Senior Mobile Penetration Tester
$119.77k - $140.9kU.S. Bank
At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at—all from Day One.
Job Description
U.S. Bank is seeking a Senior Mobile Penetration Tester (Mobile, API, Cloud) with demonstrated competence and experience to support the success of our information security program. In this role, you will assess the security of mobile, API, and web applications as well as information systems by identifying vulnerabilities, performing exploitations, and recommending mitigation strategies to strengthen resilience against cyber threats.
Responsibilities
Lead dynamic penetration testing against mobile, API, and web applications and information systems.
Identify vulnerabilities and use manual exploitation techniques to demonstrate business impact.
Deliver clear, actionable reports outlining findings, vulnerability scoring, and remediation guidance for both technical and non‑technical audiences.
Continuously enhance testing methodologies by researching emerging threats, tools, and techniques.
Support team initiatives such as process optimization, tool/script development, and knowledge sharing.
Basic Qualifications
Bachelor’s degree in Engineering or Science, or equivalent work experience.
Eight or more years of experience in information security.
Two or more years of experience in:
IT infrastructure management
Application architecture
Risk management
Data architecture
Middleware technology
IT operations and project management
Required Skills/Experience
Mobile Application Security
5+ years of hands‑on experience with Android and iOS testing methodologies.
Familiarity with platform‑specific risks, OWASP MASVS, and MASTG.
Web & API Penetration Testing
- Deep understanding of OWASP Top 10, API Security Top 10, and SANS Top 25 vulnerabilities.
Manual Testing & Exploitation
Advanced proficiency with Burp Suite Pro, Postman/Insomnia, and custom scripts.
Skilled in identifying business logic flaws, access control issues, and chaining exploits.
Cloud & Platform Fluency
Experience testing in AWS, Azure, containerized environments, and Kubernetes.
Familiarity with cloud‑native tools such as AWS Inspector, Azure Defender, and ScoutSuite.
Technical Proficiency
Strong scripting skills (Python, PowerShell, Bash, Ruby, Go).
Solid understanding of OAuth, SAML, JWT, TCP/IP, DNS, firewalls, and IDS/IPS.
Tooling & Automation
Experience developing custom tools and scripts to automate testing workflows.
Familiarity with tools such as Nmap, Metasploit, and Kali Linux.
Threat Modeling & Risk Assessment
- Ability to conduct threat modeling and risk assessments to prioritize testing and communicate business impact.
Regulatory & Compliance
- Knowledge of PCI‑DSS, HIPAA, NIST 800‑53, ISO 27001, and FedRAMP.
Communication & Documentation
Excellent written and verbal communication skills.
Experienced in articulating findings to technical and non‑technical audiences, including executives.
Leadership & Mentorship
- Proven ability to lead engagements, manage stakeholder expectations, and mentor junior testers.
Preferred Skills/Experience
Source code review.
ServiceNow Application Vulnerability Response.
Knowledge of change control and security architecture
Certifications (Preferred)
- GMOB, GWAPT, OSWE, OSCP, GPEN, GXPN, or equivalent.
This role requires working from a U.S. Bank location three (3) or more days per week.
If there’s anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to our disability accommodations for applicants ( .
Benefits:
Our approach to benefits and total rewards considers our team members’ whole selves and what may be needed to thrive in and outside work. That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following:
Healthcare (medical, dental, vision)
Basic term and optional term life insurance
Short-term and long-term disability
Pregnancy disability and parental leave
401(k) and employer-funded retirement plan
Paid vacation (from two to five weeks depending on salary grade and tenure)
Up to 11 paid holiday opportunities
Adoption assistance
Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law
Review our full benefits available by employment status here ( .
U.S. Bank is an equal opportunity employer. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, and other factors protected under applicable law.
E-Verify
U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S. Citizenship and Immigration Services. Learn more about the E-Verify program ( .
The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role. In addition to salary, U.S. Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401(k) contribution and pension (all benefits are subject to eligibility requirements). Pay Range: $119,765.00 - $140,900.00
U.S. Bank will consider qualified applicants with arrest or conviction records for employment. U.S. Bank conducts background checks consistent with applicable local laws, including the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act as well as the San Francisco Fair Chance Ordinance. U.S. Bank is subject to, and conducts background checks consistent with the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA). In addition, certain positions may also be subject to the requirements of FINRA, NMLS registration, Reg Z, Reg G, OFAC, the NFA, the FCPA, the Bank Secrecy Act, the SAFE Act, and/or federal guidelines applicable to an agreement, such as those related to ethics, safety, or operational procedures.
Applicants must be able to comply with U.S. Bank policies and procedures including the Code of Ethics and Business Conduct and related workplace conduct and safety policies.
Posting may be closed earlier due to high volume of applicants.
$120k - $140k
...support of the broader SIG organization. Triaxiom focuses on penetration testing and strategic security consulting. We’re a team of creative... ...equivalent industry experience Web Application, API, and/or Mobile Penetration Testing experience Strong oral and written client‑...SeniorTemporary workImmediate startFlexible hours$144k - $194k
...details. Job Summary Execute timely, thorough, and time-bound penetration testing of applications and infrastructure assets to identify... ..., IPS, AV) Active Directory, servers, services, desktops, and mobile devices Operating systems (Windows, Unix/Linux/AIX) Databases...SeniorWork experience placementWork at officeLocal areaRemote work1 day per week$144k - $194k
...Job Summary Execute timely, thorough, and time-bound penetration testing of applications and infrastructure assets to identify... ...IPS, AV) • Active Directory, servers, services, desktops, and mobile devices • Operating systems (Windows, Unix/Linux/AIX) • Databases...SeniorWork experience placementWork at officeLocal areaRemote work1 day per week- ...Role: Senior Offensive Security Engineer/Senior Penetration Tester/Senior Security Analyst Location: New York-Onsite Duration: Fulltime... ...engineering, open-source intelligence gathering (OSINT), mobile platforms, software security, and malware reverse...SeniorFull time
- ...A cybersecurity leader seeks an experienced Cloud Penetration Tester to execute penetration tests against GCP environments and improve client security posture. Candidates should have a Bachelor's degree, 3-5 years of relevant experience, and certifications like GXPN or...Senior
$60 per hour
A tech company specializing in AI is seeking experienced cybersecurity professionals to evaluate AI-generated cybersecurity content and contribute to the development of security-focused AI systems. This flexible, remote position allows you to work with state-of-the-art ...SeniorRemote workFlexible hours- ...A leading cybersecurity firm in the United States is seeking a Senior Associate to handle project execution in penetration testing. This role requires 3+ years of experience in hands-on testing and the OSCP certification. As a Senior Associate, you will collaborate with...SeniorRemote work
- ...A leading cybersecurity assessment firm is seeking a Senior Penetration Tester to execute hands-on testing and analysis of client environments. This remote position requires expertise in penetration testing with a focus on web applications. Ideal candidates will have 3...SeniorRemote work
- ...A cybersecurity advisory firm is seeking a Penetration Tester who will conduct manual penetration testing across various contexts. The role requires experience in client interactions, strong technical skills, and flexibility in travel across the U.S. and Canada. This...SeniorFor contractorsRemote workFlexible hours
- ...A cybersecurity firm in the United States is seeking a Senior Penetration Tester with at least 5 years of experience. In this full-time role, you will be integral to performing redteam audits, identifying vulnerabilities, and developing mitigations for clients. Ideal candidates...SeniorFull timeRemote work
$40 per hour
A cybersecurity solutions provider is seeking experienced professionals for a remote role focused on evaluating AI-generated security content and solving cybersecurity problems. Candidates should have over two years of experience in the field, strong analytical and writing...SeniorHourly payRemote workFlexible hours- ...Senior/Staff/Principal Mobile (React Native) Developer - New York - On-Site - Opportunity to join one of the Fastest-Growing and Well-Known Fin-Tech Start-Ups in NYC This young and agile company, building a cutting-edge commerce network is currently seeking Mobile...Senior
$40 per hour
...directly shapes the next generation of AI security models Qualifications 2+ years of hands‑on experience in cybersecurity (e.g., penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some coding...SeniorHourly payFull timePart timeRemote work- ...Senior Penetration Tester page is loaded## Senior Penetration Testerlocations: Remote - Nationwidetime type: Full timeposted on: Posted 30+ Days Agojob requisition id: R-869Schellman is a Top 50 CPA firm and a leading provider of attestation and compliance services. Our...SeniorWork experience placementLocal areaImmediate startRemote workFlexible hours
$60 per hour
...shapes the next generation of AI security models. Qualifications 2+ years of hands‑on experience in a cybersecurity role — such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or adjacent fields,...SeniorHourly payFull timeRemote workFlexible hours- ...Senior Manual Ethical Hacker Denver, Colorado;Seattle, Washington; Jacksonville, Florida... ...including web UI, web APIs, mobile and cloud, including associated source code... ...techniques, proficiently execute common penetration testing tools, triage, and support incidents...SeniorWork at officeShift workDay shift
- ...KREOVATE NUSA DIGITAL is seeking an experienced Penetration Tester / Red Team Operator to perform authorized security assessments. The role involves conducting penetration tests to identify and exploit vulnerabilities, with a focus on achieving remote system access. Candidates...SeniorRemote work
- ...Anaesthesia Associates of Massachusetts, P.C. is seeking a Sr. Penetration Tester for a remote position. The candidate will conduct penetration testing for our DOD client, identify security flaws, and devise strategies to mitigate cybersecurity risks. A minimum of six...SeniorRemote work
- ...NTT DATA, Inc. is seeking a Senior Penetration Tester for a remote position to enhance its cyber security operations. The candidate will proactively identify vulnerabilities, perform security assessments, and create detailed reports. A background in penetration testing...SeniorRemote work
- A cybersecurity firm in Pennsylvania seeks an experienced professional for application penetration testing. The role requires a minimum of 5 years experience in application penetration testing, proficiency in scripting languages like Python and certification in penetration...SeniorRemote work
- ...A mobile game testing company is seeking a Freelance Software Tester to explore and analyze mobile applications. In this remote role, you'll provide critical feedback on app performance and usability. This position is ideal for beginners, requires no prior experience,...FreelanceRemote work
$35 per hour
...A mobile games company is seeking a Junior Software Tester to dive into the world of mobile games and enhance player experiences. This entry-level position allows you to work remotely, explore apps on your devices, and provide valuable feedback on functionality and user...Hourly payRemote work$500 per month
...Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements:...Remote work10 hours per week- ...A technology feedback company is seeking a Freelance Product Tester to explore and review mobile applications. This entry-level position allows you to work remotely, sharing your insights into user experience and functionality. Ideal for beginners, this role offers flexibility...FreelanceRemote work
$35 per hour
...A digital product testing company is seeking a Freelance Product Tester to review mobile apps and games. In this remote role, you'll install apps, evaluate their performance, and provide detailed feedback to enhance user experiences. This position allows for flexible hours...FreelanceRemote workFlexible hours- ...A leading app testing company is seeking a Junior Beta Tester to explore mobile apps and provide feedback. This entry-level, remote position invites imaginative individuals who enjoy technology and are open to discovering new apps. You will test and review the usability...Remote workFlexible hours
$35 per hour
...A dynamic tech company is looking for a Freelance Beta Tester to evaluate mobile apps and games. You'll provide feedback on functionality and user experience, helping to shape future gaming innovations. This remote role allows you to work at your own pace, earning $35...Hourly payFreelanceRemote workFlexible hours- Mufgamericas is seeking a Senior Penetration Tester at the Vice President level to perform penetration testing on applications and infrastructure. Responsibilities include identifying vulnerabilities, mentoring peers, and reporting findings. Qualified candidates will have...Senior
- ...Framework Ventures is looking for a Software Engineering Manager to lead a team specializing in mobile application development within cloud security. The role requires 8+ years in software engineering, with a focus on iOS and Android. Responsibilities include overseeing...Senior
- PowerToFly is seeking a Sr. Mobile Developer to design and develop mobile applications using React Native. This role involves collaborating with teams on projects, optimizing app performance, and adhering to best practices in mobile development. Ideal candidates should...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Mobile Penetration Tester. Be the first to apply!
- penetration tester New York, NY
- vulnerability analyst New York, NY
- ethical hacker New York, NY
- senior development executive New York, NY
- senior technical manager New York, NY
- senior medical writer New York, NY
- senior procurement specialist New York, NY
- senior software development engineer in test New York, NY
- senior communications specialist New York, NY
- senior manager data science New York, NY

