Senior Cyber Security Application Penetration Testing Engineer

Wells Fargo

Confirmed live today High trust
Hybrid

Quick summary

Work type
Hybrid
Location
San Francisco, CACharlotte, NCChandler, AZIrving, TX
Salary
$100,000–$196,000 / yr
Employment
Full-time
Posted
2 days ago
Freshness
Confirmed live today
Closes
Oct 10, 2026

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $173k
This role $148k
$87k most similar roles pay here $217k

This role pays less than 69% of similar roles. Most pay $142,450–$204,375 — the shaded band above. At the midpoint, this role pays about $148k versus about $173k for comparable roles.

Based on 240 similar postings.

Employer

About Wells Fargo

Wells Fargo & Company is one of the largest banks in the United States, providing banking, investment, mortgage, and consumer and commercial finance products and services nationwide. Industry: Banking & Financial Services

Wells Fargo currently has 34 open roles on FindRole.

Listed pay typically runs $119,000–$224,000 across 17 roles with salary data.

Most-posted roles

View all roles at Wells Fargo

At a glance

TL;DR · Senior Cyber Security Application Penetration Testing Engineer

The Senior Cyber Security Application Penetration Testing Engineer joins the Technology Cybersecurity department to lead and conduct penetration testing on applications while identifying defects and supporting remediation efforts. This role involves performing security risk assessments, conducting technical investigations of information security incidents, and testing networking devices and web-based applications. The engineer will develop custom tools, create proof of concept exploits to mimic attacker techniques, and mentor junior engineers in offensive security. Key technical requirements include expertise in web technologies, Dynamic Application Security Testing (DAST) using tools like Invicti, Appscan, Fiddler, and Burp Suite, along with scripting in Python or Shell. The position specifically requires leveraging AI-enhanced scanners to accelerate defect identification while ensuring all automated outputs align with security, compliance, and ethical standards within the complex domain of corporate network protection.

What you'll do

  • Conduct penetration testing on web applications, networking devices, and appliance products to identify vulnerabilities.
  • Create and execute proof of concept exploits to mimic attacker techniques and determine risk severity.
  • Develop custom penetration testing tools and techniques to enhance security testing capabilities.
  • Utilize AI-enhanced scanners and tools to accelerate the identification and validation of security defects.
  • Perform security risk assessments to ensure compliance with corporate policies and industry best practices.
  • Analyze and investigate technical data from security incidents and breach activities.
  • Mentor junior engineers in web application penetration testing techniques and offensive security tools.

What we're looking for

  • 4+ years of Cyber Security Research experience or equivalent through work, training, military, or education.
  • 4+ years of Web application penetration testing experience.
  • 4+ years of Dynamic Application Security Testing (DAST) experience.
  • Proficiency in using AI enhanced security scanners and tools to identify and validate defects.
  • Advanced experience with DAST tools such as Invicti, Appscan, Webinspect, Fiddler, or Burp Suite (preferred).
  • Experience with scripting and automation in Python or Shell (preferred).
  • Knowledge of security best practices and compliance standards like PCI DSS or GDPR (preferred).
  • Security certifications such as OSCP, BSCP, GWAPT, GPEN, GXPN, or equivalent (preferred).

More like this

Similar roles

Senior Penetration Tester (Mobile, API, Cloud)

US Bank

Irving, TX 11 days ago
Penetration Testing OWASP Top 10 API Security Mobile Security AWS Azure Kubernetes Burp Suite Pro Postman Nmap Metasploit Kali Linux Python PowerShell Bash Ruby Go REST APIs OAuth SAML JWT PCI-DSS NIST 800-53
8+ yrs exp

Lead Penetration Test Engineer

S&P Global

Boston, MA +11 22 days ago $135,000–$200,000
Penetration Testing Vulnerability Management DAST SAST SCA CI/CD Burp Suite Nessus Metasploit Nmap OWASP Top 10 MITRE ATT&CK Python Go Bash PowerShell JavaScript AWS Azure GCP Java
8+ yrs exp Hybrid

Senior Application Security Testing Engineer

3M

Remote (Austin, TX) 80 days ago $164,612–$201,193
Application Security SAST DAST SCA Threat Modeling CI/CD GitHub Azure DevOps OWASP Top 10 Secure Coding Source Code Analysis Penetration Testing
3+ yrs exp Remote

Senior Cyber Threat Defense Security Operations Engineer

Proofpoint

Draper, UT 44 days ago $136,200–$214,005
Incident Response SIEM SOAR EDR XDR Python PowerShell Bash MITRE ATT&CK Threat Hunting Threat Modeling AWS Microsoft Azure Google Cloud Platform Digital Forensics AI DLP STRIDE
8+ yrs exp

Senior Principal Cyber Software Test Engineer

Northrop Grumman

Annapolis Junction, MD +3 60 days ago
Modeling and Simulation Statistical Analysis Configuration Management Systems Engineering Data Collection Risk Assessment Data Sampling Instrumentation Quality Assurance
8+ yrs exp