Technology Engineer - JAVA/.NET/Security Code Review

PNCStrongsville, OH
$86,250 - $158,125Onsite

About The Position

At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company’s success. As a Technology Engineer within PNC's Technology organization, you will be based in Pittsburgh, PA; Cleveland, OH; Birmingham, AL; Dallas, TX or Lakewood, CO. This role involves identifying, evaluating, and mitigating application security risks throughout the entire software development lifecycle (SDLC). The ideal candidate will have a software development background, preferably in Java and/or .NET, with comprehensive knowledge of application security. A thorough understanding of OWASP Top 10 web application risks and proficiency in triaging and remediating web application security vulnerabilities are essential. The role also requires manually validating compensating controls and collaborating closely with application and engineering teams to promote secure coding practices and enhance overall application security posture. PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position.

Requirements

  • Good verbal and Written communication skills.
  • Software Development background preferably in Java and/or .NET
  • Demonstrated experience in software development with comprehensive knowledge of application security is essential.
  • Proficiency in triaging and remediating web application security vulnerabilities is required.
  • 3+ years of relevant / direct industry experience.
  • University / college degree (In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered).

Nice To Haves

  • Familiarity with Interactive Application Security Testing (IAST) is preferred but not mandatory.
  • Experience in incident response pertaining to application attacks is an advantage.

Responsibilities

  • Identify, evaluate, and mitigate application security risks throughout the entire software development lifecycle (SDLC)
  • Maintain a thorough and practical understanding of the OWASP Top 10 web application risks, providing guidance on appropriate mitigation strategies to relevant teams.
  • Manually validate compensating controls to ensure application teams effectively address identified vulnerabilities when direct remediation is not immediately possible.
  • Collaborate closely with application and engineering teams to promote secure coding practices and enhance overall application security posture.
  • Analyze and manually validate software vulnerabilities, distinguish legitimate application attacks from false positives, and work with application teams to remediate confirmed issues efficiently.
  • Leverages technical knowledge and industry experience to design, build and maintain technology solutions.
  • Assists with selecting appropriate platforms, integrates and configures solutions.
  • Develops software components and hardware for new and emerging technology projects; aligns these with business strategies and objectives.
  • May provide consultation on common issues and best practices for junior staff.
  • Provides a systematic analysis on client requirements within the traceability framework and resolves any functional problems encountered.
  • Ensures quality of project deliverables while maintaining compliance with relevant standards and processes.

Benefits

  • medical/prescription drug coverage (with a Health Savings Account feature)
  • dental and vision options
  • employee and spouse/child life insurance
  • short and long-term disability protection
  • 401(k) with PNC match
  • pension and stock purchase plans
  • dependent care reimbursement account
  • back-up child/elder care
  • adoption, surrogacy, and doula reimbursement
  • educational assistance, including select programs fully paid
  • a robust wellness program with financial incentives
  • maternity and/or parental leave
  • up to 11 paid holidays each year
  • 9 occasional absence days each year, unless otherwise required by law
  • between 15 to 25 vacation days each year, depending on career level; and years of service.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service