onsite
Senior Security Testing Specialist - PNC Financial Services Group
Software Engineer
Lead advanced application security testing, performing penetration tests, vulnerability assessments, and threat modeling to safeguard enterprise applications using OWASP standards and industry tools.
About the role
Key Responsibilities
- Design, execute, and document comprehensive penetration tests on web, mobile, and API applications.
- Identify, analyze, and remediate security vulnerabilities in alignment with secure SDLC practices.
- Collaborate with development and DevOps teams to integrate security controls early in the development lifecycle.
- Maintain and enhance security testing frameworks, tools, and methodologies.
- Provide actionable risk assessments and executive summaries to stakeholders.
Requirements
- 5+ years of experience in application security testing and penetration testing.
- Proficiency with tools such as Burp Suite, OWASP ZAP, and static analysis scanners.
- Deep understanding of OWASP Top 10, secure coding practices, and threat modeling.
- Strong communication skills and ability to translate technical findings to non‑technical audiences.
- Experience with secure SDLC integration and continuous security monitoring.
Skills
penetration testingowasp