Senior Penetration Testing Engineer

Alliant Credit Union
Chicago, IL, United States
about 2 months ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$92,600.0 - $144,100.0
Working hours
Regular working hours

Tech stack

Testing (Software) Application Programming Interfaces (APIs) Software System Penetration Testing Software as a Service Cyber Security Information Systems Cloud Services Software Engineering Web Applications Cloud Platform System Software Security Cyber Threat Analysis
+3 more
GWAPT Information Technology Web Api

Job description

In this hybrid role based at our Chicago Headquarters, you will plan, execute, and report on penetration tests with a focus on web applications and web APIs across both internally developed and vendor SaaS solutions. Perform hands-on offensive security testing to identify, validate, and drive remediation of vulnerabilities in modern application and API architectures. Support targeted testing of related infrastructure, cloud services, and internal systems as needed. Work with software engineering, application security, and cyber threat mitigation teams to strengthen the organization’s overall security posture. Essential Responsibilities

  • Perform hands-on penetration testing with a primary focus on web applications and web APIs across homegrown and vendor systems, support testing of cloud, mobile, and internal systems.
  • Conduct manual and automated testing, including authenticated and unauthenticated attack scenarios.
  • Identify, exploit, and validate vulnerabilities, provide realistic assessments of risk and impact.
  • Develop proof-of-concept exploits and document attack paths when appropriate.
  • Work with development teams to guide remediation efforts, provide recommendations, review fixes, validate resolutions, and retesting.
  • Collaborate proactively with engineering through threat assessments, threat modeling, and “what-could-go-wrong” reviews before code is written.
  • Analyze and prioritize vulnerability findings based on exploitability, severity, and business impact.
  • Produce clear, actionable penetration test reports tailored for technical and non-technical audiences.
  • Present findings and trends to engineering teams, security leadership, and management.
  • Contribute to improving internal testing methodologies, tooling, and standards.
  • Stay current on emerging threats, attack techniques, and best practices relevant to modern web applications, APIs, and cloud environments.

Requirements

Education & Years of Experience

  • Minimum - 4 Year Bachelors Degree in Computer Science, Cybersecurity, Information Systems or related
  • Minimum - 3 Years of Penetration testing, offensive security or related

In Lieu of Education

  • 6 Years of Penetration testing, offensive security or related

License/Certifications/Training

  • Preferred: Industry certifications such as OSWE, OSCP, OSCE, GPEN, GWAPT, CRTO, or related offensive security credentials

Benefits & conditions

Compensation & Benefits: Typical hiring range: $92,600.00 to $144,100.00 Annually. Actual compensation will be determined using factors such as experience, skills & knowledge. Benefits: Alliant provides a benefits package including health care, vision, dental, and 401k with employer match including:

  • Annual performance bonus
  • Work from home up to 3 days a week
  • Paid parental leave
  • Employee discount programs
  • Time off including paid personal and sick days
  • 11 paid holidays
  • Education reimbursement

*Note that eligibility and cost of benefits can vary depending on the number of regularly scheduled hours, and job status such as regular full-time, regular part-time, or temporary employment. Adhere to and ensure compliance of all business transactions with policy and process of the Bank Secrecy Act. Ensures compliance with all applicable state and federal laws, company procedures and policies. Maintains integrity and ethics in all actions and conversations with or regarding credit union members and their accounts; complies with Privacy Act directives. The responsibilities listed do not contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this position. Duties, responsibilities and activities may change at any time with or without notice.

About the company

ComEd

  • Chicago, IL
  • $103,200-141,900 per year Who We Are: We’re powering a cleaner, brighter future. Exelon is leading the energy transformation, and we’re calling all problem solvers, innovators, community builders and chan…

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman ¡ World Congress 2022

9:56 min

Expanding browser capabilities with modern web APIs

Ire Aderinokun ¡ JS Congress

2:22 min

Structuring critical internal and external penetration testing procedures

Jasmin Azemović Jasmin Azemović · World Congress 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger ¡ LIVE

7:44 min

Bootstrapping a test-driven asp.net web api

Alex Banul ¡ LIVE

2:39 min

Shifting security testing focus toward critical application logic problems

Julian Totzek-Hallhuber Julian Totzek-Hallhuber ¡ World Congress 2026 Europe

Videos

See all

Related articles

See all