
Cyber Manager – AI-Enabled Vulnerability Management, Consulting
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in California.
• Identify potential threats and vulnerabilities within enterprise environments.
• Lead technical teams in conducting penetration testing, red team, and purple team exercises.
• Apply security analysis to enhance and inform other areas of cybersecurity.
• Oversee the delivery of offensive security engagements.
• Collaborate with both security and business teams.
• Provide clear, concise, and actionable reports to support both technical and executive audiences.
• Mentor both senior and junior analysts.
• Foster a collaborative and trust-based team culture.
• Enhance the skillsets and capabilities of the team.
• Monitor emerging trends and technologies in cyber threats.
• Represent EY and the team at industry groups, conferences, and events.
• Plan and execute various types of penetration testing including internet, intranet, wireless, web applications, cloud, social engineering, and physical tests.
• Develop and implement red team scenarios.
• Analyze results from penetration testing and report on findings, exploitation procedures, risks, and recommendations.
• Manage projects utilizing established methodologies, tools, and rules of engagement.
• Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Information Technology, Engineering, or a related major with 6+ years of relevant work experience, or a Master’s degree with approximately 3–4+ years of relevant work experience.
• Proven experience in penetration testing, including internet, intranet, web application, wireless, social engineering, Red Team, and Purple Team assessments.
• Experience in managing and executing penetration testing projects.
• Proficiency in manual attack and penetration testing.
• Experience in establishing and managing Red Team or application penetration testing programs.
• Scripting/programming skills in languages such as Python, PowerShell, Java, or Perl.
• Familiarity with current exploits and security trends.
• Experience in leading technical teams for remote and on-site penetration testing within defined rules of engagement.
• Ability to oversee multiple projects simultaneously while meeting strict deadlines.
• Familiarity with stealth network penetration testing.
• Hold at least two of the following certifications: OSCP, OSWP, GPEN, GWAPT, OSCE, OSEE, GXPN, CISSP, CISM, PMP, or CREST Certified Simulated Attack Manager.
• A valid driver’s license in the U.S.
• Willingness and ability to travel both domestically and internationally.
• Knowledge of major operating systems such as Windows, Linux, and Unix.
• Familiarity with cloud vulnerability remediation and security trends.
• In-depth understanding of the MITRE ATT&CK framework.
• Comprehensive understanding of TCP/IP network protocols.
• Extensive knowledge and experience with Active Directory attack techniques.
• Understanding of network security and common attack vectors.
• Familiarity with web application vulnerabilities and the OWASP Top 10.
• Experience in developing harnesses and agentic workflows for offensive security (ideally).
• Medical and dental coverage.
• Pension and 401(k) plans.
• A wide variety of paid time off options.
• Opportunities for professional growth.
• Personal fulfillment.
• An inclusive culture.
RecruityTalent
Virtual Identity
Grupo Odilon Santos
Egnyte
Get handpicked remote jobs straight to your inbox weekly.