Senior Security Engineer – Penetration Tester

Jobtailor

North Carolina

On-site

USD 120,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor in the United States seeks an experienced security engineer to lead advanced penetration testing across enterprise applications, cloud platforms, and AI systems. The role emphasizes threat modeling, SDLC security, and cross-team collaboration to reduce risk and strengthen compliance.

The ideal candidate will have 7+ years in security engineering, strong scripting/automation skills, and proven ability to communicate complex risks to technical and non-technical audiences. U.S.

Qualifications

  • Bachelor’s degree or equivalent education, training, and work-related experience.
  • Minimum of 7 years of experience in security engineering or related cybersecurity roles
  • Deep specialized knowledge of cybersecurity principles, theories, and concepts
  • Proven experience in software development lifecycle security practices
  • Deep knowledge of threat modeling, security testing, and penetration testing
  • Experience implementing and managing complex information security technologies
  • 5+ years of penetration testing, red teaming, offensive security, vulnerability research, or related cybersecurity experience
  • Experience with AI Security Testing and/or Mainframe Security Testing
  • Experience conducting penetration testing, red team, and security assessments across diverse environments and technologies
  • Experience with scripting, automation, and offensive security tool development
  • Strong technical writing and communication skills
  • Ability to articulate technical risks to technical and non-technical audiences
  • Ability to independently manage multiple engagements
  • Experience defending technical findings and participating in stakeholder discussions
  • Strong analytical and problem-solving skills
  • Banking, financial services, or highly regulated industry experience preferred
  • Relevant certifications such as OSCP+, OSEP, OSED, OSEE, OSWE, OSWA, OSAI, GPEN, GWAPT, CISSP, etc.
  • English language fluency required
  • Applicant must have U.S. work authorization; Truist will not sponsor work visas or employment authorization

Responsibilities

  • Conduct penetration tests against enterprise applications, infrastructure, cloud platforms, AI systems, APIs, mobile applications, Active Directory environments, and other technology assets
  • Simulate real-world attack techniques to identify vulnerabilities, attack paths, misconfigurations, and security weaknesses
  • Perform validation and retesting to verify remediation and confirm risk reduction
  • Document technical findings with reproduction steps, evidence, business impact, and remediation recommendations
  • Maintain testing artifacts and evidence for regulatory, audit, and compliance requirements
  • Defend findings with application teams, technology leaders, and stakeholders
  • Participate in escalation calls involving disputed findings, risk discussions, and remediation planning
  • Collaborate with internal and external testing teams to improve testing coverage and effectiveness
  • Contribute to AI security testing initiatives and emerging offensive security capabilities
  • Support AI model evaluation, testing, training, and security validation
  • Improve testing methodologies, automation, tooling, and operational processes
  • Perform peer reviews of penetration testing reports and deliverables
  • Provide technical guidance and mentorship to junior security professionals
  • Collaborate across security, engineering, development, infrastructure, application teams, and management
  • Assist with standards, procedures, playbooks, and testing documentation
  • Support special projects and security initiatives

Skills

Penetration Testing
Vulnerability Assessment
Threat Modeling
Security Testing
Scripting
Automation
Offensive Security Tool Development
Software Development LifecycleSecurity
Risk Assessment
Compliance Documentation

Education

Bachelor's degree

Job description

  • Conduct penetration tests against enterprise applications, infrastructure, cloud platforms, AI systems, APIs, mobile applications, Active Directory environments, and other technology assets
  • Simulate real-world attack techniques to identify vulnerabilities, attack paths, misconfigurations, and security weaknesses
  • Perform validation and retesting to verify remediation and confirm risk reduction
  • Document technical findings with reproduction steps, evidence, business impact, and remediation recommendations
  • Maintain testing artifacts and evidence for regulatory, audit, and compliance requirements
  • Defend findings with application teams, technology leaders, and stakeholders
  • Participate in escalation calls involving disputed findings, risk discussions, and remediation planning
  • Collaborate with internal and external testing teams to improve testing coverage and effectiveness
  • Contribute to AI security testing initiatives and emerging offensive security capabilities
  • Support AI model evaluation, testing, training, and security validation
  • Improve testing methodologies, automation, tooling, and operational processes
  • Perform peer reviews of penetration testing reports and deliverables
  • Provide technical guidance and mentorship to junior security professionals
  • Collaborate across security, engineering, development, infrastructure, application teams, and management
  • Assist with standards, procedures, playbooks, and testing documentation
  • Support special projects and security initiatives
Requirements
  • Bachelor’s degree or equivalent education, training, and work-related experience
  • Minimum of 7 years of experience in security engineering or related cybersecurity roles
  • Deep specialized knowledge of cybersecurity principles, theories, and concepts
  • Proven experience in software development lifecycle security practices
  • Deep knowledge of threat modeling, security testing, and penetration testing
  • Experience implementing and managing complex information security technologies
  • 5+ years of penetration testing, red teaming, offensive security, vulnerability research, or related cybersecurity experience
  • Experience with AI Security Testing and/or Mainframe Security Testing
  • Experience conducting penetration testing, red team, and security assessments across diverse environments and technologies
  • Experience with scripting, automation, and offensive security tool development
  • Strong technical writing and communication skills
  • Ability to articulate technical risks to technical and non-technical audiences
  • Ability to independently manage multiple engagements
  • Experience defending technical findings and participating in stakeholder discussions
  • Strong analytical and problem-solving skills
  • Banking, financial services, or highly regulated industry experience preferred
  • Relevant certifications such as OSCP+, OSEP, OSED, OSEE, OSWE, OSWA, OSAI, GPEN, GWAPT, GXPN, GRTP, GCFA, CISSP, CRIS, CPTS, or equivalent certifications may be held
  • English language fluency required
  • Applicant must have U.S. work authorization; Truist will not sponsor work visas or employment authorization
Core Competencies

Demonstrates extensive expertise in penetration testing, vulnerability assessment, and security engineering, with a strong focus on AI security testing and compliance within highly regulated industries. Capable of effectively communicating technical risks and collaborating across diverse teams to enhance security practices and methodologies.

Highest-signal resume keywords
  • Penetration Testing
  • AI Security Testing
  • Vulnerability Research
  • Technical Writing
  • Cybersecurity Principles
ATS Optimization Keywords
Hard Skills
  • Penetration Testing
  • Vulnerability Assessment
  • Threat Modeling
  • Security Testing
  • Scripting
  • Automation
  • Offensive Security Tool Development
  • Software Development Lifecycle Security
  • Risk Assessment
  • Compliance Documentation
Soft Skills
  • Analytical Skills
  • Problem-Solving Skills
  • Communication Skills
  • Collaboration
  • Mentorship
Certifications & Qualifications
  • OSCP+
  • OSEP
  • OSED
  • OSEE
  • OSWE
  • OSWA
  • OSAI
  • GPEN
  • GWAPT
  • CISSP
Industry Keywords
  • Cybersecurity
  • Financial Services
  • Regulatory Compliance
  • Red Teaming
  • Offensive Security
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Penetration Tester
Senior Penetration Tester

Jobtailor • Seattle (WA)

On-site
USD 120,000 - 150,000
Senior Penetration Tester
Senior Penetration Tester

Jobtailor • Herndon (VA)

On-site
USD 120,000 - 150,000
Senior Penetration Tester / Red Team Consultant
Senior Penetration Tester / Red Team Consultant

Jobtailor • Seattle (WA)

On-site
USD 140,000 - 210,000
Senior Associate, AI Security Engineer
Senior Associate, AI Security Engineer

Jobtailor • Charlotte (NC)

On-site
USD 120,000 - 170,000
Senior Associate, Offensive Security
Senior Associate, Offensive Security

Jobtailor • New York (NY)

Hybrid
USD 120,000 - 160,000
Lead Associate Principal, Adversarial Red Team
Lead Associate Principal, Adversarial Red Team

Jobtailor • United States

On-site
USD 170,000 - 210,000
Senior Offensive Security Consultant
Senior Offensive Security Consultant

Jobtailor • Connecticut

On-site
USD 80,000 - 110,000
Application Security Engineer
Application Security Engineer

Jobtailor • San Francisco (CA)

On-site
USD 140,000 - 180,000
Senior Security Engineer - Penetration Tester
Senior Security Engineer - Penetration Tester

Habitat For Humanity Of Durham • Raleigh (NC)

On-site
USD 120,000 - 170,000
Medical, dental, vision
401k plan
Vacation and holidays
Senior Security Engineer - Penetration Tester
Senior Security Engineer - Penetration Tester

Truist • Raleigh (NC)

On-site
USD 120,000 - 170,000
Medical Insurance
Dental Insurance
Vision Insurance
+6