major with 6+ years of related work experience, or a Master’s degree with approximately 3–4+ years of related work experience
- Experience in managing and executing penetration testing projects
- Experience with manual attack and penetration testing
- Experience establishing and managing Red Team or application penetration testing programs
- Scripting/programming skills, such as Python, PowerShell, Java, or Perl
- Familiarity with the latest exploits and security trends
- Experience leading technical teams in remote and on-site penetration testing within defined rules of engagement
- Ability to oversee multiple attack and penetration testing projects simultaneously while navigating strict deadlines
- Familiarity with stealth network penetration testing
- Any two certifications: OSCP, OSWP, GPEN, GWAPT, OSCE, OSEE, GXPN, CISSP, CISM, PMP, or CREST Certified Simulated Attack Manager
- A driver’s license valid in the U.S.
- Willingness and ability to travel domestically and internationally
- Estimated travel required up to 50%
- Knowledge of Windows, Linux, Unix, or other major operating systems
- Familiarity with cloud vulnerability remediation, TTPs, exploits, and security trends
- Deep understanding of MITRE ATT&CK framework
- Deep understanding of TCP/IP network protocols
- Deep understanding and experience with Active Directory attack techniques
- Understanding of network security and popular attack vectors
- Understanding of web application vulnerabilities, including OWASP Top 10
- Experience developing harnesses and agentic workflows for offensive security
Benefits
Comp & perks- Medical and dental coverage
- Pension plan
- 401(k) plan
- Wide range of paid time off options
- Professional growth
- Personal fulfillment
- Inclusive culture
- Reasonable accommodation for qualified individuals with disabilities