Senior Offensive Security Engineer - Pentester
Bank of America Financial Center
Senior Offensive Security Engineer - Pentester
Denver, Colorado;Seattle, Washington; Jacksonville, Florida; Charlotte, North Carolina; Jersey City, New Jersey; Boston, Massachusetts; Washington, District of Columbia; Chicago, Illinois
To proceed with your application, you must be at least 18 years of age.
Acknowledge (
Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.
Acknowledge (
Refer a friend
To proceed with your application, you must be at least 18 years of age.
Acknowledge (
Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.
Acknowledge (
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Job Description:
Are you passionate about cybersecurity and looking to work with some of the best information security professionals in the world in challenging environments? Bank of America is hiring top talent to join our team. You bring your talent and passion, and we'll provide you with an opportunity to shine and grow.
The Cyber Security Assurance Division is looking for a Senior Full Stack Pentester to join a team of world-class offensive security professionals. In this role, you will diligently hunt for high-risk vulnerabilities across the bank's global technology environment. Understanding security policy and compliance is important, but in this role your focus is to identify exploitable vulnerabilities in critical systems; ones that can bring about that "nightmare scenario."
This is a highly-technical role that requires broad technical knowledge, a deep understanding of threats, and a hacker mentality. You will lead and participate in collaborative, technical assessments that leverage a wide range of penetration testing techniques (reconnaissance, weaponization, delivery, exploitation) to identify and prove the concept of high-risk vulnerabilities across a variety of technologies. Your strong problem-solving skills, practical demonstration of technical competency, and lateral thinking will contribute to our team-first culture of collaboration and impactful findings.
This senior technical role is responsible for leading and performing assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policy, working with appropriate partners to complete assessments, identifying misconfigurations and vulnerabilities to achieve security impact, and reporting on the associated risk. These individuals partner closely with security partners, CIO clients, and multiple lines of business.
You will coordinate with senior leadership on development projects, share your knowledge and experience by mentoring junior engineers, and assist with monitoring and response functions, so those teams can practice and improve their capability to respond to a realistic threat actor.
Required Skills:
Minimum of 5+ years of professional offensive security experience
Must be able to critically examine an organization and system through the perspective of a threat actor and articulate risk in clear, precise terms to technical and non-technical audiences.
Must be very proficient with the common tools associated with penetration testing (Burp Suite, Metasploit, nmap, etc.).
Must have a solid understanding of voice and data networks, major operating systems, active directory, their associated peripherals, and a strong desire to learn new technologies and skill sets.
Must demonstrate knowledge of tactics, techniques, and procedures associated with malicious activity, an understanding of industry classifications and frameworks, and the ability to chain vulnerabilities in the advanced exploitation of systems.
Must be proficient in report delivery and technical documentation of vulnerabilities.
Must be able to effectively code in a programming or scripting language (Python, Java, C#, etc.)
Desirable Skills:
Certifications: OSCP, GPEN, GXPN, OSED, OSEP, OSWE, OSCE, GWAPT
Ability to work remotely if/when necessary
Previous experience working in the financial industry
Experience with hardware hacking, embedded systems analysis, and IoT hacking
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
Shift:
1st shift (United States of America)
Hours Per Week:
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your "Know your Rights ( " poster.
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
$132k - $165k
Early Warning is seeking a Senior Red Team Engineer in Chicago, Illinois. This role involves executing... ...collaborating with internal teams on security assessments. Candidates should have... ...security experience, with 2 years in offensive security. Strong scripting skills in...Senior- ...A cybersecurity company is seeking a Solutions Engineer to enhance engagement with clients and drive revenue through specialized knowledge of offensive security solutions. The role involves understanding competitive landscapes, assisting with customer success, and representing...SuggestedRemote workFlexible hours
- ...Join us! Bank of America’s Global Information Security (GIS) team is seeking a Cyber Threat Defense AI Security Senior Engineer to drive the integration of advanced AI... ...candidate will have deep expertise in AI/ML, offensive and defensive security operations, and large...SeniorWork at officeShift workDay shift
- ...Senior Manual Ethical Hacker Denver, Colorado;Seattle... ...Development Security Framework Program within... ...Cyber Security Assurance Offensive Security group. The program... ...areas: security engineering application... ...eWPT; eWPTX; eMAPT [INE Pentester Academy] Strong programming...SeniorWork at officeShift workDay shift
- A leading technology firm is seeking a Remote Sr. Microsoft Security Consultant for a contract position lasting 6-8 months. This role requires strong technical expertise in integrating Microsoft Security tools, deep knowledge of Microsoft security technologies like Entra...SeniorContract workRemote work
- ...DHCP and WINS, including hosts and lmhosts files Expert level knowledge of protocols such as: Kerberos, NTLM, TCP, UDP, IPv4, IPv6, SAML, LDAP and Secure LDAP Expert level knowledge of Windows server operating systems Knowledge of Semperis ADFR and DSP...Senior
- ...Senior Security Engineer Chicago Overview: The Senior Security Engineer works in Optiv's 24x7x365 Security Operations Center as a member of the Managed Security Services team. The Senior Security Engineer uses technical knowledge on a number of security technologies...Senior
$80k - $92k
...remote with occasional travel to USA, and in Canada. Role Description: We are looking for a highly qualified Senior Network Security Engineer to join our Network & Security Business Unit. The professional will be responsible for the design, implementation, maintenance...SeniorLocal areaRemote work- ...EAD, H4 , L 2 This is hybrid from day-1 ( Candidates must reside near Chicago, Illinois ) Description : As Senior Endpoint Security Engineer reporting to the Manager of End User Computing, you will play a pivotal role in fortifying our organization's...SeniorLocal area
$90 - $100 per hour
...We are seeking a Senior Network Security Engineer with deep expertise in Cisco Identity Services Engine (ISE) and identity-driven network segmentation to support and enhance a modern enterprise security architecture. This role will focus on designing, implementing, and...SeniorHourly payLive inRemote work3 days per week- ...Security Operations - Senior Security Engineer Reporting to the Team Lead, Security Operations Engineering, the Security Operations – Senior Security Engineer will be part of a team of highly specialized engineers dedicated to solving complex, security specific challenges...SeniorVisa sponsorship
$140k - $165k
...thinking, rapidly growing organization with helping people as its number one goal, we want to hear from you. The Role As a Senior Security Engineer, you'll harden the security posture of our AWS environment and our software development pipeline. Cloud Security and...SeniorFull time$100k - $138k
...meaningful work that helps drive global business, investment and innovation forward. What You'll Do The Senior Physical Security Engineer is responsible for the technical implementation, configuration, testing, and ongoing support of integrated physical...SeniorWork at officeLocal areaRemote workWorldwideFlexible hours- A healthcare organization in Skokie, IL seeks a Security Engineer III to enhance cybersecurity measures and protect sensitive data. This role includes documenting procedures, managing security audits, and leading security initiatives. A Bachelor's degree and at least eight...SeniorRemote job
$131k - $169k
...Senior Security Engineer Seeking a development & cloud focused Senior Security Engineer to join our expanding security team. The ideal candidate will have passion for AppSec, Cloud and AI. They will be a skilled communicator and relationship builder capable of promoting...SeniorWork at officeWork from homeFlexible hoursDay shift$92k - $120k
...Time Type: Full time Remote Type: Job Family Group: Information Technology Job Description Summary: The Senior IT Security Engineer is responsible for planning, deploying, administering, and maintaining security platforms and technologies to protect the...SeniorFull timeWork experience placementWork at officeRemote workWork from homeFlexible hours2 days per week- A leading marketing platform is seeking a Senior Anti-Abuse Security Engineer to architect and implement advanced detection systems for abuse prevention. The role involves building automated behavioral analysis pipelines and collaborating with various teams to ensure security...Senior
- Bain & Company is seeking a SaaS Security Engineer based in Chicago, IL. The role focuses on leading and scaling the SaaS security program, including ownership of the SSPM platform. Candidates should have 3-7+ years of business/security experience and strong technical skills...SeniorWork at office1 day per week
$107k - $214.5k
...for team members to join our Security, Privacy, and Risk Consulting... ...penetration testing, social engineering campaigns (email, web, phone,... ...written and verbal) findings to senior management and clients... ...Certified Penetration Tester (GPEN); Offensive Security Certified...Work experience placementLocal area- Cedar Cares, Inc is looking for a Senior Red Team Specialist to execute advanced offensive security operations and engage in hands-on security engagements. Applicants should have over 5 years of experience in red teaming and strong communication skills. This role follows...Senior
- ...Description: Key Responsibilities:- Secure Software Development Lifecycle... ...review procedures in alignment with Modern Engineering SDLC practices. Lead the... ...staff, consistent with expectations for senior Bank engineers. dvocate for secure...Senior
$178k - $205k
Fingerprint is looking for a senior Android Developer to join a remote team. With 5+ years of hands-on experience, you'll design and... ...on fraud prevention. Strong expertise in Android development, security, and Kotlin is essential. You'll collaborate cross-functionally...SeniorRemote work$138.21k - $172.76k
A leading global restaurant brand is seeking a Senior Analyst, Cyber Defense - Penetration Testing, to identify vulnerabilities through offensive security testing. This role requires collaboration with stakeholders to ensure informed, risk-based decisions. Candidates should...Senior$108.25k - $130k
...great team for you. WHERE YOU’LL FIT WITHIN THE TEAM The SaaS security engineer will lead and scale our SaaS security program, with primary... ...controls and recommending solutions to vendors Partner with Senior Manager and stakeholders to problem solve Support team growth...SeniorFull timeWork experience placementWork at office1 day per week$130k - $170k
A technology solutions provider is seeking a Senior Cloud Security Engineer to enhance security architecture for AWS cloud systems supporting federal programs. This remote position focuses on implementing security controls, supporting Risk Management Framework activities...SeniorRemote work- ...Role : Java Security Developer Location : Chicago, IL Responsibilities Design and implement secure, scalable,... ...Work closely with stakeholders, architects, and security engineers to proactively identify and remediate risks. Requirements and...Senior
$72k - $141k
...Senior Security Engineer, Platform Security Tooling & AI You have a clear vision of where your career can go. And we have the leadership to help you get there. At CNA, we strive to create a culture in which people know they matter and are part of something important...SeniorWork experience placement- Ernst & Young Oman is seeking an Application Security Engineer to manage development platforms and security tools while ensuring secure coding practices are followed. You will work alongside a talented cybersecurity team to optimize security and operational efficiency....Senior
$130k - $180k
...physicians, providing critical information about the right treatments for the right patients, at the right time. Senior Application Security Engineer Tempus is seeking a Senior Application Security Engineer with deep expertise in penetration testing to join our...Senior$135k - $182.1k
Bank of America is seeking an Information Security Senior Specialist to join its Cloud Security Team in Chicago, IL. This role focuses on implementing and managing security controls across multi-cloud environments such as AWS and Azure to protect organizational data and...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Offensive Security Engineer - Pentester. Be the first to apply!
- sr information security engineer Chicago, IL
- senior application security engineer Chicago, IL
- principal security engineer Chicago, IL
- security engineering manager Chicago, IL
- aws cloud security engineer Chicago, IL
- dlp security engineer Chicago, IL
- entry level security engineer Chicago, IL
- lead security engineer Chicago, IL
- sr security engineer Chicago, IL
- senior cloud security engineer Chicago, IL

