Job Summary:
The role is responsible for identifying security vulnerabilities, performing penetration testing activities, and evaluating the resilience, performance, and security posture of banking applications, systems, APIs, and infrastructure.
The ideal candidate will have hands-on experience in offensive security testing, vulnerability assessments, and stress/performance testing within banking or highly regulated environments.
Key Responsibilities:
Conduct penetration testing on web applications, mobile applications, APIs, networks, and cloud environments
Perform vulnerability assessments and identify security weaknesses across digital banking platforms
Execute stress and load testing to evaluate system performance, scalability, and resilience under high-traffic conditions
Simulate cyberattack scenarios to assess the effectiveness of security controls and incident response readiness
Analyze security findings and provide risk ratings, remediation recommendations, and technical reports
Collaborate with infrastructure, application, and development teams to remediate identified vulnerabilities
Validate security fixes through retesting activities
Support compliance with cybersecurity frameworks, banking regulations, and security standards
Monitor emerging threats, attack techniques, and security trends relevant to the banking sector
Maintain testing documentation, reports, and evidence in accordance with audit requirements
Requirements
Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field
3+ years of experience in penetration testing, ethical hacking, or cybersecurity assessment roles
Experience with stress testing, load testing, or performance testing tools and methodologies
Strong understanding of OWASP Top 10, network security, application security, and secure coding principles
Hands-on experience with tools such as Burp Suite, Metasploit, Nessus, Nmap, Wireshark, JMeter, or similar
Familiarity with cloud security environments and API security testing
Knowledge of cybersecurity standards and frameworks such as NIST, ISO 27001, PCI-DSS, and CIS Controls
Strong analytical, problem-solving, and reporting skills