Citizens · 5 months ago
Principal Penetration Tester
Citizens is committed to innovation and excellence, and they are seeking a Principal Penetration Tester to lead their newly formed penetration testing team. This role involves hands-on penetration testing across various environments and contributing to the strategic development of the team’s methodologies, tools, and processes.
BankingCredit CardsFinancial ServicesFinTechRetail
Responsibilities
Conduct advanced penetration tests across cloud environments (AWS, Azure, GCP), web and mobile applications, APIs, networks, and endpoints to identify vulnerabilities and misconfigurations
Develop and execute custom exploits, scripts, and attack scenarios to simulate real-world threats
Collaborate with leadership to build and shape the new penetration testing team, defining methodologies, workflows, and standards
Mentor junior testers, fostering a culture of technical excellence, curiosity, and continuous learning
Maintain and enhance a penetration testing toolkit, including custom tools, scripts (Go, Python, Bash), and industry-standard platforms (e.g., Burp Suite, Nmap)
Stay current with emerging vulnerabilities, exploits, and attack techniques to ensure cutting-edge testing practices
Produce detailed, high-quality reports with clear findings, risk assessments, and remediation recommendations for technical and non-technical audiences
Partner with application development, infrastructure, and security operations teams to prioritize and address vulnerabilities
Contribute to metrics and KPIs to demonstrate the impact of the penetration testing program
Establish repeatable, scalable testing processes aligned with frameworks like OWASP, NIST, PTES, and CVSS
Drive automation initiatives to enhance the efficiency and coverage of penetration testing activities
Qualification
Required
10+ years of cybersecurity experience, with at least 6 years focused on penetration testing across diverse environments
Proven expertise in testing cloud platforms (AWS, Azure, GCP), web/mobile applications, APIs, and network infrastructure
Advanced technical skills in scripting (Python, Bash, PowerShell) and hands-on use of tools like Burp Suite, Metasploit, Nmap, and Nessus
Experience contributing to or building a penetration testing program, including defining methodologies and workflows
Strong understanding of vulnerability management processes and frameworks (e.g., OWASP, NIST, CVSS, CWE)
Excellent documentation skills, with the ability to produce clear, actionable reports for technical and executive audiences
Superior communication skills to collaborate with cross-functional teams and present findings to stakeholders
Demonstrated ability to mentor and guide junior team members
A bachelor's degree in Computer Science, Cybersecurity, or a related field
Preferred
OSCP
OSCE
OSEP
GPEN
GWAPT
CEH
or equivalent
Benefits
Comprehensive medical, dental and vision coverage
Retirement benefits
Maternity/paternity leave
Flexible work arrangements
Education reimbursement
Wellness programs
Paid time off policy exceeds the mandatory, paid sick or paid time-away policy of very local and state jurisdiction in the United States
Company
Citizens
At Citizens, we recognize that the journey to accomplishment is no longer linear and that individuals are made of all they have done and all they are going to do.
H1B Sponsorship
Citizens has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2020 (1)
Funding
Current Stage
Public CompanyTotal Funding
$2B2025-02-26Post Ipo Debt· $750M
2024-07-09Post Ipo Debt· $1.25B
2014-09-23IPO
Leadership Team
Recent News
Providence Business News
2025-12-24
2025-12-17
Company data provided by crunchbase