Delinea

Senior Manager, Offensive Security

Delinea$135K — $160K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field.
  • 7+ years of hands-on experience in web application, API, and network penetration testing.
  • 3+ years of experience in leading offensive security teams and mentoring staff.
  • Familiarity with penetration testing frameworks like MITRE ATT&CK and OWASP.
  • Proficient in scripting languages such as Python, Go, or PowerShell for security tasks.

Responsibilities

  • Define and enhance Delinea's Offensive Security program and procedures.
  • Lead penetration testing efforts, managing all aspects from planning to reporting.
  • Conduct real-world assessments using adversarial techniques to evaluate security controls.
  • Oversee Product Security testing environments and integrate AI models for threat evaluation.
  • Develop detailed reports and presentations tailored for both technical and executive stakeholders.
  • Act as the penetration testing expert, guiding teams and stakeholders on best practices.
  • Ensure compliance with industry standards like SOC 2, ISO 27001, and FedRAMP.

Benefits

  • Fully remote work environment.
  • Collaborative team culture across multiple departments.
  • Opportunity to influence and mature an Offensive Security program.
  • Access to cutting-edge tools and technologies in cybersecurity.
  • Professional development opportunities and mentorship.
Full Job Description
Delinea's Cybersecurity organization is seeking an experienced Senior Manager, Offensive Security to mature Delinea's in-house Offensive Security program and lead its operation. The ideal candidate will be highly collaborative, working alongside Product Development, DevOps, IT, and SecOps teams to shape the future of Penetration Testing and Red Teaming at Delinea and continually test the security of our products and the enterprise. The Senior Manager, Offensive Security will embrace the opportunity to work across diverse platforms with a variety of tools and will play a key role as we continually improve our capabilities over time. They'll work with an established team of talented and dedicated teammates to achieve our security objectives. This is a challenging and impactful role with the opportunity to work with both internal and external stakeholders. The candidate must be able to balance the right level of security with business objectives, communicate clearly with technical as well as non-technical audiences, and work to creatively solve complex problems. This role reports to the Sr. Director of Product Security, is based in the US, and is fully remote. What You'll Do: • Lead the effort to define and mature Delinea's Offensive Security function. Provide technical expertise and shape the procedural and programmatic structure of our Penetration Testing and Red Teaming activities. • Lead a team of penetration test and offensive security engineers, setting expectations on performance, goals, and objectives, and providing mentorship and guidance to team members. • Lead internal and external penetration testing engagements from beginning to end, including (where needed) vendor selection, statements of work, budget ownership, planning, kickoff, testing, documentation, reporting, remediation, and follow-up. • Use real-world adversarial TTPs and tooling to test the security controls protecting Delinea's enterprise and product environments by performing red/purple team assessments, including assumed breach tests and social engineering assessments. • Manage the operation of Delinea's Product Security testing environments for use with internal and external resources and develop a framework in that environment for using frontier AI models in the evaluation of product sources and attack paths. • Develop comprehensive and actionable reports and presentations, including end-to-end exploit reproductions and attack chains, to technical and executive audiences. • Act as a subject matter expert on penetration testing methodologies, techniques, and procedures. • Build relationships across organizational boundaries to ensure that identified weaknesses are remediated and lessons learned are captured. • Ensure that the Offensive Security program meets Delinea's compliance and customer commitments, such as SOC 2, ISO 27001, PCI DSS, and FedRAMP, and act as the offensive security point of contact for auditors and assessors. • Communicate effectively with stakeholders at all levels, translating technical findings into actionable insights and recommendations for both technical and non-technical audiences. • Work with Cybersecurity Program Management to define the metrics that measure program effectiveness, including testing coverage, finding severity trends, and time to remediate, and report to executive leadership on a regular cadence. What You'll Bring: • Bachelor's or Master's degree in Computer Science, Cybersecurity, Engineering, or a related technical field. • Minimum 7+ years of demonstrated, hands-on experience with internal and external web application, API, and network penetration testing to include writing and reviewing formal penetration test reports, documenting the test details and vulnerabilities, identifying risks, and noting strengths discovered. • 3+ years of demonstrated experience building and leading technical product or offensive security teams, setting team objectives, and developing junior talent • Understanding of penetration testing methodology and frameworks (MITRE ATT&CK, OWASP, PTES) and hands-on experience with industry-standard offensive tooling, including Burp Suite, command-and-control frameworks such as Cobalt Strike or Sliver, and attack-path analysis tools such as BloodHound. • Skill in illustrating and explaining security vulnerabilities, including proof-of-concept demonstrations, to audiences with minimal expertise in security. • Experience in the areas of vulnerability identification, malware analysis, and current & emerging exploitation techniques. • Experience testing identity infrastructure and privileged access attack paths, including Active Directory, Entra ID, Kerberos abuse, and credential and secrets exposure. • Proficiency in source code review, leveraging findings to execute targeted attacks. • Proficiency in at least one scripting or programming language, such as Python, Go, or PowerShell, for tooling, automation, and exploit development. • Experience with Azure and AWS cloud-based infrastructure. • Experience testing containerized and cloud-native environments, including Kubernetes, infrastructure-as-code, and CI/CD pipeline security. We'd Love to See: • One or more of the following certifications: ARTE, eCPPT, eWPT, CARTS, CRTL, CRTO, CRTP, GPEN, GWAPT, OSCP, OSEP, OSWE, Pentest+, PNPT. • Experience working with high-security environments subject to regulations such as FedRAMP or ITAR. • Excellent analytical and problem-solving skills with keen attention to detail. • Experience assisting in CAPEC markups for threat models. • Experience both using AI and LLM-based agents and tooling in testing methodologies and testing AI and LLM-based features and agents, including prompt injection and the OWASP Top 10 for LLM Applications. For this Job, Delinea is not considering candidates that need any type of US work authorization now or in the future. This includes, but is not limited to: F1-OPT, F1-CPT, H-1B, TN, L-1, J1, etc. #LI-MF1

About Delinea

Delinea is a pioneer in securing identities through centralized authorization, making organizations more secure by seamlessly governing their interactions across the modern enterprise. Delinea allows organizations to apply context and intelligence throughout the identity lifecycle across cloud and traditional infrastructure, data, and SaaS applications to eliminate identity-related threats. With intelligent authorization for all identities, Delinea is the only platform that enables you to identify each user, assign appropriate access levels, monitor interaction across the modern enterprise, and immediately respond upon detecting any irregularities. The Delinea Platform enables your teams to accelerate adoption and be more productive by deploying in weeks, not months, and requiring 10% of the resources to manage compared to the nearest competitor.
Learn more about Delinea
Size
500 employees
Industry
Founded
2004

Similar Jobs

More Jobs at Delinea

More Information Technology Jobs

Find similar Senior Manager, Offensive Security jobs: