Offensive Security Manager
Listed on 2026-08-26
-
IT/Tech
Cybersecurity, IT Consultant
Lead or support internal and external network penetration testing engagements
Perform web application penetration testing
Perform wireless penetration testing
Conduct social engineering, including phishing, telephone, and onsite activities
Perform red teaming/threat emulation and purple teaming
Evaluate and test IT controls, application controls, security configurations, and interface/integration security
Provide practical vulnerability remediation recommendations
Conduct cybersecurity assessments against NIST CSF, NIST 800.53, CIS, and integrated control frameworks
Present findings and recommendations to IT, Information Security, C-suite, and board-level stakeholders
Lead or support client program execution, including control implementation, metrics/reporting, issue remediation, and continuous improvement
Mentor and supervise junior consultants
Contribute to team development and internal knowledge-sharing
Participate in practice development, service-line and methodology innovation, and thought leadership
- Bachelor's degree in information systems, Computer Science, Cybersecurity, Engineering, or related field
- Certification such as CISSP, OSCP, OSCE, or similar
- 5+ years of experience in cybersecurity, offensive security, or related consulting or industry roles
- Deep working knowledge of Windows, Linux/Unix, and databases such as SQL and Oracle
- Working knowledge of networks and the seven-layer OSI model
- Proficiency with Metasploit, Burp Suite, Blood Hound, Nmap, and similar offensive security tools and frameworks
- Detection engineering or blue team operations knowledge, including evasion techniques
- Strong scripting or programming skills
- Experience with or curiosity about AI and automation tools in cybersecurity, including secure implementation practices and risk assessments
- Strong project management, critical thinking, and interpersonal skills
- Excellent communication and technical writing skills
- Ability to tailor messages to technical and executive audiences
- Ability to uphold Crowe's values and act ethically and with integrity
- Must verify identity and eligibility to work in the United States
- Crowe is not sponsoring work authorization
Demonstrates expertise in network penetration testing, web application security, and vulnerability remediation, with a strong foundation in cybersecurity frameworks such as NIST and CIS. Capable of leading teams, mentoring junior consultants, and effectively communicating findings to diverse stakeholders.
Highest-signal resume keywords- Network Penetration Testing
- Web Application Penetration Testing
- CISSP Certification
- Metasploit Proficiency
- Project Management Skills
- Cybersecurity Assessments
- Vulnerability Remediation
- Scripting Skills
- Detection Engineering
- Offensive Security
- Security Configurations
- Control Implementation
- Risk Assessments
- Social Engineering
- Threat Emulation
- Critical Thinking
- Interpersonal Skills
- Technical Writing
- Communication Skills
- Mentoring
- CISSP
- OSCP
- OSCE
- NIST CSF
- NIST 800.53
- CIS
- Seven-Layer OSI Model
- Windows
- Linux/Unix
- SQL
- Oracle
- Burp Suite
- Nmap
- Blood Hound
- Metasploit
- AI Tools in Cybersecurity
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).