Sophos logo
Sophos

Defeat Cyberattacks

Senior Manager, Penetration Testing

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 1,001-5,000Since 1985H1B SponsorCompany SiteLinkedIn

Location

Japan

Posted

125 days ago

Salary

0

Seniority

Senior

7 yrs expJapaneseEnglish

Job Description

Senior Manager, Penetration Testing

Sophos

• Help develop and lead a multi-year service, delivery, as well as supporting with financial strategy, to meet company objectives and reinforce our position as an industry leader in offensive security. • Lead a high performing team of technical consultants delivering a variety of offensive security engagements (penetration testing, application security testing, full scale Red Team, etc.) • Help manage a P&L including forecasting, backlog management, utilization, and scheduling • Partner with the sales organization and other business development leaders and be seen as a “go to” for complex adversarial testing needs • Build and advance cross-functional relationships within Sophos that include the Incident Response Team, Counter Threat Unit, Marketing, Sales. • Identify opportunities – people, process, and technology -- to improve efficiencies within the team • Represent the Sophos Red Team services portfolio; identify and champion new services, capabilities, and offers; provide thought leadership; and develop an associated go-to-market strategy for the services in the portfolio • Drive teams to consensus on business priorities, delivery best practices, and implementation of new ideas. Willingness to changes, to contribute ideas, listen to others, and learn from others. Challenge the status quo. • Foster career development and champion career development opportunities for the team (conferences, training, certifications, mentoring, etc.) • Own NPS/customer satisfaction and ensure practice meets/exceeds expected targets. Maintain a culture of premium customer service

Job Requirements

  • 7+ years in the cybersecurity industry leading offensive security, preferably in dynamic and fast changing environments.
  • Presales and post sales delivery experience at the SME Level
  • Demonstrated ability to manage high-performing teams as well as maintain and enhance a strong team culture.
  • Excellent verbal and written communication skills with experience – ideally briefing executive management level also.
  • Experience working with global, remote, multi-cultural teams.
  • Ability to prioritize, delegate and complete tasks within tight timeframes to meets deadlines.
  • Strong interpersonal skills, self-starting, proactive, motivated, team player.
  • Results orientated and customer focused.
  • Ability to demonstrate initiative and good judgment in resolving issues.
  • Effective at managing conflict and negotiating with stakeholders, with support from senior leaderships.
  • Experience mentoring and leading technical teams in a matrixed consulting environment.
  • Fluent Japanese proficiency as well as business level English in running business required.

Benefits

  • Sophos operates a remote-first working model, making remote work the primary option for most employees. However, some roles may necessitate a hybrid approach.
  • Our people – we innovate and create, all of which are accompanied by a great sense of fun and team spirit
  • Employee-led diversity and inclusion networks that build community and provide education and advocacy
  • Annual charity and fundraising initiatives and volunteer days for employees to support local communities
  • Global employee sustainability initiatives to reduce our environmental footprint
  • Global fitness and trivia competitions to keep our bodies and minds sharp
  • Global wellbeing days for employees to relax and recharge
  • Monthly wellbeing webinars and training to support employee health and wellbeing

Related Categories

Related Job Pages

More Security Engineer Jobs

E-Verify Program logo

Principal Cybersecurity Architect

E-Verify Program

Learn More About E-Verify and myE-Verify

Security Engineer125 days ago
OtherRemoteTeam 501-1,000Since 1997H1B No Sponsor

• Influence, consult with and build collaborative working relationships with senior business and IT leadership at the VP/Officer and C levels to help meet long term security objectives • Conduct risk assessments, evaluate alternative strategies, develop recommendations and ensure responsive communication with business representatives, security management, and third party vendors • Participate in the design review process and support the overall Security Architecture process • Influence and drive change to security architecture processes, strategies and standards, as needed in areas such as: Cloud infrastructure, A.I., information security, Data Loss Prevention, Intrusion Prevention, Threat and Vulnerability Management, and Identity and Access Management • Partner with management in defining and setting appropriate, implementable information security policy and ensuring alignment to standard operating procedures, instructions and standards • Develop, maintain and implement security policies, processes, tools and methodologies that support security architecture standards and ensure effective evolution of security architecture within the organization • Research, evaluate, recommend, plan implementation of, and test new or improved information security software or devices • Coordinate analysis of new or enhanced software application or tool implementations for impacts to existing security software and devices • Participate in and/or lead forensic investigations and eDiscovery of suspected information security issues or in compliance reviews as requested by auditors, HR, Ethics, or Legal • Utilize security expertise and knowledge of new and emerging cyber attacks threats to make recommendations to management regarding implementation of best practices and/or process improvements to proactively protect the company’s systems and networks • Provide informal work coordination and leadership/coaching to less experienced information security staff

Kentucky + 4 moreAll locations: Kentucky | Louisiana | North Carolina | Mississippi | South Carolina
$130.6K - $208.9K / year
Job Closed
Auros logo

Principal Security Engineer

Auros

Auros is a leading algorithmic trading and market making firm focused on liquidity provision in the digital asset space.

Security Engineer125 days ago
Full TimeRemoteTeam 11-50Since 2019H1B Sponsor

• Implement and maintain security controls across multi-cloud environments and on-prem infrastructure • Own IAM strategy and implementation • Design and operate key management and custody security controls • Harden CI/CD pipelines and secure the software delivery process • Configure and operate corporate security tooling • Respond to security incidents • Conduct security assessments of infrastructure and applications • Automate security operations • Work with Infrastructure to embed security into cloud provisioning and system configuration

United Kingdom
Cloudera logo

Staff Security Engineer

Cloudera

At Cloudera, we believe that data can make what is impossible today, possible tomorrow.

Security Engineer125 days ago
OtherRemoteTeam 1,001-5,000Since 2008H1B Sponsor

• Develop, deploy, and support self-service security tools and services that constitute the internal security platform. • Contribute knowledge and support for security projects, including support of tool integration and implementation of new security capabilities within the platform. • Support & improve security integrations into CI/CD pipelines (SAST, DAST, SCA, IAST, etc.) and developer workflows. • Maintain deployment of secure multi-cloud environments (AWS, Azure, GCP) using Infrastructure as Code (e.g., Terraform, Ansible). • Assist with security architecture reviews of new products and features, contribute to threat models, and support adoption of security-as-code best practices. • Work with the Site Reliability Engineering (SRE) team to maintain & respond to automated monitoring and security integrations for production systems. • Collaborate with internal security teams to support compliance, incident response, and operational security requirements. • Enable and support the adoption of security engineering best practices and standards across the organization. • Evangelize the use of security platform tooling and deliver high-impact DevSecOps training and outreach to internal development & engineering teams. • Participate members of the Security team and security advocates in advanced DevSecOps principles, platform engineering, and secure coding practices.

Illinois + 2 moreAll locations: Illinois | Texas | Utah
Job Closed
Fieldguide logo

Lead Security Engineer

Fieldguide

Powering the future of trust with modern software for assurance & advisory firms.

Security Engineer125 days ago
OtherRemoteTeam 11-50H1B Sponsor

• Lead secure design reviews, threat modeling, and security-focused code reviews across the product and platform. • Ensure security is ingrained into the SDLC so that the secure path is the easy path for engineers with secure-by-default libraries, patterns, and guardrails. • Own authentication, authorization, API security, and data protection architecture for a multi-tenant SaaS platform. • Architect and maintain security tooling integrated into CI/CD pipelines: static analysis, dependency scanning, secrets detection. • Evaluate and mitigate risks specific to Fieldguide's AI Agents — prompt injection, data leakage through LLM contexts, unauthorized tool use, and unintended agent behaviors. • Partner with Agent and Platform teams to define security boundaries for agent execution: sandboxing, least-privilege tool access, and runtime policy enforcement. • Build and run Fieldguide’s vulnerability management program: scanning, triage, SLA-driven remediation tracking, and engineering coordination. • Ensure visibility into vulnerability posture across application code, dependencies, and infrastructure. • Manage external penetration testing engagements, bug bounty programs, and coordinate remediation of findings. • Partner with infrastructure engineering to review and improve cloud security across our AWS environment: IAM, network architecture, secrets management, and logging. • Establish runbooks, communication protocols, and post-incident review practices in coordination with a 24/7 MDR team. • Collaborate with engineers on incident response processes and playbooks. • Partner with Compliance to ensure technical controls satisfy framework requirements (SOC 2, ISO 27001, ISO 42001, FedRAMP).

California
$210K - $260K / year
Job Closed