1

Penetration Testing Manager Jobs (NOW HIRING)

Five (5) years of management and supervisory experience within the required experience timeframe ... Licensed Penetration Tester (LPT) Master * GIAC Certified Incident Handler (GCIH) * GIAC ...

Five (5) years of management and supervisory experience within the required experience timeframe ... Licensed Penetration Tester (LPT) Master * GIAC Certified Incident Handler (GCIH) * GIAC ...

Five (5) years of management and supervisory experience within the required experience timeframe ... Licensed Penetration Tester (LPT) Master * GIAC Certified Incident Handler (GCIH) * GIAC ...

Director, Penetration Testing

Iselin, NJ · Hybrid

$170K - $210K/yr

Own the selection, implementation and management of penetration test tooling and platforms. * Define internal testing methodologies, playbooks, tooling and reporting standards. * Own third party ...

Director, Penetration Testing

Iselin, NJ · On-site

$170K - $210K/yr

CLS products are designed to enable clients to manage risk most effectively across the full FX ... Functional title - Director, Penetration Testing * Department - Cyber Security * Corporate level ...

Penetration Testing Lead Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a ... Five (5) years of management and supervisory experience within the required experience timeframe

Penetration Tester

Arlington, VA · On-site

$86K - $138K/yr

Minimum of 2 years with penetration testing experience. * Possess one of the following ... NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process. * Security ...

Minimum of 2 years with penetration testing experience. * Possess one of the following ... NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process. * Security ...

Minimum of 2 years with penetration testing experience. * Possess one of the following ... NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process. * Security ...

next page

Showing results 1-20

People also search for

Penetration Testing Manager information

See salary details

$57K

$133K

$186K

How much do penetration testing manager jobs pay per year?

As of Jun 5, 2026, the average yearly pay for penetration testing manager in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Penetration Testing Manager, and why are they important?

To thrive as a Penetration Testing Manager, you need deep expertise in cybersecurity, vulnerability assessment, and penetration testing methodologies, typically supported by a relevant degree and certifications like OSCP or CISSP. Familiarity with tools such as Metasploit, Burp Suite, and SIEM systems is essential for effectively managing testing operations. Strong leadership, communication, and project management skills help in guiding teams and translating technical findings for stakeholders. These capabilities are crucial to ensure robust security postures, clear risk communication, and successful management of security testing initiatives.

What does a Penetration Testing Manager do?

A Penetration Testing Manager oversees teams that simulate cyberattacks on an organization's systems, networks, and applications to identify vulnerabilities and assess security risks. They are responsible for planning, coordinating, and ensuring the quality of penetration tests, as well as communicating findings to stakeholders and recommending remediation strategies. Additionally, they often develop testing methodologies, manage team performance, and ensure compliance with industry standards and regulations.

What are some common challenges faced by Penetration Testing Managers when leading a security assessment team?

Penetration Testing Managers often face the challenge of balancing technical depth with project management responsibilities. Coordinating multiple engagements, ensuring consistent testing methodologies, and managing client expectations can be demanding. Additionally, staying updated with evolving threat landscapes and ensuring the team has the necessary skills and certifications are ongoing concerns. Effective communication with both technical staff and non-technical stakeholders is crucial for translating findings into actionable recommendations.

What is the difference between Penetration Testing Manager vs Penetration Tester?

AspectPenetration Testing ManagerPenetration Tester
CertificationsOSCP, CISSP, PMPOSCP, CEH, GPEN
Work EnvironmentOversees teams, manages projects, strategic planningConducts security assessments, performs testing, technical execution
Employer & Industry UsageSecurity firms, large corporations, government agenciesSecurity teams, consulting firms, internal security departments

The main difference is that a Penetration Testing Manager focuses on managing teams, planning projects, and strategic oversight, while a Penetration Tester is hands-on, performing security assessments and testing systems. Both roles require relevant certifications and are integral to cybersecurity, but they differ in responsibilities and scope.

More about Penetration Testing Manager jobs
What cities are hiring for Penetration Testing Manager jobs? Cities with the most Penetration Testing Manager job openings:
What are the most commonly searched types of Penetration Testing jobs? The most popular types of Penetration Testing jobs are:
What states have the most Penetration Testing Manager jobs? States with the most job openings for Penetration Testing Manager jobs include:

Penetration Testing Lead

kgs

Washington, DC

Other

Medical, Dental, Vision, Retirement, PTO

Posted 15 days ago


Job description

Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a Penetration Testing Lead to support KITS and our government customer in Washington, DC. This position is for a Future New Business Opportunity.   
The customer may need support as needed at other locations: Warrenton, VA, Atlantic City, NJ, Melbourne, FL, Oklahoma, OK and Leesburg, VA. 
We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.

We are seeking an experienced Penetration Testing Lead to conduct advanced penetration testing activities, simulate cyberattacks, and evaluate the security posture of systems, networks, and applications. The Penetration Testing Lead will analyze vulnerabilities, identify gaps in IT security policies and configurations, and deliver actionable recommendations to reduce organizational cyber risk. This role requires a highly technical leader with demonstrated experience in offensive and defensive cybersecurity operations and penetration testing methodologies.

Essential Functions, Responsibilities & Duties may include, but are not limited to:

  • Perform penetration testing and vulnerability assessments of systems, networks, and applications.
  • Provide detailed analysis of discovered vulnerabilities, gaps, and risks, including assessment of patching and mitigation strategies.
  • Act as an ethical attacker (red team) to simulate cyber intrusions, or as defensive cybersecurity personnel (blue team) to strengthen system resilience.
  • Develop penetration testing Rules of Engagement (ROE), test plans, and reports.
  • Execute tests in alignment with specifications, requirements, and cybersecurity guidance.
  • Provide technical expertise on penetration testing tools, cyber ranges, and simulation environments.
  • Recommend remediation actions to lower overall risk exposure.
  • Lead, supervise, and coordinate penetration testing teams and activities.

Required Qualifications:

  • Bachelor’s degree in Cyber Security, Computer Science, Information Technology, Engineering, Mathematics, or Physics from an accredited institution.
  • Eight (8) years of experience performing penetration testing or related responsibilities described in this position.
  • At least two (2) years of relevant experience must be recent (performed within the last three years).
  • Five (5) years of management and supervisory experience within the required experience timeframe
  • Two (2) of those five (5) years must have been in a lead role.
  • At least one (1) of the following Red Teaming or Blue Teaming certifications:

Red Teaming Certifications:

  • Offensive Security Certified Professional (OSCP)
  • Offensive Security Certified Expert (OSCE)
  • Offensive Security Wireless Professional (OSWP)
  • Offensive Security Web Expert (OSWE)
  • Certified Ethical Hacker (CEH)
  • EC Council Certified Security Analyst (ECSA)
  • CEH Practical
  • ECSA Practical
  • Licensed Penetration Tester (LPT) Master
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Penetration Tester (GPEN)
  • GIAC Web Application Penetration Tester (GWAPT)
  • GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)
  • GIAC Assessing and Auditing Wireless Networks (GAWN)

Blue Teaming Certifications:

  • Certified Network Defender (CND)
  • Certified Network Defense Architect (CNDA)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Intrusion Analyst (GCIA)
  • GIAC Defending Advanced Threats (GDAT)
  • GIAC Defensible Security Architecture (GDSA)
  • GIAC Certified Enterprise Defender (GCED)
  • GIAC Certified Forensic Analyst (GCFA)

Preferred Qualifications:

  • Experience supporting federal agencies or regulated cybersecurity environments.
  • Knowledge of NIST security controls, RMF, cyber ranges, and penetration testing methodologies.
  • Strong communication, reporting, and documentation skills.

Our Equal Employment Opportunity Policy
The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.

The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e-mail at accommodations@koniag-gs.com or by calling 703-488-9377 to request accommodations.
Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com.
Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352