T

Managing Consultant - Penetration Testing

Theos Cyber Solutions Ltd. Taguig, Metro Manila, Philippines

hybridfull-time
Posted Aug 29, 2026
  • Role & seniority

    • Managing Consultant (security leadership role)

    • Manages and mentors a penetration testing team; remains hands-on as needed

  • Stack/tools

    • Penetration testing & vulnerability assessment methodologies

    • Security tools/techniques (implied; specific tools not listed)

    • Certifications preferred (e.g., OSCP/CREST/GPEN/OSWE/GWAPT/CISSP)

  • Top 3 responsibilities

    • Lead and manage delivery of vulnerability assessments and penetration testing for enterprise clients

    • Ensure quality and on-time engagement delivery; perform QA of technical reports

    • Support practice growth: develop Pen Testing capabilities/processes and assist with pre-sales/scoping

  • Must-have skills

    • 5+ years information security experience with strong focus on pen testing in consulting

    • 1–3 years people/delivery/operations management experience

    • Deep knowledge of VAPT/pen testing methodologies

    • Ability to lead distributed teams across Asia and provide technical mentoring

    • Clear communication of findings and remediation guidance to technical + non-technical stakeholders

    • Client escalation/conflict management; coordination with Offense Director and Customer Success

  • Nice-to-haves

    • Relevant certifications: OSCP, CREST, GPEN, OSWE, GWAPT, CISSP or comparable

    • Experience with pre-sales (presentations, solution design, scoping, proposals)

    • Active contribution to security communit

Full Description

About the Role

Theos is looking for a Managing Consultant to join our team of security professionals. This is a leadership role responsible for managing our Penetration Testing team, developing the practice, and ensuring the successful delivery of high-quality security engagements to enterprise clients across Asia. You will lead and mentor a highly technical team while remaining hands-on when operational support, technical review, or quality assurance is needed. You will also work closely with clients, the Offense Director, Customer Success, and other internal stakeholders.

What You’ll Do Lead and manage a team of penetration testers and security consultants delivering Vulnerability Assessment and Penetration Testing engagements. Oversee project delivery and ensure engagements are completed with excellent quality and within agreed timelines and service-level commitments. Perform vulnerability assessments and penetration tests when operational support is needed. Review and quality-check technical reports and client deliverables. Communicate technical findings, business impact, and remediation recommendations clearly to technical and non-technical stakeholders. Manage client calls, concerns, and escalations in coordination with the Offense Director and Customer Success team. Support the development of the Penetration Testing practice, capabilities, service portfolio, and internal processes. Assist with pre-sales activities, including client presentations, solution design, scoping, and proposal preparation. Research emerging threats, attack techniques, security tools, and industry developments. Lead internal initiatives aimed at improving the team’s processes, technical capabilities, and service delivery. Provide security training and advisories to clients and members of the team. Mentor team members and support their technical and professional development. Contribute to the security community through tools, presentations, white papers, technical articles, and similar initiatives.

What We’re Looking For At least five years of information security experience, with a significant focus on penetration testing in a consulting environment. One to three years of experience in people management, delivery management, or overseeing technical operations and project delivery. Strong technical knowledge of vulnerability assessment and penetration testing methodologies. Demonstrated ability and genuine interest in leading highly technical professionals from different locations across Asia. Ability to explain complex technical findings and security risks clearly to non-technical audiences. Strong consulting, client communication, and stakeholder-management skills. Ability to manage conflicts, client concerns, and escalations professionally. Experience working with project managers, developers, technical teams, application owners, and executives. OSCP, CREST, GPEN, OSWE, GWAPT, CISSP, or comparable certifications are highly preferred. A genuine passion for cybersecurity and the security community.

What’s in It for You International working environment Hybrid work arrangement (90% Remote, occasional on site for meetings) Flexible working hours Comprehensive medical benefits for you and one dependent Training and certification allowance Regular company events

A Note About Your Application

Please answer the screening questions carefully, as your responses will form an important part of our initial assessment. You must also indicate your desired compensation. Applications without a stated desired compensation may not be processed.

Penetration testingVulnerability assessmentTeam leadershipProject managementStakeholder managementSecurity consultingQuality assuranceTechnical reportingPre-salesSecurity trainingMentoringRisk assessmentIncident remediationCybersecurityClient communicationmulti-location

Cookies & analytics consent

We serve candidates globally, so we only activate Google Tag Manager and other analytics after you opt in. This keeps us aligned with GDPR/UK DPA, ePrivacy, LGPD, and similar rules. Essential features still run without analytics cookies.

Read how we use data in our Privacy Policy and Terms of Service.