What are the responsibilities and job description for the Director, Penetration Testing position at Open Systems Technologies?
A financial firm is looking for a Director, Penetration Testing to join their team in Iselin, NJ.
Compensation: $200-210K
Location - Iselin, NJ (Hybrid, onsite 2 days per week)
Responsibilities:
- Own the end-to-end delivery of penetration testing across the organization's technology estates.
- Establish and maintain penetration testing standards, methodologies and quality benchmarks.
- Define testing scope, priorities and coverage aligned to system criticality and risk.
- Track remediation progress and validate closure of findings.
- Own the selection, implementation and management of penetration test tooling and platforms.
- Define internal testing methodologies, playbooks, tooling and reporting standards.
- Conduct hands-on penetration testing across applications, APIs, infrastructure and cloud environments.
- Own third party penetration test engagements, including rules of engagement, vendor selection and onboarding.
- Track and report on third party vendor performance and outcomes.
- Define and maintain KPIs/KRIs to measure penetration testing effectiveness, including severity and trend analysis, time to remediation and recurring control weaknesses.
- Deliver structured reporting for senior stakeholders.
- Line management of the Penetration Test Coordinator.
Qualifications:
- Extensive experience in cybersecurity with a minimum of 5 years conducting hands on penetration testing.
- Ability to scope and execute end-to-end penetration testing from planning through to exploitation and reporting.
- Proven ability to lead, design, build and operate a pen testing capability or program.
- Experience managing third party penetration test providers and assuring quality of delivery.
- Experience working in structured risk-driven environments (financial sector or other highly regulated industries preferred).
- Excellent communication skills for reporting and stakeholder engagement.
- Experience leading or mentoring others and ability to scale a function over time.
- Certifications in offensive security and pen testing (e.g. OSCP, GIAC).
- Bachelor's or Master's degree in Cyber Security, Information Technology, or a related field.
Salary : $200,000 - $210,000