Sr. Penetration Tester @ U.S. Bank
Your Application Journey
Email Hiring Manager
Job Details
Overview
At U.S. Bank, we’re on a journey to do our best. We help customers make smarter financial decisions and support communities to grow and succeed. A career with U.S. Bank offers diverse opportunities, learning experiences, and room for growth from Day One.
Job Description
U.S. Bank is seeking a Sr. Penetration Tester with demonstrated competence and experience to contribute to our information security program. In this role, you will assess the security of our web/mobile applications, APIs, and ATM platforms by identifying vulnerabilities, performing exploitations, and recommending mitigation strategies against cyber threats.
Responsibilities
- Lead penetration testing on web/API, mobile, and ATM systems using manual exploitation techniques.
- Deliver detailed, actionable reports including vulnerability scoring and remediation guidance.
- Research emerging threats, tools, and techniques to continuously evolve testing methodologies.
- Balance hands-on testing with team initiatives such as process optimization and tool/script development.
Qualifications
Basic Qualifications: Bachelor's degree in Engineering or Science (or equivalent), 8+ years of experience in information security, and 2+ years in IT infrastructure and project management.
Preferred Skills/Experience:
- 5+ years of web & API penetration testing including familiarity with OWASP Top 10 and related standards.
- Advanced manual testing and exploitation skills using tools like Burp Suite Pro.
- Experience in mobile application security testing (Android and iOS).
- Strong scripting skills and knowledge of HTTP/S, authentication protocols, and network fundamentals.
- Experience with ATM systems security, cloud environments, and automation tools.
- Excellent communication and documentation skills, with leadership and mentorship capabilities.
Benefits
Includes healthcare, life insurance, disability, parental leave, 401(k), paid vacation, multiple holidays, adoption assistance, and sick leave accruals.
Additional Information
U.S. Bank is an equal opportunity employer. The role is subject to background checks and may have location-specific requirements. The position follows a hybrid/flexible schedule with in-office expectations of at least 3 days per week at Cincinnati, OH.
Key skills/competency
- Penetration Testing
- Web Security
- Mobile Security
- API Testing
- ATM Security
- Scripting
- Cloud Security
- Risk Assessment
- Threat Modeling
- Communication
How to Get Hired at U.S. Bank
🎯 Tips for Getting Hired
- Customize your resume: Highlight penetration testing and scripting skills.
- Showcase relevant projects: Detail web, mobile, and ATM security tests.
- Network with current employees: Connect via LinkedIn for insights.
- Prepare for technical interviews: Practice real-world vulnerability assessments.