Senior Security Engineer - Penetration Tester

Truist Inc
Raleigh, NC, United States
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Active Directory Application Programming Interfaces (APIs) Artificial Intelligence Software System Penetration Testing Cyber Security Mobile Application Software Systems Development Life Cycle Cloud Platform System

Job description

Experteer Overview In this role you build and lead offensive security testing across diverse tech domains, from AI systems to mainframes, helping protect critical business operations. You work with a high-performing team to shape testing methodologies, drive security capabilities, and stay ahead of adversaries. You will translate complex findings into actionable remediations and mentor others, contributing to a culture of excellence. This is a fast-paced, impactful role with opportunities to advance security capabilities at scale. Compensation / Benefits * Conduct penetration tests across enterprise and cloud environments, AI systems, APIs, mobile apps, Active Directory, and other assets * Simulate real-world attack techniques to identify vulnerabilities and misconfigurations * Validate remediation efforts and document risk-reducing findings * Maintain testing artifacts for regulatory and compliance purposes * Defend findings in discussions with teams and leadership; participate in escalation and remediation planning * Collaborate with internal and external teams to improve coverage; stay current with attack techniques and trends * Contribute to AI security testing initiatives and security validation of AI models * Mentor junior security professionals; provide peer reviews and contribute to standards and playbooks * Support special projects and security initiatives aligned to expertise Tasks * Bachelor’s degree or equivalent education, training, and work-related experience * Minimum 7 years in security engineering or related cybersecurity roles * Deep knowledge of cybersecurity principles, threat modeling, testing, and penetration testing * Experience implementing and managing complex information security technologies * Experience in SDLC security practices and articulating security risks to diverse audiences Key requirements * medical, dental, vision * life insurance * 401k plan * vacation and sick days * paid holidays * pension/RSUs/deferred compensation (where applicable)

Requirements

escalation and remediation planning * Collaborate with internal and external teams to improve coverage; stay current with attack techniques and trends * Contribute to AI security testing initiatives and security validation of AI models * Mentor junior security professionals; provide peer reviews and contribute to standards and playbooks * Support special projects and security initiatives aligned to expertise Tasks * Bachelor’s degree or equivalent education, training, and work-related experience * Minimum 7 years in security engineering or related cybersecurity roles * Deep knowledge of cybersecurity principles, threat modeling, testing, and penetration testing * Experience implementing and managing complex information security technologies * Experience in SDLC security practices and articulating security risks to diverse audiences Key requirements * medical, dental, vision * life insurance * 401k plan * vacation and sick days * paid holidays * pension/RSUs/deferred compensation aaaa in applicable

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:27 min

Exploring Rust for cloud and web services

Patrick Koss Patrick Koss · WWC 2024

1:45 min

Evolution from manual setups to automated monolith deployments

Axel Barbier · WWC 2023

1:17 min

Evaluating security vulnerabilities and user experience

Julian Richter Julian Richter · WWC 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all