Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Manual Ethical Hacker

Bank of America

Manual Ethical Hacker

Denver, Colorado;Seattle, Washington; Jacksonville, Florida; Charlotte, North Carolina; Jersey City, New Jersey; Boston, Massachusetts; Washington, District of Columbia; Chicago, Illinois

To proceed with your application, you must be at least 18 years of age.

Acknowledge (

Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.

Acknowledge (

Refer a friend

To proceed with your application, you must be at least 18 years of age.

Acknowledge (

Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.

Acknowledge (

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.

Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Job Description:

Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the vulnerability of the bank's applications to malicious hacking activity.

This intermediate technical role is responsible for performing application security assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include performing research, understanding the bank's security policies, working with the appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business.

Key Responsibilities in order of importance:

  • Perform assigned analysis of internal and external threats on information systems and predict future threat behavior

  • Incorporate threat actors' tactics, techniques, and procedures into offensive security testing

  • Perform assessments of the security, effectiveness, and practicality of multiple technology systems

  • Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.

  • Prepare and present detailed technical information for various media including documents, reports, and notifications

  • Provide clear and practical advice regarding managed risks

  • Learn and develop advanced technical and leadership skills, Mentor Junior assessors in technical tradecraft and soft skills

Required Skills:

  • Minimum of 4 years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment

  • Detailed technical knowledge in at least 3 of the following areas: security engineering; application architecture; authentication and security protocols; application session management; applied cryptography; common communication protocols; mobile frameworks; single sign-on technologies; exploit automation platforms; RESTful web services

  • SQL injection/XSS attack without the use of tools

  • Experience performing manual code reviews for security relevant issues

  • Experience working with SAST tools to identify vulnerabilities

  • Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings

  • Experience performing manual web application assessments i.e., must be able to simulate a

  • Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)

  • Experience with vulnerability assessment tools and penetration testing techniques

  • Solid programming/debugging skills

  • Experience of using a variety of tools, included, but not limited to, IBM AppScan, Burp and SQL Map

  • Threat Analysis

  • Innovative Thinking

  • Technology Systems Assessment

  • Technical Documentation

  • Advisory

Desired:

  • CISSP, CEH, OSCP, OSWE, GPEN, PenTest+ or similar

  • Strong programming/scripting skills

  • Mobile application analysis

  • Frida

  • Binary analysis (disassembly skills)

Skills:

  • Advisory

  • Innovative Thinking

  • Technical Documentation

  • Technology System Assessment

  • Threat Analysis

  • Adaptability

  • Collaboration

  • Executive Presence

  • Scenario Planning and Analysis

  • Test Engineering

  • Controls Management

  • Information Systems Management

  • Issue Management

  • Mentoring

  • Presentation Skills

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

Shift:

1st shift (United States of America)

Hours Per Week:

40

Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.

View your "Know your Rights ( " poster.

View the LA County Fair Chance Ordinance ( .

Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.

Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.

This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Manual Ethical Hacker in Charlotte, NC vacancy
  •  ...subcontractor inquiries Our banking client is seeking a QA Manual Tester to join their team. As a QA Manual Tester, you will be...  ...and in 2023 ManpowerGroup was named one of the World's Most Ethical Companies for the 14th year - all confirming our position as the... 
    Suggested
    Contract work
    For subcontractor

    Experis/Manpower Group

    Charlotte, NC
    1 day ago
  • $61.06 - $68.8 per hour

     ...SWIFT ISO 20022 Manual Tester Charlotte, North Carolina Hybrid Contract $61.06/hr - $68.8/hr Outstanding long-term contract opportunity! A well-known Financial Services Company is looking for a SWIFT ISO 20022 Manual Testers in Charlotte NC. Work with the... 
    Suggested
    Long term contract
    Full time
    Contract work
    Temporary work
    Work at office
    Flexible hours

    Motion Recruitment

    Charlotte, NC
    1 day ago
  •  ...experience training military experience education. Skills: Conduct Dynamic Application Security Testing (DAST) through manual testing and by using automated testing tools Review test results from tools Ensure that DAST tests are completed successfully... 
    Suggested

    Syntricate Technologies

    Charlotte, NC
    20 hours ago
  •  ...Analyzing web applications for weaknesses and vulnerabilities using manual and automated methods. Understanding and exploiting known...  ...of experience ~ Industry certifications such as Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), or... 
    Suggested
    Part time
    Remote work

    Rapid Strategy

    Charlotte, NC
    3 days ago
  • $104k - $156k

     ...controls across laptops and mobile devices ~ Build automation and tooling to enforce secure configuration baselines and reduce manual effort ~ Partner with IT on device management, deployment, and lifecycle security ~ Reduce enterprise risk by... 
    Suggested
    Remote work

    Relativity

    Charlotte, NC
    3 days ago
  • $119k - $187k

     ...and policy enforcement for human and non-human identities Drive modernization of PAM capabilities, transitioning from legacy, manually managed access models to automated, policy-driven, and API-integrated solutions aligned with Zero Trust principles Guide adoption... 
    Work experience placement
    Remote work

    Wells Fargo

    Charlotte, NC
    1 day ago
  •  ...Performing QA testing on ServiceNow applications. Somebody who works well with others and wants to be part of a team. Stages - Manual QA Role Tasks Requirement Analysis - Analyze Requirements/User Stories to understand Application under test Test Case Identification... 
    Contract work

    Software Technology Inc

    Charlotte, NC
    20 hours ago
  •  ...qualify, candidates must be eligible to work in US without sponsorship now or in future. IN PERSON INTERVIEW REQUIRED. Manual QA Tester Charlotte, NC (MUST be local to Charlotte) 6 months Contract to Hire Digital portals: specialty... 
    Contract work
    Local area

    My3Tech Inc

    Charlotte, NC
    3 days ago
  •  ...Insight Global is looking for a manual QA Engineer to join on our our financial clients supporting a brand-new, web-based application. The QA Engineer will join early in the lifecycle and play a key role in shaping testing practices. The team is currently 100% manual... 

    Insight Global

    Charlotte, NC
    1 day ago
  •  ...Position: Senior Manual QA Tester Location: Charlotte, NC ~4x/week onsite Contract Length: 6+ months Top Requirements: # Test management tool and test case writing experience # Full testing life cycle experience # Get requirements (typically... 
    Long term contract
    Contract work
    Local area

    My3Tech Inc

    Charlotte, NC
    4 days ago
  •  ...systems specifically by implementing the right AI tool/technology that will fill the gaps that are currently missing. Review current manual processes, identify what can be automated using AI tools, and support teams to implement automated processes from a technical... 
    Local area
    Relocation

    Cedent Life Talent

    Charlotte, NC
    25 days ago
  •  ...Training and Documentation: Provide training to end-users on new processes and functionalities. Create documentation including user manuals, configuration guides, and training materials Support and Maintenance: Provide ongoing support and maintenance for OTC... 
    Contract work
    Temporary work
    Flexible hours

    Honeywell Aerospace

    Charlotte, NC
    6 days ago
  •  ...integrates seamlessly into CI/CD pipelines. You'll work closely with the QA Architect to modernize the testing strategy, reduce manual bottlenecks, and proactively identify defects at the code level. This is a hands-on, senior-level role for someone who can think like... 
    Contract work

    Saxon Global

    Charlotte, NC
    3 days ago
  •  ...opportunity to define and build the testing strategy and infrastructure. What We're Looking For Developer-first mindset (not a manual QA tester) Strong interest in automation, quality engineering, and testing systems Comfortable working in a highly... 

    Saxon Global

    Charlotte, NC
    20 hours ago
  • A cybersecurity services firm is seeking a Senior Penetration Tester to identify vulnerabilities in web applications. The ideal candidate will have over 5 years of experience, relevant degree, and certifications like CEH or OSCP. The role involves conducting penetration...
    Part time
    Remote work

    Rapid Strategy

    Charlotte, NC
    1 day ago
  • $500 per month

    Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements: ...
    Remote work
    10 hours per week

    Babki

    Charlotte, NC
    3 days ago
  •  ...Job Title: UAT Tester Locations - Charlotte, NC 28262 Durations - 12 Months Note: We need UAT Tester only, NOT manual or automation testers. KYC/AML/Financial Crimes background is required. Required Skills: Experience in UAT testing... 
    Hourly pay
    Relocation

    Veracity

    Charlotte, NC
    2 days ago
  •  ...Messaging, API Database # No wells or BoA exp # Strong SQL experience # Sharepoint or React testing experience # Strong manual exp and some exposure to automation testing (the group uses something called Excel Q for automation which is really easy to use but... 
    Long term contract
    Contract work
    Local area

    My3Tech Inc

    Charlotte, NC
    3 days ago
  • Security Engineer - Application Security We are looking for a Security Engineer- Application Security. Please let me know if interested. Locations: Charlotte NC, Chandler AZ, Westlake TX (Hybrid), (3 days onsite) Duration: 12+ Months Contract W2 Contract Only...
    Contract work
    Work experience placement

    Syntricate Technologies

    Charlotte, NC
    20 hours ago
  • $46 - $51.08 per hour

     ...non-functional, and compliance requirements. This role involves conditioning and generating test data, building and executing both manual and automated test suites, recording and communicating test results, and assisting with triaging defects. Key Responsibilities... 
    Hourly pay
    Contract work
    3 days per week

    Apex Systems

    Charlotte, NC
    3 days ago
  • $80k - $90k

     ...transactional workflows Write and execute detailed test cases based on requirements and system design documentation Perform manual testing across multiple system components including front-end and back-end integrations Conduct API and web services testing using... 
    Local area

    KellyMitchell Group

    Charlotte, NC
    4 days ago
  •  ...Responsibilities: Develop test strategy/plans (from end user requirements and use cases), design, implement and run automated/manual tests and work with developers / managers to ensure sufficient quality prior to release. Provides systems quality assurance... 

    Samprasoft

    Charlotte, NC
    1 day ago
  •  ...interpret client information received from the computer and able to hear and speak with individuals in person and on the phone. Manual Dexterity / Keyboarding Able to work standard office equipment, including PC keyboard and mouse, copy/fax machines, and printers... 
    Full time
    Part time
    Work experience placement
    Work at office
    Shift work
    Day shift

    Truist Inc

    Charlotte, NC
    3 days ago
  •  ...interpret client information received from the computer and able to hear and speak with individuals in person and on the phone. Manual Dexterity / Keyboarding Able to work standard office equipment, including PC keyboard and mouse, copy/fax machines, and printers... 
    Permanent employment
    Full time
    Part time
    H1b
    Work at office
    Work visa
    Shift work
    Day shift

    Truist Inc

    Charlotte, NC
    2 days ago
  • $85 - $90 per hour

     ...defect remediation expectations. AI Innovation for Application Security Identify and deliver AI and GenAI use cases that reduce manual AppSec effort and improve security coverage. Design and implement automated threat modeling using code, infrastructure-as-code,... 
    Hourly pay
    Contract work
    Temporary work
    Work experience placement
    Immediate start
    Worldwide
    Flexible hours

    Innova Solutions

    Charlotte, NC
    2 days ago
  •  ...Commercial Banking experience required. User Acceptance Testing from a customer and/or banker experience. ATM Mobile Banking Digital experience. ALM Octane Selenium Tosco. Experience leading the movement from Manual to Automated scripts. Self-Starter.... 

    RIT Solutions

    Charlotte, NC
    20 hours ago
  •  ...detection logic, micro-hunts, and the integration of automation and AI-assisted analytics to increase detection fidelity and reduce manual effort. Success in this role requires advanced technical depth, strong operational rigor, and the ability to communicate clearly... 

    IS3 Solutions

    Charlotte, NC
    3 days ago
  •  ...interpret client information received from the computer and able to hear and speak with individuals in person and on the phone. Manual Dexterity / Keyboarding Able to work standard office equipment, including PC keyboard and mouse, copy/fax machines, and printers.... 
    Work at office
    Remote work

    SunTrust Investment Services, Inc.

    Charlotte, NC
    20 hours ago
  •  ...(above 89 decibels). ~ Knowledge of relevant processes and procedures. ~ Ability to obtain and maintain knowledge of technical manuals and procedures. ~ Ability to pass specific training and qualifications. ~ Willingness to work overtime, including shift work, weekends... 
    Shift work

    EnergySolutions

    Charlotte, NC
    4 days ago
  •  ...interpret client information received from the computer and able to hear and speak with individuals in person and on the phone. Manual Dexterity / Keyboarding Able to work standard office equipment, including PC keyboard and mouse, copy/fax machines, and printers... 
    Permanent employment
    Full time
    Part time
    Work experience placement
    H1b
    Work at office
    Work visa

    SunTrust Investment Services, Inc.

    Charlotte, NC
    12 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Manual Ethical Hacker. Be the first to apply!