Sr. Web Application Penetration Tester
Company: The Hartford
Location: Chicago
Posted on: May 24, 2025
Job Description:
Sr. Web Application Penetration Tester page is loadedSr. Web
Application Penetration TesterApply remote type 100% Remote
locations Hartford, CT Connecticut-Remote Chicago, IL Columbus, OH
Charlotte, NC time type Full time posted on Posted 9 Days Ago job
requisition id R2519859 Senior Security Engineer - IS07FEWe're
determined to make a difference and are proud to be an insurance
company that goes well beyond coverages and policies. Working here
means having every opportunity to achieve your goals - and to help
others accomplish theirs, too. Join our team as we help shape the
future.The Hartford's Information Protection (THIP) organization is
looking for a talented individual to join a high-performing team of
Application Security Engineers responsible for governing, managing
and delivering our company's application cybersecurity defenses. As
a Senior Web Application Penetration Tester, you will have an
opportunity to shape the direction of our company's application
penetration testing program by providing thought leadership,
professional support, and valued contributions to our growing range
of penetration testing activities. This role provides the right
person with the opportunity to use their skills and expertise to
drive meaningful improvements into the security posture of all
application portfolios across our company.RESPONSIBILITIES:
- Plan and perform penetration tests on applications spanning all
enterprise lines of business and portfolios
- Document findings and recommend remediation strategies
- Collaborate with application teams to ensure vulnerabilities
are addressed effectively
- Develop exploits to demonstrate the potential impact of a
successful attack
- Participate in broader attack simulation activities assessing
systems including infrastructure, network, cloud, and IoT
services
- Stay up to date with the latest technologies, testing
methodologies, tools, security trends and threatsThis role is
eligible for fully remote work.QUALIFICATIONS:Candidates will be
evaluated based on their ability to perform the duties listed above
while demonstrating the skills and competencies necessary to be
highly effective in the role. These skills and competencies
include:
- 5+ years' experience assessing vulnerabilities across a large
enterprise application portfolio
- 3+ years' experience performing application penetration testing
to cover a broad range of enterprise web and mobile
applications
- Strong understanding of web and mobile architectures and
technologies including Single Page Applications (SPA), Multi-Page
Applications (MPA), APIs, OAuth 2.0, JavaScript, Java and .NET
frameworks
- Comprehensive knowledge of web and mobile application security
vulnerabilities including OWASP Web Application, API and Mobile Top
10 lists
- Ability to effectively extend testing scope to include
infrastructure, network, cloud and IoT services
- Strong reporting and communication skills
- Strong commitment to legal and ethical standards and
behaviors
- Bachelor's degree from an accredited college or university in
computer science, information security, or related field
- Certifications such as Certified Information Systems Security
Professional (CISSP), Offensive Security Certified Professional
(OSCP) or Offensive Security Web Expert (OSWE) are highly desirable
and preferredCandidate must be authorized to work in the US without
company sponsorship.The company will not support the STEM OPT I-983
Training Plan endorsement for this position.CompensationThe listed
annualized base pay range is primarily based on analysis of similar
positions in the external market. Actual base pay could vary and
may be above or below the listed range based on factors including
but not limited to performance, proficiency and demonstration of
competencies required for the role. The base pay is just one
component of The Hartford's total compensation package for
employees. Other rewards may include short-term or annual bonuses,
long-term incentives, and on-the-spot recognition. The annualized
base pay range for this role is:$127,200 - $190,800Equal
Opportunity Employer/Sex/Race/Color/Veterans/Disability/Sexual
Orientation/Gender Identity or Expression/Religion/AgeAbout Us -
Culture & Employee Insights - Diversity, Equity and Inclusion -
BenefitsSimilar Jobs (3)Sr. Software Engineer - .Net
Specialistlocations 4 Locations time type Full time posted on
Posted 2 Days AgoIdentity & Access Management Cloud Security
Engineerremote type Hybrid locations 4 Locations time type Full
time posted on Posted 30+ Days AgoAI Platform Engineer (GCP) -
Remoteremote type 100% Remote locations 5 Locations time type Full
time posted on Posted 30+ Days Ago
#J-18808-Ljbffr
Keywords: The Hartford, West Allis , Sr. Web Application Penetration Tester, IT / Software / Systems , Chicago, Wisconsin
Didn't find what you're looking for? Search again!
Loading more jobs...