Penetration Test Program Manager
Pay range
Required Qualifications
- Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Technology, Business, Risk Management, or a related field
- 5+ years of experience in Cybersecurity, Technology Risk Management, Information Security, Governance, Risk and Compliance, Program Management, or related disciplines
- Experience supporting, coordinating, facilitating, or managing complex initiatives, penetration testing programs, or security assurance initiatives
- Strong analytical skills with the ability to identify trends, systemic issues, emerging risks, and control weaknesses
- Strong communication skills with the ability to present technical and risk information to both technical and non-technical audiences
- Experience developing reports, dashboards, metrics, presentations, and executive briefings
- Ability to manage multiple priorities and coordinate activities across numerous stakeholders and teams
- Experience working in highly regulated environments with strong governance and documentation requirements
- Ability to develop collaborative relationships across cybersecurity, technology, risk management, and business organizations
Preferred Qualifications
- Experience reviewing security findings, vulnerability assessments, penetration testing results, or technology risk assessments
- Knowledge of cybersecurity and risk management frameworks including NIST Cybersecurity Framework (CSF), NIST 800-53, NIST 800-115, FFIEC guidance, PCI DSS, or similar standards
- Professional certifications such as CISSP, CISM, CRISC, CISA, Security+, CCSK, CGRC, PMP, or similar credentials
- Experience supporting penetration testing, vulnerability management, red team, application security, cloud security, or security operations programs
- Familiarity with penetration testing methodologies, attack simulation techniques, vulnerability assessment tools, and risk reporting practices
- Experience performing thematic analysis and identifying recurring risk trends across multiple assessments or testing activities
- Experience managing vendor relationships and coordinating third-party security testing activities
- Experience developing executive-level reporting, risk metrics, and program health dashboards
- Knowledge of regulatory expectations related to cybersecurity testing and technology risk management within the financial services industry
In addition to the salary range, this role is also eligible for bonus or incentive opportunities
What's in it for you
At Schwab, you're empowered to shape your future. We champion your growth through meaningful work, continuous learning, and a culture of trust and collaboration-so you can build the skills to make a lasting impact. Our Hybrid Work and Flexibility approach balances our ongoing commitment to workplace flexibility, serving our clients, and our strong belief in the value of being together in person on a regular basis.
We offer a competitive benefits package that takes care of the whole you - both today and in the future:
- 401(k) with company match and Employee stock purchase plan
- Paid time for vacation, volunteering, and 28-day sabbatical after every 5 years of service for eligible positions
- Paid parental leave and family building benefits
- Tuition reimbursement
- Health, dental, and vision insurance
Not included in the source posting: about the role, what you'll do, benefits.
Skills
Who can apply
The employer didn't state any visa, work authorization, citizenship or clearance requirements in this posting. Confirm with the employer before applying.
Read automatically from the employer's posting text. Always confirm with the employer — requirements can change after a job is published.