Talent.com
Sr Product Security Engineer / Pen Tester (Hybrid - Pleasanton, CA)
Sr Product Security Engineer / Pen Tester (Hybrid - Pleasanton, CA)Blackhawk Network • Pleasanton, CA, United States
Sr Product Security Engineer / Pen Tester (Hybrid - Pleasanton, CA)

Sr Product Security Engineer / Pen Tester (Hybrid - Pleasanton, CA)

Blackhawk Network • Pleasanton, CA, United States
2 days ago
Job type
  • Full-time
Job description

About Blackhawk Network :

Today, through BHN's single global platform, businesses of all kinds can tap into the world's largest network of branded payment solutions. BHN helps businesses grow revenue, increase loyalty, motivate and reward their teams, disburse funds and engage consumers. Branded payment solutions include the issuance and distribution of gift cards, egifts, corporate payouts and rewards, along with the technology to deliver these products in seamless, integrated ways. BHN's network spans the globe with more than 400,000 consumer touchpoints. Learn more at BHN.com.

Overview :

We're hiring a Senior Penetration Tester to help defend our fintech platform against large-scale payment fraud, carding attacks, and other financially motivated threats. You'll lead offensive security assessments targeting our transaction systems, authentication flows, and APIs - with a heavy focus on automation and scalability. Your work will directly impact our fraud defenses, detection strategy, and customer trust.

This is a highly technical, hands-on role for someone who thrives in a fast-paced, high-stakes fintech environment.

This position will be Hybrid (Tuesdays & Wednesdays) out of our Pleasanton, CA office.

Responsibilities :

  • Lead penetration testing engagements focused on payment abuse, transaction manipulation, and business logic exploitation.
  • Design and execute automated attack simulations to test our defenses against :
  • Carding and BIN attacks
  • Credential stuffing and account takeovers
  • Checkout and payment flow abuse
  • API-level enumeration and fraud
  • Build custom tooling and frameworks to mimic the behavior of real-world fraudsters and cybercriminals.
  • Partner with fraud engineering, product security, and risk teams to identify weak points in our controls, detection systems, and architecture.
  • Conduct threat modeling and red teaming exercises related to payments, authentication, and user account abuse.
  • Document findings in technical reports with clear risk impact, exploitability, and remediation guidance.
  • Mentor junior testers and contribute to a culture of security innovation and continuous improvement.

Qualifications :

  • 7+ years of experience in offensive security, penetration testing, or red teaming.
  • Strong background in payment systems, financial fraud tactics, and transaction-level attack surfaces.
  • Fluency in scripting and automation (e.g., Python, JavaScript, Go, Bash) to simulate attacker workflows at scale.
  • Familiarity with tools like Burp Suite Pro, Selenium, Scapy, ffuf, SQLMap, Metasploit, and bot automation frameworks.
  • In-depth knowledge of fintech technologies (e.g., tokenized payments, card vaulting, 3DS, ACH, real-time payment APIs).
  • Solid grasp of common attacker techniques : carding, fake identity generation, bypassing rate limits, evading fraud filters, and abusing web / app logic.
  • Strong communication skills for explaining findings to both technical and non-technical audiences.
  • Certifications : OSCP, OSEP, GWAPT, GPEN, GCPN, GXPN, GX-PT, CPSA / CRSA by CREST, CHECK, or TIGER.
  • Prior experience in a fintech, digital banking, or payment gateway environment.
  • Familiarity with OWASP Automated Threats, PCI DSS, MITRE ATT&CK for Financial Services, or fraud detection systems.
  • Experience building or testing real-time risk scoring engines and fraud defense pipelines.
  • We seek candidates who not only demonstrate curiosity and adaptability in emerging technologies but have also successfully implemented and utilized AI tools to enhance their work, improve processes, or deliver measurable results. Our teams embrace continuous learning and the thoughtful integration of AI to create meaningful impact - for our employees and the future of work.

    Benefits :

    Salary Range for California Residents Only : $157,030.00 - $212,000.00

    Pay is based on several factors including but not limited to education, work experience, certifications, etc. In addition to your salary, Blackhawk Network offers benefits including 401k with employer match, medical, dental, vision, 12 paid holidays in the year 2025, 1 hour of sick pay accrual for every 30 hours worked, parental leave, life insurance, disability insurance, accident and illness insurance, health and dependent care flexible spending accounts, wellness benefits, and flexible time off for all full-time employees.

    EEO Statement :

    Blackhawk Network provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. Blackhawk Network believes that diversity leads to strength. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.

    Blackhawk Network encourages applicants with previous criminal records to apply to all positions and, pursuant to the San Francisco and Los Angeles Fair Chance Acts (and other "Fair Chance" laws), Blackhawk Network will consider for employment qualified applicants with arrest and conviction records. For Philadelphia applicants or jobs, please see a copy of Philadelphia's ordinance on this topic by clicking this link :

    Create a job alert for this search

    Sr Security Engineer • Pleasanton, CA, United States

    Related jobs
    Sr. Product Security Engineer II

    Sr. Product Security Engineer II

    IBM • San Jose, CA, United States
    Full-time +1
    A career in IBM Software means you'll be part of a team that transforms our customer's challenges into industry-leading solutions. We are an infinitely curious team, always seeking new possibilities...Show more
    Last updated: 4 days ago • Promoted
    Product Security Engineer, Operating System

    Product Security Engineer, Operating System

    1X Technologies AS • Palo Alto, CA, United States
    Full-time
    Location : Palo Alto, CA (on-site).We're an AI and robotics company based in Palo Alto, California, on a mission to build a truly abundant society through general-purpose robots capable of performin...Show more
    Last updated: 6 days ago • Promoted
    Security Engineer

    Security Engineer

    Eudia • Palo Alto, CA, United States
    Full-time
    Eudia is redefining the future of legal work with AI-powered Augmented Intelligence, enabling Fortune 500 legal teams to move faster, manage risk more effectively, and unlock new business value.Bac...Show more
    Last updated: 19 days ago • Promoted
    Sr Security Engineer

    Sr Security Engineer

    Uber • Sunnyvale, CA, United States
    Full-time
    We are seeking a talented and experienced Sr Security Engineer to join our Threat Defense and Response team and help drive the next generation of AI-powered cyber defense capabilities.This role wil...Show more
    Last updated: 15 days ago • Promoted
    Lead Penetration Tester & Security Engineer

    Lead Penetration Tester & Security Engineer

    Apple • Cupertino, CA, United States
    Full-time
    Apple is a place where extraordinary people gather to do their best work.If you’re excited by the idea of making a real impact, a career with Apple might be your dream job—just be prepared to dream...Show more
    Last updated: 17 days ago • Promoted
    Senior Engineer Product Security Testing

    Senior Engineer Product Security Testing

    MILLENNIUMSOFT • San Jose, CA, United States
    Full-time
    Responsible for establishing and documenting product system test strategies and techniques in a Test Protocol.Responsible for translating requirements for complex software systems into traceable te...Show more
    Last updated: 15 days ago • Promoted
    Sr. FPGA Verification Engineer

    Sr. FPGA Verification Engineer

    Reliable Robotics • Mountain View, CA, United States
    Permanent
    We're building safety-enhancing technology for aviation that will save lives.Automated aviation systems will enable a future where air transportation is safer, more convenient and fundamentally tra...Show more
    Last updated: 30+ days ago • Promoted
    Product Security PenTester

    Product Security PenTester

    Accenture • Walnut Creek, CA, United States
    Full-time
    Accenture is a global collective of innovators whose aim is to improve the way the world works and lives.Empowered with innovative tools, continuous learning and a global community of diverse talen...Show more
    Last updated: 19 days ago • Promoted
    Lead Penetration Tester

    Lead Penetration Tester

    Autoroboto • Mountain View, CA, United States
    Full-time
    AutoRoboto is a consulting firm that specializes in engineering and management that has provided services for some of the largest tech companies in the San Francisco Bay Area.These services include...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer (GRC)

    Security Engineer (GRC)

    Applied Intuition • Sunnyvale, CA, United States
    Full-time
    Applied Intuition is the vehicle intelligence company that accelerates the global adoption of safe, AI-driven machines.Founded in 2017 and now valued at $15 billion following its recent Series F fu...Show more
    Last updated: 5 days ago • Promoted
    Sr Security and Compliance Engineer

    Sr Security and Compliance Engineer

    Broadcom Corporation • Palo Alto, CA, United States
    Full-time
    If you are a first time user, please create your candidate login account before you apply for a job.If you already have a Candidate Account, please Sign-In before you apply.Broadcom seeks an experi...Show more
    Last updated: 19 days ago • Promoted
    Product Security Engineer

    Product Security Engineer

    Zenex Partners • Mountain View, CA, United States
    Full-time
    Description : Requisition Status : Pending.Status Reason : Pending Sourcing.Department : Security Advisory Services : 507102. Job Code : CW-SEC-CTR : Contractor.Job Title : Product Security Engineer.Product...Show more
    Last updated: 6 days ago • Promoted
    Security Engineer - D&R

    Security Engineer - D&R

    Figure • San Jose, CA, United States
    Full-time
    Figure is an AI robotics company developing autonomous general-purpose humanoid robots.The goal of the company is to ship humanoid robots with human level intelligence. Its robots are engineered to ...Show more
    Last updated: 30+ days ago • Promoted
    Senior Penetration Tester, Android Security

    Senior Penetration Tester, Android Security

    Samsung Research America • Mountain View, CA, United States
    Full-time
    The Development Quality Innovation(DQI) lab in Mountain View has a dual role that is first to research new automation tools as well as take current tools and refine them to our needs.Second, act as...Show more
    Last updated: 30+ days ago • Promoted
    Sr Application Security Engineer

    Sr Application Security Engineer

    Info Way Solutions • Fremont, CA, United States
    Full-time
    Info Way Solutions, LLC We have job opening for.Sr Application Security Engineer.Job description is given below : .Kindly check the JD and share your views. Sr Application Security Engineer.Work with ...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Engineer II (ML)

    Senior Security Engineer II (ML)

    Moveworks.ai • Mountain View, CA, United States
    Full-time
    Are you passionate about leveraging machine learning to scale-up security and privacy efforts? Do you have a keen understanding of security risks and a desire to innovate with cutting-edge ML solut...Show more
    Last updated: 30+ days ago • Promoted
    Sr. Security Engineer, Kuiper Security, Kuiper Security

    Sr. Security Engineer, Kuiper Security, Kuiper Security

    Amazon • Sunnyvale, CA, United States
    Permanent
    We are open to hiring candidates to work out of one of the following locations : .Arlington, VA, USA | Redmond, WA, USA | San Francisco, CA, USA | Sunnyvale, CA, USA. Project Kuiper is an initiative t...Show more
    Last updated: 19 days ago • Promoted
    Senior Staff Product Security Engineer

    Senior Staff Product Security Engineer

    Wisk Aero • Mountain View, CA, United States
    Full-time
    At Wisk, we're transforming the future of urban mobility through safe, all-electric, autonomous flight.We are a passionate team working together toward a sustainable future, solving high-impact pro...Show more
    Last updated: 6 days ago • Promoted