1

Penetration Testing Manager Jobs in Colorado (NOW HIRING)

Security Engineering Manager

Denver, CO · On-site

$155K - $180K/yr

Own and manage third-party penetration testing, including vendor coordination, scope definition, and remediation tracking * Develop and deliver secure coding training and guidance to engineering ...

Security Engineering Manager

Denver, CO · On-site

$155K - $180K/yr

Own and manage third-party penetration testing, including vendor coordination, scope definition, and remediation tracking * Develop and deliver secure coding training and guidance to engineering ...

Senior Manual Ethical Hacker

Denver, CO · On-site

$102K - $132K/yr

Experience with vulnerability assessment tools and penetration testing techniques. * Solid ... Issue Management * Presentation Skills * Prioritization This job will be open and accepting ...

Experience with vulnerability assessment tools and penetration testing techniques * Solid ... Test Engineering * Controls Management * Information Systems Management * Issue Management

Cyber Warfare Engineer

Ellicott, CO · Hybrid

$86K - $198K/yr

... penetration testing or red or purple team operations * 5+ years of experience using risk frameworks, including NIST Risk Management Framework, MITRE ATT&CK or D3FEND, or Diamond Model * 3+ years of ...

... penetration testing to identify vulnerabilities. Define, maintain, and enforce secure coding standards, patterns, and best practices. Integrate and manage security tooling within CI/CD pipelines ...

... Management (IAM) frameworks * Zero Trust Architecture and network segmentation controls * Cyber Threat Intelligence (CTI) frameworks * Vulnerability assessment and penetration testing tools Visa ...

... Penetration Testing Auditor, Governance, Risk, and Compliance (GRC) Specialist, IT Risk Manager, Threat Assessment Analyst, Systems Compliance Auditor, Cyber Risk Analyst, etc. DEGREE (Level Desired ...

Showing results 21-40

Penetration Testing Manager information

See Colorado salary details

$59.9K

$139.8K

$195.6K

How much do penetration testing manager jobs pay per year?

As of Aug 10, 2026, the average yearly pay for penetration testing manager in Colorado is $139,812.00, according to ZipRecruiter salary data. Most workers in this role earn between $116,700.00 and $157,700.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a penetration testing manager, and why are they important?

To thrive as a Penetration Testing Manager, you need deep expertise in cybersecurity, vulnerability assessment, and penetration testing methodologies, typically supported by a relevant degree and certifications like OSCP or CISSP. Familiarity with tools such as Metasploit, Burp Suite, and SIEM systems is essential for effectively managing testing operations. Strong leadership, communication, and project management skills help in guiding teams and translating technical findings for stakeholders. These capabilities are crucial to ensure robust security postures, clear risk communication, and successful management of security testing initiatives.

What does a penetration testing manager do?

A Penetration Testing Manager oversees teams that simulate cyberattacks on an organization's systems, networks, and applications to identify vulnerabilities and assess security risks. They are responsible for planning, coordinating, and ensuring the quality of penetration tests, as well as communicating findings to stakeholders and recommending remediation strategies. Additionally, they often develop testing methodologies, manage team performance, and ensure compliance with industry standards and regulations.

What is a penetration testing manager?

A penetration testing manager oversees security teams that conduct simulated cyberattacks to identify vulnerabilities in computer systems and networks. They coordinate testing activities, review findings, and ensure remediation, often requiring knowledge of security tools, methodologies, and relevant certifications like OSCP or CISSP.

What are some common challenges faced by a penetration testing manager when leading a security assessment team?

Penetration Testing Managers often face the challenge of balancing technical depth with project management responsibilities. Coordinating multiple engagements, ensuring consistent testing methodologies, and managing client expectations can be demanding. Additionally, staying updated with evolving threat landscapes and ensuring the team has the necessary skills and certifications are ongoing concerns. Effective communication with both technical staff and non-technical stakeholders is crucial for translating findings into actionable recommendations.

What is the difference between Penetration Testing Manager vs Penetration Tester?

AspectPenetration Testing ManagerPenetration Tester
CertificationsOSCP, CISSP, PMPOSCP, CEH, GPEN
Work EnvironmentOversees teams, manages projects, strategic planningConducts security assessments, performs testing, technical execution
Employer & Industry UsageSecurity firms, large corporations, government agenciesSecurity teams, consulting firms, internal security departments

The main difference is that a Penetration Testing Manager focuses on managing teams, planning projects, and strategic oversight, while a Penetration Tester is hands-on, performing security assessments and testing systems. Both roles require relevant certifications and are integral to cybersecurity, but they differ in responsibilities and scope.

What are the most commonly searched types of Penetration Testing jobs in Colorado? The most popular types of Penetration Testing jobs in Colorado are:
What are popular job titles related to Penetration Testing Manager jobs in Colorado? For Penetration Testing Manager jobs in Colorado, the most frequently searched job titles are:
What cities in Colorado are hiring for Penetration Testing Manager jobs? Cities in Colorado with the most Penetration Testing Manager job openings:
Infographic showing various Penetration Testing Manager job openings in Colorado as of August 2026, with employment types broken down into 70% Full Time, and 30% Part Time. Highlights an 74% In-person, and 26% Hybrid job distribution, with an average salary of $139,812 per year, or $67.2 per hour.

Security Engineering Manager

Chathamfinancial

Denver, CO • On-site

$155K - $180K/yr

Full-time

Medical, Life, Retirement, PTO

Re-posted 13 days ago


Job description

Job Description:

Overview:

We don't simply hire employees. We invest in them. When you work at Chatham, we empower you - offering professional development opportunities to help you grow in your career, no matter if you've been here for five months or 15 years. Chatham has worked hard to create a distinct work environment that values people, teamwork, integrity, and client service. You will have immediate opportunities to partner with talented subject matter experts, work on complex projects, and contribute to the value Chatham delivers every day.

We are seeking a Security Engineering Manager to lead and evolve our security engineering function within a growing financial risk and advisory SaaS business. This role is ideal for an engineering-first leader who thrives in a hands-on environment and is motivated to build, scale, and mature security capabilities in a cloud-native platform.

You will lead a small but growing team, while remaining deeply technical-designing and implementing security controls across cloud infrastructure, applications, and CI/CD pipelines. You will play a critical role in strengthening our security posture, ensuring compliance with SOC 2 requirements, and enabling engineering teams to build securely at scale.

What You'll Do

  • Lead and grow the Security Engineering function, starting as a player-coach and scaling the team over time

  • Design, build, and implement security controls across Azure-based cloud infrastructure, containerized environments, and .NET applications

  • Establish and mature cloud security and application security practices, including secure architecture patterns and threat modeling

  • Secure the software development lifecycle (SDLC) by integrating security into CI/CD pipelines and developer workflows

  • Own and manage third-party penetration testing, including vendor coordination, scope definition, and remediation tracking

  • Develop and deliver secure coding training and guidance to engineering teams, driving adoption of best practices

  • Build and maintain auditable security controls aligned with SOC 2 requirements,partner closely with internal stakeholders and external auditors

  • Collaborate cross-functionally with Engineering, DevOps, and Compliance to embed security into the development and delivery process

  • Evaluate, implement, and operate security tooling, with a focus on automation and scalability (shifting from building to optimizing over time)

  • Implement and manage cloud security scanning and posture management, including continuous monitoring for misconfigurations, vulnerabilities, and drift across Azure environments

  • Identify and address emerging risks related to AI/LLM usage, including vulnerability management, secure integration practices, and guidance for engineering teams adopting AI capabilities

  • Remain hands-on-able to dive into technical challenges, review architecture, and contribute directly when needed

What Success Looks Like (First 12 Months)

  • Strengthened and matured cloud and application security practices across the organization

  • Implemented robust policy scanningand vulnerability management practices

  • Implemented effective security controls within CI/CD pipelines and development workflows

  • Established and maintained robust, auditable controls aligned to SOC 2 requirements

What You Bring

  • 7+ years of experience in security engineering, with a strong foundation in software or cloud engineering

  • Proven experience leading or mentoring engineers, with a desire to build and scale a team

  • Deep hands-on expertise in cloud security (Azure required; AWS familiarity preferred)

  • Experience securing modern application stacks, including .NET applications and containerized environments

  • Strong understanding of application security principles, including secure coding practices, threat modeling, and common vulnerabilities (OWASP Top 10)

  • Experience integrating security into CI/CD pipelines and developer tooling

  • Familiarity with SOC 2 controls, including designing and implementing auditable technical controls and working with auditors

  • Experience managing or working with third-party penetration testing vendors

  • Strong problem-solving skills with the ability to operate both strategically and tactically

  • Experience with security tooling such as SAST, DAST, container scanning, and cloud security posture management (CSPM)

  • Excellent collaboration and communication skills, particularly in working with engineering teams

For Denver based candidates, the compensation range for the position is expected to be between $155,000 and $180,000 annually. Total compensation, including base pay, discretionary individual bonus and company bonus, may be higher than range listed, depending on applicant's skills, qualifications, and experience. Benefits include health insurance, life and disability insurance, 401k, EAP, paid holidays and paid time off.

About Chatham Financial:

Chatham Financial is the leading independent capital markets advisor, delivering an integrated blend of expert advice and powerful technology to help you reduce risk and seize opportunity. With decades of capital markets strategy, execution, monitoring, and performance expertise, we serve as an unwavering advocate for your best interests and your innovation partner. Our technology platform unifies data across assets, debt, and derivatives, giving you unmatched agility, transparency, and insight.

It's clear ahead.

Our commitment is to carry that light forward in every partnership, every solution, and every market we serve.

We help guide the way-giving clients the insight and momentum to move forward with confidence, no matter what lies ahead.