Talent.com
Senior Manual Ethical Hacker
Senior Manual Ethical HackerBank of America • Jersey City
Senior Manual Ethical Hacker

Senior Manual Ethical Hacker

Bank of America • Jersey City
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Description

:

Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America’s Cyber Security Assurance Offensive Security group. The program provides services to assess the security resilience of the bank’s applications to malicious hacking activity.

This senior technical role is responsible performing and leading ethical hacking assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. These individuals are expected to perform application security-oriented dynamic and static assessments across a multitude of technologies including web UI, web APIs, mobile and cloud, including associated source code.

Key Responsibilities in order of importance:

  • Perform assigned analysis of internal and external threats on information systems and predict future threat behavior.

  • Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value vulnerabilities/chained attacks.

  • Developing Proof-of-concepts for exploitation.

  • Perform assessments of the security, effectiveness, and practicality of multiple technology systems.

  • Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.

  • Prepare and present detailed technical information for various media including documents, reports, and notifications.

  • Provide clear and practical advice regarding managing risks.

  • Learn and develop advanced technical and leadership skills, mentor Junior and Intermediate assessors in technical tradecraft and soft skills.

  • Respond to security incidents and provide technical assistance to leadership across the Information Security organization.

Required Skills:

  • Minimum of 5+ years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment

  • Detailed technical knowledge in at least 5 of the following areas:

    security engineering

    application architecture

    authentication and security protocols

    application session management

    applied cryptography

    common communication protocols

    mobile frameworks

    single sign-on technologies

    exploit automation platforms

    Web APIs

    Cloud environments

    LLM security

    Mobile application analysis

  • Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings

  • Experience performing manual web application assessments i.e., must be able to simulate a OWASP Top 10 vulnerabilities without the use of tools

  • Experience performing manual code reviews for security relevant issues

  • Experience working with DAST and SAST tools to identify vulnerabilities

  • Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)

  • Experience with vulnerability assessment tools and penetration testing techniques.

  • Solid programming/debugging skills, development frameworks, CVE and CWE research/reproduction

  • Threat Analysis, threat modelling and SBOM analysis

  • Innovative thinking, threat actor simulation

  • Technology Systems Assessment

  • Technical Documentation

  • Advisory

Desired:

  • CEH, OSCP/OSCE/OSWE/GXPN/GPEN/GWAPT/GMOB/All Practitioner Certs [Port Swigger BSP Academy]/Cloud Cert(s)/ eWPT; eWPTX; eMAPT [INE Pentester Academy]

  • Strong programming/scripting skills

  • Frida

  • Binary analysis (disassembly skills)

Skills:

  • Advisory

  • Innovative Thinking

  • Technical Documentation

  • Technology System Assessment

  • Threat Analysis

  • Adaptability

  • Collaboration

  • Scenario Planning and Analysis

  • Test Engineering

  • Written Communications

  • Attention to Detail

  • Information Systems Management

  • Issue Management

  • Presentation Skills

  • Prioritization

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

Shift:

1st shift (United States of America)

Hours Per Week:

40

Pay Transparency details

US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540), US - MA - Boston - 100 Federal St - 100 Federal St Lp (MA5100), US - NJ - Jersey City - 101 Hudson St - 101 Hudson (NJ2101), US - WA - Seattle - 401 Union St - Rainier Square (WA1510)Pay and benefits informationPay range$160,000.00 - $205,000.00 annualized salary, offers to be determined based on experience, education and skill set.Discretionary incentive eligibleThis role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.BenefitsThis role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
[job_alerts.create_a_job]

Senior Manual Ethical Hacker • Jersey City

[internal_linking.similar_jobs]

Senior Digital Strategist

WONGDOODYNew York, NY, United States
[job_card.full_time]

WongDoody is hiring a Senior Strategist to serve as a day-to-day strategy subject matter expert across client accounts someone who can hold their own with clients, shape ambiguous briefs into clear...[internal_linking.show_more]

 • [job_card.promoted]

Healthcare & Life Sciences Strategy, Pricing, Value & Market Access

Consulting PointYonkers, NY, United States
[job_card.full_time]

A leading strategy advisory firm is seeking experienced management consulting professionals to join its high-growth Healthcare and Life Sciences practice.The Private Equity team supports private eq...[internal_linking.show_more]

 • [job_card.promoted]

Senior Technical Recruiter

StellarNew York, NY, United States
[job_card.full_time]

Interested in working on cutting-edge blockchain technology and creating equitable access to the global financial system? Since 2014, the mission-driven team at the Stellar Development Foundation (...[internal_linking.show_more]

 • [job_card.promoted]

Travel Nuclear Medicine Technologist - $3411 / Week

LancesoftBronx, NY, US
[job_card.full_time]

Lancesoft is seeking an experienced Nuclear Medicine Technologist for an exciting Travel Allied job in Bronx, NY.Shift: 5x8 hr days Start Date: ASAP Duration: 13 weeks Pay: $3411 / Week.Nuclear Med...[internal_linking.show_more]

 • [job_card.promoted]

Sourcing MRO Services Expert

Chain IQ USAJersey City, NJ, United States
[job_card.full_time]

At Chain IQ, your ideas move fast.Chain IQ is a global AI-driven Procurement Service Partner, headquartered in Baar, Switzerland, with operations across main centers and 16 offices worldwide.We pro...[internal_linking.show_more]

 • [job_card.promoted]

Senior Mobile Platform Engineer End-to-End Healthcare Infra

Deliberate Solutions, Inc.New York, NY, United States
[job_card.full_time]

A healthcare technology company is looking for a Lead Mobile Platform Engineer to own the mobile and infrastructure platform, ensuring data gets captured reliably and securely.With responsibilities...[internal_linking.show_more]

 • [job_card.promoted] • [job_card.new]

Senior Hardware Manager

RidecoNew York, NY, United States
[job_card.full_time]

This is an opportunity in the exciting and fast-growing transportation technology industry.Public transit is being transformed from a system of static, scheduled fixed-routes, to a dynamic on-deman...[internal_linking.show_more]

 • [job_card.promoted]

Physician / Geriatrics / New Jersey / Permanent / Medical Director Job

Outsourcing Business NeedsLong Branch, NJ, US
[job_card.full_time]

Are you passionate, success driven and looking for an outstanding opportunity?NOW HIRING: Medical Director ResponsibilitiesWork directly with providers to educate them on our care process and deter...[internal_linking.show_more]

 • [job_card.promoted]

Medical Director - PEDS ED

Envision Physician Services - EM/HMNeptune City, NJ, US
[job_card.full_time]

Hovnanian Children's Hospital at Jersey Shore University Medical Center in Neptune, NJ, is looking for an accomplished Pediatric Emergency Medicine Medical Director ready to make a lasting impact.J...[internal_linking.show_more]

 • [job_card.promoted]

Senior GTM Recruiter

AbridgeNew York, NY, United States
[job_card.full_time]

Abridge is growing rapidly - and so are the teams that power our business.As a Senior Recruiter focused on G&A and GTM, you'll lead full-cycle hiring across critical functions including Finance, Le...[internal_linking.show_more]

 • [job_card.promoted] • [job_card.new]

Senior Technical Recruiter

WhatnotNew York, NY, United States
[job_card.full_time]

Join the Future of Commerce with Whatnot! Whatnot is the largest livestream shopping platform in North America and Europe to buy, sell, and discover the things you love.Whether it's trading cards, ...[internal_linking.show_more]

 • [job_card.promoted] • [job_card.new]

Travel Nuclear Medicine Tech - $1,775 per week in Wall Township, NJ

AlliedTravelCareersWall Township, NJ, US
[job_card.full_time]

AlliedTravelCareers is working with OneStaff Medical to find a qualified Nuclear Medicine Tech in Wall Township, New Jersey, 07719!.An independently-owned, nationally-recognized and amazingly aweso...[internal_linking.show_more]

 • [job_card.promoted]

Senior Staff React Native Engineer ($500k - 1.5m salary)

Baton, Inc.New York, NY, United States
[job_card.full_time]

Baton Corporation is the development company that builds and operates the entire technology stack behind pump.The systems are low latency, high throughput, live under constant load, and break if yo...[internal_linking.show_more]

 • [job_card.promoted]

Physician (MD/DO) - Anesthesiology - General/Other - $500,000 to $525,000 per year in Red Bank, NJ

LocumJobsOnlineRed Bank, NJ, US
[job_card.full_time] +1

Doctor of Medicine | Anesthesiology - General/Other.LocumJobsOnline is working with CompHealth to find a qualified Anesthesiology MD in Red Bank, New Jersey, 07701!.Red Bank embodies the best of al...[internal_linking.show_more]

 • [job_card.promoted]

Regional Medical Director

BoldAge PACEOceanport, New Jersey, US
[job_card.full_time]

Join BoldAge PACE and Make a Difference!.We make what is important to those we serve important to us.Enhance the quality of life for seniors.Access to training and career development.Are you passio...[internal_linking.show_more]

 • [job_card.promoted]

Senior Manual Ethical Hacker

Bank of AmericaJersey City, NJ, United States
[job_card.full_time]

Denver, Colorado;Seattle, Washington; Jacksonville, Florida; Charlotte, North Carolina; Jersey City, New Jersey; Boston, Massachusetts; Washington, District of Columbia; Chicago, Illinois.To procee...[internal_linking.show_more]

 • [job_card.promoted]

Travel Nuclear Medicine Technologist

Medical SolutionsNyack, NY, US
[job_card.full_time]

Medical Solutions is seeking an experienced Nuclear Medicine Technologist for an exciting Travel Allied job in Nyack, NY.Shift: 5x8 hr days Start Date: ASAP Duration: 13 weeks.A facility in Nyack, ...[internal_linking.show_more]

 • [job_card.promoted]

Endocrinologist- West Freehold

HealthEcareers - ClientNeptune Township, NJ, USA
[job_card.full_time] +1

Jersey Shore University Medical Center.Board Certified/Board Eligible Endocrinologist to join the growing team at Jersey Shore University Medical Center in Neptune, New Jersey.This is an excellent ...[internal_linking.show_more]