Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Manual Ethical Hacker

Bank of America ATM

Senior Manual Ethical Hacker Denver, Colorado;Charlotte, North Carolina; Seattle, Washington; Addison, Texas; Jacksonville, Florida; Jersey City, New Jersey; Chicago, Illinois **Job Description:** At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day. One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We’re devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being. Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization. Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us! **Job Description:** Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America’s Cyber Security Assurance Offensive Security group. The program provides services to assess the security resilience of the bank’s applications to malicious hacking activity. This senior technical role is responsible performing and leading ethical hacking assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. These individuals are expected to perform application security-oriented dynamic and static assessments across a multitude of technologies including web UI, web APIs, mobile and cloud, including associated source code. Key Responsibilities in order of importance:

  • Perform assigned analysis of internal and external threats on information systems and predict future threat behavior.
  • Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value vulnerabilities/chained attacks.
  • Developing Proof-of-concepts for exploitation.
  • Perform assessments of the security, effectiveness, and practicality of multiple technology systems.
  • Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
  • Prepare and present detailed technical information for various media including documents, reports, and notifications.
  • Provide clear and practical advice regarding managing risks.
  • Learn and develop advanced technical and leadership skills, mentor Junior and Intermediate assessors in technical tradecraft and soft skills.
  • Respond to security incidents and provide technical assistance to leadership across the Information Security organization.
Required Skills:
  • Minimum of 5+ years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
  • Detailed technical knowledge in at least 5 of the following areas:
  • security engineering
  • application architecture
  • authentication and security protocols
  • application session management
  • applied cryptography
  • common communication protocols
  • mobile frameworks
  • single sign-on technologies
  • exploit automation platforms
  • Web APIs
  • Cloud environments
  • LLM security
  • Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
  • Experience performing manual web application assessments i.e., must be able to simulate a OWASP Top 10 vulnerabilities without the use of tools
  • Experience performing manual code reviews for security relevant issues
  • Experience working with DAST and SAST tools to identify vulnerabilities
  • Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
  • Experience with vulnerability assessment tools and penetration testing techniques.
  • Solid programming/debugging skills, development frameworks, CVE and CWE research/reproduction
  • Threat Analysis, threat modelling and SBOM analysis
  • Innovative thinking, threat actor simulation
  • Technology Systems Assessment
  • Technical Documentation
  • Advisory
Desired:
  • CEH, OSCP/OSCE/OSWE/GXPN/GPEN/GWAPT/GMOB/All Practitioner Certs [Port Swigger BSP Academy]/Cloud Cert(s)/ eWPT; eWPTX; eMAPT [INE Pentester Academy]
  • Strong programming/scripting skills
This job will be open and accepting applications for a minimum of seven days from the date it was posted. **Shift:** 1st shift (United States of America) **Hours Per Week:** 40 Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates. To view the "Know your Rights" poster, CLICK HERE ( \_EEOC\_KnowYourRights6.12.pdf) . View the LA County Fair Chance Ordinance ( ) . Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy (“Policy”) establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment. To view Bank of America’s Drug-free Workplace and Alcohol Policy, CLICK HERE . Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank’s required accommodation request process before your first day of work. This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason. #J-18808-Ljbffr Bank of America

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Senior Manual Ethical Hacker in Denver, CO vacancy
  •  ...Senior Manual Ethical Hacker Denver, Colorado;Charlotte, North Carolina; Seattle, Washington; Addison, Texas; Jacksonville, Florida; Jersey City, New Jersey; Chicago, Illinois **Job Description:** At Bank of America, we are guided by a common purpose to help make financial... 
    Senior
    Work at office
    Shift work
    Day shift

    Bank of America

    Denver, CO
    5 days ago
  • $160k - $205k

    Stryker Corporation is looking for a Senior Ethical Hacker based in Denver, Colorado. This role involves performing and leading ethical hacking assessments on various technologies to enhance security. Candidates should possess at least 5 years of experience in penetration... 
    Senior

    Stryker

    Denver, CO
    4 days ago
  • $124k - $163k

     ...Overview: CDT is looking for a Senior Penetration Tester to support a government customer onsite in Chantilly, VA. Candidates with OSCP certification are highly recommended to apply. Clearance: An active Top Secret/SCI with CI poly is required. Candidates... 
    Senior
    Work experience placement

    Cyber Defense Technologies

    Denver, CO
    4 days ago
  • $30.29 - $37.18 per hour

     ...is seeking a Level 3 Machinist at our Arvada, CO location. This role plays a key part in producing precision machined parts using manual machining tools. The ideal candidate will have over 5 years of experience and will focus on ensuring high-quality manufacturing output... 
    Senior
    Hourly pay
    Afternoon shift

    Honeywell

    Arvada, CO
    2 days ago
  • $140k - $160k

     ...scalable training in dynamic outdoor environments. Job Summary Our Senior Software Test Engineer will have the aptitude, ambition,...  ...Linux applications with logs, recreates, and code reviews. Perform manual and automated testing with Hardware In Loop (HIL). Interface... 
    Senior
    Full time
    Contract work
    Temporary work
    For contractors
    Flexible hours

    Red 6

    Denver, CO
    1 day ago
  • $95.6k - $159.3k

    PowerToFly seeks a Project - Security Engineer III in Aurora, CO, to lead cybersecurity efforts for government clients. You'll manage complex dependencies, drive operational success, and oversee the implementation of security solutions. Qualified candidates must have a ...
    Senior
    Full time

    PowerToFly

    Denver, CO
    5 days ago
  • $96k - $144k

     ...across complex, cross-functional initiatives. This role requires senior-level judgment and independent ownership. You will operate as a...  ...enabled tools to improve delivery quality, increase speed, and reduce manual overhead in planning, reporting, and project execution... 
    Senior
    Remote work
    Home office

    Relativity

    Denver, CO
    5 days ago
  • $130k - $180k

     ...the authority and autonomy to build a modern security architecture from the ground up, the “right way.” Expert Team: You will be a senior member of a small, highly skilled team where your expertise will be valued and your contributions will be immediately visible. Modern... 
    Senior
    Immediate start

    Alumni Ventures

    Arvada, CO
    6 days ago
  • Lockheed Martin in Littleton, Colorado seeks a Cyber Software Engineer III to drive improvements in cybersecurity solutions for aerospace and defense applications. This role necessitates advanced software development skills paired with a strong understanding of networking...
    Senior

    慨正橡扯

    Littleton, CO
    5 days ago
  •  ...vulnerability assessments, simulate real-world attacks, and collaborate with teams to enhance security measures. If you're passionate about ethical hacking and thrive in a dynamic environment, this position offers excellent benefits and opportunities for growth. #J-18808-Ljbffr... 

    Cymertek

    Aurora, CO
    4 days ago
  •  ...MANTECH seeks a mission-focused and detail-driven Senior Cyber Security Analyst to join our team in Aurora, CO .    The Senior Cyber Security Analyst will leverage their strong technical background and knowledge to support critical cybersecurity operations, monitoring... 
    Senior
    Work at office
    Shift work

    ManTech

    Denver, CO
    5 days ago
  • $160k - $205k

     ...Job Overview The Cyber Security Assurance Division is looking for a Senior Full Stack Penetration Tester to lead and perform advanced security assessments across the bank’s global technology environment. The role focuses on identifying exploitable high‑risk vulnerabilities... 
    Senior
    Remote work
    Shift work
    Day shift

    Bank of America

    Denver, CO
    2 days ago
  • A federal systems integration firm is seeking a Subject Matter Expert (SME) Computer Systems Analyst in Denver. The ideal candidate will have over 7 years of systems analysis experience and strong knowledge of federal enterprise architecture. Responsibilities include analyzing...
    Senior
    Remote job

    Cape Fox Corporation

    Denver, CO
    5 days ago
  • $160k - $205k

     ...talent and passion, and we'll provide you with an opportunity to shine and grow. The Cyber Security Assurance Division is looking for a Senior Full Stack Pentester to join a team of world-class offensive security professionals. In this role, you will diligently hunt for... 
    Senior
    Remote work
    Shift work
    Day shift

    Stryker

    Denver, CO
    2 days ago
  • Teradata Corporation (SE) is seeking an IT Senior Auditor to join our global Enterprise Risk and Assurance Services team. This role involves executing risk-based IT audits, evaluating security controls, and providing recommendations to enhance operations across the organization... 
    Senior
    Remote job

    Teradata

    Denver, CO
    1 day ago
  • Bank of America is seeking a skilled professional to lead Cyber Brand Defense strategies in Denver. This role focuses on email and domain threat management, emphasizing a strategic approach to protect the brand from phishing and spoofing incidents. The ideal candidate will...
    Senior

    Bank of America

    Denver, CO
    2 days ago
  • $102.17k

     ...Trinnex delivers value and impact to public sector clients across the country. Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate at the intersection of cybersecurity and DevSecOps to protect critical software... 
    Senior
    H1b

    CDM Smith

    Aurora, CO
    2 days ago
  • $83k - $121k

    Vantor Inc. is looking for a Senior HRIS Analyst to enhance HR technology supporting talent management and learning systems. Responsibilities include configuring Workday Talent processes and providing administration and support for HR operations. The ideal candidate has... 
    Senior

    Vantor Inc.

    Westminster, CO
    5 days ago
  • $222k - $278k

     ...Semgrep's greater security mission; and partners closely with the Engineering, People Ops and Go‑to‑Market teams. About the role As a Senior Security Engineer, you will help lead our product‑focused security efforts. You will embed with our Engineering teams and take our... 
    Senior
    Currently hiring
    Local area
    Remote work
    Weekend work
    3 days per week

    Semgrep

    Denver, CO
    1 day ago
  • A technology company in Denver is looking for a Senior Test Automation Engineer specialized in Java to enhance testing processes. You will develop scalable test automation frameworks and integrate tests into CI/CD pipelines. The ideal candidate has over 5 years of experience... 
    Senior

    Daten

    Denver, CO
    3 days ago
  • Lafarge Africa Plc is seeking a Cybersecurity Incident Response & DFIR Expert responsible for leading high-severity incident response and digital forensics tailored to the Americas time zone. This role involves both reactive and proactive phases, including designing cyber...
    Senior

    Lafarge Africa Plc

    Denver, CO
    4 days ago
  • $78k - $107k

    Markel Service Inc. is seeking a Sr. Claims Specialist in Denver, Colorado. The successful candidate will be responsible for investigating, negotiating, and settling cyber and privacy liability claims, managing complex litigation, and maintaining communication with stakeholders...
    Senior

    Markel Service Inc.

    Denver, CO
    1 day ago
  •  ...Required Work Experience Top Secret Security clearance, or eligible. Previous cybersecurity experience is required. Previous senior-level experience with cyber threat intelligence Preferred Work Experience Previous security clearance Previous utility... 
    Senior
    Work experience placement
    Work at office
    3 days per week

    Fortify Experts

    Denver, CO
    2 days ago
  • $149.3k - $234.6k

    Northrop Grumman Corp. (AU) in Aurora, CO, is looking for a Sr. Principal Cyber Software Engineer. The role involves designing and developing CNO tools, engaging in all aspects of documentation, and participation in government software procedures. Successful candidates ...
    Senior

    Northrop Grumman

    Aurora, CO
    2 days ago
  • An established industry player is seeking a skilled System and Security Administrator to enhance their security posture. This role involves hands-on experience with firewalls and security technologies, ensuring robust network protection while troubleshooting complex issues...
    Senior

    TechDigital Group

    Denver, CO
    3 days ago
  • A defense technology company is seeking System Safety Engineers for their Safety Engineering team. The role involves influencing design to meet safety expectations, analyzing safety criteria, and participating in system design. Applicants should have 8 years of relevant...
    Senior

    JSfirm.com

    Denver, CO
    3 days ago
  • Geologic is searching for a Senior Principal Systems Engineer to work on-site in Aurora, CO. In this role, you will oversee the technical aspects and collaborate with multi-disciplinary teams. Key responsibilities include defining system functional capabilities and managing... 
    Senior

    Geologic Inc

    Aurora, CO
    3 days ago
  • $97k - $156.6k

    Xcel Energy Inc is seeking a Principal or Sr. Engineer for its Integrated System Planning team in Denver, Colorado. This role involves long-term planning for gas and electric distribution systems, requiring a strong technical background and project management skills. The...
    Senior

    Xcel Energy Inc

    Denver, CO
    3 days ago
  • Xcel Energy Services Inc is seeking a Principal or Sr. Engineer for the Integrated System Planning team in Denver, Colorado. The position involves leading long-term planning initiatives for modernized energy systems. Candidates should possess strong analytical and project...
    Senior

    Xcel Energy Services Inc

    Denver, CO
    3 days ago
  • $141.6k - $212.4k

    A forward-thinking tech company in Denver is looking for a Senior Security Engineer to join the Detection and Response Team. This role focuses on building secure systems to enhance security observability and automate operations. Ideal candidates will have 5+ years of experience... 
    Senior

    Klaviyo

    Denver, CO
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Manual Ethical Hacker. Be the first to apply!