Talent.com
Manual Ethical Hacker
Manual Ethical HackerBank of America • Boston
Manual Ethical Hacker

Manual Ethical Hacker

Bank of America • Boston
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Description

:

Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America’s Cyber Security Assurance Offensive Security group. The program provides services to assess the vulnerability of the bank’s applications to malicious hacking activity.

This intermediate technical role is responsible for performing application security assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include performing research, understanding the bank’s security policies, working with the appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business.

Key Responsibilities in order of importance:

  • Perform assigned analysis of internal and external threats on information systems and predict future threat behavior
  • Incorporate threat actors' tactics, techniques, and procedures into offensive security testing
  • Perform assessments of the security, effectiveness, and practicality of multiple technology systems
  • Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
  • Prepare and present detailed technical information for various media including documents, reports, and notifications
  • Provide clear and practical advice regarding managed risks
  • Learn and develop advanced technical and leadership skills, Mentor Junior assessors in technical tradecraft and soft skills

Required Skills:

  • Minimum of 4 years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
  • Detailed technical knowledge in at least 3 of the following areas: security engineering; application architecture; authentication and security protocols; application session management; applied cryptography; common communication protocols; mobile frameworks; single sign-on technologies; exploit automation platforms; RESTful web services
  • SQL injection/XSS attack without the use of tools
  • Experience performing manual code reviews for security relevant issues
  • Experience working with SAST tools to identify vulnerabilities
  • Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
  • Experience performing manual web application assessments i.e., must be able to simulate a
  • Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
  • Experience with vulnerability assessment tools and penetration testing techniques
  • Solid programming/debugging skills
  • Experience of using a variety of tools, included, but not limited to, IBM AppScan, Burp and SQL Map
  • Threat Analysis
  • Innovative Thinking
  • Technology Systems Assessment
  • Technical Documentation
  • Advisory

Desired:

  • CISSP, CEH, OSCP, OSWE, GPEN, PenTest+ or similar
  • Strong programming/scripting skills
  • Mobile application analysis
  • Frida
  • Binary analysis (disassembly skills)

Skills:

  • Advisory
  • Innovative Thinking
  • Technical Documentation
  • Technology System Assessment
  • Threat Analysis
  • Adaptability
  • Collaboration
  • Executive Presence
  • Scenario Planning and Analysis
  • Test Engineering
  • Controls Management
  • Information Systems Management
  • Issue Management
  • Mentoring
  • Presentation Skills

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

Shift:

1st shift (United States of America)

Hours Per Week:

40

Pay Transparency details

US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540), US - MA - Boston - 100 Federal St - 100 Federal St Lp (MA5100), US - NJ - Jersey City - 101 Hudson St - 101 Hudson (NJ2101), US - WA - Seattle - 401 Union St - Rainier Square (WA1510)Pay and benefits informationPay range$117,000.00 - $147,700.00 annualized salary, offers to be determined based on experience, education and skill set.Discretionary incentive eligibleThis role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.BenefitsThis role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
[job_alerts.create_a_job]

Manual Ethical Hacker • Boston

[internal_linking.similar_jobs]

SQA Engineer

Axcelis TechnologiesBeverly, MA, United States
[job_card.full_time]

SQA Engineer: This position is fully onsite.This position involves the testing of hardware product and software control of Ion Implanter developed for wafer processing produced by Axcelis Technolog...[internal_linking.show_more]

 • [job_card.promoted]

Networking Hardware Procurement Professional

Iron Mountain IncBoston, MA, United States
[job_card.full_time]

At Iron Mountain we know that work, when done well, makes a positive impact for our customers, our employees, and our planet.That's why we need smart, committed people to join us.Whether you're loo...[internal_linking.show_more]

 • [job_card.promoted] • [job_card.new]

Staff Software Engineer, Applied AI

HackerOneBoston, MA, United States
[job_card.full_time]

HackerOne is a global leader in Continuous Threat Exposure Management (CTEM).The HackerOne Platform unites agentic AI solutions with the ingenuity of the world's largest community of security resea...[internal_linking.show_more]

 • [job_card.promoted]

SEO & Digital Marketing Engineer (React/Java)

Degree 360 Solutions Pvt. Ltd.Boston, MA, United States
[job_card.full_time]

A leading marketing solutions provider in Boston seeks a Software Engineer for the Identity Platform, focusing on SEO activities and social media management.Candidates should have a Bachelor's degr...[internal_linking.show_more]

 • [job_card.promoted]

Manual QA Tester – Capital Markets

Purple DriveQuincy, MA, Massachusetts, USA
[job_card.full_time]

Role: Manual QA Tester - Capital Markets Location: North Quincy, MA (Onsite/Hybrid) [internal_linking.show_more]

Senior Human Factors Engineer

Redbock - an NES Fircroft companyBoston, MA, United States
[job_card.full_time]

Senior Recruitment Consultant @ Redbock | Life Sciences Staffing.We’re seeking a Senior Human Factors Design Engineer to apply human factors principles to the design and evaluation of medical devic...[internal_linking.show_more]

 • [job_card.promoted]

Exec Recruiter-Atty Search

AdeccoBoston, MA, United States
[job_card.full_time] +1

LHH Recruitment Solutions, a division of the Adecco Group, is the world's leading HR Solutions provider and the 7th best workplace in the world.We are an industry leader in temporary and permanent ...[internal_linking.show_more]

 • [job_card.promoted]

Human Factors UI Engineer

Rapid Liquid Print Co.Boston, MA, United States
[job_card.full_time]

Rapid Liquid Print (RLP)is revolutionizing elastomer product manufacturing with our patented embedded gel 3D printing technology, developed at MIT.Our system enables rapid, large-scale, high-resolu...[internal_linking.show_more]

 • [job_card.promoted]

Staff Engineer, Android

Ford Motor CompanyBoston, MA, United States
[job_card.full_time]

We made history and now we work to transform the future – for our customers, our communities and our families.You'll see your work on the road every day, helping people move freely and pursue their...[internal_linking.show_more]

 • [job_card.promoted]

Technical Recruiter

Seven AIBoston, MA, United States
[job_card.full_time]

As a Technical Recruiter at 7AI, you will own full-cycle recruiting for Software, Machine Learning and Security Engineering roles.You won't just "fill roles"; you'll be a strategic partner to R&D l...[internal_linking.show_more]

 • [job_card.promoted]

Technical Recruiter

BlitzyCambridge, MA, United States
[job_card.full_time]

Blitzy is a Cambridge, MA based AI software development platform on a mission to revolutionize the software development life cycle by autonomously building custom software to unlock the next indust...[internal_linking.show_more]

 • [job_card.promoted]

Remote QA Engineer (AI/ML Focus)

Special Projects Engineering LLCBoston, Massachusetts
[filters.remote]
[job_card.full_time]
[filters_job_card.quick_apply]

Special Projects Engineering LLC.Special Projects Engineering is a small, elite team based in Seattle tackling complex, high-impact problems using advanced AI and automation.We work across domains ...[internal_linking.show_more]

Manager EHR Applications (Hybrid-Boston MA)

Beth Israel Lahey HealthBoston, MA, United States
[job_card.full_time]

Manager EHR Applications (Hybrid-Boston MA).Manager EHR Applications (Hybrid-Boston MA).Manager EHR Applications (Hybrid-Boston MA).Be among the first 25 applicants.Manager EHR Applications (Hybrid...[internal_linking.show_more]

 • [job_card.promoted]

Senior ML Engineer — Healthcare AI & Vision Systems (Equity)

VideaHealthBoston, MA, United States
[job_card.full_time]

A healthcare technology company is seeking a Senior Machine Learning Engineer to build impactful AI-driven medical devices.This role involves designing and implementing reliable deep learning infra...[internal_linking.show_more]

 • [job_card.promoted]

Recruiter

Creative Financial StaffingNorth Dighton, MA, United States
[job_card.full_time]

A $40M nonprofit dedicated to helping individuals with developmental and other disabilities thrive in their communities.Founded over 50 years ago with 60% growth in 4 years; expanding their reach i...[internal_linking.show_more]

 • [job_card.promoted]

Hardware Compliance Engineer

SonosBoston, MA, United States
[job_card.full_time]

At Sonos we want to create the ultimate listening experience for our customers and know that it starts by listening to each other.As part of the Sonos team, you'll collaborate with people of all st...[internal_linking.show_more]

 • [job_card.promoted] • [job_card.new]

Sr Principal ML Engineer - eCommerce & Personalization

AutodeskBoston, MA, United States
[job_card.full_time]

At GET (Growth Experience Technology), we're transforming how customers.Our mission is to build seamless, data-informed digital.We're investing in smarter platforms, connected sales and marketing s...[internal_linking.show_more]

 • [job_card.promoted]

Human Machine Interface (HMI) Software Engineer

MerlinBoston, MA, United States
[job_card.full_time]

Human Machine Interface (HMI) Software Engineer.Be among the first 25 applicants.Merlin is a venture backed aerospace startup building a non-human pilot to enable both reduced crew and uncrewed fli...[internal_linking.show_more]