Enable job alerts via email!

Sr. Web Application Penetration Tester

The Hartford

Chicago (IL)

Remote

USD 127,000 - 191,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative insurance company is seeking a Senior Security Engineer to lead application penetration testing initiatives. This role offers the chance to enhance cybersecurity measures across various application portfolios. You will plan and execute penetration tests, document findings, and collaborate with teams to mitigate vulnerabilities. The ideal candidate will have extensive experience in application security, a strong understanding of web and mobile architectures, and a commitment to ethical standards. Join a forward-thinking organization dedicated to making a difference and shaping the future of cybersecurity.

Qualifications

  • 5+ years in enterprise application vulnerability assessment.
  • 3+ years in application penetration testing for web and mobile.

Responsibilities

  • Plan and perform penetration tests on enterprise applications.
  • Document findings and recommend remediation strategies.
  • Collaborate with application teams to address vulnerabilities.

Skills

Application Penetration Testing
Vulnerability Assessment
Web Application Security
Mobile Application Security
Reporting Skills
Legal and Ethical Standards

Education

Bachelor's degree in Computer Science
Certifications (CISSP, OSCP, OSWE)

Tools

OWASP Top 10
JavaScript
Java
.NET Frameworks

Job description

Senior Security Engineer - IS07FE

We’re determined to make a difference and are proud to be an insurance company that goes well beyond coverages and policies. Working here means having every opportunity to achieve your goals – and to help others accomplish theirs, too. Join our team as we help shape the future.

The Hartford’s Information Protection (THIP) organization is looking for a talented individual to join a high-performing team of Application Security Engineers responsible for governing, managing and delivering our company’s application cybersecurity defenses. As a Senior Web Application Penetration Tester, you will have an opportunity to shape the direction of our company’s application penetration testing program by providing thought leadership, professional support, and valued contributions to our growing range of penetration testing activities. This role provides the right person with the opportunity to use their skills and expertise to drive meaningful improvements into the security posture of all application portfolios across our company.

RESPONSIBILITIES:

  • Plan and perform penetration tests on applications spanning all enterprise lines of business and portfolios

  • Document findings and recommend remediation strategies

  • Collaborate with application teams to ensure vulnerabilities are addressed effectively

  • Develop exploits to demonstrate the potential impact of a successful attack

  • Participate in broader attack simulation activities assessing systems including infrastructure, network, cloud, and IoT services

  • Stay up to date with the latest technologies, testing methodologies, tools, security trends and threats

This role is eligible for fully remote work.

QUALIFICATIONS:

Candidates will be evaluated based on their ability to perform the duties listed above while demonstrating the skills and competencies necessary to be highly effective in the role. These skills and competencies include:

  • 5+ years’ experience assessing vulnerabilities across a large enterprise application portfolio

  • 3+ years’ experience performing application penetration testing to cover a broad range of enterprise web and mobile applications

  • Strong understanding of web and mobile architectures and technologies including Single Page Applications (SPA), Multi-Page Applications (MPA), APIs, OAuth 2.0, JavaScript, Java and .NET frameworks

  • Comprehensive knowledge of web and mobile application security vulnerabilities including OWASP Web Application, API and Mobile Top 10 lists

  • Ability to effectively extend testing scope to include infrastructure, network, cloud and IoT services

  • Strong reporting and communication skills

  • Strong commitment to legal and ethical standards and behaviors

  • Bachelor's degree from an accredited college or university in computer science, information security, or related field

  • Certifications such as Certified Information Systems Security Professional (CISSP), Offensive Security Certified Professional (OSCP) or Offensive Security Web Expert (OSWE) are highly desirable and preferred

Candidate must be authorized to work in the US without company sponsorship.The company will not support the STEM OPT I-983 Training Plan endorsement for this position.

Compensation

The listed annualized base pay range is primarily based on analysis of similar positions in the external market. Actual base pay could vary and may be above or below the listed range based on factors including but not limited to performance, proficiency and demonstration of competencies required for the role. The base pay is just one component of The Hartford’s total compensation package for employees. Other rewards may include short-term or annual bonuses, long-term incentives, and on-the-spot recognition. The annualized base pay range for this role is:

$127,200 - $190,800

Equal Opportunity Employer/Sex/Race/Color/Veterans/Disability/Sexual Orientation/Gender Identity or Expression/Religion/Age

About Us | Culture & Employee Insights | Diversity, Equity and Inclusion | Benefits

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Sr. Web Application Penetration Tester

The Hartford

Connecticut

Remote

USD 127,000 - 191,000

Yesterday
Be an early applicant

Sr. Web Application Penetration Tester

The Hartford Financial Services Group, Inc.

Connecticut

Remote

USD 127,000 - 191,000

Yesterday
Be an early applicant

Senior Application Security Penetration Tester (Remote)

AbbVie

Lake Forest

Remote

USD 90,000 - 130,000

Today
Be an early applicant

Senior Application Security Penetration Tester (Remote)

Hispanic Alliance for Career Enhancement

Mettawa

Remote

USD 80,000 - 130,000

9 days ago

Senior Application Security Penetration Tester (Remote)

AbbVie

Mettawa

Remote

USD 90,000 - 150,000

9 days ago

Sr Application Security Engineer (Pen Tester)- Remote

Veradigm

Houston

Remote

USD 90,000 - 130,000

4 days ago
Be an early applicant

Senior Cybersecurity Penetration Tester

University of Chicago Medical Center

Darien

Remote

USD 90,000 - 150,000

4 days ago
Be an early applicant

Senior Penetration Tester (REMOTE)

GEICO

Austin

Remote

USD 85,000 - 260,000

6 days ago
Be an early applicant

Senior Penetration Tester – Application Req 701

TM2 Group, LLC

New York

Remote

USD 80,000 - 130,000

6 days ago
Be an early applicant