Security Specialist - Application Security

PNC BankPittsburgh, PA
Onsite

About The Position

At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company’s success. As a Security Specialist within PNC's Technology organization, you will be based in Pittsburgh, PA; Cleveland, OH; Birmingham, AL; Dallas, TX or Lakewood, CO. PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. We encourage candidates to connect with their recruiter and hiring manager to understand workplace expectations and ensure the role aligns with their goals. PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position.

Requirements

  • Hands-on experience performing threat modeling
  • In-depth experience guiding development teams with remediating common application vulnerabilities such as OWASP, API Security, secure design
  • Hands-on experience building and implementing strong authentication solutions
  • Passionate about creating secure software and can articulate why
  • Ability to analyze gaps in SDLC and recommend reasonable solutions
  • Hands-on experience with secure design, security architecture, and implementing software security solutions
  • Ability to work independently and as part of a team
  • Agile development concepts and methods (scrum, Kanban)
  • Experience with SAST, DAST, RASP, CI/CD pipelines
  • Strong communication and relationship building skills
  • University / college degree, with 5+ years of industry-relevant experience.
  • Specific certifications are often required.
  • In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered.
  • Bachelors degree
  • Access Control (AC)
  • Building Architecture
  • Customer Solutions
  • Disaster Recovery Planning
  • Information Security
  • Network Security
  • Physical Security
  • Risk Assessments
  • Security Technologies
  • Analytical Thinking
  • Effective Communications
  • Information Assurance
  • Information Security Management
  • Information Security Technologies
  • IT Environment
  • IT Standards, Procedures & Policies
  • IT Systems Management
  • Problem Solving
  • Software Security Assurance

Nice To Haves

  • Hands-on experience with API Security tools
  • Knowledge and experience with software security frameworks (e.g., BSIMM, SAMM)
  • Strong technical skills in penetration testing
  • Certified Secure Software Lifecycle Professional (CSSLP), SANS GWAPT
  • Public cloud security (e.g., AWS, Azure, GCP)
  • Software development experience
  • Experience using SD Elements or similar tools
  • Metrics and reporting

Responsibilities

  • Provides technical evaluation and analysis in a specific Security area.
  • Supports activities, process, and tools needed to improve overall security posture of the organization.
  • Applies security concepts, reviews information, executes defined tasks, analyzes requirements, reviews logs, and creates documentation.
  • Performs investigation and data loss prevention, data manipulation, and coordination of activities.
  • Performs actions to address or mitigate risks and vulnerabilities.
  • Reviews and defines controls.
  • Advises on more complex security procedures and products for clients, security administrators and network operations.
  • Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion.
  • Shares knowledge with staff.
  • Conducts security assessments and other information security routines consistently.
  • Investigates and recommends corrective actions for data security related to established guidelines.
  • Develops policies and procedures to standardize security functions and eliminate potential vulnerabilities and threats.
  • Oversees that business needs are being met during development.

Benefits

  • medical/prescription drug coverage (with a Health Savings Account feature)
  • dental and vision options
  • employee and spouse/child life insurance
  • short and long-term disability protection
  • 401(k) with PNC match
  • pension and stock purchase plans
  • dependent care reimbursement account
  • back-up child/elder care
  • adoption, surrogacy, and doula reimbursement
  • educational assistance, including select programs fully paid
  • a robust wellness program with financial incentives
  • maternity and/or parental leave
  • up to 11 paid holidays each year
  • 9 occasional absence days each year, unless otherwise required by law
  • between 15 to 25 vacation days each year, depending on career level; and years of service
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service