Penetration Testing Manager
$140k - $222.5kState Street
Who We Are Looking For We are seeking a Manager to lead State Street’s Penetration Testing Team, reporting into leadership within the Threat Intelligence and Assurance function. This role combines technical leadership with program ownership, focused on delivering high-quality, engineering-driven penetration testing across a complex, highly regulated financial environment. You will be responsible for building and maturing a team that performs rigorous, hands-on assessments across applications, networks, APIs, and cloud platforms, while establishing consistent, risk-aligned testing practices. The Manager is accountable for defining technical standards, ensuring depth and quality of testing, and delivering outputs that are evidence-based, reproducible, and aligned with audit and regulatory expectations. Working closely with engineering, architecture, and risk partners, you will ensure testing results translate into measurable risk reduction and sustained improvements in secure system design and implementation. What you will be responsible for As a Manager, Penetration Testing, you will: Lead, mentor, and develop a team of penetration testers, fostering strong technical depth, hands-on expertise, and continuous skill development across application, network, and cloud domains Own and evolve the penetration testing program, including methodologies, tooling, quality assurance practices, reporting standards, and risk-based prioritization of testing activities Drive delivery of high quality, hands on testing across enterprise applications, APIs, infrastructure, and cloud environments, ensuring assessments are technically rigorous and aligned to real-world exploitability Establish and enforce engineering-centric testing standards, ensuring consistency, reproducibility, and depth across both internal and third-party executed assessments Oversee and coordinate testing performed by external providers, including scoping, execution expectations, and technical validation of results to ensure quality and accuracy Ensure regulator and audit ready outputs, including clear documentation, evidence-based findings, and reporting that ties technical vulnerabilities to business and risk impact Partner with engineering, infrastructure, and architecture teams to drive effective remediation, validate fixes, and improve secure design and development practices Integrate emerging technologies and techniques into the program, including AI/LLM-focused testing approaches and assurance of enterprise AI deployments (e.g., prompt injection, model abuse, data exposure) Track, analyze, and communicate program metrics, including coverage, risk trends, vulnerability recurrence, and remediation performance, providing clear insights to senior leadership Continuously improve program maturity, balancing technical depth with scalability, consistency, and alignment to evolving threats, technologies, and regulatory expectations What we value These skills will help you succeed in this role Leadership through influence and accountability, with a focus on developing talent and building high-trust teams. Risk-based decision making, prioritizing what matters most in complex, regulated environments. Technical depth with strategic perspective—ability to connect hands-on findings to enterprise risk outcomes. Clear, executive-ready communication tailored to technical and non-technical audiences. Curiosity and continuous learning, especially in emerging areas such as AI/LLM security. Collaboration and partnership across engineering, risk, and business stakeholders. Ownership and bias for action, ensuring issues are driven through remediation and closure. Education & Preferred Qualifications 8+ years in offensive security with experience in high security/highly regulated environments; 2+ years leading teams preferred. Deep expertise in network and application penetration testing, including enterprise attack paths and complex application ecosystems. Strong knowledge of cloud, containerized environments, and identity-centric architectures. Demonstrated ability to translate findings into actionable, risk-based remediation. Strong stakeholder engagement and executive communication skills. Prior successful experience working with technology owners and business unit leaders to reduce risk Nice to have: experience using AI/LLM tools to perform network and application penetration testing and configuration/security reviews. Education/Certifications (desired, not mandatory): BS/MS in relevant field; OSCP/OSEP/OSCE, GPEN/GXPN, GWAPT, GCPN, PNPT, CREST (CRT, CCT INF, CCT APP, CCRTS, CCRTM) or similar. Salary Range: $140,000 - $222,500 Annual The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ. Employees are eligible to participate in State Street’s comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans. For a full overview, visit About State Street Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success. We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future. As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law. Discover more information on jobs at StateStreet.com/careers Read our CEO Statement Job Application Disclosure: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success. We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future. As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law. Discover more information on jobs at StateStreet.com/careers Read our CEO Statement
$90k - $123k
...orchestration team to enable the successful planning and completion of penetration tests. With your expertise, you will assist in maintaining and... ..., such as access requests, firewall requests, and change management submissions, following established processes. Assist with...SuggestedWork experience placementWork at officeLocal areaRemote work1 day per week$500 per month
...Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements: Must...SuggestedRemote work10 hours per weekFlexible hours- Citigroup Inc. in Rutherford, New Jersey, is looking for a Testing Senior Group Manager to lead automation testing strategies and manage the data quality engineering team. The successful candidate will have substantial experience in implementing testing strategies, specifically...Suggested
- ...Build and maintain strong relationships with internal stakeholders and external vendors/service providers. Oversee vendor management activities, including selection, contract, performance monitoring, renewals, and alignment with organizational, security, and budget...SuggestedFull timeContract workWork at officeMonday to Friday
$260k
Citibank, N.A. seeks a Testing Senior Group Manager for its Rutherford, New Jersey location. Duties: Determine the approach to implement testing strategies and execute testing strategies. Structure the testing group to ensure the greatest impact, efficient use of resources...SuggestedFull timeRemote work- ...Description Job Description Job Title: Payroll Applications Manager (senior level) Location: Remote post COVID NJ (Elmwood... ...with HRIS team such as implementations, upgrades, system testing and business process enhancements. Identify opportunities for improvement...Permanent employmentRemote work
$1,000 per month
...Jersey, Pennsylvania, and West Virginia . This is a great opportunity to earn extra income on a flexible schedule while helping us test online casinos. No prior experience is required, and all training is provided. This is a short-term contract, with opportunities...Extra incomeTemporary workSecond jobCurrently hiringImmediate startWork from homeFlexible hours- ...Candidates will work with firewalls and data encryption programs to ensure sensitive data is protected. You will also conduct penetration testing to identify vulnerabilities, prepare reports documenting breaches, and develop security standards for the organization. If...
- ...recruitment firm is seeking a TBM Design Release Engineer responsible for software development and validation testing of the Telematics module. You will manage software development across all brands, ensuring quality and performance of the component. Key responsibilities...
$62k - $90k
...win. About the Role Under the direct supervision of the Manager of IT Audit, the IT Auditor will be responsible for providing high... ...-organized audit work papers that appropriately document the testing performed. Work papers should include planning documents, engagement...H1bWork at officeVisa sponsorshipFlexible hours- ...Your leadership and expertise in cybersecurity strategy, risk management, and incident response will be critical in protecting our... ...Experience in conducting security assessments, audits, and penetration testing. Knowledge of privacy laws and regulations, such as the...
- ...PSBGEN Review and deploy IMS database structural changes across TEST, PRE-RELEASE, and RELEASE Assist in resolving production... ...years of experience with IMS (DB + DC), including DBD/PSB/ACB management Strong understanding of IMS and DB2 utilities such as REORG,...Work experience placementNight shift
- National Retail Transportation, Inc. is seeking a Director of Cybersecurity based in Lyndhurst, NJ. This role involves enhancing security across the software development lifecycle, leading a skilled team, and executing the organization's cybersecurity strategy. Candidates...
- Job Title Responsibilities Develop and configure Guidewire PolicyCenter (GWPC). Implement product model changes, rating, rules, forms, workflows, UI customizations. Build and maintain integrations (SOAP/REST, messaging, batch). Troubleshoot and resolve technical ...
$200k - $280k
...the dynamic landscape of Cybersecurity. Your primary focus will be on generating sales in critical areas such as Identity Access Management (IAM), Governance Risk and Compliance (GRC), Security Operations Centers (SOC), Security Information and Event Management (SIEM),...- ...customer insights to develop differentiated solution value propositions for customer challenges. Partner with sales people/account managers to drive deals to closure. Define and implement global competencies, processes, practices, deliverables and knowledge...
$150k
Job Description Job Description Efficient Plumbing & Heating, a trusted family-owned business located in Riverdale, NJ, is currently seeking a full-time Drain and Plumbing Tech Lead . This full-time, year-round opportunity offers a competitive base salary with the...Full time$60k - $75k
...well-established precision manufacturer in the aerospace and defense sector is seeking a Quality Engineer to join its quality management systems across casting, machining, and assembly operations. This role is critical to ensuring compliance with industry regulations...Contract workWork experience placement$71.4k - $133.8k
...Cascade Administration team operates within FirstEnergy's Asset Management and Records Control (AMRC) department, supporting Transmission... ...diagrams, and technical documentation. Develop and execute test cases and scripts to validate system functionality, and document...Full timeContract workWork experience placementH1b- ...priority Long Term Contract Must Have 6+ years automation and manual testing experience. UI, API Automation must. Serenity, testNG, Robo... ...specifically in one or more of the following areas: Inventory Management, Service Fulfillment, Service Assurance, or Field Operations....Long term contract
$60k - $75k
...well-established precision manufacturer in the aerospace and defense sector is seeking a Quality Engineer to join its quality management systems across casting, machining, and assembly operations. This role is critical to ensuring compliance with industry regulations...Contract workWork experience placement$113.64k - $137.39k
...internal and external stakeholders. This is a hands-on role to enable and enhance the Data Analytics practice at IIE and includes managing and adapting IIE to cloud-based data platform(s) in collaboration with IIEs Enterprise Systems teams. The Director is expected to...Full timeWork experience placementWork at officeRemote workFlexible hours$25 per hour
...seeking a part-time Events and Conference Technology Coordinator to provide technical support and oversee events. This role involves managing staffing, execution, and quality of AV services across multiple campuses in New Jersey. The ideal candidate will have 3+ years of...Hourly payPart timeFlexible hoursAfternoon shift- ...Key Responsibilities Environment build & readiness: Drive DEV/TEST/PROD readiness (server sizing inputs, VM provisioning coordination... ...issues impacting services/web components. Identity & access: Manage AD groups, service accounts permissions, least‑privilege access,...Remote job
- ...programs, working closely with technology and business partners to develop solutions focused on financial data analysis for credit risk management. The ideal candidate will have over 5 years of experience, with strong Python, SQL, and Spark skills. Citi offers competitive...
$126k - $255k
...Job Description: The Team Fidelity Wealth’s Trade Management Engineering group is responsible for building world-class electronic trading solutions for Fidelity’s Capital Markets division. We are a high-performing, fast-paced technology team working with cutting...Work from home- ...About the job IT Project Manager - Software Administration | Hudson Tunnel Project About the Company & Project Our client is a leading global consultancy renowned for delivering high-profile, complex, iconic, large-scale capital projects. We are currently...Contract work
$142.32k - $213.48k
Citigroup Inc. is seeking a data scientist in Rutherford, New Jersey. The role involves developing and implementing machine learning models, leading global technology teams, and providing in-depth data analysis. Candidates should have over 5 years of experience in data ...- ...Mode: Inperson Key Requirements: 8+ years of QA Automation testing experience 5+ years of experience in OTT/Smart TV platforms... ...planning, automation (API, functional, performance), and CI/CD pipelines Experience with Agile practices and defect management...
$121.2k - $181.8k
Citibank (Switzerland) AG is seeking an Applications Development Senior Programmer Analyst in Rutherford, New Jersey. The role involves analyzing and programming application systems, collaborating with various teams to identify system enhancements, and providing technical...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Penetration Testing Manager. Be the first to apply!


