Principal Penetration Tester jobs in United States
cer-icon
Apply on Employer Site
company-logo

Citizens · 5 months ago

Principal Penetration Tester

Citizens is committed to innovation and excellence, and they are seeking a Principal Penetration Tester to lead their newly formed penetration testing team. This role involves hands-on penetration testing across various environments and contributing to the strategic development of the team’s methodologies, tools, and processes.

BankingCredit CardsFinancial ServicesFinTechRetail
check
H1B Sponsor Likelynote

Responsibilities

Conduct advanced penetration tests across cloud environments (AWS, Azure, GCP), web and mobile applications, APIs, networks, and endpoints to identify vulnerabilities and misconfigurations
Develop and execute custom exploits, scripts, and attack scenarios to simulate real-world threats
Collaborate with leadership to build and shape the new penetration testing team, defining methodologies, workflows, and standards
Mentor junior testers, fostering a culture of technical excellence, curiosity, and continuous learning
Maintain and enhance a penetration testing toolkit, including custom tools, scripts (Go, Python, Bash), and industry-standard platforms (e.g., Burp Suite, Nmap)
Stay current with emerging vulnerabilities, exploits, and attack techniques to ensure cutting-edge testing practices
Produce detailed, high-quality reports with clear findings, risk assessments, and remediation recommendations for technical and non-technical audiences
Partner with application development, infrastructure, and security operations teams to prioritize and address vulnerabilities
Contribute to metrics and KPIs to demonstrate the impact of the penetration testing program
Establish repeatable, scalable testing processes aligned with frameworks like OWASP, NIST, PTES, and CVSS
Drive automation initiatives to enhance the efficiency and coverage of penetration testing activities

Qualification

Penetration TestingCloud Security AWSCloud Security AzureCloud Security GCPScripting PythonScripting BashVulnerability ManagementPenetration Testing ToolsMentoringDocumentation SkillsSecure Development PracticesDevSecOps PrinciplesEducation ( Degree)Certifications OSCPCertifications CEHCertifications etc.Communication SkillsTeam Collaboration

Required

10+ years of cybersecurity experience, with at least 6 years focused on penetration testing across diverse environments
Proven expertise in testing cloud platforms (AWS, Azure, GCP), web/mobile applications, APIs, and network infrastructure
Advanced technical skills in scripting (Python, Bash, PowerShell) and hands-on use of tools like Burp Suite, Metasploit, Nmap, and Nessus
Experience contributing to or building a penetration testing program, including defining methodologies and workflows
Strong understanding of vulnerability management processes and frameworks (e.g., OWASP, NIST, CVSS, CWE)
Excellent documentation skills, with the ability to produce clear, actionable reports for technical and executive audiences
Superior communication skills to collaborate with cross-functional teams and present findings to stakeholders
Demonstrated ability to mentor and guide junior team members
A bachelor's degree in Computer Science, Cybersecurity, or a related field

Preferred

OSCP
OSCE
OSEP
GPEN
GWAPT
CEH
or equivalent

Benefits

Comprehensive medical, dental and vision coverage
Retirement benefits
Maternity/paternity leave
Flexible work arrangements
Education reimbursement
Wellness programs
Paid time off policy exceeds the mandatory, paid sick or paid time-away policy of very local and state jurisdiction in the United States

Company

Citizens

company-logo
At Citizens, we recognize that the journey to accomplishment is no longer linear and that individuals are made of all they have done and all they are going to do.

H1B Sponsorship

Citizens has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2020 (1)

Funding

Current Stage
Public Company
Total Funding
$2B
2025-02-26Post Ipo Debt· $750M
2024-07-09Post Ipo Debt· $1.25B
2014-09-23IPO

Leadership Team

leader-logo
Melisa Carrascoza
SVP, Business Banking Market Executive - New England South
linkedin
leader-logo
Steve Kozek
Head of Commercial Excellence, Senior Vice President
linkedin
Company data provided by crunchbase