What You'll Do
- Advises clients on technical security or compliance activities
- Manages priorities and tasks to achieve delivery utilization targets.
- Operates with professionalism both internally and with clients.
- Ensures quality products and services are delivered on time.
- Continues to develop professional skills with relevant industry specific certifications. Maintains strong depth of knowledge in the practice area.
- Collaborates with project managers, quality management, sales, and other delivery team members to drive customer satisfaction and meet project deliverables.
- Develop processes, procedures, and methodologies to enhance testing processes and experience
- Assist with report generation and quality assurance processes
- Develop client relationships
- Assist in the scoping of prospective engagements, leading engagements from initial stages through implementation and remediation
- Manage project escalations of current testing being conducted
- Mentor and develop less experienced staff
- Contribute to the Penetration Testing Team overall success by managing your team to meet various business objectives and metrics
What You'll Bring
- Bachelor's degree (four-year college or university) or equivalent combination of education and work experience
- 3+ years’ experience in information security with Web Application and Network penetration testing experience
- Experience working with enterprise environments
- Hands-on experience with scripting languages such as Python, Powershell, Shell, or Ruby
- Experience with one or more IT security compliance frameworks, such as PCI, FISMA, HIPAA, FEDRAMP, or HITRUST
- One to three (1-3) years of experience in an IT Security Audit and/or Compliance role
- Experience interacting with management in a consultative manner
- Strong IT understanding with respect to networks, servers, workstations, and applications
- Excellent communication and presentation skills
- Ability to travel up to 20%
Bonus Points
- Deep experience engaging clientele in consulting-related environments
- Experience leading penetration team engagements
- Reverse engineering malware, data obfuscators, or ciphers
- An aptitude for technical writing, including assessment reports, presentations, and operating procedures
- Strong understanding of security principles, policies, and industry best practices
- Experience working with C and various compiler toolchains
- Community contributions or participation including
- CTF, Hack-the-box, or cyber-defense competitions
- Speaking or presentations
- Public security research
Skills Required
- Bachelor’s degree or equivalent combination of education and work experience
- At least 3 years of information security experience, including web application and network penetration testing
- Experience working in enterprise environments
- Hands-on experience with Python, PowerShell, Shell, or Ruby
- Experience with one or more security compliance frameworks, such as PCI, FISMA, HIPAA, FedRAMP, or HITRUST
- One to three years of experience in IT security audit and/or compliance
- Experience interacting with management in a consultative manner
- Strong understanding of networks, servers, workstations, and applications
- Excellent communication and presentation skills
- Ability to travel up to 20%
- Deep experience engaging clients in consulting environments
- Experience leading penetration testing team engagements
- Experience reverse engineering malware, data obfuscators, or ciphers
- Technical writing experience for assessment reports, presentations, and operating procedures
- Strong understanding of security principles, policies, and industry best practices
- Experience with C and compiler toolchains
- Participation in CTFs, Hack The Box, cyber-defense competitions, public speaking, or public security research
Coalfire Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Coalfire and has not been reviewed or approved by Coalfire.
-
Leave & Time Off Breadth — Flexible paid time off and paid parental leave are prominently offered, with remote/WFH support enabling time away when workload allows.
-
Healthcare Strength — Comprehensive medical, dental, vision, wellness resources, and an EAP are part of the core package. Carrier coverage and plan options are regularly highlighted across employer materials.
-
Retirement Support — A company‑matched 401(k) is included alongside other financial and development perks. This retirement benefit is consistently featured across benefits overviews.
Coalfire Insights
What We Do
Coalfire is the cybersecurity advisor that helps private and public sector organizations avert threats, close gaps, and effectively manage risk. By providing independent and tailored advice, assessments, technical testing, and cyber engineering services, we help clients develop scalable programs that improve their security posture, achieve their business objectives, and fuel their continued success. Coalfire has been a cybersecurity thought leader for more than 20 years and has offices throughout the United States and Europe.







