Application Penetration Testing Manager
Core
Lead complex application penetration testing engagements, shape service offerings, and develop people within the Network Information Security team.
Role type
Senior IC application penetration testing manager
Builds
Application security assessments for web, mobile, API, and cloud-native environments
Domain
Cybersecurity / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application penetration testing, business logic abuse, multi-step workflow exploitation, chained exploits, manual testing techniques, stakeholder communication, team leadership, risk management, technical report review, secure SDLC integration
Preferred skills
AI-assisted security testing, microservices testing, container/serverless testing, SAST/DAST/IAST tooling, cloud platform expertise
Technologies
Burp Suite Pro, ZAP, REST, SOAP, GraphQL, IIS, Apache, Nginx, Java, .NET, Node.js, AWS, Azure, GCP
Responsibilities
Lead multiple concurrent application penetration testing engagements from planning to reporting; Scope and design testing approaches for complex applications; Review and challenge technical findings produced by the team; Coach and mentor junior and senior penetration testers; Translate technical results into business-relevant impact for senior stakeholders
Seniority
Manager, hands-on leadership