Sr Manager, Offensive Security
$167.37k - $209.21kMcDonald's Corporation
Job Description:
Company Description:
McDonald's growth strategy, Accelerating the Arches, encompasses all aspects of our business as the leading global omni-channel restaurant brand. As the consumer landscape shifts we are using our competitive advantages to further strengthen our brand. One of our core growth strategies is to Double Down on the 3Ds (Delivery, Digital and Drive Thru). McDonald's will accelerate technology innovation so 65M+ customers a day will experience a fast, easy experience, whether at one of our 25,000 and growing Drive thrus, through McDelivery, dine-in or takeaway.?
McDonald's Global Technology is here to power tomorrow's feel-good moments.??
That's why you'll find us at the forefront of transformative technology, exploring new and innovative ways to serve our millions of customers and spread happiness one delicious Hot Fudge Sundae-dipped fry at a time.?Using AI, robotics and emerging tech, we're digitizing the Golden Arches. Combine that with our unparalleled global scale, and we're reshaping all areas of the business, industry and every community that is home to a McDonald's restaurant.?We face complex tech challenges every day. But that's where our diverse and talented teams come in. They're made up of the best and brightest from all over the globe, and they thrive in the space where feel-good meets fast-paced.??
Check out the McDonald's ?Global Technology Technical Blog ( ?to learn how technology and our global team are directly enabling the Accelerating the Arches strategy.?
Department Overview
As Senior Manager, Offensive Security , you will lead a global team of penetration testers and red team operators responsible for proactively identifying, validating, and communicating real-world security risks across McDonald's enterprise. Reporting directly to the Director, Threat Operations & Offensive Security , you are the primary people leader on the offensive security side of the organization - managing all individual contributors across the United States and United Kingdom.
This role is both strategic and deeply technical . You will own the day-to-day operations of offensive security services while simultaneously bridging the gap between highly technical hackers and senior executive leadership. You will be responsible for assessment planning and scheduling, stakeholder and customer relationship management, operational delivery, and communicating risk-based outcomes to audiences ranging from engineering teams to the CIO and CISO.
You will partner closely with Incident Response, Detection Engineering, Security Operations (GSOC), Threat Operations, and Technology Risk partners to execute Purple Team exercises and cross-domain engagements that continuously strengthen McDonald's detection and response capabilities. This role sits within Global Cyber Security (GCS), the organization responsible for securing McDonald's information assets at a global level and ensuring our leadership makes informed, risk-based decisions.
Responsibilities
Operational Leadership & Service Delivery
Own day-to-day operations of McDonald's Offensive Security program, including intake management, assessment scheduling, scoping, rules of engagement, execution oversight, and reporting
Manage complex, concurrent testing engagements across cloud, network, infrastructure, hardware, application, mobile, and SaaS environments
Serve as the primary customer-facing point of contact for internal stakeholders
Red Team & Adversary Emulation
Plan and execute Red Team operations, adversary simulations, and adversary emulation exercises informed by real-world threat intelligence and the MITRE ATT&CK framework
Design and lead custom Cyber Defense Exercises (CDX), tabletop simulations, social engineering campaigns, and physical security assessments
Executive Communication & Metrics
Translate complex technical findings into actionable, risk-ranked business impact assessments for executive leadership, including CIO and CISO audiences
Develop, measure, and track metrics and KPIs to assess the performance, effectiveness, and business value of offensive security operations
Produce high-quality technical reports, executive summaries, findings documentation, and remediation recommendations
People Leadership & Team Development
Serve as the people leader for all offensive security individual contributors (penetration testers, red team operators, offensive security analysts) across the US and UK
Provide hands-on technical guidance and mentorship - able to work side-by-side with the team on complex assessments while coaching junior and senior analysts alike
Strategy & Program Development
Support the Director in defining and executing the offensive security strategy, roadmap, and program objectives aligned to enterprise risk priorities
Collaborate cross-functionally with diferent teams to ensure offensive findings feed into unified remediation pipelines
Qualifications
8+ years of experience in offensive security, penetration testing, red teaming, or ethical hacking
4+ years of direct people leadership experience managing technical cybersecurity teams
3+ years of experience managing complex, global projects and initiatives across multiple regions
Expert-level understanding of adversarial tactics, techniques, and procedures (TTPs), the cyber kill chain, and MITRE ATT&CK framework
Extensive hands-on experience across multiple testing disciplines: application, cloud, network, infrastructure, hardware, and mobile penetration testing
Demonstrated ability to lead teams through all stages of a cyber-attack lifecycle (reconnaissance, scanning, enumeration, gaining access, privilege escalation, maintaining access, network exploitation, and covering tracks)
Qualified to mentor analysts in examining system and application security threats and vulnerabilities (e.g., buffer overflow, cross-site scripting, SQL injection, race conditions, return-oriented attacks, malicious code)
Proven ability to operate with minimal oversight, make quick and effective decisions, and navigate ambiguity in fast-paced, deadline-driven environments
Mastery of commercial and open-source offensive security tools and frameworks
Desired Skills
Professional certifications such as OSCP, OSCE3, GXPN, GCPN, GCDA, GPEN, GWAPT, CRTO, CEH, or equivalent
Expert understanding of cloud security architectures (Azure, AWS, GCP) and modern application/API security testing
Experience with C2 frameworks (e.g., Cobalt Strike, Mythic, Sliver), BAS platforms (e.g., SafeBreach), and EASM tools
Experience managing vulnerability disclosure programs (VDP), bug bounty programs, or coordinated disclosure processes
Strong understanding of SIEM/SOAR platforms, detection engineering workflows, and how offensive findings integrate with defensive operations
Experience managing MSSP relationships, vendor SOWs, and hybrid delivery models for offensive security services
Compensation
Bonus Eligible: YES
Long - Term Incentive: YES
Benefits Eligible: YES
Salary Range
The expected salary range for this role is $167,366.00 - $209,207.00 per year
The above represents the expected salary range for this job requisition. Ultimately, in determining your pay, we may also consider your experience, and other job-related factors.
Additional Information:
Benefits eligible: This position offers health and welfare benefits, including but not limited to comprehensive health insurance, which includes medical, prescription drug, mental health, dental and vision coverage, as well as, life insurance.
Bonus eligible: This position is eligible for a bonus, calculated based on individual and company performance.
Long term Incentive eligible: This position is eligible for stock or other equity grants pursuant to McDonald's long-term incentive plan.
McDonald's is an equal opportunity employer committed to the diversity of our workforce. We promote an inclusive work environment that creates feel-good moments for everyone. McDonald's provides reasonable accommodations to qualified individuals with disabilities as part of the application or hiring process or to perform the essential functions of their job. If you need assistance accessing or reading this job posting or otherwise feel you need an accommodation during the application or hiring process, please contact View email address on click.appcast.io. Reasonable accommodations will be determined on a case-by-case basis.
McDonald's provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to sex, sex stereotyping, pregnancy (including pregnancy, childbirth, and medical conditions related to pregnancy, childbirth, or breastfeeding), race, color, religion, ancestry or national origin, age, disability status, medical condition, marital status, sexual orientation, gender, gender identity, gender expression, transgender status, protected military or veteran status, citizenship status, genetic information, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Nothing in this job posting or description should be construed as an offer or guarantee of employment.
Requsition ID: 4114
$160k - $190k
...regulatory standing by ensuring compliance and exam readiness, managing regulatory risk. This is a high visibility/high impact... ...audit support, regulatory program compliance. The Sr Manager, Information Security Regulatory & Exam is responsible for regulatory exam support...SeniorRemote workFlexible hours- McDonald's Corporation is seeking a Director of Threat Operations & Offensive Security responsible for defining and leading a global cybersecurity program. You will manage a distributed team and set strategic direction to enhance risk reduction capabilities. This role requires...Suggested
$132k - $165k
...campaigns, analyzing vulnerabilities, and collaborating with internal teams on security assessments. Candidates should have at least 6 years of information security experience, with 2 years in offensive security. Strong scripting skills in PowerShell and Python are required....Senior$161.5k - $299.7k
...Job Summary This Position Is Responsible for directing and managing the activities of the HCSC's Cyber Fusion Center (CFC aka. SOC)... ...cyber threats and constantly improve the organization's Cyber Security Posture, ensuring the CFC is operating effectively within the overall...Senior- Supernova Technology™ is seeking a Senior Manager for Loan Operations in Chicago. In this pivotal role, you'll lead the loan operations function, ensuring excellence across underwriting, servicing, and monitoring processes. We're looking for an individual with over 7 years...Senior
- Evolvesec is seeking a Senior Application Security Tester & AI Red Team Subject Matter Expert in Chicago. This senior-level role involves... ...security. The ideal candidate has 5-8+ years of experience in offensive security, especially in web and API testing, and is proficient...Senior
$97.71k - $146.56k
Comcast is looking for a Manager of Physical Security Solutions in Oak Brook, Illinois. This role is key to safeguarding assets and managing security personnel while coordinating security technology implementations. Candidates should have proven experience in physical...Senior$125k - $160k
...leave. Who You'll Be Joining: Our hive, headquartered in Toronto, is looking for a Senior Product Manager to help lead the evolution of ecobee's Smart Security business – shaping how our devices and services come together to deliver a seamless, high-value customer...SeniorFull timeContract workTemporary workWork experience placementWork at officeRemote work- DoorDash is looking for a Sr. Associate Project Manager based in Chicago to support the planning and execution of projects in physical security technology. The role emphasizes cross-functional collaboration and requires over 3 years of project management experience, ideally...Senior
- JMark Services Inc. is seeking an Operations Manager III to provide operational leadership for the Office of the Under Secretary of War for Intelligence and Security. The role requires a minimum of 10 years of operations management experience and an active TS/SCI clearance...SeniorWork at office
$185k - $277k
...Posting Type Hybrid/Remote Job Overview The Senior Manager of Enterprise Security is a technical people leader responsible for developing, implementing, operating, and continuously optimizing a multi-layered security ecosystem across corporate, cloud, and...SeniorWork at officeRemote work$138.21k - $172.76k
...global restaurant brand is seeking a Senior Analyst, Cyber Defense - Penetration Testing, to identify vulnerabilities through offensive security testing. This role requires collaboration with stakeholders to ensure informed, risk-based decisions. Candidates should have...Senior$125.2k - $187.8k
A leading grocery retailer is seeking an ADUSA Security Manager in Chicago, IL. This role involves overseeing the Security Patching team and ensuring the organization's protection from security risks. Candidates should have over 10 years of experience in IT security patching...SeniorFlexible hours- ...elevate the world's most complex environments. Within our Electronic Security Solutions (ESS) team, we go beyond traditional security,... ...safeguard people, assets and operations. As a Senior Project Manager - Electronic Security, you will lead the successful delivery of...SeniorTemporary workFor contractorsFor subcontractorWork at officeLocal areaRemote workRelocationRelocation packageFlexible hours
$148k - $296k
Job Summary We are seeking a Senior Manager, Security Operations to join K&L Gates. The Senior Manager will oversee cyber security, forensics, incident response, and physical security operations for the firm, implementing monitoring technologies, incident response systems...SeniorTemporary workWork at officeRemote workRelocationFlexible hours- Proofpoint is seeking a Senior Strategic Account Manager for their Advanced Technology group. This role focuses on cybersecurity solutions, particularly Email Fraud Defense and Adaptive Email DLP. Candidates should have 8+ years of experience in selling complex solutions...Senior
$151.2k - $226.8k
...including Finance, Legal, Sustainability, Commercial, Digital and E-commerce, Technology and more. Overview The Senior Security Engineering Manager plays a critical role in safeguarding our technology environment by monitoring and governing security policies in close...SeniorFull timeWork at officeRemote workFlexible hoursWeekend work- ...Senior Offensive Security Engineer - Pentester Denver, Colorado;Seattle, Washington; Charlotte, North Carolina; Jacksonville, Florida;... ...Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office...SeniorWork at officeRemote workShift workDay shift
- iManage is looking for a Principal Product Marketing Manager to lead the go-to-market strategy for their security, governance, risk, and compliance capabilities. This role promotes a flexible working policy, requiring an in-office presence on specific days for collaboration...Work at officeFlexible hours
$171.7k - $300.5k
...leading technology and exceptional service. Major Duties :• Manages several Technology Risk units and/or functions. Establishes performance... ...and career development needs. • Approves Information Security, (IS), architecture/designs, plans, controls, processes, policies...SeniorWork experience placementH1bFlexible hours- ...and perspectives at AHEAD. Responsibilities: Key member of the Leadership team. Manage a team of support administrators, engineers and/or technical leads within the Security Operations Center Develop service management strategies and identifying staff, tools,...SeniorWork at office
- ...Job Description Insight Global is seeking an Sr. Operations Manager for one of their premier clients in the southern region of Chicago, IL. This Sr. Operations manager will be helping standing up a new 1 million square foot warehouse for one of the customers largest...Senior
- ...lives every day. We turn ideas into reality. We Are Platform Security professionals develop and deliver solutions to strengthen the... ...protection through role based security, and ERP vulnerability management solutions that minimize the impact of internal and external...SeniorContract workWork experience placementLive inWork at officeLocal area
- ...Catalog Product Manager The Catalog Product Manager is responsible for owning and evolving the enterprise product catalog that supports PepsiCo's digital commerce, supply chain, and customer-facing platforms. This role ensures product data is accurate, consistent, and...Senior
$92.7k - $167.5k
...of a purpose-driven company that will invest in your professional development. Job Summary The position is responsible for managing and controlling the day-to-day operations of Payment Integrity Operations. This position is responsible for delivering business...SeniorContract work- A global leader in security tech solutions seeks an Installation Manager in Chicago, Illinois. This role entails managing field installation staff, overseeing project performance, and ensuring compliance with schedules and budgets. The ideal candidate will have 5-7 years...Senior
- ...Senior Manager, Event & Match Day Operations Operations Director Operations, Facilities and Events Primary Responsibilities: Responsible for planning, production and logistics for all home matches. Responsible for planning and production of special events...SeniorWork at officeFlexible hoursNight shiftWeekend work
- A leading derivatives marketplace is seeking a Senior Director & Associate General Counsel for Securities Regulation. This role involves providing legal support for securities clearing operations and engaging with regulatory bodies. The ideal candidate should possess experience...Senior
$175k - $195k
...and create your future. Huron is seeking a senior-level AI Security Architect to help clients design, secure, and scale enterprise... ...architecture with client-facing advisory, focusing on security, risk management, and governance across the AI lifecycle. You will serve as...SeniorLocal areaImmediate start$97.71k - $146.56k
...goal to lead the future in media and technology, we want you to fast-forward your career at Comcast. Job Summary The Manager of Physical Security Solutions is responsible for safeguarding assets and people by orchestrating the fusion of innovative security...Contract workWork experience placementWork at officeNight shiftWeekend work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr Manager, Offensive Security. Be the first to apply!
- security engineering manager Chicago, IL
- director global security Chicago, IL
- security manager Chicago, IL
- security project manager Chicago, IL
- corporate security manager Chicago, IL
- security risk manager Chicago, IL
- surveillance manager Chicago, IL
- program manager with security clearance Chicago, IL
- physical security manager Chicago, IL
- security operations manager Chicago, IL

