**PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position**This position will be required to be in one of the office locations listed on a weekly basis.-In this role you will be testing static scans for applications for upcoming production releases.
-This role aids in manually reviewing code using their expert knowledge to identify vulnerabilities in code which may be missed or is not possible to be detected by automated SAST scanners
-Onboarding – This role aids in onboarding new and existing in-scope mnemonics to the program. This allows us to receive continuous scan results as developers push new builds in order to shift left and identify vulnerabilities earlier in the development process.
- JAVA, .NET, Python
- Development and App Security
- Perform tool assisted application security testing (SAST)
- Triage and report vulnerabilities discovered
- Assist developers with vulnerability remediation
Job Description- Carries out security testing of applications, infrastructure, and/or platforms to discover security vulnerabilities.
- Performs manual & automated security testing.
- Performs manual testing to validate vulnerabilities.
- Reviews the testing results with stakeholders and creates a report to review results with stakeholders.
- Assists in the design and implementation of security solutions and continuously enhances information security approaches and methodologies at manager discretion.
PNC Employees take pride in our reputation and to continue building upon that we expect our employees to be:
- Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.
- Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.
QualificationsSuccessful candidates must demonstrate appropriate knowledge, skills, and abilities for a role. Listed below are skills, competencies, work experience, education, and requiredneeded to be successful in this position.
Analytical Thinking, Effective Communications, Information Assurance, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, IT Systems Management, Problem Solving, Software Security AssuranceRoles at this level typically require a university / college degree, with 5+ years of industry-relevant experience. Specific certifications are often required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered.No Required Certification(s)No Required License(s)
California ResidentsRefer to the