Principal Penetration Tester
$150k - $170kCitizens Financial Group, Inc.
Principal Penetration Tester
The Principal Penetration Tester is responsible for strengthening internal security assurance across enterprise technology environments through independent, compliance focused security testing. This role evaluates the design and operating effectiveness of security controls, identifies gaps against regulatory, policy, and risk requirements, and supports audit and regulatory readiness. The position also plays a key role in building and maturing a centralized internal security testing capability with defensible, repeatable outcomes.
This role is centered on internal security and compliance testing, with emphasis on assessing control effectiveness, validating controls through realistic threat scenarios, and producing clear, audit ready results that inform leadership decisions and remediation priorities.
• Plan, execute, and analyze regulatory and internal security testing across applications, cloud platforms, infrastructure, and endpoint environments
• Evaluate security control effectiveness using threat informed methodologies that consider adversary behavior, attack techniques, and architectural context
• Perform scenario based testing to validate controls under realistic operating conditions
• Analyze findings and deliver clear, actionable reporting aligned to business and risk impact
• Partner with technology owners to support remediation planning and validation testing
• Coordinate with internal and external testing teams to manage execution risks and dependencies
• Support internal audit and regulatory examinations by providing testing results, evidence, and assessments
• Partner with leadership to build, formalize, and mature a centralized internal security testing program and governance model
• Mentor and provide technical guidance to other security testing resources
• Contribute to metrics, dashboards, and reporting that demonstrate control maturity and risk reduction
• Identify opportunities to improve efficiency through automation of testing and evidence collection
• 10+ years of cybersecurity experience with strong focus on security control testing, assurance, or risk based security assessments
• Proven experience evaluating security controls across cloud, application, network, and infrastructure environments
• Strong working knowledge of security frameworks and standards such as NIST, ISO, CIS, OWASP, CVSS, and internal risk models
• Experience supporting internal audit activities, regulatory examinations, or compliance programs
• Demonstrated ability to design defensible test plans, evaluate evidence, and assess control design and operating effectiveness
• Strong written communication skills with experience producing audit ready documentation and executive level reporting
• Ability to collaborate and influence across engineering, risk, audit, and compliance stakeholders
• Experience in highly regulated enterprise environments such as financial services
• Familiarity with secure development practices and DevSecOps control validation
• Experience automating security testing or evidence collection using scripting or security tooling
• Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field
• Preferred certifications include GPEN, CISSP, CISA, OSCP, or equivalent
The salary range for this position is $150,000-$170,000 per year plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to the work location, and relevant skills and experience.
We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more. Note, Citizens' paid time off policy exceeds the mandatory, paid sick or paid time-away policy of very local and state jurisdiction in the United States. For an overview of our benefits, visit
Required Skills
- Agility
- Building Relationships
- Capacity Optimization
- Collaborating
- Compliance and Controls
- Contingency Planning
- Customer-Centricity
- Cyber Security Strategy
- Emerging Technologies
- IT Service Continuity Management
- Incident and Problem Management
- Industry Insight
- Innovation
- Leading Others
- Motivating Others
- Performance Measurement
- Principles of Information Technology
- Strategic Thinking
- Systems Implementation and Management
- Technologically Savvy
- Valuing Diversity and Inclusion
About Us
Equal Employment Opportunity
Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague's or a dependent's reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability.
Equal Employment and Opportunity Employer
Job Applicant Data Privacy Policy
Background Check
Any offer of employment is conditioned upon the candidate successfully passing a background check, which may include initial credit, motor vehicle record, public record, prior employment verification, and criminal background checks. Results of the background check are individually reviewed based upon legal requirements imposed by our regulators and with consideration of the nature and gravity of the background history and the job offered. Any offer of employment will include further information.
Job Info
- Job Identification 46274
- Job Category Technology
- Posting Date 04/17/2026, 09:06 PM
- Degree Level Bachelor's Degree
- Job Schedule Full time
- Job Shift 1st
- Locations One Citizens Bank Way, Johnston, RI, 02919, US
- Working Hours 40
- Career Site Category Cyber Security
$150k - $170k
...Description Principal Penetration Tester Locations: This role will require an on-site hybrid work schedule in one of our primary organizational hubs including: Johnston, RI - Pittsburgh, PA - Phoenix, AZ - Westwood or Medford, MA - Plano, TX - Iselin, NJ - Franklin...PrincipalLocal areaFlexible hours$40 per hour
...directly shapes the next generation of AI security models Qualifications 2+ years of hands‑on experience in cybersecurity (e.g., penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some coding...SuggestedHourly payFull timePart timeRemote work$143k - $243k
...A leading pharmacy benefit manager is seeking a Senior Principal Actuary to provide actuarial direction and thought leadership. This remote role requires a bachelor's degree in a relevant field and 10 years of experience in actuarial work, along with an ASA or FSA designation...PrincipalRemote work- Teradata Corporation (SE) is seeking a Sr. Principal Architect to lead technical architecture at the Senior Director level. This role requires over 20 years of engineering experience, expertise in AI/ML infrastructure, and outstanding communication skills. Responsibilities...PrincipalFlexible hours
- ...About the Job As the Principal Software Security Engineer you will be responsible for designing, building, and supporting our identity applications and APIs, primarily using Java. Primary responsibilities include: Analyzes, designs, programs, debugs, supports...Principal
- A leading financial institution is seeking a Principal Penetration Tester to strengthen security assurance through compliance-focused security testing. The role involves evaluating security controls, identifying gaps, and supporting internal audits. Candidates should have...
- MojoTech is looking for a Senior Principal Software Architect in Providence, RI, to lead client engagements, combining deep technical expertise with business development. The role requires designing scalable, maintainable systems and guiding teams through execution. Ideal...PrincipalRemote jobWork at officeFlexible hours
$163.9k - $235.55k
UKG (Ultimate Kronos Group) is seeking a Senior Principal, CMI Analyst to transform market intelligence into strategic insights. The role involves partnering with senior leadership, synthesizing data, and delivering high-impact narratives for executive decision-making....Principal$108k - $184k
...A leading pharmacy benefits manager is seeking a Principal Systems Engineer specializing in Microsoft 365 and Azure. The role entails driving innovation across enterprise technology, collaborating with stakeholders to define strategies and roadmaps, and serving as a thought...PrincipalRemote work- Slalom is seeking an M&A Principal/Senior Principal to join their global team, primarily based in Providence, Rhode Island. The role involves executing operational due diligence and creating integration strategies. Applicants should possess proven M&A experience, particularly...Principal
- ...supporting the readiness of America's Navy ships, aircraft and expeditionary forces – Serco has a great opportunity for you! This Principal Information Security Systems Engineer (ISSE) will be working with a dynamic team supporting applications on the Defense Information...PrincipalFull timeContract workPart timeFor contractorsLocal areaRemote workFlexible hours
$114.76k - $124.98k
A public school district is seeking an experienced Assistant Principal for an elementary school. This role will involve supporting student achievement, supervising staff, and promoting a positive learning environment. Candidates should possess a Master’s degree and at least...PrincipalFull time- Young World Physical Education in Johnston, Rhode Island is seeking a Principal for the new Elementary Campus. The successful candidate will lead approximately 1,000 students in grades 2-5, providing instructional leadership and ensuring a positive school environment. This...Principal
$185k - $210k
Pearson is seeking a Principal, Product Management to drive AI-related product innovations in a hybrid role based in Hoboken, NJ. The successful candidate will have 5+ years of product management experience and a strong technical background. Responsibilities include coaching...Principal$100k - $172.5k
...United States, Indianapolis, Indiana, United States {+ 23 more} Job Description: We are searching for the best talent for a Principal Product Security Engineer to be located in Danvers, MA or Raritan, NJ. Remote work options may be considered on a case-by-case basis...PrincipalFull timeTemporary workWork at officeLocal areaImmediate startRemote work3 days per week$169.4k - $254.1k
A leading data platform company is seeking a Principal Engineer to drive innovation in Agentic AI systems. You will work on designing secure frameworks for AI agents, collaborating with top researchers and engineers. Ideal candidates have over 8 years of experience in software...PrincipalFlexible hours$108k - $184k
A prominent healthcare company is seeking a Marketing Specialist Principal to develop and implement effective marketing strategies. This remote position requires expertise in B2B marketing and a strong understanding of market dynamics. The ideal candidate will have 7 years...PrincipalRemote job$180k - $220k
A leading consulting and engineering firm is seeking a Principal for its Wastewater Practice in the Northeast. This pivotal role involves leadership, mentoring staff, and driving strategic initiatives. Ideal candidates have over 15 years of wastewater industry experience...Principal- A leading biostatistical firm is seeking a Principal Statistical Programmer in Providence, Rhode Island, to work closely with pharmaceutical clients on clinical development programs. The role requires independent work on statistical programming tasks and oversight of CRO...Principal
$143k - $243k
...ability to connect care for those we serve. Looking for a purpose-driven career? Come build the future of pharmacy with us. Senior Principal Actuary - REMOTE Job Description The Senior Principal Actuary is responsible for providing actuarial direction and thought...PrincipalWork experience placementLocal areaRemote workVisa sponsorshipWork visa$500 per month
...Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements:...Remote work10 hours per weekFlexible hours$131.66k - $151.29k
Young World Physical Education seeks an experienced Elementary School Principal to lead the Providence Public Schools District. The role involves administering the school program that focuses on student-centered learning, building a positive climate, and collaborating with...PrincipalFull time- A leading software company in the United States is seeking a Principal Cloud Platform Software Engineer to lead the architecture and development of a cloud-native onboarding platform. The role entails designing scalable SaaS services built on microservices architecture...Principal
$116k - $151k
A leading biopharmaceutical company seeks a Principal Data Manager to oversee clinical trials and ensure data quality and integrity. The ideal candidate will have a Bachelor's degree in life science and at least 6 years of direct data management experience. This role involves...PrincipalRemote job$163.9k - $235.55k
Role Overview We are seeking a Senior Principal, CMI analyst to serve as a cornerstone of this transformation, someone who can operationalize market intelligence, shape executive narratives, and act as a thought partner to senior leadership. This role is not about feature...PrincipalShift work- A global life sciences solutions provider is seeking a Principal Specialist, Clinical Data Strategy to lead projects in content strategy and data optimization. The successful candidate will work closely with cross-functional teams to improve efficiency in data capture and...PrincipalRemote job
$144.2k - $288.4k
...as model misuse, prompt injection, data leakage, and unsafe agent behavior. AI & Agentic Security Architecture Serve as the principal SME for securing AI-enabled applications and agentic system architectures. Architect and review secure designs for systems leveraging...PrincipalHourly payFull timeTemporary workLocal area$144.2k - $288.4k
Hispanic Alliance for Career Enhancement is seeking a Principal Software Engineer to lead technical direction for cloud-native applications built with Flutter. This role requires 10+ years of software development experience and 5+ years with Flutter, Angular, or React for...Principal$76.4k - $138.6k
At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. Today’s world is fueled by vast...Summer holidayLocal areaFlexible hours- Humana Inc in Providence, RI is urgently hiring a Principal for Care Integration Clinical Strategy, responsible for leading Care Integration programs for high-risk patients. Applicants should have a Bachelor’s degree and at least 5 years of relevant experience, mainly in...PrincipalImmediate startRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Penetration Tester. Be the first to apply!


