Manager, Security Consulting Services
hace 2 días
Whether you're an experienced professional or just getting started, your contributions matter at Fortra. If you're passionate about tackling meaningful challenges alongside talented team members committed to helping each other succeed, all while having lots of fun, we want to hear from you. We offer competitive benefits and salaries, personal and professional development opportunities, flexibility, and much more
At Fortra, we're breaking the attack chain. Ready to join us?
The Manager, Security Consulting Services serves as a leader of a team of highly skilled and experienced penetration testers. The right candidate has many of the same skills and can act as a trusted advisor with deep expertise across multiple offensive security disciplines for our internal teams and our customers. The Manager, Security Consulting Services role is focused on managing delivery of our security consulting services and leading the team which delivers them, while providing strategic direction for research, training, tooling and automation efforts. With The Manager will plan and ensure execution of advanced security assessments, simulating real-world attack scenarios to identify potential risks and help our clients strengthen their security posture. They should possess a profound understanding of computer science and networking, along with an analytical and offensive mindset when approaching networks, applications, and operating systems in order to lead the team with their expertise. The ideal candidate thrives when working to develop and grow teams, and thrives technically in unfamiliar environments, rapidly adapting to new technologies and tactics, and creatively approaching complex problems from an attacker's perspective. They will demonstrate deep knowledge of penetration testing methodologies, offensive security tooling, threat actor TTPs, and be able to clearly communicate technical findings and business risks to both technical teams and executive stakeholders. Additional responsibilities may include assessment of tools and resources for the team, doing hands-on pentesting work in training efforts and in cases of emergent customer needs.
WHAT YOU'LL DO
- Team Leadership: Manage an existing team of security consultants, helping to drive direction of the team's research, overseeing testing efforts, and ensuring the quality of services delivered to our customers.
- Design, Refine and Manage Team Methodology: Help design, refine, and manage pentesting methodologies across multiple testing disciplines, and train the team on these methodologies.
- Sales Partnership: Partner closely with our Sales team in order to provide guidance on services and packages available, answer questions, and interface with potential customers.
- Manage Project and Team Knowledge: Document critical project information and internal knowledge to support ongoing testing efforts by the team, as well as continued growth for team members.
- Internal Training: Develop and execute training plans for current and future team members, creating an archive of training materials to propel team success; this includes creating business cases for specific training purchases, leveraging other experts within Fortra, and delivering self-created and taught trainings.
- Project & Report Reviews: Review and evaluate project results for quality and effectiveness of pentesting efforts by the team; Research, write, and review reports for delivery to customers.
- Automation & Tooling: Automate common testing techniques and create tooling to improve efficiency for the team.
- Research and Team Direction: Assist in developing the research direction for the Security Consulting Services team and provide
- Background in Pentesting Competencies: Be able to execute on pentesting projects to assist the team, including pentesting efforts in areas such as internal network pentesting, social engineering, red team operations, cloud penetration testing, or other pentesting specialty areas.
- Offensive Tooling Familiarity: Able to use and customize tools such as Cobalt Strike, Outflank, Core Impact, Silver, BloodHound, Burp Suite, develop and utilize custom tooling; and develop custom scripts for post-exploitation and evasion.
- Threat Simulation: Develop realistic threat scenarios based on MITRE ATT&CK, APT tactics, and current breach trends.
- Reporting: Write detailed, high-quality reports outlining technical vulnerabilities and exploitation techniques, severity levels, steps to reproduce, and actionable remediation steps.
- Client Communication: Brief clients on findings and provide strategic guidance on remediation, overall risk reduction, and tactics to increase security posture.
- Methodology Development: Contribute to the advancement of internal testing methodologies, tooling creation and improvements, and red team infrastructure.
- Security Research: Stay current with emerging threats, CVEs, offensive tactics, and evolving cloud security techniques.
- Skill Development: Perform ongoing research, analysis, and testing to enhance individual and team technical capabilities.
- Engagement Scoping: Assist in defining scope, estimating effort, and drafting statements of work (SOWs), including recommending tailored solutions for client needs.
- Mentorship: Coach and mentor less experienced staff, or those less experienced in specific expertise areas, to support professional development and service excellence.
- Content Development: Contribute to creating blog posts, articles, marketing or training materials, and participating in webinars or customer conferences.
QUALIFICATIONS
- Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent experience.
- 3+ years of professional experience in penetration testing and offensive security consulting.
- At least 2 years of experience conducting red team operations.
- At least 2 years of practical experience in cloud penetration testing (AWS, Azure, etc.), including identification and exploitation of misconfigurations and IAM vulnerabilities.
- Generalized penetration testing experience in areas such as infrastructure penetration testing, and manual web, mobile, or API penetration testing.
- Ability to simulate real-world adversarial techniques and develop creative attack chains in controlled environments.
- Strong understanding of network protocols, Active Directory, privilege escalation techniques
- Demonstrated experience with C2 frameworks (Cobalt Strike, Silver, etc.)
- Proficiency in scripting or coding languages (Python, PowerShell, Bash, etc.)
PREFERRED QUALIFICATIONS
- Experience leading technical projects, mentoring peers, or contributing to the development of team best practices.
- Familiarity with application development in C, ASP, C#, Objective-C, Java, or .NET
- Prior experience with Cloud Security or Development Security Operations a plus
- Experience with mentoring and training within teams and partnering with Marketing teams to create valuable content for customers and prospects.
KEY COMPETENCIES
- Security and Technical Leadership: Expert-level security and technical knowledge and the ability to mentor and guide other team members through complex technical issues.
- Customer Focus: A strong commitment to understanding customer needs and delivering timely, accurate, and comprehensive testing and reporting results.
- Collaboration: Effective communication and collaboration within the team and partnering with cross-functional teams to solve for security consulting team infrastructure and tooling needs.
- Adaptability: Ability to handle a range of complex technical challenges during testing and tooling development.
- Analytical Thinking: Skilled in analyzing complex technical scenarios and determining potential opportunities.
- Proactive Problem Solving: Ability to identify critical project risks, drive preventive solutions, and maintain customer satisfaction through unanticipated testing challenges.
Visit our website to learn more about why employees choose to work for Fortra. Remember to connect with us on LinkedIn.
As an EEO/Affirmative Action Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, veteran or disability status.
-
Manager, Security Consulting Services
hace 3 semanas
, , Argentina Fortra A tiempo completoOverview Whether you’re an experienced professional or just getting started, your contributions matter at Fortra. If you’re passionate about tackling meaningful challenges alongside talented team members committed to helping each other succeed, all while having lots of fun, we want to hear from you. We offer competitive benefits and salaries, personal...
-
Growth Business Consulting
hace 4 semanas
, , Argentina Havas Argentina A tiempo completoOverview Growth Business Consulting role at Havas Argentina. Responsibilities Support the delivery of Mx brief for a client Support Business Consulting Manager to ensure the respect of guidelines as well as the alignment in the expected deliveries and deadlines across teams Connect with the Intelligence and Media Development teams to provide to client...
-
Senior Release
hace 3 semanas
, Santa Cruz, Argentina Halliburton Energy Services A tiempo completoA major energy services company in Santa Cruz is seeking an experienced security professional to manage compliance, contribute to security strategies, and support incident response activities. The ideal candidate has over 8 years of experience, strong knowledge of compliance and security strategies, and familiarity with cloud technologies. This position...
-
Project Manager Contract Manager Level IV
hace 1 semana
, Río Negro, Argentina Federal IT Consulting A tiempo completoSan Antonio TX - San Antonio, TX 78228 Overview Position Type: Full Time Description FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to...
-
Security Operations Manager
hace 7 días
, , Argentina Bitso A tiempo completoWorking At Bitso We are a diverse team that takes pride in understanding the perspectives of others. We fully embrace working remotely and we are eager to act, improve and accelerate progress inside and outside of our organization. To drive revolutionary changes in society and make crypto useful, we delight our customers with world-class products, deep care,...
-
Endpoint Engineer — DoD Security
hace 1 semana
, Río Negro, Argentina Federal IT Consulting A tiempo completoA technology consulting firm is seeking an End Point Engineer to work in a DoD hybrid IT environment in San Antonio, TX. The role involves responsibilities like designing endpoint management frameworks and ensuring compliance with security standards. Candidates must have a relevant degree, experience with Microsoft technologies, and an active Secret DoD...
-
MS 365 Consolidation Architect: Hybrid Identity
hace 1 semana
, , Argentina Miratech A tiempo completoA global IT services firm is seeking a highly experienced Senior Microsoft 365 Strategy & Consolidation Architect for a fixed-term consulting engagement in Argentina. The role involves evaluating the consolidation of two complex Microsoft 365 tenants, focusing on hybrid identity, security compliance, and licensing management. Desired candidates should have...
-
Senior Security Engineer
hace 1 semana
, , Argentina EPAM Systems A tiempo completo2 days ago Be among the first 25 applicants We are seeking a highly skilled Senior Security Engineer to lead and strengthen the security posture of our AWS and GCP environments. You will play a pivotal role in designing and implementing robust security solutions for cloud-based infrastructure. This position offers the opportunity to work with advanced...
-
Lead Security Engineer
hace 1 semana
, , Argentina EPAM Systems A tiempo completoWe are looking for an accomplished Lead Security Engineer to elevate and safeguard the security framework of our AWS and GCP platforms. In this role, you will architect and deliver resilient security strategies for cloud infrastructure. You’ll have the chance to work with state‑of‑the‑art tools and partner with diverse teams to advance our security...
-
Chief Security Engineer
hace 1 semana
, , Argentina EPAM Systems A tiempo completoWe are searching for a seasoned Chief Security Engineer to reinforce and enhance the protection of our AWS and GCP infrastructures. This position involves designing and implementing robust security frameworks for cloud-based systems. You will engage with cutting‑edge technologies and collaborate with multidisciplinary teams to drive forward our security...