Cyber Security Penetration Testing Lead (Program Management)
kyndryl · Budapest, Hungary · On-site
Posted Sep 28, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Who We Are
At Kyndryl, we run and reimagine the mission-critical technology systems that drive advantage for the world’s leading businesses. We are at the heart of progress; with proven expertise and a continuous flow of AI-powered insight, enabling smarter decisions, faster innovation, and a lasting competitive edge. For our people—Kyndryls—that means doing purposeful work that powers human progress. Join us and experience a flexible, supportive environment where your well-being is prioritized and your potential can thrive.
The Role
Who We Are
Kyndryl's Chief Information Security Office (CISO) is responsible for protecting the enterprise through effective cyber risk management, security governance, exposure reduction, and security validation. As cyber threats continue to evolve, our focus is not only on identifying vulnerabilities, but on ensuring risks are understood, prioritized, remediated, and validated through measurable outcomes.
We are seeking a highly motivated cybersecurity professional to join our Integrated Exposure Operations (IXO) team. This role plays a critical part in reducing organizational cyber risk through vulnerability management, security validation, penetration testing governance, and remediation orchestration across a complex global technology environment.
The Role
As a Cyber Security Penetration Testing Lead (Program Management), you will be responsible for coordinating and governing key exposure management and security validation activities across the enterprise. You will work closely with application owners, infrastructure teams, risk management functions, security engineering teams, and executive stakeholders to ensure security findings are effectively prioritized, remediated, and validated.
You will lead the operational management of penetration testing and security validation programs, ensuring assessments are planned, executed, tracked, and closed in accordance with enterprise security requirements. You will help drive risk-based decision making by ensuring vulnerabilities and exposures are translated into actionable remediation plans and measurable risk reduction outcomes.
Success in this role requires strong stakeholder management, cybersecurity knowledge, program governance, and the ability to translate technical findings into meaningful business risk conversations.
Responsibilities
Coordinate and govern enterprise penetration testing, security validation, and related activities from onboarding through remediation and closure.
Drive vulnerability and exposure management processes, ensuring findings are prioritized using risk-based methodologies and tracked to resolution.
Partner with solution owners, engineering teams, Cyber Operations, and remediation teams to accelerate risk reduction activities.
Facilitate security findings reviews, remediation workshops, risk acceptance discussions, and retest readiness assessments.
Track and report remediation progress, risk treatment plans,…