Capital Group Logo

Capital Group

Penetration Testing Operations Lead

Reposted 3 Hours Ago
Be an Early Applicant
In-Office
2 Locations
173K-294K Annually
Senior level
In-Office
2 Locations
173K-294K Annually
Senior level
The Penetration Testing Operations Lead oversees security assessments, improves processes, and coordinates with stakeholders to enhance security in products and services.
The summary above was generated by AI

“I can succeed as a Penetration Testing Operations Lead at Capital Group”:

As the Penetration Testing Operations Lead you are an individual contributor in the Capital Group (CG) AppSec / Penetration Testing team. The CG AppSec team is part of Information Security in CG’s Information Technology Group. In the role you will be help us drive improvements in the systems and processes that support our penetration testing function to undertake exciting attacks and improvements. You will be responsible for coordinating and communicating with the key technology / business stakeholders for delivery of security assessments and advising on technology risks and mitigations. This role is hybrid (in-office 3 days/week) and can be in Irvine CA or New York NY depending on candidate current location and/or preference.

In addition, you will be responsible for:

  • You will own programs of work which drive improvements across enterprise systems and processes, identifying challenges and pain points, and provide novel approaches of solving them.

  • You will provide technical solutions to day-to-day challenges using existing internal/external technologies.

  • You will support our data-driven approach by gathering, analyzing, and presenting data gathered from a range of internal systems to identify areas of improvement and recommend solutions.

  • You will support penetration testers (both internal and third party) in operational support request and progression of the service.

  • You will act as a technical leader in penetration testing function, engaging with stakeholders across the business to drive collaborative improvement efforts that enhance the security of our products and services.

  • You will analyze penetration testing results and prepare detailed reports documenting identified vulnerabilities, their potential impact, and recommended remediation actions.

  • You will work closely with cross-functional teams across technology, infrastructure, business including developers, system administrators, and business stakeholders, to prioritize and address security findings. You will be expected to communicate effectively and have an empathetic outlook towards development teams by authoring clear, actionable guidance on writing secure code.

  • You will keep up to date with the latest security trends, vulnerabilities, and attack techniques to continuously improve internal testing methodologies and stay ahead of potential threats. Be an active advocate to software development teams in educating them on secure software development methodologies.

  • You will collaborate with incident response, security / engineering / legal teams globally.

“I am the person Capital Group is looking for.”

  • You have a bachelor's degree in computer science, a related field, or equivalent experience.

  • You have a minimum of 8 years of experience in working directly with engineering teams.

  • You have a minimum of 5 years of technical product or program management experience.

  • You have experience developing and supporting Bug Bounty or other Vulnerability Disclosure Programs is a plus.

  • You have a minimum of 5 years of program management experience including scope, schedule, budget, quality, along with risk and critical path management experience.

  • You have excellent communication skills (written, oral), with the ability to simplify and document complex technical details to both technical and non-technical audiences.

  • You can learn quickly and have a track record of developing a deep understanding of systems and risks to the business.

  • Coach and work with engineers to build security and privacy by design.

  • Perform application design, threat detection, incident response, patching, vulnerability remediation, secure development training, and user training.

  • You can work independently, collaboratively and take the initiative to drive security initiatives forward.

  • You can manage multiple tasks and coordinate/delegate to achieve speedy resolutions to application security-related security incidents working with stakeholders globally.

  • Strong analytical and problem-solving abilities, with a keen attention to detail.

‎ 

Southern California Base Salary Range: $173,211-$277,138

‎ 

‎ 

‎ 

New York Base Salary Range: $183,613-$293,781

‎ 

‎ 

‎ 

‎ 

‎ 

‎ 

‎ 

‎ 

 ‎ 

 ‎

 ‎

In addition to a highly competitive base salary, per plan guidelines, restrictions and vesting requirements, you also will be eligible for an individual annual performance bonus, plus Capital’s annual profitability bonus plus a retirement plan where Capital contributes 15% of your eligible earnings.

You can learn more about our compensation and benefits here.

* Temporary positions in Canada and the United States are excluded from the above mentioned compensation and benefit plans.


We are an equal opportunity employer, which means we comply with all federal, state and local laws that prohibit discrimination when making all decisions about employment. As equal opportunity employers, our policies prohibit unlawful discrimination on the basis of race, religion, color, national origin, ancestry, sex (including gender and gender identity), pregnancy, childbirth and related medical conditions, age, physical or mental disability, medical condition, genetic information, marital status, sexual orientation, citizenship status, AIDS/HIV status, political activities or affiliations, military or veteran status, status as a victim of domestic violence, assault or stalking or any other characteristic protected by federal, state or local law.

Top Skills

Data Analysis
Penetration Testing
Risk Management
Secure Development Methodologies
Vulnerability Remediation
HQ

Capital Group Los Angeles, California, USA Office

333 South Hope Street, Los Angeles, CA 90071, US, Los Angeles, CA, United States, 90071

Similar Jobs

45 Minutes Ago
Hybrid
Irvine, CA, USA
185K-277K Annually
Senior level
185K-277K Annually
Senior level
AdTech • Digital Media • Marketing Tech
The Director will lead the AMS and XIP platforms' development and operations, manage a distributed team, and drive data-driven insights.
Top Skills: Advertising TechnologiesCloud Systems ManagementData Architecture
An Hour Ago
Hybrid
San Francisco, CA, USA
31-62
Mid level
31-62
Mid level
Fintech • Financial Services
The Branch Manager oversees branch operations, leads and develops staff, enhances customer engagement, maintains compliance, and drives business growth.
An Hour Ago
Hybrid
Burbank, CA, USA
22-28
Entry level
22-28
Entry level
Fintech • Financial Services
As a Teller, you will process transactions, support customer interactions, and maintain operational standards in a banking environment.

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account