KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice. Responsibilities: * Provide strategic direction for application ...
Penetration Testing Lead Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a ... Five (5) years of management and supervisory experience within the required experience timeframe
Penetration Testing Lead Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a ... Five (5) years of management and supervisory experience within the required experience timeframe
Penetration Testing Lead Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a ... Five (5) years of management and supervisory experience within the required experience timeframe
Penetration Testing Lead Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a ... Five (5) years of management and supervisory experience within the required experience timeframe
Web Application Penetration Testing Ampcus Inc. is a certified global provider of a broad range of ... Evaluate authentication mechanisms, session management, access controls, and data handling ...
Web Application Penetration Testing Ampcus Inc. is a certified global provider of a broad range of ... Evaluate authentication mechanisms, session management, access controls, and data handling ...
Penetration Testing Lead
Leesburg, VA · On-site
Penetration Testing Lead Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a ... Five (5) years of management and supervisory experience within the required experience timeframe
Penetration Testing Lead
Leesburg, VA · On-site
Penetration Testing Lead Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a ... Five (5) years of management and supervisory experience within the required experience timeframe
Penetration Testing Lead
Washington, DC · On-site
Penetration Testing Lead Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a ... Five (5) years of management and supervisory experience within the required experience timeframe
Penetration Testing Lead
Washington, DC · On-site
Penetration Testing Lead Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a ... Five (5) years of management and supervisory experience within the required experience timeframe
Under general supervision, perform penetration testing of applications, systems, and network ... information management environment. "Technology moving at the speed of thought" embodies these ...
Under general supervision, perform penetration testing of applications, systems, and network ... information management environment. "Technology moving at the speed of thought" embodies these ...
Penetration Tester
Chantilly, VA · On-site
$90K - $130K/yr
CDT is looking for a Penetration Tester to This will be supporting a government customer onsite in ... management, system maintenance, integration testing, Information system engineering. * System ...
Penetration Tester
Chantilly, VA · On-site
$90K - $130K/yr
CDT is looking for a Penetration Tester to This will be supporting a government customer onsite in ... management, system maintenance, integration testing, Information system engineering. * System ...
Penetration Tester
Reston, VA · On-site
Under general supervision, perform penetration testing of applications, systems, and network ... information management environment. "Technology moving at the speed of thought" embodies these ...
Penetration Tester
Reston, VA · On-site
Under general supervision, perform penetration testing of applications, systems, and network ... information management environment. "Technology moving at the speed of thought" embodies these ...
Penetration Tester
Chantilly, VA · On-site
$90K - $130K/yr
CDT is lookingfora Penetration Tester to This will be supporting a government customer onsite in ... management, system maintenance, integration testing, Information system engineering. * System ...
Penetration Tester
Chantilly, VA · On-site
$90K - $130K/yr
CDT is lookingfora Penetration Tester to This will be supporting a government customer onsite in ... management, system maintenance, integration testing, Information system engineering. * System ...
Penetration Tester
$90K - $130K/yr
CDT is looking for a Penetration Tester to This will be supporting a government customer onsite in ... management, system maintenance, integration testing, Information system engineering. * System ...
Quick apply
Penetration Tester
$90K - $130K/yr
CDT is looking for a Penetration Tester to This will be supporting a government customer onsite in ... management, system maintenance, integration testing, Information system engineering. * System ...
Penetration Tester
Arlington, VA · On-site
Minimum of 2 years with penetration testing experience. * Possess one of the following ... NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process. * Security ...
Penetration Tester
Arlington, VA · On-site
Minimum of 2 years with penetration testing experience. * Possess one of the following ... NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process. * Security ...
Manage, hire, and develop specialized application security penetration testers across platforms. * Develop and guide a culture of talent development to meet business objectives and strategy
Manage, hire, and develop specialized application security penetration testers across platforms. * Develop and guide a culture of talent development to meet business objectives and strategy
Penetration Tester
$86K - $138K/yr
Minimum of 2 years with penetration testing experience. * Possess one of the following ... NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process. * Security ...
Penetration Tester
$86K - $138K/yr
Minimum of 2 years with penetration testing experience. * Possess one of the following ... NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process. * Security ...
Penetration Tester
$95K - $112K/yr
Minimum of 2 years with penetration testing experience. * Possess one of the following ... NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process. * Security ...
Quick apply
Penetration Tester
$95K - $112K/yr
Minimum of 2 years with penetration testing experience. * Possess one of the following ... NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process. * Security ...
Penetration Testing Manager information
See salary details
$57K - $68.7K
1% of jobs
$68.7K - $80.5K
4% of jobs
$80.5K - $92.2K
5% of jobs
$92.2K - $103.9K
9% of jobs
$110.4K is the 25th percentile. Wages below this are outliers.
$103.9K - $115.6K
11% of jobs
$115.6K - $127.4K
10% of jobs
The median wage is $131.9K / yr.
$127.4K - $139.1K
28% of jobs
$145.9K is the 75th percentile. Wages above this are outliers.
$139.1K - $150.8K
14% of jobs
$150.8K - $162.5K
11% of jobs
$162.5K - $174.3K
4% of jobs
$174.3K - $186K
4% of jobs
$57K
$133K
$186K
How much do penetration testing manager jobs pay per year?
What are the key skills and qualifications needed to thrive as a Penetration Testing Manager, and why are they important?
What does a Penetration Testing Manager do?
What are some common challenges faced by Penetration Testing Managers when leading a security assessment team?
What is the difference between Penetration Testing Manager vs Penetration Tester?
| Aspect | Penetration Testing Manager | Penetration Tester |
|---|---|---|
| Certifications | OSCP, CISSP, PMP | OSCP, CEH, GPEN |
| Work Environment | Oversees teams, manages projects, strategic planning | Conducts security assessments, performs testing, technical execution |
| Employer & Industry Usage | Security firms, large corporations, government agencies | Security teams, consulting firms, internal security departments |
The main difference is that a Penetration Testing Manager focuses on managing teams, planning projects, and strategic oversight, while a Penetration Tester is hands-on, performing security assessments and testing systems. Both roles require relevant certifications and are integral to cybersecurity, but they differ in responsibilities and scope.

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 3 days ago
Job description
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory.
KPMG is currently seeking a Lead Specialist, MAST Application Penetration Testing Manager to join our Managed Services practice.
- Provide strategic direction for application penetration testing teams to develop growth of the services solution and manage client engagements; demonstrate exceptional technical capability in application penetration testing from a manual perspective
- Lead client engagements and provide technical leadership as well as advice to team members on application penetration testing engagements
- Promote and enable thought leadership, as well as growth and learning amongst team members
- Engage with non-technical audiences around testing processes and techniques, as well as report read-outs; guide technical audiences on remediation options and assist them in weighing those options
- Partner with the Cyber teams to develop new testing techniques, automation for testing and marketing collateral to support the practice, mentor onshore and offshore team members on tools and techniques in performing testing; operate as a mentor and people leader to foster career growth amongst team members
- Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment
- Minimum five years of recent experience working with using application penetration tools to perform security tests such as AppScan, Netsparker, Acunetix, ZAP, Veracode, BurpSuite or equivalent; minimum five years of recent experience working with technical and non-technical audiences in reporting results and leading remediation conversations; minimum five years of recent experience leading application security testing teams in a consulting environment
- Bachelor's degree from an accredited college/university or equivalent industry experience
- Possess one or more major ethical hacking certifications not required but preferred; Certified Information Systems Security Professional (CISSP), GIAC Web Application Penetration Tester (GWAPT), Council of Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA)
- Experience in one or more areas such as mobile application testing, code development, manual code analysis and/or static analysis using Veracode, Fortify, SonarQube, Checkmarx, Contrast or equivalent preferred
- Ability to travel as required
- Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)
KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state, or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please.
KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them.
Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.