About The Position

At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company’s success. As a Security Testing Specialist Sr within PNC's Technology Security organization, you will be based in Denver, CO or Phoenix, AZ. This role is for an experienced application security tester. We test released based software deployments in a 3-to-4-day testing window. The ideal candidate should have experience with Burp Suite, manual application security testing methods, and automated dynamic application testing tools. They will also be familiar with the OWASP Top 10 Web Application Security Risks. Utilize Agentic AI solutions for dynamic security testing. Reviews testing results with stakeholders and helps to determine risk ratings. Develops new techniques and processes that identify application vulnerabilities. Assists in the design and implementation of security solutions and continuously enhances information security approaches and methodologies at manager discretion.

Requirements

  • Experience with Burp Suite
  • Manual application security testing methods
  • Automated dynamic application testing tools
  • Familiarity with the OWASP Top 10 Web Application Security Risks
  • University / college degree, with 5+ years of industry-relevant experience. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered.
  • Bachelors degree

Nice To Haves

  • API Security Testing
  • Strong understanding of attack methodologies
  • Experience with cloud environments

Responsibilities

  • Executes security testing and ethical hacks of web and mobile applications to discover vulnerabilities.
  • Performs both manual and automated dynamic security testing that identify OWASP Top 10 vulnerabilities.
  • Reviews testing results with stakeholders and helps to determine risk ratings.
  • Develops new techniques and processes that identify application vulnerabilities.
  • Assists in the design and implementation of security solutions and continuously enhances information security approaches and methodologies at manager discretion.
  • Carries out security testing of applications, infrastructure, and/or platforms to discover security vulnerabilities.
  • Performs manual & automated security testing.
  • Performs manual testing to validate vulnerabilities.
  • Reviews the testing results with stakeholders and creates a report to review results with stakeholders.

Benefits

  • medical/prescription drug coverage (with a Health Savings Account feature)
  • dental and vision options
  • employee and spouse/child life insurance
  • short and long-term disability protection
  • 401(k) with PNC match
  • pension and stock purchase plans
  • dependent care reimbursement account
  • back-up child/elder care
  • adoption, surrogacy, and doula reimbursement
  • educational assistance, including select programs fully paid
  • a robust wellness program with financial incentives
  • maternity and/or parental leave
  • up to 11 paid holidays each year
  • 9 occasional absence days each year, unless otherwise required by law
  • between 15 to 25 vacation days each year, depending on career level; and years of service.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service