
Search by job, company or skills

This job is no longer accepting applications
We are currently hiring for a Penetration Tester role with Bank of America (BA Continuum India Pvt. Ltd.), a leading global financial institution known for innovation, security excellence, and world-class technology infrastructure.
Process Overview
Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank's Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates global security operations center that monitor, detects and responds to cybersecurity incidents. Within GIS, the Cloud Security organization is responsible for leading a team of deeply technical cyber security engineers and architects to design and implement best in class cyber security capabilities for internal and external cloud instances in partnership with infrastructure and application technology teams. In addition, lead efforts across other Global Information Security functions to enable cyber security technology and operations in cloud environments.
Job Description
This role is for GIS Penetration testing team to conduct penetration tests and source code reviews of our internal/external web, mobile, web, and web API service applications, leveraging both manual techniques as well as automated tools to uncover and report security vulnerabilities that exist.
You must be knowledgeable with business risks associated to common security vulnerabilities and to be able to effectively communicate complex technical concepts such as security vulnerabilities to application developers and/or senior managers who may have little to no experience with application security.
You must have the ability to work independently in a very large scale, enterprise setting and collaborate with peer team members. Previous experience as an application security professional with a large Financial Institution a plus.
Requirements
Education: B.E. / B. Tech/M.E. /M. Tech
Certifications, If Any: GWAPT, CEH, OSCP, SANS, CEH
Experience Range: 4 to 10+ years
Foundational Skills:
Desired Skills:
Job ID: 144429703
Skills:
red teaming , PowerShell, Sqlmap, Bash, Burp Suite, Nmap, Qualys, Python, Web API Penetration Testing, Nessus, ZAP, Infrastructure Penetration Testing, ffuf
Skills:
red teaming , Application Security Testing, Mobile Application Security, Breach Attack Simulation, Infrastructure Network VAPT, Cloud Security Penetration Testing
Skills:
Wireshark, Metasploit, Penetration Testing, Nmap, Burp Suite, Owasp, Ethical Hacking, Scripting Languages, NIST SP 800-115, PTES, Security assessment methodologies, Security assessment tools
Skills:
threat modeling , Penetration Testing, Spi, C, Uart, I2c, Jtag, Python, Bash, chip programmers, reverse engineering tools, IDA Pro, Radare2, hardware interfaces, logic analyzers, Ghidra, hardware debugging tools, Oscilloscopes, ICS protocols, Risk Assessment, Embedded Systems, Microcontrollers
We don’t charge any money for job offers