Senior Penetration Tester - Hardware Focus

JPMorganChase

Columbus (OH)

On-site

USD 120,000 - 140,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

A major financial institution in Columbus, OH, is seeking a Senior Penetration Tester with 3+ years of experience in offensive security testing. This role involves conducting penetration tests, developing comprehensive assessment reports, and evaluating control effectiveness, aiming to enhance the cybersecurity posture. The ideal candidate has knowledge of security assessment methodologies and strong collaboration skills. A competitive salary range of $120,000 to $140,000 is offered for this full-time position.

Qualifications

  • 3+ years of experience in cybersecurity or resiliency focused on offensive security.
  • Experience in manual penetration testing of web, API, and mobile applications.
  • Knowledge of security assessment methodologies like OWASP and NIST.

Responsibilities

  • Conduct testing and simulations such as penetration tests and resilience simulations.
  • Evaluate controls for effectiveness and impact on operational risk.
  • Develop and communicate comprehensive assessment reports.

Skills

Penetration testing
Cybersecurity
Risk assessment
Collaboration

Job description

Senior Penetration Tester – Hardware Focus

Job Description
Join our dedicated team where your expertise in risk assessments and cybersecurity exercises propels our mission of safeguarding operations and enhancing resiliency. This role offers a unique opportunity to shape our security posture and contribute to continuous improvement in an environment that values innovation and teamwork.

Job Responsibilities
  • Collaborate with other Assessments & Exercises team members to conduct testing and simulations – such as penetration tests, technical controls assessments, cyber exercises, or resiliency simulations, and contribute to the development and refinement of assessment methodologies to ensure alignment with industry standards and regulatory requirements.
  • Partner with subject matter experts to evaluate controls for effectiveness and impact on operational risk, as well as opportunities to automate control evaluation.
  • Develop comprehensive assessment reports, including detailed findings, risk assessments, and remediation recommendations, and effectively communicate these insights to relevant stakeholders to support continuous improvement.
  • Utilize threat intelligence and security research to stay informed about emerging threats, vulnerabilities, industry best practices, and regulations, applying this knowledge to enhance the firm's assessment strategy.
Required Qualifications, Capabilities, and Skills
  • 3+ years of experience in cybersecurity or resiliency, with a focus on offensive security testing, assessments, or simulation exercises.
  • Experience conducting manual penetration tests against a wide variety of applications and technologies, including web, API, and mobile (Android & iOS) applications.
  • Expertise in common cybersecurity threats and technology resiliency risks pertinent to the US financial services sector.
  • Proficiency in at least two security assessment methodologies (e.g., OWASP Top Ten, NIST Cybersecurity Framework, offensive testing tools, or resiliency testing equivalents).
  • Demonstrated collaboration, communication (written and verbal), and executive reporting skills, with the ability to work effectively with cross‑functional teams and convey complex cybersecurity concepts and recommendations to diverse stakeholders.
Preferred Qualifications, Capabilities, and Skills
  • Proficiency in security concepts for both Windows and Unix-like Operating Systems.
  • Additional experience in testing thick clients, internal and external facing infrastructures, and cloud platforms (AWS, Azure, GCP).
  • Experience in source code review and/or building software with multiple programming languages (e.g., Python, Java, Rust, etc.).
  • Experience in reverse engineering thick clients and mobile applications.
  • Certifications such as OSWE, CREST (CRT, CCT), OSCP, OSCE, GXPN, GWAPT, GPEN, GMOB, BSCP.
About the Team

Our professionals in Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers, and employees up for success.

Hiring Firm Overview

JPMorgan Chase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses, and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. We recognize that our people are our strength, and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal‑opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law.

Job Details

Seniority Level: Not Applicable
Employment Type: Full‑time
Job Function: Information Technology

Location: Columbus, OH | Salary: $120,000 – $140,000

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Penetration Tester
Senior Penetration Tester

JPMorgan Chase & Co. • New York (NY)

On-site
USD 180,000 - 280,000
Senior Penetration Tester - Banking Apps & Cloud Security
Senior Penetration Tester - Banking Apps & Cloud Security

JPMorgan Chase & Co. • New York (NY)

On-site
USD 180,000 - 280,000
Vice President - Assessments & Exercises
Vice President - Assessments & Exercises

JPMorganChase • Washington

On-site
USD 180,000 - 230,000
Offensive Security Engineer
Offensive Security Engineer

J.P. Morgan • New York (NY)

On-site
USD 130,000 - 180,000
Comprehensive health care coverage
Retirement savings plan
Tuition reimbursement
+1
Offensive Security Engineer
Offensive Security Engineer

TwinThread • McLean (VA)

On-site
USD 120,000 - 160,000
Health care coverage
Retirement savings plan
Tuition reimbursement
Assessments & Exercises - Cybersecurity Solutions Engineer
Assessments & Exercises - Cybersecurity Solutions Engineer

Next Frontier Capital • Houston (TX)

On-site
USD 120,000 - 180,000
Security Engineer III-Python, Bash, Vulnerability Assessments
Security Engineer III-Python, Bash, Vulnerability Assessments

JPMorgan Chase • Columbus (OH)

On-site
USD 105,000 - 135,000
Senior Lead Security Engineer
Senior Lead Security Engineer

JPMorgan Chase & Co. • Brooklyn (AL)

On-site
USD 140,000 - 190,000
Competitive total rewards package
Assessments & Exercises - Cybersecurity Solutions Engineer
Assessments & Exercises - Cybersecurity Solutions Engineer

J.P. Morgan • New York (NY)

On-site
USD 90,000 - 120,000
Comprehensive health care coverage
Retirement savings plan
Tuition reimbursement
+1
Senior Offensive Security Engineer
Senior Offensive Security Engineer

J.P. Morgan • New York (NY)

On-site
USD 130,000 - 180,000
Comprehensive health care coverage
Retirement savings plan
Tuition reimbursement
+1