Talent.com
Senior Penetration Tester
Senior Penetration TesterJ.P. Morgan • New York, NY, US
No longer accepting applications
Senior Penetration Tester

Senior Penetration Tester

J.P. Morgan • New York, NY, US
5 days ago
Job type
  • Full-time
Job description

This role is also open to Wilmington DE | Columbus OH | Plano, TX.

Contribute to leading-edge security and resilience efforts, advancing protective strategies and propelling continuous improvement.

As an Assessments & Exercises Vice President in the Cybersecurity & Technology Controls team, you will contribute significantly to enhancing the firm's cybersecurity or resiliency posture by using industry-standard assessment methodologies and techniques to proactively identify risks and vulnerabilities in people, processes, and technology. Design and deploy risk-driven tests and simulations and inform analysis to clearly outline root-causes. In this role, you will evaluate preventative controls, incident response processes, and detection capabilities, and advise cross-functional teams on security strategy and risk management.

As part of the penetration test team, your primary responsibility will be performing hands on penetration testing of some of the firms most critical web and mobile applications. You will work with application developers to not only understand root cause and mitigate vulnerabilities, but also to identify where vulnerabilities can be identified earlier in the Software Development Life Cycle (SDLC). As a successful candidate within our team, you are expected to demonstrate an eagerness to learn, the promote to excel, excellent technical knowledge of security concepts, and proven expertise in penetration testing.

Job responsibilities

Design and execute testing and simulations – such as penetration tests, technical controls assessments, cyber exercises, or resiliency simulations, and contribute to the development and refinement of assessment methodologies, tools, and frameworks to ensure alignment with the firm's strategy and compliance with regulatory requirements

Evaluate controls for effectiveness and impact on operational risk, as well as opportunities to automate control evaluation

Collaborate closely with cross-functional teams to develop comprehensive assessment reports – including detailed findings, risk assessments, and remediation recommendations – making data-driven decisions that encourage continuous improvement

Utilize threat intelligence and security research to stay informed about emerging threats, vulnerabilities, industry best practices, and regulations. Apply this knowledge to enhance the firm's assessment strategy and risk management. Engage with peers and industry groups that share threat intelligence analytics

Required qualifications, capabilities, and skills

5+ years of experience in cybersecurity or resiliency, with demonstrated exceptional organizational skills to plan, design, and coordinate the development of offensive security testing, assessments, or simulation exercises

Significant experience conducting manual penetration tests against a wide variety of applications and technologies including web, API, and mobile (Android & iOS) applications

Knowledge of US financial services sector cybersecurity or resiliency organization practices, operations risk management processes, principles, regulations, threats, risks, and incident response methodologies

Ability to identify systemic security or resiliency issues as they relate to threats, vulnerabilities, or risks, with a focus on recommendations for enhancements or remediation, and proficiency in multiple security assessment methodologies (e.g., Open Worldwide Application Security Project (OWASP) Top Ten, National Institute of Standards and Technology (NIST) Cybersecurity Framework), offensive testing tools, or resiliency testing equivalents

Excellent communication, collaboration, and report writing skills, with the ability to influence and engage stakeholders across various functions and levels

Preferred qualifications, capabilities, and skills

Proficiency in security concepts for both Windows and Unix-like Operating Systems

Additional experience in testing thick clients, internal and external facing infrastructures, and cloud platforms (AWS / Azure / GCP)

Experience in source code review and / or building software with multiple programming languages (i.e. Python, Java, Rust, etc.)

Experience in reverse engineering thick clients and mobile applications

Certifications like OSWE, CREST (CRT, CCT), OSCP, OSCE, GXPN, GWAPT, GPEN, GMOB, BSCP

J-18808-Ljbffr

Create a job alert for this search

Penetration Tester • New York, NY, US

Related jobs
Product Tester (Work From Home) – Keep Free Products + Weekly Pay

Product Tester (Work From Home) – Keep Free Products + Weekly Pay

OCPA • Haledon, New Jersey, us
Remote
Part-time +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...Show more
Last updated: 30+ days ago • Promoted
Test Tech II

Test Tech II

BAE Systems USA • Wayne, NJ, United States
Full-time
Our employees work on the world’s most advanced electronics.At Electronic Systems, you’ll be among the brightest minds, working on the aerospace and defense industry’s most difficult problems.Drawi...Show more
Last updated: 1 day ago • Promoted
Test Tech III

Test Tech III

BAE Systems USA • Wayne, NJ, United States
Full-time
This position is eligible for a $1500 sign on bonus!.Our employees work on the world’s most advanced electronics.At Electronic Systems, you’ll be among the brightest minds, working on the aerospace...Show more
Last updated: 1 day ago • Promoted
Drive Test Technician - Northeast Region

Drive Test Technician - Northeast Region

ADEX • Parsippany, NJ, United States
Full-time
Job Summary and Responsibilities.A Drive Test Technician is responsible for executing mobile and stationary RF testing to validate wireless network performance. This role supports engineering teams ...Show more
Last updated: 6 hours ago • Promoted • New!
Work From Home Product Tester – $25-$45 / hr – No Experience Needed

Work From Home Product Tester – $25-$45 / hr – No Experience Needed

OCPA • Kinnelon, New Jersey, us
Remote
Part-time +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...Show more
Last updated: 30+ days ago • Promoted
Performance Tester

Performance Tester

Zone IT Solutions • New York, NY, US
Full-time +1
Quick Apply
We are looking for Performance Tester for California City, CA, United States location.We have both permanent and contract role & You will be working on a large-scale project with plenty of grow...Show more
Last updated: 30+ days ago
Senior Specialist, MAST Application Penetration Tester

Senior Specialist, MAST Application Penetration Tester

KPMG • Short Hills, NJ, United States
Full-time
KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down. In this ever-changing market envi...Show more
Last updated: 30+ days ago • Promoted
Remote Product Tester – $45 / hr + Free Products – Start Now!

Remote Product Tester – $45 / hr + Free Products – Start Now!

OCPA • Upper Saddle River, New Jersey, us
Remote
Part-time +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...Show more
Last updated: 30+ days ago • Promoted
Casino Software QA Tester (Hiring Immediately)

Casino Software QA Tester (Hiring Immediately)

Little Wheel • Twin Tiers NY / PA, PA, United States
Temporary
Join Our Team as a Website Tester at Little Wheel.Little Wheel is a gambling technology company focused on researching and building products that put players first. Michigan, New Jersey, Pennsylvani...Show more
Last updated: 30+ days ago • Promoted
Product Security PenTester

Product Security PenTester

Accenture • New York, NY, United States
Full-time
Accenture is a global collective of innovators whose aim is to improve the way the world works and lives.Empowered with innovative tools, continuous learning and a global community of diverse talen...Show more
Last updated: 2 days ago • Promoted
Test Products from Home – $25-$45 / hr + Freebies

Test Products from Home – $25-$45 / hr + Freebies

OCPA • Fair Haven, New Jersey, us
Part-time +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...Show more
Last updated: 30+ days ago • Promoted
Penetration Testing Manager New India

Penetration Testing Manager New India

Thoropass, Inc. • New York, NY, United States
Full-time
At Thoropass, we are revolutionizing the compliance and audit industry by integrating cutting-edge AI technology with expert human insight. Our team is dedicated to delivering exceptional customer e...Show more
Last updated: 5 days ago • Promoted
DOCSIS Testing Engineer

DOCSIS Testing Engineer

Openkyber • NY, United States
Full-time
Quick Apply
DOCSIS Testing Engineer Job Summary : We are seeking a Senior DOCSIS Test Automation Engineer to join our global team, focusing on designi...Show more
Last updated: 22 days ago
Senior Specialist, SCA Penetration Tester

Senior Specialist, SCA Penetration Tester

KPMG US • New York, NY, United States
Full-time
Be among the first 25 applicants.KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down....Show more
Last updated: 4 days ago • Promoted
Test Engineer - Westbury, NY

Test Engineer - Westbury, NY

Hubbell Incorporated • Westbury, NY, United States
Full-time
Hubbell-EIG is seeking a highly skilled and motivated Test Engineer to join our dynamic R&D team.As a Test Engineer, you will play a crucial role in ensuring the quality and reliability of our prod...Show more
Last updated: 30+ days ago • Promoted
Tech - Mammo Tech

Tech - Mammo Tech

Saint Peter's University Hospital • New Brunswick, NJ, United States
Full-time
Saint Peters University Hospital.Mammo Tech) is a specialized radiologic technologist who operates.Mammography Technicians are trained to perform the procedure, ensure patient comfort, maintain a h...Show more
Last updated: 30+ days ago • Promoted