Cyber Security Penetration Testing Lead

Posted Sep 28

This is a fully remote position, open to applicants in Hungary.

📋 Description

• Oversee and manage enterprise penetration testing, security validation, and associated activities from the onboarding phase through to remediation and closure.

• Lead the processes for vulnerability and exposure management, ensuring findings are tracked until resolution.

• Collaborate with solution owners, engineering teams, Cyber Operations, and remediation teams to expedite risk reduction efforts.

• Organize reviews of security findings, conduct remediation workshops, facilitate risk acceptance discussions, and assess readiness for retesting.

• Monitor and report on remediation progress, risk treatment plans, service metrics, and key performance indicators to both technical and executive stakeholders.

• Handle exception requests, compensating controls, executive approvals, and documentation related to risk.

• Gather and preserve evidence to meet audit, compliance, and risk closure requirements.

• Enhance capabilities in vulnerability management, exposure management, and security validation.

• Assist in strategic cybersecurity initiatives aimed at improving organizational visibility, prioritizing risks, and strengthening security posture.

• Build relationships across technical, operational, and leadership teams, serving as a central coordination point.

• Convert technical findings into impactful business risk discussions.


⛳️ Requirements

• Minimum of 7 years' experience in cybersecurity, vulnerability management, exposure management, security operations, cyber risk management, or similar fields.

• In-depth knowledge of Vulnerability Management (VM), Risk-Based Vulnerability Management (RBVM), exposure management, and remediation governance.

• Proven experience in coordinating penetration tests, security assessments, or other security validation initiatives.

• Competence in evaluating and prioritizing vulnerabilities and security findings based on risk, exploitability, business impact, and threat intelligence.

• Experience collaborating with application owners, infrastructure teams, Cyber Operations, and remediation stakeholders.

• Familiarity with cyber risk management frameworks, governance processes, and methodologies for validating security controls.

• Background in managing remediation programs, tracking corrective actions, facilitating retests, and supporting risk closure processes.

• Strong analytical and problem-solving capabilities.

• Ability to translate technical findings into business risk implications.

• Exceptional written and verbal communication skills.

• Experience in presenting cybersecurity risks, trends, and recommendations to senior stakeholders.

• Experience in large, complex enterprise environments.

• Proven ability to lead cross-functional initiatives and implement process improvements.

• Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field (preferred).

• Experience with exposure management, attack surface management, continuous security validation, or cyber risk quantification platforms.

• Familiarity with security validation tools, vulnerability platforms, and technologies for remediation orchestration.

• Understanding of enterprise risk management, audit, regulatory, and compliance standards.

• Experience in supporting executive reporting, operational metrics, and cybersecurity governance forums.

• Knowledge of cloud security platforms and contemporary application security practices.

• Experience collaborating with vulnerability scanners, penetration testing providers, and security assessment teams.

• Relevant industry certifications such as CISSP, CISM, CRISC, Security+, GSEC, CGRC, or comparable (preferred).

• Experience in supporting cybersecurity transformation initiatives or operational maturity programs.


🏝️ Benefits

• Flexible and supportive work environment.

• Commitment to employee well-being.

• Well-being programs that support financial, mental, physical, and social health.

• Tailored development goals.

• Ongoing feedback opportunities.

• Certifications available with Microsoft, Google, and Amazon.

• Coaching and practical experiences offered.

• Opportunities for cutting-edge learning.

• Tools for career pathing.

• A flexible, hybrid-friendly culture.

People also viewed

Integrity3601 day ago

Security Engineer

UA flagUkraine OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Rackspace Technology1 day ago

Security Engineer IV

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$119.6k – $175.4k/year
ApplyView job
Efficient Computer1 day ago

Director of Information Security

US flagCalifornia, +2 more statesFull-timeCybersecurity / Security Engineer$180k – $230k/year
ApplyView job
Presidio1 day ago

Senior Director, Cybersecurity Advisory Services

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Presidio1 day ago

Senior Director, Cybersecurity Advisory Services

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
XBOX1 day ago

Senior Security Engineer

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$102.8k – $190.2k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers