Enable job alerts via email!

Senior Penetration Tester – Offensive Security

M&T Bank Corporation

Buffalo (NY)

Hybrid

USD 93,000 - 156,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a Senior Penetration Tester to join their dynamic cybersecurity team. This role offers a hybrid work schedule, allowing for flexibility while ensuring close collaboration at the Buffalo Tech Hub. You will be responsible for identifying application weaknesses, conducting thorough penetration tests, and educating teams on cybersecurity best practices. If you are passionate about offensive security and eager to tackle challenges in a supportive environment, this opportunity could be the perfect fit for you.

Qualifications

  • 3+ years of experience in penetration testing and cybersecurity.
  • Strong understanding of networking protocols and application security.

Responsibilities

  • Conduct penetration testing of web applications, APIs, and mobile apps.
  • Collaborate with teams to identify and remediate vulnerabilities.

Skills

Penetration Testing
Networking Knowledge
Scripting/Coding
Cybersecurity Awareness
Social Engineering

Education

Bachelor's Degree in Computer Science or related field
7 years of relevant work experience

Tools

Penetration Testing Tools
Red Team Tools

Job description

Senior Penetration Tester – Offensive Security

Apply remote type Hybrid Position locations Buffalo, NY time type Full time posted on Posted 2 Days Ago job requisition id R74467

This role offers a hybrid work schedule; offering the flexibility to work remotely two days a week, while providing the opportunity for in-person collaboration at our Buffalo, NY Tech Hub.

Overview:

Searches for application weaknesses that are exploitable, and partners with technology, cybersecurity, and risk teams to remediate any found weaknesses. Collaborates with technology teams when implementing new applications to help the team identify weaknesses before an attacker does.

Primary Responsibilities:
  • Complete penetration testing (primarily Grey & White Box testing) of web applications, Application Programming Interfaces (APIs), hardware, and mobile.
  • Define testing methods to meet the scope and goals of assigned penetration tests.
  • Gather intelligence to better understand how target works and its potential vulnerabilities.
  • Understand breach and attack simulation solutions and work with the team to validate controls effectiveness.
  • Document and formally report testing initiative findings.
  • Maintain tools and scripts used in penetration testing and red team processes.
  • Effectively educate and train Cybersecurity teams on new tactics, techniques, and procedures to ensure technology applications and services are not at risk of compromise or will leak information.
  • Collaborate across Cybersecurity and Technology teams to leverage intelligence sources, identify new threats, improve tool usage and workflow, and mature monitoring and response capabilities.
  • Identify areas of opportunities in daily tasks to advance penetration testing skills and regularly learn new tactics, techniques, procedures to assess risk and implement and validate controls as necessary.
  • Understand and adhere to the Company’s risk and regulatory standards, policies, and controls in accordance with the Company’s Risk Appetite. Design, implement, maintain, and enhance internal controls to mitigate risk on an ongoing basis. Identify risk-related issues needing escalation to management.
Scope of Responsibilities:
  • Engages in regular interaction with middle management within Internal Audit, Compliance, Risk Management, and Technology.
  • Determines and develops approach to solutions. Work is evaluated upon completion to ensure objectives have been met. Work is accomplished with periodic check-ins for alignment and limited direction.
  • Basic knowledge of all penetration testing and red team tools.
  • Strong knowledge of networking and network protocols.
  • Intermediate working knowledge of operating systems and scripting and/or coding.
Education and Experience Required:
  • Bachelor's degree and a minimum of 3 years’ relevant work experience, or in lieu of a degree, a combined minimum of 7 years’ higher education and/or work experience.
  • Intermediate working knowledge of penetration testing and red team tools to be able to simulate attacker tactics, techniques, and procedures.
  • Strong knowledge of networking and network protocols.
  • Intermediate working knowledge of operating systems and scripting and/or coding.
Education and Experience Preferred:
  • Bachelor’s degree in an applicable discipline such as Computer Science, Cybersecurity, or Information Technology.
  • Strong understanding of information security concepts (both technical and organizational requirements).
  • Highly ethical and expected to maintain a level of professionalism at all times.
  • Intermediate working knowledge in social engineering, application security (web and mobile), physical methods, lateral movement, threat analysis, internal and external network architecture and a wide array of commercial and bring-your-own (BYO) products.
  • Prior experience with and demonstrable aptitude for quickly learning new technical skills.
  • Experience training others to ensure they have basic knowledge of and ability to use function-specific tools and systems.
  • Ability to analyze and draw conclusions based on quantitative data from multiple sources.
  • Penetration testing-specific or Cybersecurity domain-related industry-recognized certification.

M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $93,581.10 - $155,968.51 Annual (USD). The successful candidate’s particular combination of knowledge, skills, and experience will inform their specific compensation.

Location

Buffalo, New York, United States of America

Ready to join our team?

Submit your application today!

If you are unable to apply through this site due to technical issues or need an accommodation to apply, please contact us at careersitesupport@mtb.com for assistance.

M&T Bank Corporation is an Equal Opportunity/Affirmative Action Employer, including disabilities and veterans. M&T Bank Corporation has policies and procedures in place to promote a drug free workplace.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Penetration Tester

Sprocket Security

Remote

USD 100,000 - 130,000

6 days ago
Be an early applicant

Sr Application Security Engineer (Pen Tester)- Remote

ZipRecruiter

Philadelphia

Remote

USD 100,000 - 130,000

6 days ago
Be an early applicant

Sr Application Security Engineer (Pen Tester)- Remote

ZipRecruiter

Raleigh

Remote

USD 100,000 - 130,000

6 days ago
Be an early applicant

Red Team Penetration Tester

Ccl Solutions Group

Oregon

Remote

USD 100,000 - 140,000

Today
Be an early applicant

Sr. Web Application Penetration Tester

The Hartford

Connecticut

Remote

USD 127,000 - 191,000

13 days ago

Sr. Web Application Penetration Tester

The Hartford

Chicago

Remote

USD 127,000 - 191,000

7 days ago
Be an early applicant

Sr. Web Application Penetration Tester

The Hartford

Columbus

Remote

USD 127,000 - 191,000

10 days ago

Penetration Tester

Akkodis

Remote

USD 130,000 - 175,000

5 days ago
Be an early applicant

Sr Application Security Engineer (Pen Tester)- Remote

Veradigm

Houston

Remote

USD 90,000 - 130,000

16 days ago