About the Role
Wells Fargo is seeking a Senior Lead Application Pen Testing Cyber Security Research Engineer to advance and integrate penetration testing practices across the software development lifecycle. This role requires deep expertise in security testing, AI, offensive security tooling, and hands-on penetration testing.
Responsibilities
- Lead the development of application penetration testing methods and solutions across a broad range of technology stacks.
- Establish a mentoring program for the application penetration testing team and key partners to strengthen capabilities in offensive AI, scanning, and security research.
- Advise senior management on the strengths, weaknesses, opportunities, and risks associated with penetration testing.
- Serve as an adversarial counterpoint to security strategy proposals, helping identify gaps, assumptions, and potential areas of risk.
- Maintain awareness of industry best practices and emerging techniques to continuously enhance security testing capabilities.
- Mentor junior team members and promote a culture of security awareness throughout the organization.
- Demonstrate proficiency in using AI‑assisted development and analysis tools (e.g., GitHub Copilot and approved code‑centric agents).
- Leverage AI to accelerate system design, coding, testing, analysis, and troubleshooting.
- Apply strong technical judgment when validating and integrating AI‑assisted outputs into solutions.
- Understand and account for model limitations, security risks, and operational considerations.
- Apply AI responsibly in development and production environments.
- Ensure AI usage aligns with security, compliance, privacy, and ethical standards.
Requirements
- 7+ years of Cyber Security Research experience, or equivalent demonstrated through work experience, training, military experience, or education.
Skills
- Application penetration testing
- Offensive security research
- Adversary emulation
- Building security tools
- Automation
- Offensive security frameworks
- Modern programming languages
- Assessing AI/ML systems
- Generative AI applications
- LLM security risks
- Prompt injection
- Model misuse
- AI red teaming techniques
- Stakeholder management
- Executive communication
- Mentoring and developing security testing teams
Location
- 1525 W WT Harris Blvd, Charlotte, NC
- 401 Las Colinas Blvd. W, Irving, TX
- 333 Market Street San Francisco, CA
- 2600 South Price Road, Chandler, AZ
- Remote NC
- Remote TX
- Remote CA
- Remote AZ
Work Type
- Remote
Experience Level
- Senior Lead
Education Level
- Burp Suite Certified Professional
- OSCP certification
- GCP certifications
- Azure certifications
Salary/Compensations
- $159,000.00 - $305,000.00
Benefits
- Health benefits
- 401(k) Plan
- Paid time off
- Disability benefits
- Life insurance
- Critical illness insurance
- Accident insurance
- Parental leave
- Critical caregiving leave
- Discounts and savings
- Commuter benefits
- Tuition reimbursement
- Scholarships for dependent children
- Adoption reimbursement
About the Company
- Wells Fargo is an equal opportunity employer.
- Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company.
- They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions.
- There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit’s risk appetite and all risk and compliance program requirements.
Equal Opportunity
- All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
