Manual Ethical Hacker
$117k - $147.7kBank of America ATM
Job Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!Job Description:Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America’s Cyber Security Assurance Offensive Security group. The program provides services to assess the vulnerability of the bank’s applications to malicious hacking activity.This intermediate technical role is responsible for performing application security assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include performing research, understanding the bank’s security policies, working with the appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. Key Responsibilities in order of importance:Perform assigned analysis of internal and external threats on information systems and predict future threat behaviorIncorporate threat actors' tactics, techniques, and procedures into offensive security testingPerform assessments of the security, effectiveness, and practicality of multiple technology systemsLeverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.Prepare and present detailed technical information for various media including documents, reports, and notificationsProvide clear and practical advice regarding managed risksLearn and develop advanced technical and leadership skills, Mentor Junior assessors in technical tradecraft and soft skillsRequired Skills:Minimum of 4 years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environmentDetailed technical knowledge in at least 3 of the following areas: security engineering; application architecture; authentication and security protocols; application session management; applied cryptography; common communication protocols; mobile frameworks; single sign-on technologies; exploit automation platforms; RESTful web servicesSQL injection/XSS attack without the use of toolsExperience performing manual code reviews for security relevant issuesExperience working with SAST tools to identify vulnerabilitiesAble to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findingsExperience performing manual web application assessments i.e., must be able to simulate aKnowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)Experience with vulnerability assessment tools and penetration testing techniquesSolid programming/debugging skillsExperience of using a variety of tools, included, but not limited to, IBM AppScan, Burp and SQL MapThreat AnalysisInnovative ThinkingTechnology Systems AssessmentTechnical DocumentationAdvisoryDesired:CISSP, CEH, OSCP, OSWE, GPEN, PenTest+ or similarStrong programming/scripting skillsMobile application analysisFridaBinary analysis (disassembly skills)Skills:AdvisoryInnovative ThinkingTechnical DocumentationTechnology System AssessmentThreat AnalysisAdaptabilityCollaborationExecutive PresenceScenario Planning and AnalysisTest EngineeringControls ManagementInformation Systems ManagementIssue ManagementMentoringPresentation SkillsThis job will be open and accepting applications for a minimum of seven days from the date it was posted.Shift:1st shift (United States of America)Hours Per Week: 40Pay Transparency detailsUS - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540), US - NJ - Jersey City - 101 Hudson St - 101 Hudson (NJ2101), US - WA - Seattle - 401 Union St - Rainier Square (WA1510)Pay and benefits informationPay range$117,000.00 - $147,700.00 annualized salary, offers to be determined based on experience, education and skill set.Discretionary incentive eligibleThis role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.BenefitsThis role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.SummaryLocation: Denver; Seattle; Charlotte; Jacksonville; Jersey City; Washington; ChicagoType: Full time
- ...SQL scripts, looking up data, data validation/calculations, etc.). We primarily use ORACE & SQL/T-SQL. Project work will be mostly manual testing and API Testing (Postman) Required Experience: •3-5 years of Professional experience in an IT related field preferably in...SuggestedRemote work
$95.86k - $208.27k
...to join our Managed Services practice.Responsibilities:Conduct manual application penetration testing against API's (REST/SOAP), Web... ...testing tools such as Netsparker and CheckmarxOne or more major ethical hacking certifications not required but preferred; GIAC Web Application...SuggestedH1bLocal area- ...vulnerability management program to identify and correct any problems within.ResponsibilitiesSecurity Metrics - Uses automated and manual processes to produce regular reports communicating the status of the Information Security programPolicies and Procedures - Maintains...Suggested
- ...Python A proven track record of working on complex software projects and ensuring high-quality deliverables Experience in both manual and automated testing Experience with Agile/Scrum methodologies and understanding of the Software Development Life Cycle (SDLC)...SuggestedFull timeWork experience placementRemote work
$110.7k - $218.3k
Position Summary Join Deloitte’s Cyber Defense & Resilience team as a forward deployed engineer supporting client patching and remediation programs. In this role, you’ll work directly with client infrastructure, endpoint, server, and application teams to reduce ...SuggestedLocal area$82.6k - $162.8k
Position Summary Join our Deloitte Cyber team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience...Local areaVisa sponsorship$500 per month
Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements: ...Extra incomeRemote work10 hours per week- Position Type Full time Type Of Hire Experienced (relevant combo of work and education) Job Description FIS Management Services, LLC seeks Cyber Security Analyst Leads - Cyber Threat Hunting in Jacksonville, FL to serve as a technical lead within FIS Cyber Threat Hunting...Full timeRemote workWork from home
$40k - $55k
Job Description: Title: Cyber Security Analyst - Enterprise Systems (IT) Fully Remote for candidates in EST/CST time zone | Location/Supporting: Longwood, FL | Experience: 2+ years of Cyber Security experience Please note: If this position is posted as either fully...Full timeWork at officeRemote work$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions...Local areaVisa sponsorship$155.6k - $306.8k
Position Summary As an Engineering Manager in Deloitte Cyber’s Digital Trust & Privacy practice, you will help clients solve complex identity, access, and data protection challenges through AI-enabled engineering solutions. This role sits at the intersection of ...Local areaVisa sponsorship$104k - $156k
Posting Type Remote/Hybrid Job Overview The Advanced Security Engineer is a technically deep, hands-on practitioner who forms the operational backbone of the enterprise security function. Operating within a layered defense-in-depth program, this engineer owns the design...Remote work- SUMMARY The Chief Information Security Officer oversees planning and implementation of the organization’s data security programs. This includes strategy development, risk assessments and mitigation efforts and associated processes, and compliance with relevant laws and ...Remote work
$141.9k - $286k
...Professionals (CISSP); Certified Information Systems Auditor (CISA); Certified Information Security Manager (CISM); Certified Ethical Hacker (CEH); GIAC certifications or equivalent security certifications ·Industry Thought LeadershipExcellent written, oral, presentation...Full timeWork experience placementInternshipLocal area$94k - $151.8k
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise...Full timeWork experience placementLocal areaImmediate start$82.6k - $162.8k
Position Summary As a Consultant - Cyber Defense and Resilience, you will support the design and deployment of security operations solutions that help clients improve monitoring, detection, response, and automation capabilities. In this client-facing role, you will...Local areaVisa sponsorship- ...RESPONSIBILITIES Translate business and functional requirements into manual test cases, ensuring database integrity, a positive user... ...Unequivocal commitment to the highest standards of personal and business ethics and conduct. Mission-driven, guided by core values, and a...Work at officeWork from homeFlexible hours
$144.9k - $265.8k
...on an on-going basis. For those living in California, please click here for additional information. EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities. EY | Building a better...Full timeSummer holidayFlexible hours$105.4k - $207.8k
Position Summary As a Senior Consultant - Cyber Defense and Resilience, you will help deliver security engineering solutions that modernize client security operations across monitoring, detection, response, and automation. In this client-facing role, you will work...Local areaVisa sponsorship- OverviewJob PurposeAn Intercontinental Exchange (ICE) IS AppSec Engineer is part of a team responsible for ensuring that ICE produces and maintains secure applications. The team member influences secure design, performs code analysis, identifies vulnerabilities through ...
$97.61k - $188.38k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions...Local areaVisa sponsorship$105.4k - $207.8k
Position Summary Join Deloitte’s Cyber practice as a Cyber SecOps Senior Consultant and help clients navigate an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support high-visibility engagements...Local areaVisa sponsorship$82.6k - $162.8k
Position Summary If you’re looking for an opportunity to work at the intersection of cybersecurity, data, and artificial intelligence, Deloitte’s Cyber Defense & Resilience team offers the scale, complexity, and growth environment to build your career. In this role...Local areaVisa sponsorship- This position will be fully remote and can be hired anywhere in the continental U.SThe Principal Consultant will be pivotal to problem definition and discovery of the overall solution and guide teams on project processes, deliverables. This individual will drive the technical...Full timeWork experience placementLocal areaRemote workWork from home
- life insurance, vision insurance, paid time off, paid holidays, sick time, tuition assistance, 401(k) Jul 23, 2026 TOGETHER, WE SAVE LIVES SUMMARY The Chief Information Security Officer oversees planning and implementation of the organization's data security programs. ...Remote work
- Chief Information Security Officer (CISO) Organization: Nymbus Location: Fully remote; occasional travel may be required for client meetings and team gatherings. Description: About the job ABOUT NYMBUS: Nymbus is a modern fintech company delivering technology solutions...Contract workRemote workNight shift
- Chief Information Security Officer (CISO) About the Company Trusted provider & publisher of consumer insights about car models & auto brands Industry Market Research Type Privately Held, Private Equity-backed Founded 1968 Employees...
- Position Summary Deloitte’s Cyber team helps clients address evolving cybersecurity challenges and opportunities by delivering solutions and managed services that reduce complexity, strengthen resilience, and support confident growth. As a Google SecOps Manager supporting...Local area
- Overview The Enterprise Risk Department operates as an independent second-line risk function, responsible for developing and administering the enterprise risk framework used to identify, assess, and report risks. This function establishes parameters for risk management,...
$149.4k - $180k
...policy enforcement.Develop automation and tooling in Python and Ansible to streamline operations, enforce security controls, and reduce manual provisioning effort.Contribute to a self-service model for application teams, including golden-pattern templates, declarative...Full timeImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manual Ethical Hacker. Be the first to apply!


