Security Assurance Penetration Tester
$71.6k - $119.4kRELX Group
Are you a collaborative Penetration Tester looking to work for a mission driven global organization?About the role - This role supports the offensive security function within Elsevier's Security Engineering team. You will perform hands-on security testing and peer review activities, validate vulnerabilities and security controls, and support the automation of security assurance processes. This is a hands-on role for a motivated security professional eager to grow in a collaborative, fast-paced environment.About the team - The Security Assurance team supports the third-party penetration testing program, security control validation, and ongoing offensive security testing activities.ResponsibilitiesTracking and triaging findings from third-party assessments, ensuring timely follow-up and remediation tracking.Collaborating with development, platform, and product teams to communicate findings, track remediation efforts, and improve overall security posture.Facilitating post-assessment reviews and lessons learned sessions with development teams to identify recurring security issues and promote secure development practices.Maintaining program documentation, test records, and reporting artifacts.Conducting penetration testing of web applications, APIs, cloud environments, and internal systems, escalating complex testing scenarios as needed.Performing peer review of penetration testing deliverables, including test plans, findings, and final reports.Participating in scoping exercises and contributing to the selection of appropriate testing methodologies.Supporting security assessments of GenAI-powered applications and features, including LLM integrations, RAG pipelines, and AI agents.Assisting in testing for AI-specific vulnerabilities such as prompt injection, jailbreaking, insecure output handling, model data leakage, and training data poisoning.Contributing to the development of internal GenAI security testing checklists and methodologies, aligned with frameworks such as OWASP Top 10 for LLMs.RequirementsExperience in information security, penetration testing, or a related field. Experience or coursework in software development, DevOps, or scripting is highly desirable.At least one relevant security certification (e.g., Security+, eJPT, PNPT, CEH, or equivalent) preferred; advanced offensive security certifications such as OSCP are a plus.Foundational understanding of web application architecture, networking, and operating system security.Familiarity with common penetration testing tools (e.g., Burp Suite, Nmap, Metasploit, Nuclei, or equivalent).Working knowledge of OWASP Top 10, common CVEs, and vulnerability scoring frameworks (CVSS).Scripting ability in at least one language (Python, Bash, PowerShell, or similar); development experience is a strong plus.Basic understanding of cloud environments (AWS, Azure, or GCP) and associated security considerations.Exposure to SAST/DAST tools and secure code review practices is desirable.Awareness of GenAI security risks (prompt injection, LLM abuse, insecure AI integrations)Elsevier is a renowned global information analytics company that primarily focuses on providing scientific, technical, and medical (STM) research content, tools, and services. It is one of the largest publishers of academic journals and scholarly literature in the world.Elsevier operates in various domains, including science, technology, medicine, social sciences, and more. They publish a vast number of peer-reviewed journals covering a wide range of disciplines. These journals act as platforms for researchers and academics to share their findings and contribute to the advancement of knowledge in their respective fields.In addition to publishing, Elsevier offers a suite of digital solutions and services to support researchers, scientists, and professionals in their work. They provide online platforms like ScienceDirect, Scopus, and Mendeley, which offer access to a vast repository of scholarly articles, research papers, and other scientific content. These platforms often serve as essential resources for software developers seeking to stay updated with the latest scientific advancements. U.S. National Base Pay Range: $71,600 - $119,400. Geographic differentials may apply in some locations to better reflect local market rates. If performed in Colorado, the base pay range is $71,600 - $119,400.If performed in New York, the base pay range is $78,700 - $131,400.If performed in New York City, the base pay range is $85,900 - $143,300.If performed in Rochester, NY, the base pay range is $71,600 - $119,400.If performed in New Jersey, the base pay range is $84,546 - $135,054. This job is eligible for an annual incentive bonus. Application deadline is 09/17/2026. We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click here to access benefits specific to your location.We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact View phone number on click.appcast.io.Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams here.Please read our Candidate Privacy Policy.We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.USA Job Seekers:EEO Know Your Rights.SummaryLocation: Pennsylvania; Connecticut; Virginia; Massachusetts; Home Based - Pittsburgh, PA; Delaware; Michigan; New Jersey; Philadelphia; Colorado; New YorkType: Full time
$160k - $205k
...Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program... ...coding techniques, proficiently execute common penetration testing tools, triage, and support incidents,...SuggestedShift workDay shift- ...Chief Information Security Officer (CISO) Location: Wall Township, NJ (Hybrid)... ...assessments. Customer & Regulatory Assurance Serve as the executive point of contact... ...tabletop exercises. Oversee penetration testing activities and remediation programs...SuggestedFull time
- Job ID: 22087228Reference Number: 24-00336Title: SDET With Java Coding and Xpath, APi Testing, Rest Assurance, Strong Sql MustLocation: Iselin, NJ, 08830Posted Date: 2024-04-24Contact: Shyam MaramContact Email: ****@*****.*** Phone: (***) ***-****Company:...SuggestedWork at office
$160k - $205k
...work with some of the best information security professionals in the world in challenging... ...to shine and grow.The Cyber Security Assurance Division is looking for a Senior Full Stack... ...that leverage a wide range of penetration testing techniques (reconnaissance, weaponization...SuggestedFull timeWork at officeRemote workShift workDay shift$81k - $155k
...communities and building trust in how we show up, everywhere & always. Want in? Join the #VTeamLife.What you’ll be doing...The GN&T Network Security team is looking for a highly motivated and experienced Engineer to join the Network Security Defense team. The Defense teams are...SuggestedFull timeTemporary workPart timeWork experience placementWork at officeWork from homeFlexible hoursShift work3 days per week$118.3k - $207.4k
Wolters Kluwer is seeking an experienced and detail‑oriented Customer Trust & Assurance IT Security Manager with broad, cross‑domain cybersecurity expertise to join our Customer Trust & Assurance team. In this highly visible role, you will not only serve as a trusted security...Full timeWork at office$120k - $190k
...Requirements The Team You Will JoinAs part of MetLife’s Global Security team, you’ll work alongside world-class experts to protect... ...centric security architecture guidance, including authentication assurance, authorization models, privileged access, least privilege,...Full timeTemporary workWork at officeLocal areaRelocation package3 days per week- ...Security Engineer Procom is a leading provider of professional IT services and staffing... ...Project Management Quality Assurance Business/Systems Analysis Datawarehouse... ...SIEM experience Experience in security penetration testing Experience using ticketing...Permanent employmentContract workFor contractors
$160k - $275k
Job DescriptionWhat is the opportunity? Royal Bank of Canada is seeking a Technical Information Security Officer to provide US regional cybersecurity leadership and ensure our operational security capabilities meet regulatory expectations and industry security standards...Full timeFlexible hours$163.9k - $235.55k
...do you. Job Description We are looking for a Principal AI Security Architect to join UKG's Application Security Architecture team.... ...remote It is the policy of Ultimate Software to promote and assure equal employment opportunity for all current and prospective...Work experience placementLocal areaRemote work$120k - $202.5k
Who we are looking for We are seeking a Product Security Engineer / Architect - Email Security reporting into the Defensive Engineering leadership team within Global Cyber Security (GCS). You will lead the strategy, architecture, and engineering of enterprise email security...Full timeTemporary workWork at officeFlexible hours- ...Career Opportunities Enterprise Security Architect (Remote) Cinteot Inc. is a small IT services company that specializes in cybersecurity... ...or be willing to obtain within 30 days of hire (Information Assurance Technician Level II certification options, Information...Remote workFlexible hours
- ...Department of Education, this position is responsible for quality assurance of enterprise systems, with a primary focus on Salesforce-... ...members: Partner with Salesforce Architects and Data Engineers on security requirements and customer‑facing issues. Agile development...Work at office
$95.86k - $208.27k
...is currently seeking a Senior Specialist, MAST Application Penetration Tester to join our Managed Services practice.Responsibilities:Conduct... ...Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive...H1bLocal area- ...Chief Information Security Officer (CISO) About the Company Technology-driven provider of home insurance Industry Insurance Type Public Company Founded 2015 Employees 501-1000 Categories Insurance Finance...
- ...Lead Information Assurance Systems Engineer-Systems Security Job Code: 23664 Job Location: Camden, NJ Schedule: 9/80 reg, with every other Friday off Job Description: L3Harris Technologies – Integrated C5 Systems (IC5S) is a recognized global leader in the design...
- ...Systems Analyst II Leverage cyber security monitoring systems to hunt, detect, and respond to cybersecurity threats, risks, and attacks. Participate in incident response processes by taking actions based on work instructions and standard operating procedures to remove...
$115k - $150k
...Hagerty Consulting, Inc. (Hagerty) is the nation's leading emergency management and homeland security consulting firm. Known for its public spirit, innovative thinking, problem-solving, and exceptional people, Hagerty is sought after to work on some of the largest and...Permanent employmentTemporary workLocal areaImmediate startRemote workFlexible hours- Job ID: 25649979Reference Number: 25-00584Title: Senior IAM Security EngineerLocation: Jersey City, NJJob Type: Full Time/ContractPosted Date: 2025-06-05Contact: Mahi MahiContact Email: ****@*****.*** Phone: (***) ***-****Company: HAN Staffing Job Description...Full time
- Summary: Responsible for the day-to-day security operations at Columbia Bank. The individual will serve as a technical operations subject matter expert and will be responsible for the proper maintenance of security controls, detection of and response to potential threats...Work at officeWork from home
- ...three years of progressive experience in the specialty in lieu of every year of education.At least 7 years of experience with IT Security Management.Additional Information** U.S. Citizens and those who are authorized to work independently in the United States are encouraged...Permanent employmentFull timeH1b
$135k - $155k
Job DescriptionWe are seeking an experienced Identity Security Engineer to help design, implement, and mature enterprise identity security capabilities across our organization. This role serves as a technical owner and security steward for key identity functions, including...Temporary workWork at officeRemote work- ...around you! They are an equal opportunity employer and value diversity at our company.Job DescriptionStrong knowledge of Information Security concepts such as:•Encryption, Cloud and Mobile Device Security•Data Loss and Prevention tools and solutions•Risk-Threat Analysis...Work experience placement
- ...level requirements. oDesign and Architecture of the overall CyberArk implementation. oPerforming compliance checks on CyberArk for IT security safes and to Provide alerts and reports appropriately. Investigate, Provide RCA and resolve Incidents. oOpen to travel as and when...
$139k - $204k
...Counter threat actors at a scale most practitioners never encounter — and build the capabilities to stay left of boomWork alongside security partners who hold a high bar and expect you to raise itShape how CoreWeave finds and responds to the threats that matter most,...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours- Job ID: 25634493Reference Number: 25-00572Title: IAM Security EngineerLocation: Iselin, NJ, 08830Posted Date: 2025-06-03Contact: Deepak KumarContact Email: ****@*****.*** Phone: (***) ***-****Company: HAN Staffing Job Title: Senior IAM Security Engineer Location...
$114.39k - $240.35k
...and ongoing operation of National Airspace System (NAS) and FAA information systems. The position provides certified and licensed security support to ensure systems meet FAA, federal, and NIST security requirements throughout the system development life cycle.Position...Full timeContract workPart timeLocal areaRemote work$112k - $209k
...place.The global law firm of K&L Gates LLP is seeking a Senior Security Engineer to join the firm. The Senior Security Engineer... ...security assessments, control validation activities, and supporting penetration testing initiatives• Evaluating emerging security and AI technologies...Full timeTemporary workWork experience placementLocal areaRemote work$165k - $242k
...into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at .Senior Security Engineer, SOARWhat You’ll Do:CoreWeave’s Detection and Response team is responsible for empowering and deploying decisive action across...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours- ...PreSales Engineer Physical Security Overview: The PreSales Engineer for Physical Security is responsible for on-site and remote pre-sales technical assessments, the creation of bill of materials and related specifications, develops detailed scopes of work documents, drafting...Permanent employmentLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Assurance Penetration Tester. Be the first to apply!

