MUFG Bank

Penetration Testing Associate Vice President

Jersey City, NJ
USD 112k - 146k
Bash C# C++ Java JavaScript Python Ruby SQL AWS Azure Oracle Kubernetes Docker API MySQL DB2
Description

Penetration Testing, Associate Vice President

Location: Jersey City, NJ

Time Type: Full time

Job Description

Do you want your voice heard and your actions to count?

Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.

With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.

Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.

The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.

RESPONSIBILITIES

  • Conduct black/grey/white-box penetration testing of applications and infrastructure assets to identify exploitable vulnerabilities across MUFG assets

  • Scope and perform penetration testing and vulnerability research on complex proprietary software and hardware for client services

  • Create custom tools and/or modify existing tools to aid with automation of vulnerability detection

  • Prepare reporting on issues found including severity calculation, steps to reproduce, and mitigation/remediation recommendations

  • Work closely with infrastructure and application development teams to ensure identified findings are understood and effectively mitigated or remediated in a timely manner

  • Continuously research new exploitation/attack techniques for current technology stacks

  • Ensure awareness of industry trends and security best practices

  • Collaborate on the development of an internal training program for all levels of penetration testers to grow and develop the technical skills needed to be proficient

  • Provide technical training and guidance to junior and peer team members

WORK EXPERIENCE

  • 3+ years of experience in application and infrastructure penetration testing, utilizing industry-standard penetration-testing methodologies and security concepts such as OWASP, and the MITRE ATT&CK framework

  • 3+ years of experience employing testing frameworks and tools such as Burp Suite, Metasploit, Cobalt Strike, Kali Linux, Nessus, PowerShell Empire, AutoSploit, Ghidra, IDAPro, OllyDbg, Fiddler

  • 3+ years of experience penetration testing in one or more of the following technology areas: network infrastructure (Routers, switches...); security products and services (FW, IDS, IPS, AV...); active directory, servers, services, desktops and mobile devices; operating systems (Windows, Unix/Linux/AIX); databases (MySQL, SQL, DB2...); cloud and container technologies like AWS, Azure, Oracle and Kubernetes

  • Operational experience in one or more of these areas: post exploitation, exploitation development, or binary reverse engineering

FUNCTIONAL SKILLS

  • Experience with cloud security configurations and understanding of cloud service models (IaaS, PaaS, SaaS)

  • Solid understanding of automated security tools and manual testing techniques

  • Experience using scripting languages such as Python, PowerShell, Bash, and/or Ruby for automation of testing processes

  • Experience creating thorough assessment reporting and documentation

FOUNDATIONAL SKILLS

  • Keen attention to detail

  • Communicates effectively

  • Identifies multiple paths to success using analytical and critical thinking as well as decision-making skills

  • Exercises sound judgement, prioritizes effectively, and strives for continuous improvement

  • Effectively collaborates with colleagues

  • Seeks out and leverages available technology to drive efficiency and results

  • Understands and applies industry trends and best practices

  • Exhibits optimism, resilience, flexibility, and openness to others' ideas

  • Values learning as a lifelong professional objective

  • Engages inclusively and with intent

  • Always acts with integrity

EDUCATION

  • Bachelor’s degree in computer science or related field, applicable specialized training, or equivalent work experience equally preferable

CERTIFICATIONS

  • Active certification in one or more of the following disciplines is highly desirable: CEH, GPEN, GCIH, OSCP, OSWE, or similar

OTHER

  • As per MUFG’s Return to Office policy, a candidate must work onsite for 4 days and 1 day remotely.

  • The typical base pay range for this role is between $115K - $153K depending on job-related knowledge, skills, experience, and location. This role may also be eligible for certain discretionary performance-based bonus and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, and paid vacation, sick days, and holidays. For more information on our Total Rewards package, please click the link below.

MUFG Benefits Summary

We will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws (including (i) the San Francisco Fair Chance Ordinance, (ii) the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair Chance Ordinance, and (iv) the California Fair Chance Act) to the extent that (a) an applicant is not subject to a statutory disqualification pursuant to Section 3(a)(39) of the Securities and Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity Exchange Act, and (b) they do not conflict with the background screening requirements of the Financial Industry Regulatory Authority (FINRA) and the National Futures Association (NFA). The major responsibilities listed above are the material job duties of this role for which the Company reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of conditional offer of employment, if any.

The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified.

We are proud to be an Equal Opportunity Employer and committed to leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business. We do not discriminate on the basis of race, color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and military status, disability, medical condition, sexual orientation, genetic information, or any other status of an individual or that individual’s associates or relatives that is protected under applicable federal, state, or local law.

MUFG Bank
MUFG Bank

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say