Manual Ethical Hacker
Bank of America ATM
Manual Ethical Hacker
Denver, Colorado;Washington, District of Columbia; Seattle, Washington; Charlotte, North Carolina; Jacksonville, Florida; Jersey City, New Jersey; Chicago, Illinois
To proceed with your application, you must be at least 18 years of age.
Acknowledge (
Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.
Acknowledge (
Refer a friend
To proceed with your application, you must be at least 18 years of age.
Acknowledge (
Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.
Acknowledge (
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Job Description:
Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the vulnerability of the bank's applications to malicious hacking activity.
This intermediate technical role is responsible for performing application security assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include performing research, understanding the bank's security policies, working with the appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business.
Key Responsibilities in order of importance:
Perform assigned analysis of internal and external threats on information systems and predict future threat behavior
Incorporate threat actors' tactics, techniques, and procedures into offensive security testing
Perform assessments of the security, effectiveness, and practicality of multiple technology systems
Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
Prepare and present detailed technical information for various media including documents, reports, and notifications
Provide clear and practical advice regarding managed risks
Learn and develop advanced technical and leadership skills, Mentor Junior assessors in technical tradecraft and soft skills
Required Skills:
Minimum of 4 years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
Detailed technical knowledge in at least 3 of the following areas: security engineering; application architecture; authentication and security protocols; application session management; applied cryptography; common communication protocols; mobile frameworks; single sign-on technologies; exploit automation platforms; RESTful web services
SQL injection/XSS attack without the use of tools
Experience performing manual code reviews for security relevant issues
Experience working with SAST tools to identify vulnerabilities
Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
Experience performing manual web application assessments i.e., must be able to simulate a
Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
Experience with vulnerability assessment tools and penetration testing techniques
Solid programming/debugging skills
Experience of using a variety of tools, included, but not limited to, IBM AppScan, Burp and SQL Map
Threat Analysis
Innovative Thinking
Technology Systems Assessment
Technical Documentation
Advisory
Desired:
CISSP, CEH, OSCP, OSWE, GPEN, PenTest+ or similar
Strong programming/scripting skills
Mobile application analysis
Frida
Binary analysis (disassembly skills)
Skills:
Advisory
Innovative Thinking
Technical Documentation
Technology System Assessment
Threat Analysis
Adaptability
Collaboration
Executive Presence
Scenario Planning and Analysis
Test Engineering
Controls Management
Information Systems Management
Issue Management
Mentoring
Presentation Skills
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
Shift:
1st shift (United States of America)
Hours Per Week:
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your "Know your Rights ( " poster.
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
- ...A multinational financial institution is seeking a Senior Ethical Hacker in Seattle, WA. The role involves conducting security assessments... ...protocols, and the ability to perform advanced assessments manually. This position supports a commitment to responsible growth and...Suggested
$95.86k
...our Managed Services practice. Responsibilities: Conduct manual application penetration testing against API's (REST/SOAP), Web... ...tools such as Netsparker and Checkmarx One or more major ethical hacking certifications not required but preferred; GIAC Web Application...SuggestedH1bLocal area$27.64 - $37.4 per hour
...then this could be a great opportunity for you! As part of our Quality Control Group, the Software Tester provides user support and manual testing of the company’s proprietary applications. This includes the development and execution of test cases, identifying and...SuggestedHourly payFull timeWork at officeLocal areaShift work3 days per week- ...vulnerability management platforms, security testing frameworks, and DevSecOps practices—you know which tools to use and when automation beats manual review Excellent communication skills that allow you to translate complex security concepts into clear recommendations for both...SuggestedFull timeLocal areaFlexible hours
$1,100 per month
...developers and other IT professionals to ensure seamless integration of new systems Develop and maintain technical documentation and user manuals Provide technical support and troubleshooting for existing systems Qualifications Must have a strong understanding of computer...SuggestedContract workVisa sponsorship- ...automation scripts (Python, PowerShell) and low-code workflows (e.g., Okta Workflows) to streamline user lifecycle management (LCM), reduce manual effort, and improve accuracy. Independently manage the end-to-end integration of new applications into the IAM ecosystem,...
- ...automation (scripts, services, integrations) to detect misconfigurations, anomalous activity, or policy violations, and to reduce manual operational work for the security team. Participate in security incident response (on-call rotation or escalation), including investigation...
- ...hypotheses. Automation & Scripting: Develop automation for detection engineering, alert enrichment, and response playbooks to reduce manual analyst workload and speed response time. Tabletop Exercises: Lead in and support tabletop exercises to assess and continuously...Permanent employmentTemporary workWork experience placementLocal areaRemote work
$139.5k - $258.1k
...years in an information security field or software engineering; 2 or more of those years conducting security reviews ~2+ years of manually reviewing source code to assist in finding vulnerabilities ~ Ability to adapt quickly to prioritization shifts and investigate...RelocationShift work$500 per month
Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements: ...Extra incomeRemote work10 hours per week- Remote QA tester - .Net Only on W2 No C2C USC/ GC/ TN-Visa Only Need knowledge of manual and automation testing using Postman as well as other automation testing tools. API testing, automation, postman, .net coreFor contractorsRemote work
$1,000 per month
...SkyCrew is seeking a detail-oriented Entry-Level Software Tester to join our team in Washington. You will conduct both manual and automated tests on software applications, ensuring they meet quality standards. This role is perfect for those starting their career in software...$192k - $240k
...operations, gain real-time visibility, and control spend effortlessly. Brex's AI-native automation and world-class service eliminate manual expense and accounting tasks for customers so they can focus on what matters most. Tens of thousands of the world’s best companies...Work experience placementWork at officeRemote workWork from home$157k - $185k
...place for complacency, it's where ambitious people do the best work of their careers. We're a high-performing, fast-moving team with ethics at the center of everything we do. Expectations are high, and so are the rewards. The Product and Application Security team...Work at officeFlexible hoursShift work3 days per week$234.4k - $385k
About the Team Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI's technology, people, and products. We are technical in what we build but are operational in...Work at officeRemote workRelocation package$175k - $195k
...rolls, and the questioning begins. That’s a deposition. But unlike TV, the reality involves hundreds of hours of grueling preparation, manual review, and high costs. Deposely automates this workflow, saving lawyers and their clients significant time and money while...Work at officeRemote workFlexible hours- Senior Federal Information Systems Security Engineer (ISSE) The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring that system-to-system connections across federal boundaries are properly documented,...Contract workWork experience placementRelocationFlexible hours
- Vulnerability Management Analyst (AI Training) About the Role We partner with the world's leading AI research labs to build smarter, safer AI systems - and we need experienced security professionals to help get there. As a Vulnerability Management Analyst, you...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
$166k - $253k
Security Software Engineer - Endpoint Security Seattle, Washington, United States Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology,...Full timeWork experience placementImmediate start$189k - $274k
...before they become technical debt. Build automation and tooling that extends the capabilities of Aurora's security platforms, reduces manual operational burden, and scales the team's impact. Serve as the escalation point for enterprise security incidents requiring...Work at officeLocal area3 days per weekEarly shift$1,000 per month
...position for someone who is looking to start their career in software testing and gain valuable experience. Responsibilities Conduct manual and automated tests on software applications Document and report any bugs or issues found during testing Collaborate with...Work experience placement$1,400 per month
...to ensure they meet high-quality standards. Work closely with the development team to identify and report bugs or issues. Perform manual and automated testing. Qualifications Experience in software testing. Strong attention to detail. Excellent problem‑solving skills....Visa sponsorship$174k - $239k
Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex...Permanent employmentLocal areaFlexible hours$900 per month
...testing to ensure issues are resolved. Collaborate with the development team to troubleshoot issues and propose solutions. Perform manual testing as well as automated testing using appropriate tools. Participate in design reviews and provide feedback on potential usability...Contract workFree visa$113k - $149k
Anduril Industries Job Posting Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century's most innovative...Full timeWork experience placementImmediate start- Chief Information Security Officer (CISO) About the Company Trusted provider & publisher of consumer insights about car models & auto brands Industry Market Research Type Privately Held, Private Equity-backed Founded 1968 Employees 1001-5000 ...
- Chief Information Security Officer (CISO), Growth About the Company Accomplished provider of top-tier security services Industry Security and Investigations Type Privately Held About the Role The Company is seeking a Chief Information Security Officer...
$166k - $253k
Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the defense industry...Full timeWork experience placementImmediate startRelocation package$87.7k - $164k
...experience for yourself, and a better working world for all. The exceptional EY experience. It's yours to build. EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities. Today’s world is fuelled...Summer holidayLocal areaFlexible hours$87.7k - $164k
At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better. Join us and ...Summer holidayLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manual Ethical Hacker. Be the first to apply!

