Talent.com
Lead Web Application Penetration Tester
Lead Web Application Penetration TesterM&T Bank • Wilmington, DE, United States
Lead Web Application Penetration Tester

Lead Web Application Penetration Tester

M&T Bank • Wilmington, DE, United States
10 days ago
Job type
  • Full-time
Job description

This role offers a hybrid work schedule at our Buffalo, NY Tech Hub.

Overview :

Searches for application and system weaknesses that are exploitable, and partners with technology, cybersecurity, and risk teams to remediate any found weaknesses. Partners with technology leaders to train engineering and infrastructure teams to develop new applications and systems securely to ensure weaknesses are removed prior to implementation or software deployment.

Primary Responsibilities :

Complete penetration testing or red team / adversarial exploitation exercises of web applications, Application Programming Interfaces (APIs), hardware, and mobile.

Perform reconnaissance, social engineering, initial access, and post-exploitation activities across internal and external environments.

Develop and deploy custom payloads, exploits, and tools for use during engagements, including client-side, server-side, and lateral movement scenarios.

Contribute to purple team exercises by sharing red team findings and collaborating with detection engineering and incident response teams to improve defensive capabilities.

Document detailed findings, attack paths, and security gaps with clear recommendations for mitigation and risk reduction.

Stay current on emerging TTPs, CVEs, and adversary tradecraft, especially in the context of web and cloud exploitation techniques.

Define testing methods to meet the scope and goals of assigned penetration tests.

Understand breach and attack simulation solutions and work with the team to validate controls effectiveness.

Effectively educate and train Cybersecurity teams on new tactics, techniques, and procedures to ensure technology applications and services are not at risk of compromise or will leak information.

Collaborate across Cybersecurity and Technology teams to leverage intelligence sources, identify new threats, improve tool usage and workflow, and mature monitoring and response capabilities.

Identify areas of opportunities in daily tasks to advance penetration testing skills and regularly learn new tactics, techniques, procedures to assess risk and implement and validate controls as necessary.

Understand and adhere to the Company's risk and regulatory standards, policies, and controls in accordance with the Company's Risk Appetite. Design, implement, maintain, and enhance internal controls to mitigate risk on an ongoing basis. Identify risk-related issues needing escalation to management.

Maintain M&T internal control standards, including timely implementation of internal and external audit points together with any issues raised by external regulators as applicable.

Complete other related duties as assigned.

Scope of Responsibilities :

Engages in regular interaction with senior management and associated staff within Internal Audit, Compliance, Risk Management, and Technology.

Exercises judgement in selecting methods, techniques, and evaluation criteria in obtaining results. Exerts significant latitude in determining objective of assignment. Work is accomplished with limited direction.

Intermediate working knowledge of penetration testing and red team tools.

Advanced knowledge of networking and network protocols.

Intermediate working knowledge of operating systems and scripting and / or coding.

The position provides guidance and mentoring to less experienced team members.

Education and Experience Required :

Bachelor's degree and a minimum of 5 years' relevant work experience, or in lieu of a degree, a combined minimum of 9 years' higher education and / or work experience.

Prior experience penetration testing and red team tools to be able to simulate attacker tactics, techniques, and procedures.

Advanced knowledge of networking and network protocols

Intermediate working knowledge of operating systems and scripting and / or coding

Education and Experience Preferred :

Bachelor's degree in an applicable discipline such as Computer Science, Cybersecurity, or Information Technology

Extensive understanding of information security concepts (both technical and organizational requirements)

Highly ethical and expected to maintain a level of professionalism at all times

Intermediate working knowledge in social engineering, application security (web and mobile), physical methods, lateral movement, threat analysis, internal and external network architecture, and a wide array of commercial and bring-your-own (BYO) products.

Excellent ability to strategically learn new technical skills, and apply broadly across systems, tools, and processes

Experience training penetration tester to ensure they have intermediate knowledge of penetration testing and red team concepts, tools, and ability to simulate attacker tactics, techniques, and procedures

Strong ability to analyze and draw reliable conclusions based on large volumes of quantitative data from diverse sources

Penetration testing-specific or Cybersecurity domain-related industry-recognized certification

M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $121,698.75 - $202,831.26 (USD). The successful candidate's particular combination of knowledge, skills, and experience will inform their specific compensation.

Location

Wilmington, Delaware, United States of America

M&T Bank Corporation is an Equal Opportunity / Affirmative Action Employer, including disabilities and veterans.

Create a job alert for this search

Penetration Tester • Wilmington, DE, United States

Related jobs
Entry Level Quality Tester

Entry Level Quality Tester

Staff Management | SMX • West Chester, PA, US
Full-time
With Staff Management | SMX, you'll get a weekly paycheck, learn new skills, meet new people, and work with a great management team in a clean and safe environment. Looking for a new opportunity? St...Show more
Last updated: 30+ days ago • Promoted
Product Demonstrator PT

Product Demonstrator PT

Acosta • Newark, DE, US
Full-time
The associate is responsible for completing in-store food and non-food demonstrations.Acquires and maintains knowledge of products represented. Prepares, serves, and breaks down product, equipment, ...Show more
Last updated: 30+ days ago • Promoted
Remote Product Tester – $45 / hr + Free Products – Start Now!

Remote Product Tester – $45 / hr + Free Products – Start Now!

OCPA • East Fallowfield township, Pennsylvania, us
Remote
Part-time +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...Show more
Last updated: 30+ days ago • Promoted
Jr.Quality Assurance

Jr.Quality Assurance

FIRST SOFTSOLUTIONS INC • Wilmington, DE, United States
Full-time
Candidates should have actual experience with SQL, 3+ years and queries created by them and not by dev.Financial services background is a plus. Team - Risk decision team (credit line increases, rate...Show more
Last updated: 17 days ago • Promoted
Earn up to $25 per survey Online Survey Taker (Hiring Immediately)

Earn up to $25 per survey Online Survey Taker (Hiring Immediately)

Earn Haus • Middletown, Delaware, US
Full-time +1
We are urgently looking for people interested in taking online surveys for Fortune 500 brands.If you are a self-starter, looking for flexible hours throughout the week, this may be for you! Earn up...Show more
Last updated: 30+ days ago • Promoted
Product Demonstrator PT

Product Demonstrator PT

Delaware Staffing • Wilmington, DE, US
Full-time
The associate is responsible for completing in-store food and non-food demonstrations.Acquires and maintains knowledge of products represented. Prepares, serves, and breaks down product, equipment, ...Show more
Last updated: 30+ days ago • Promoted
Recent CDL-A Grads – Start Your Trucking Career Now

Recent CDL-A Grads – Start Your Trucking Career Now

SkillConnect LLC • Smyrna, DE, USA
Full-time
Recent CDL-A Grads – Start Your Trucking Career with Paid Training! ????.Just got your CDL-A? We’ve got the perfect opportunity to launch your career!. We’re looking for motivated, safety-minded rec...Show more
Last updated: 30+ days ago • Promoted
Quality Assurance Tech III : 25-05583 (No C2C)

Quality Assurance Tech III : 25-05583 (No C2C)

Akraya Inc • Malvern, Pennsylvania, United States
Full-time
Quick Apply
Skills : Software testing (Experct), Website applications Testing (Expert), test cases (Proficient), Selenium (Intermediate), Linux (Intermediate), SDLC (Intermediate). Duration : 9 Months with possib...Show more
Last updated: 30+ days ago
Recent CDL-A Grads Start Your Trucking Career Now

Recent CDL-A Grads Start Your Trucking Career Now

SkillConnect LLC • Smyrna, DE, USA
Full-time
Recent CDL-A Grads – Start Your Trucking Career with Paid Training! .Just got your CDL-A We’ve got the perfect opportunity to launch your career!. We’re looking for motivated, safety-minded recent g...Show more
Last updated: 30+ days ago • Promoted
QA Automation Lead - West Chester, PA

QA Automation Lead - West Chester, PA

Staffing the Universe • West Chester, PA, United States
Full-time
Job Location : West Chester, PA.Interview Process : Phone + F2F.Us Citizen, Green Card and Gc Ead Only.Team Is Looking For A Lead / Senior Qa Analyst With 10+ Years Of Experience In Quality Assurance.Show more
Last updated: 19 days ago • Promoted
Paid Product Tester

Paid Product Tester

Product Review Jobs • THORNDALE, PA, United States
Full-time
Compensation : Varies per assignment.Location : Remote (USA) Company : ProductReviewJobs Thank you for your interest in becoming a Paid Product Tester. This opportunity is for completing market res...Show more
Last updated: 30+ days ago • Promoted
Survey Taker : Earn up to $25 per survey (Remote)

Survey Taker : Earn up to $25 per survey (Remote)

Earn Haus • Middletown, DE, US
Remote
Full-time +1
Looking for people to participate in taking online surveys for Fortune 500 brands.All you need to do is complete online surveys by sharing your opinion. You will help influence brand decisions on se...Show more
Last updated: 16 days ago • Promoted