Senior Offensive Security Engineer

June 1, 2026
$160000 - $205000 / year

Job Description

Company: Bank of America

Location: Jersey City, US

Overview

Bank of America is hiring a Senior Full Stack Pentester to join our world-class offensive security team. The role focuses on hunting high-risk vulnerabilities across our global technology environment and providing actionable insight to senior leadership and business partners.
Responsibilities
• Lead and perform penetration testing assessments on bank technologies, applications, and controls.
• Adapt testing methods to emerging threats and conduct research to identify misconfigurations and vulnerabilities.
• Coordinate with senior leadership on development projects and mentor junior engineers.
• Assist with monitoring, detection, and response functions to improve team capability to respond to realistic threat actors.
Qualifications
• Minimum 5+ years of professional offensive security experience.
• Proficient with common penetration testing tools (Burp Suite, Metasploit, nmap, etc.).
• Strong understanding of voice and data networks, major operating systems, AD, and ability to learn new technologies.
• Knowledge of tactics, techniques, and procedures of malicious activity and ability to chain vulnerabilities for advanced exploitation.
• Effective coding skills in Python, Java, C#, etc.
• Excellent report delivery and technical documentation of vulnerabilities.
Desirable Skills
• Certifications: OSCP, GPEN, GXPN, OSED, OSEP, OSWE, OSCE, GWAPT.
• Ability to work remotely if/when necessary.
• Previous experience in the financial industry.
• Experience with hardware hacking, embedded systems analysis, and IoT hacking.
Shift

1st shift (United States of America)
Hours Per Week

40
Pay and Benefits

Annualized salary: $160,000.00 – $205,000.00, adjustable based on experience, education, and skill set.

Employees are eligible for an annual discretionary award and industry-leading benefits that include paid time off, resources, and support to make a genuine impact.

Source: JobLeads