Offensive Security Manager (Penetration Testing | Red Team | Adversary Simulation)

Reposted 2 Days Ago
Be an Early Applicant
Leça do Balio, Matosinhos, Porto, PRT
In-Office
Senior level
Artificial Intelligence • Big Data • Information Technology • Security • Software
The Role
Lead and manage penetration testing, red team, purple team and adversary simulation programs; coordinate with IR/SOC/Threat Intel; define methodologies, reporting, and governance; mentor staff and deliver actionable findings to engineering and executives.
Summary Generated by Built In
Location: Leca do Balio, Portugal

About the role

We are seeking an experienced Offensive Security Manager to lead and coordinate penetration testing, red teaming, and adversary simulation activities across the organization. You will manage offensive security operations end-to-end while collaborating closely with Incident Response (DFIR), Threat Hunting, SOC, Threat Intelligence, and Security Leadership to strengthen cyber resilience.

What you’ll do
  • Lead and manage offensive security engagements: pentests, red team operations, purple team exercises, and security validation.

  • Coordinate with DFIR/SOC/Threat Intel/Security Engineering during cyber incidents to provide adversary-focused technical guidance.

  • Define and improve methodologies, playbooks, reporting standards, testing procedures, and risk prioritization aligned with enterprise security objectives.

  • Translate technical findings into clear, actionable recommendations for engineering teams and executive-level reporting.

  • Mentor and develop offensive security professionals; ensure quality delivery, stakeholder alignment, and continuous improvement.

  • Own planning and governance: scope definition, timelines, communication, and delivery assurance for complex assessments.

What you bring

Required

  • 7+ years in offensive security (pentesting/red teaming/adversary emulation) with demonstrable leadership experience.
  • Strong hands-on background in:
    • Web/API, infrastructure & cloud testing
    • Threat emulation / adversary simulation
    • Security validation and control testing
  • Ability to collaborate effectively with IR/DFIR, SOC, Threat Hunting, TI and senior stakeholders.
  • Strong reporting & communication skills: able to explain risk, impact, and remediation to technical and non-technical audiences.
  • English level C1.

Nice to have

  • Experience running purple team programs and security control validation frameworks.
  • Experience supporting high-profile investigations and post-incident technical analysis.
  • Exposure to cloud offensive security, mobile, OT/IoT, or social engineering (as applicable).

Certifications (preferred)

  • Offensive Security: OSEP, OSCE3
  • SANS: GXPN, GMON, GCFA
  • CREST: CCSAM / CCTIM
  • Governance/Leadership: ISACA CISM, ISC2 CISSP
  • Microsoft: SC-100
  • Altered Security: CRTE / CARTP

What we offer

  • Competitive compensation package (base + variable) and benefits.
  • A role with real impact on enterprise security posture and cyber resilience.
  • Continuous learning environment (certifications, trainings, knowledge sharing).
  • Collaboration with senior security stakeholders and cross-functional teams.
  • Flexible working model (depending on local policy) + medium travel.

YOUR CAREER AT THALES
Future opportunities will allow you to discover other domains or sites. You will be able to evolve and grow your competences in different areas:
Room and attention to personal development
Build your talents in another domain of Thales Group, discovering new products, new customers, new country or go to a more complex Solution
Choose between a technical expertise or a leadership path
Build an international career within a leading Engineering Group

Skills Required

  • 7+ years in offensive security (pentesting/red teaming/adversary emulation) with demonstrable leadership experience.
  • Hands-on web and API testing experience.
  • Hands-on infrastructure and cloud testing experience.
  • Threat emulation / adversary simulation expertise.
  • Security validation and control testing experience.
  • Ability to collaborate effectively with IR/DFIR, SOC, Threat Hunting, Threat Intelligence and senior stakeholders.
  • Strong reporting and communication skills for technical and non-technical audiences.
  • English language proficiency at C1 level.
  • Experience running purple team programs and security control validation frameworks.
  • Experience supporting high-profile investigations and post-incident technical analysis.
  • Exposure to cloud offensive security, mobile, OT/IoT, or social engineering.
  • Relevant certifications (examples: OSEP, OSCE3, GXPN, GMON, GCFA, CCSAM/CCTIM, CISM, CISSP, SC-100, CRTE/CARTP).

Thales Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Thales and has not been reviewed or approved by Thales.

  • Retirement Support Retirement plans with employer contributions and matches, profit sharing, and share purchase opportunities are emphasized across multiple regions. These elements are positioned as competitive components of total rewards.
  • Leave & Time Off Breadth Generous PTO that increases with tenure, paid holidays, and paid military, maternity, and paternity leave are described. This breadth supports work–life balance across locations.
  • Flexible Benefits Hybrid work options, flexible schedules, and parental supports such as childcare benefits and leave for sick children are available in several markets. Flexibility is presented as a core part of the employee experience.

Thales Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Paris
63,258 Employees

What We Do

Thales is a global high technology leader investing in digital and “deep tech” innovations – connectivity, big data, artificial intelligence, cybersecurity and quantum technology – to build a future we can all trust, which is vital to the development of our societies. The company provides solutions, services and products that help its customers – businesses, organisations and states – in the defence, aeronautics, space, transportation and digital identity and security markets to fulfil their critical missions, by placing humans at the heart of the decision-making process.

Similar Jobs

Pfizer Logo Pfizer

Digital Operations Agentic Lead - Senior Manager

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
29 Locations
121990 Employees

Pfizer Logo Pfizer

Product Specialist

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
29 Locations
121990 Employees

Teya Logo Teya

Back-end Engineer

Fintech • Payments • Financial Services
Hybrid
2 Locations
1000 Employees

Teya Logo Teya

Global Head of Shared Services

Fintech • Payments • Financial Services
Hybrid
2 Locations
1000 Employees

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account