The Cyber Security Project Manager, referred to as the Planning Lead, is responsible for coordinating all activities related to penetration testing projects. This includes managing communication and collaboration between customers, penetration testers, awareness experts, and technical quality managers.
Summary
The Cyber Security Project Manager for Penetration Testing is a leadership role focused on planning, coordinating, and ensuring the quality of penetration testing projects, while maintaining effective communication and process documentation among all stakeholders.
Key Responsibilities
- Coordinate all project activities with internal stakeholders (Lead Penetration Tester, Awareness Expert, Technical Quality Manager) and the customer.
- Prepare and control access rights for penetration tests.
- Refine and manage the security test calendar/schedule, ensuring tasks are executed according to plan.
- Proactively inform stakeholders (e.g., ECB) about issues such as delays, resource unavailability, or other factors affecting testing or timelines.
- Oversee quality assurance for penetration tests, including reviewing penetration testing reports.
- Coordinate threat-based testing with the Lead Penetration Tester and awareness sessions with the Awareness Expert.
- Support process improvement and documentation of vulnerability management in collaboration with the Technical Quality Manager.
- Facilitate stakeholder communication and ensure completeness of handovers and knowledge transfer between resources.
Required Skills and Qualifications
- Technical expertise in system security vulnerabilities, remediation techniques, and network/web protocols (e.g., TCP/IP, UDP, IPSEC, HTTP)2.
- Experience in network, web application, and mobile penetration testing.
- Familiarity with penetration testing tools and suites (e.g., Kali Linux, Burp Suite, Metasploit, Cobalt Strike, Mimikatz)13.
- Understanding of vulnerability scoring systems (CVSS) and frameworks (MITRE ATT&CK)2.
- Software development skills (C/C++, Java, Python) are advantageous.
- At least one relevant security certification (e.g., CEH, GPEN, GXPN, OSCP, OSC, or equivalent)3.
Experience Level
- Senior: 3–5+ years in relevant skills/tools/certifications
Solliciteren