Назад
Company hidden
7 дней назад

Cyber Security Penetration Testing Lead (Program Management)

Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
Hungary
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cyber Security Penetration Testing Lead (Program Management) (Cybersecurity/Penetration Testing): Coordinating enterprise penetration testing, security validation, vulnerability management, and remediation programs with an accent on risk-based prioritization, governance, and stakeholder alignment. Focus on translating technical findings into business risk, driving remediation and retesting, and reporting measurable risk reduction to technical and executive stakeholders.

Location: Budapest, Hungary

Company

hirify.global operates and modernizes mission-critical technology systems for leading businesses, using AI-powered insights to support smarter decisions and faster innovation.

What you will do

  • Coordinate and govern enterprise penetration testing, security validation, and related activities from onboarding through remediation and closure.
  • Drive vulnerability and exposure management processes, prioritizing findings through risk-based methodologies and tracking them to resolution.
  • Partner with application owners, infrastructure and engineering teams, Cyber Operations, risk functions, and remediation stakeholders to reduce cyber risk.
  • Facilitate findings reviews, remediation workshops, risk acceptance discussions, exception handling, and retest readiness assessments.
  • Report remediation progress, risk treatment plans, service metrics, and key performance indicators to technical and executive stakeholders.
  • Improve vulnerability management, exposure management, and security validation capabilities while supporting audit evidence and risk closure.

Requirements

  • 7+ years of experience in cybersecurity, vulnerability management, exposure management, security operations, cyber risk management, or related disciplines.
  • Strong knowledge of vulnerability management, Risk-Based Vulnerability Management, exposure management, remediation governance, and security validation methodologies.
  • Experience coordinating penetration tests, security assessments, remediation programs, corrective actions, retests, and risk closure activities.
  • Ability to evaluate vulnerabilities based on risk, exploitability, business impact, and threat intelligence, and translate technical findings into business risk.
  • Strong communication and stakeholder management skills, including presenting cybersecurity risks, trends, and recommendations to senior leadership.
  • Experience leading cross-functional initiatives in large, complex enterprise environments and knowledge of cybersecurity governance frameworks and controls.

Nice to have

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
  • Experience with attack surface management, continuous security validation, cyber risk quantification, vulnerability platforms, or remediation orchestration technologies.
  • Familiarity with enterprise risk management, audit, regulatory, and compliance requirements.
  • Knowledge of cloud security platforms, modern application security practices, vulnerability scanners, and penetration testing providers.
  • CISSP, CISM, CRISC, Security+, GSEC, CGRC, or equivalent certification.

Culture & Benefits

  • Full-time role in a supportive, flexible, and hybrid-friendly company culture.
  • Well-being programs supporting financial, mental, physical, and social health.
  • Personalized career development, continuous feedback, coaching, and hands-on learning.
  • Access to certification and learning opportunities from Microsoft, Google, Amazon, and other providers.
  • Inclusive environment focused on belonging, empathy, continuous learning, and shared success.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →