Security Analyst - Penetration Tester

The PNC Financial Services Group • Pittsburgh, PA

Company

The PNC Financial Services Group

Location

Pittsburgh, PA

Type

Full Time

Job Description


Job Profile

Position Overview

At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company’s success. As a Security Analyst within PNC’s Technology organization, you may be based in a remote location. This is a remote position. Work may be performed from a quiet, confidential space in a home location, approved by PNC. This position may not be available in all geographic locations.
Description:
A Security Analyst (Penetration Tester) demonstrates general knowledge of concepts such as OWASP Top 10, vulnerability scanning, and penetration testing methodologies.
• Conducts and assists with automated and manual security testing of applications to identify and validate vulnerabilities.
• Retests previously discovered vulnerabilities to confirm successful remediation.
• Develops and maintains documentation such as procedures, assets, communication, etc.
• Contribute to the enhancement of the penetration testing program.
Candidates should have some experience with:
• Mobile testing experience
• Web application testing experience
• Mobile development experience
• Web application development experience
Certifications that will be taken into consideration:
• Offensive Security Certified Expert (OSCE)
• Offensive Security Certified Professional (OSCP)
• Offensive Security Wireless Professional (OSWP)
• Certified Information Systems Security Professional (CISSP)
Familiarity with the following tools:
• Burp Proxy/Man-in-the-Middle (MiTM) Proxy/ZAP proxy/Charles proxy
• AppScan
• Nessus
• Qualys

Job Description

  • Provides technical evaluation and analysis. Supports activities, process, and tools needed to improve overall security posture of the organization.
  • Applies security concepts, reviews information, executes defined tasks, analyzes requirements, reviews logs, and creates documentation. Performs investigation and data loss prevention, data manipulation, and coordination of activities. Performs actions to address or mitigate risks and vulnerabilities. Reviews and defines controls.
  • Advises on more complex security procedures and products for clients, security administrators and network operations. Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion. Shares knowledge with staff.
  • Conducts security assessments and other information security routines consistently. Investigates and recommends corrective actions for data security related to established guidelines.

PNC Employees take pride in our reputation and to continue building upon that we expect our employees to be:

  • Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.
  • Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.

Qualifications

Successful candidates must demonstrate appropriate knowledge, skills, and abilities for a role. Listed below are skills, competencies, work experience, education, and required certifications/licensures needed to be successful in this position.

Preferred SkillsAccess Control (AC), Building Architecture, Customer Solutions, Disaster Recovery Planning, Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies

CompetenciesAnalytical Thinking, Effective Communications, Information Assurance, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, IT Systems Management, Problem Solving, Software Security Assurance

Work ExperienceRoles at this level typically require a university / college degree, with 3+ years of relevant / direct industry experience. Certifications are often desired. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered.

EducationBachelors

CertificationsNo Required Certification(s)

LicensesNo Required License(s)

Benefits

PNC offers a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include: medical/prescription drug coverage (with a Health Savings Account feature), dental and vision options; employee and spouse/child life insurance; short and long-term disability protection; 401(k) with PNC match, pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption, surrogacy, and doula reimbursement; educational assistance, including select programs fully paid; a robust wellness program with financial incentives.

In addition, PNC generally provides the following paid time off, depending on your eligibility*: maternity and/or parental leave; up to 11 paid holidays each year; 8 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year, depending on career level; and years of service.

To learn more about these and other programs, including benefits for full time and part-time employees, visit pncbenefits.com > New to PNC.

*For more information, please click on the following links:

Time Away from Work

PNC Full-Time Benefits Summary

PNC Part-Time Benefits Summary

Disability Accommodations Statement

If an accommodation is required to participate in the application process, please contact us via email at [email protected]. Please include “accommodation request” in the subject line title and be sure to include your name, the job ID, and your preferred method of contact in the body of the email. Emails not related to accommodation requests will not receive responses. Applicants may also call 877-968-7762 and say "Workday" for accommodation assistance. All information provided will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

At PNC we foster an inclusive and accessible workplace. We provide reasonable accommodations to employment applicants and qualified individuals with a disability who need an accommodation to perform the essential functions of their positions.

Equal Employment Opportunity (EEO)

PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law.

California Residents

Refer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.

Apply Now

Date Posted

11/27/2024

Views

0

Back to Job Listings ❤️Add To Job List Company Info View Company Reviews
Positive
Subjectivity Score: 0.8

Similar Jobs

Enterprise Engineer Sr - Akami Security Suite - The PNC Financial Services Group

Views in the last 30 days - 0

PNC is seeking an Enterprise Engineer Sr with expertise in Akamai Security Suite to manage configure and optimize security solutions The role involves...

View Details

Data Engineer Senior - Data and Automation (Hadoop, Google Cloud, Pyspark, Python, SQL) - The PNC Financial Services Group

Views in the last 30 days - 0

PNC is seeking a Data Engineer Senior to join their Data and Automation organization The role involves architecting developing testing and optimizing ...

View Details

Infrastructure Engineer Sr. SD-WAN Focus - The PNC Financial Services Group

Views in the last 30 days - 0

PNC is seeking a Network Engineer with extensive knowledge in routing protocols SDWAN and data networking engineering The role involves designing buil...

View Details

GirlGov Program Manager - Compass Business Solutions, Inc.

Views in the last 30 days - 0

The Women and Girls Foundation WGF is seeking a Program Manager for their GirlGov initiative a yearround leadership development program for high schoo...

View Details

Strategic Account Representative - East - Eagle Eye Networks

Views in the last 30 days - 0

Eagle Eye Networks a global leader in cloud video surveillance is hiring a Strategic Accounts Representative The role involves developing territory st...

View Details

Trainer, Fulfillment Center - (Shift 4) - Thrive Market

Views in the last 30 days - 0

Thrive Market a profitable halfbilliondollar revenue business is seeking a Fulfillment Center Trainer The role involves training new and existing empl...

View Details