Talent.com
Sr Product Security Engineer / Pen Tester (Hybrid - Pleasanton, CA)
Sr Product Security Engineer / Pen Tester (Hybrid - Pleasanton, CA)Blackhawk Network • Pleasanton, CA, United States
[error_messages.no_longer_accepting]
Sr Product Security Engineer / Pen Tester (Hybrid - Pleasanton, CA)

Sr Product Security Engineer / Pen Tester (Hybrid - Pleasanton, CA)

Blackhawk Network • Pleasanton, CA, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

About Blackhawk Network

Today, through BHN’s single global platform, businesses of all kinds can tap into the world’s largest network of branded payment solutions. BHN helps businesses grow revenue, increase loyalty, motivate and reward their teams, disburse funds and engage consumers. Branded payment solutions include the issuance and distribution of gift cards, egifts, corporate payouts and rewards, along with the technology to deliver these products in seamless, integrated ways. BHN’s network spans the globe with more than 400,000 consumer touchpoints. Learn more at BHN.com.

Overview

We’re hiring a Senior Penetration Tester to help defend our fintech platform against large-scale payment fraud, carding attacks, and other financially motivated threats. You’ll lead offensive security assessments targeting our transaction systems, authentication flows, and APIs — with a heavy focus on automation and scalability. Your work will directly impact our fraud defenses, detection strategy, and customer trust.

This is a highly technical, hands-on role for someone who thrives in a fast-paced, high-stakes fintech environment.

This position will be Hybrid (Tuesdays & Wednesdays) out of our Pleasanton, CA office.

Responsibilities

  • Lead penetration testing engagements focused on payment abuse, transaction manipulation, and business logic exploitation.
  • Design and execute automated attack simulations to test our defenses against :
  • Carding and BIN attacks
  • Credential stuffing and account takeovers
  • Checkout and payment flow abuse
  • API-level enumeration and fraud
  • Build custom tooling and frameworks to mimic the behavior of real-world fraudsters and cybercriminals.
  • Partner with fraud engineering, product security, and risk teams to identify weak points in our controls, detection systems, and architecture.
  • Conduct threat modeling and red teaming exercises related to payments, authentication, and user account abuse.
  • Document findings in technical reports with clear risk impact, exploitability, and remediation guidance.
  • Mentor junior testers and contribute to a culture of security innovation and continuous improvement.

Qualifications

  • 7+ years of experience in offensive security, penetration testing, or red teaming.
  • Strong background in payment systems, financial fraud tactics, and transaction-level attack surfaces.
  • Fluency in scripting and automation (e.g., Python, JavaScript, Go, Bash) to simulate attacker workflows at scale.
  • Familiarity with tools like Burp Suite Pro, Selenium, Scapy, ffuf, SQLMap, Metasploit, and bot automation frameworks.
  • In-depth knowledge of fintech technologies (e.g., tokenized payments, card vaulting, 3DS, ACH, real-time payment APIs).
  • Solid grasp of common attacker techniques : carding, fake identity generation, bypassing rate limits, evading fraud filters, and abusing web / app logic.
  • Strong communication skills for explaining findings to both technical and non-technical audiences.
  • Certifications : OSCP, OSEP, GWAPT, GPEN, GCPN, GXPN, GX-PT, CPSA / CRSA by CREST, CHECK, or TIGER.
  • Prior experience in a fintech, digital banking, or payment gateway environment.
  • Familiarity with OWASP Automated Threats, PCI DSS, MITRE ATT&CK for Financial Services, or fraud detection systems.
  • Experience building or testing real-time risk scoring engines and fraud defense pipelines.
  • We seek candidates who not only demonstrate curiosity and adaptability in emerging technologies but have also successfully implemented and utilized AI tools to enhance their work, improve processes, or deliver measurable results.  Our teams embrace continuous learning and the thoughtful integration of AI to create meaningful impact – for our employees and the future of work.

    Benefits

    Salary Range for California Residents Only : $157,030.00 - $212,000.00

    Pay is based on several factors including but not limited to education, work experience, certifications, etc. In addition to your salary, Blackhawk Network offers benefits including 401k with employer match, medical, dental, vision, 12 paid holidays in the year 2025, 1 hour of sick pay accrual for every 30 hours worked, parental leave, life insurance, disability insurance, accident and illness insurance, health and dependent care flexible spending accounts, wellness benefits, and flexible time off for all full-time employees.

    EEO Statement

    Blackhawk Network provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.  Blackhawk Network believes that diversity leads to strength. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.

    Blackhawk Network encourages applicants with previous criminal records to apply to all positions and, pursuant to the San Francisco and Los Angeles Fair Chance Acts (and other “Fair Chance” laws), Blackhawk Network will consider for employment qualified applicants with arrest and conviction records. For Philadelphia applicants or jobs, please see a copy of Philadelphia’s ordinance on this topic by clicking this link :

    [job_alerts.create_a_job]

    Sr Security Engineer • Pleasanton, CA, United States

    [internal_linking.similar_jobs]
    Sr. Security Systems Engineer - Corporate Security

    Sr. Security Systems Engineer - Corporate Security

    X • Palo Alto, CA, US
    [job_card.full_time]
    AI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering exc...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Product Security Engineer

    Senior Product Security Engineer

    ID.me • Mountain View, CA, US
    [job_card.full_time]
    Consumers can verify their identity with ID.Over 152 million users experience streamlined login and identity verification with ID. More than 600+ consumer brands use ID.Commerce Department and is ap...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Security Engineer

    Security Engineer

    Meshy • Sunnyvale, CA, US
    [job_card.full_time]
    Meshy is the leading 3D generative AI company on a mission to.Meshy makes it effortless for both professional artists and hobbyists to create unique 3D assets—turning text and images into stu...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Security Engineer

    Senior Security Engineer

    Obsidian Security • Palo Alto, CA, US
    [job_card.full_time]
    Founded in 2017, Obsidian Security was created to close a critical gap : securing the SaaS applications where modern business happens—platforms like Microsoft 365, Salesforce, and hundreds mor...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Penetration Tester II

    Penetration Tester II

    Autoroboto • Mountain View, CA, US
    [job_card.full_time]
    AutoRoboto is a consulting firm that specializes in engineering and management that has provided services for some of the largest tech companies in the San Francisco Bay Area.These services include...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Sr. ASIC Product and Test Engineer

    Sr. ASIC Product and Test Engineer

    CyberCoders • San Jose, CA, US
    [job_card.full_time]
    ASIC Product and Test Engineer.ASIC Product and Test Engineer.K - $220K base Depending on experience plus equity!.Automatic Test Equipment (ATE), DFT, Yield, Advantest 93K, Teradyne, Product Engine...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Sr. Engineer, MEMS

    Sr. Engineer, MEMS

    SiTime Corporation • Santa Clara, CA, US
    [job_card.full_time]
    SiTime Corporation (Nasdaq : SITM), a market leader in timing, offers MEMS-based silicon timing system solutions.SiTime’s configurable solutions offer a rich feature set that enables customers...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Sr. Test Engineer

    Sr. Test Engineer

    SiTime Corporation • Santa Clara, CA, US
    [job_card.full_time]
    SiTime Corporation is the precision timing company.Our semiconductor MEMS programmable solutions offer a rich feature set that enables customers to differentiate their products with higher performa...[show_more]
    [last_updated.last_updated_30] • [promoted]
    InfoSec - Principal Product Security Engineer (AppSec)

    InfoSec - Principal Product Security Engineer (AppSec)

    Elastic • Mountain View, CA, United States
    [job_card.full_time]
    Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale - unleashing the potential of businesses and people.The Elastic Search AI...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Penetration Tester I

    Penetration Tester I

    Autoroboto • Mountain View, CA, US
    [job_card.full_time]
    AutoRoboto is a consulting firm that specializes in engineering and management that has provided services for some of the largest tech companies in the San Francisco Bay Area.These services include...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Security Research Engineer

    Security Research Engineer

    Obsidian Security • Palo Alto, CA, US
    [job_card.full_time]
    Founded in 2017, Obsidian Security was created to close a critical gap : securing the SaaS applications where modern business happens—platforms like Microsoft 365, Salesforce, and hundreds mor...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Sr. Project Engineer

    Sr. Project Engineer

    Antora Energy • San Jose, CA, US
    [job_card.full_time]
    Antora builds and deploys thermal batteries to power always-on industrial operations with low-cost energy.Factory-built in the United States, Antora's modular thermal batteries deliver reliable...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Sr. Systems Integration and Test Engineer - Pleasanton, CA

    Sr. Systems Integration and Test Engineer - Pleasanton, CA

    Calyxo • Pleasanton, CA, US
    [job_card.full_time]
    The company was founded in 2016 to address the profound need for improved kidney stone treatment.Kidney stone disease is a common, painful condition that consumes vast amounts of healthcare resourc...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Product Security Engineer

    Product Security Engineer

    ID.me • Mountain View, CA, US
    [job_card.full_time]
    Consumers can verify their identity with ID.Over 152 million users experience streamlined login and identity verification with ID. More than 600+ consumer brands use ID.Commerce Department and is ap...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Senior Security System Project Engineer

    Senior Security System Project Engineer

    Pinkerton • San Jose, CA, US
    [job_card.full_time]
    At Pinkerton, the mission is to protect our clients.To do this, we provide enterprise risk management services and programs specifically designed for each client. Pinkerton employees are one of our ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Sr R&D Test Engineer

    Sr R&D Test Engineer

    Imperative Care • Campbell, CA, US
    [job_card.full_time]
    Job Title : Senior R&D Test Engineer.This position is based in our Campbell, California offices.This position is on-site and full-time with some travel. Do you want to make a real impact on patie...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Product Test Engineer

    Product Test Engineer

    Probius • Fremont, CA, US
    [job_card.full_time]
    Probius is a deep-tech company bridging the data gap between biology and AI, thereby illuminating new opportunities for the way biomedical research and healthcare are practiced.By combining physics...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Sr. Security Engineer

    Sr. Security Engineer

    IBM • San Jose, CA, United States
    [job_card.full_time]
    A career in IBM Software means you’ll be part of a team that transforms our customer’s challenges into solutions.Seeking new possibilities and always staying curious, we are a team dedicated to cre...[show_more]
    [last_updated.last_updated_30] • [promoted]