The Chief Security Office (CSO) comprises the Chief Information Security Office (CISO) and the Corporate Security unit. The CISO organization guarantees information security for Deutsche Bank. The Information Security Operations teams enable the business of Deutsche Bank by providing agile security operational capabilities.
As a Penetration Tester, your primary responsibility is to assess and evaluate the security of computer systems, networks, and applications by simulating cyber-attacks. You will identify vulnerabilities, exploit weaknesses, and provide recommendations to enhance the overall security posture of Deutsche Bank.
The Penetration Testing Specialist helps the business focus on security vulnerabilities and flaws by applying industry standard methodologies for testing.
At Deutsche Bank you will continuously grow with your team in an innovative and supportive environment.
Responsibilities:
- Conduct comprehensive assessments of Web applications, Mainframe applications, Thick Client or any other relevant systems, to identify potential security vulnerabilities, including AI related findings.
- Utilize both automated scanning tools and manual testing methodologies to ensure thorough coverage.
- Analyze and interpret the results of penetration tests to provide detailed reports outlining identified vulnerabilities, potential impacts, and recommended remediation strategies.
- Coordinate test findings with applicable technology, information security, and business groups.
- Create comprehensive and clear documentation of the testing process, findings, and recommendations.
- Stay up to date with the latest security threats, vulnerabilities, and industry best practices.
- Continuously update skills and knowledge to adapt to evolving cybersecurity landscapes.
- Ensure that penetration testing activities align with relevant regulatory requirements and industry standards.
- Assist in maintaining and improving the organization's compliance with security policies.
Skills:
- 3+ years of proven experience in penetration testing, vulnerability assessment, or related cybersecurity roles
- Certifications such as GIAC Penetration Tester Certification (GPEN), GIAC Web Application Penetration Tester (GWAPT), Offensive Security Certified Professional (OSCP), eCPPTv2 Certification or similar are highly desirable.
- Bachelor's degree in computer science, Information Security, or related field.
- Strong understanding of network protocols, operating systems, and web application technologies
- Knowledge of GCP Cloud infrastructure and security best practices.
- Proficient in using penetration testing tools.
- Familiarity with the following Frameworks and Methodologies: OWASP Top 10/web/LLM/Agentic AI; PTES; NIST 800-115; and SANS Top 25 vulnerabilities.
- Strong analytical and problem-solving skills with attention to detail.
- Effective communication skills to convey complex security concepts to both technical and non-technical stakeholders.
Proven ability to leverage AI tools to enhance productivity, optimise workflows to solve business problems, while applying critical judgment to ensure responsible and ethical use of data and AI outputs.
Well-being & Benefits
Emotionally and mentally balanced: We support you in dealing with life crises, maintaining stability through illness, and maintaining good mental health.
- Empowering managers who value your ideas and decisions. Show your positive attitude, determination, and open-mindedness.
- A professional, passionate, and fun workplace.
- A modern office with fun and relaxing areas to boost creativity.
- Continuous learning culture with coaching and support from team experts.
- A culture where you can openly speak about mental health.
Physically thriving: We support you managing your physical health by taking appropriate preventive measures and providing a workplace that helps you thrive. For example, Private healthcare and life insurance with premium benefits for you and discounts for your loved ones, healthier ways of working and check-up's.
Socially connected: We strongly believe in collaboration, inclusion and feeling connected to open up new perspectives and strengthen our self-confidence and well-being.
- 24 days holiday, loyalty days, and bank holidays (including weekdays for weekend bank holidays).
- Hybrid working model with flexible working options
- Enjoy retailer discounts, cultural and CSR activities, workshops, and more.
Financially secure: We support you to meet personal financial goals during your active career and for the future.
- Competitive income, performance-based promotions, and a sense of purpose.
- Meal vouchers, bonuses for referrals
Interested in more: discover what our employees value in the Well-being & Benefits hub!
We strive for a culture in which we are empowered to excel together every day. This includes acting responsibly, thinking commercially, taking initiative and working collaboratively.
Together we share and celebrate the successes of our people. Together we are Deutsche Bank Group.
We welcome applications from all people and promote a positive, fair and inclusive work environment.
Skills Required
- 3+ years of experience in penetration testing, vulnerability assessment, or related cybersecurity roles
- Bachelor’s degree in computer science, information security, or a related field
- Strong understanding of network protocols, operating systems, and web application technologies
- Knowledge of GCP cloud infrastructure and security best practices
- Proficiency with penetration testing tools
- Familiarity with OWASP Top 10, OWASP web/LLM/Agentic AI, PTES, NIST 800-115, and SANS Top 25 methodologies
- GIAC Penetration Tester Certification (GPEN), GIAC Web Application Penetration Tester (GWAPT), OSCP, eCPPTv2, or similar certification
- Strong analytical and problem-solving skills with attention to detail
- Effective communication skills for technical and non-technical stakeholders
Deutsche Bank Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Deutsche Bank and has not been reviewed or approved by Deutsche Bank.
-
Healthcare Strength — Health coverage is positioned as comprehensive, spanning multiple medical plan options along with dental, vision, prescription coverage, life insurance, and disability protection.
-
Leave & Time Off Breadth — Time away is described as generous, including annual leave, sick leave, public holidays, wellbeing leave, volunteering leave in some regions, and expanded bereavement leave in certain locations.
-
Retirement Support — Retirement support is presented as a matched savings plan (401(k)), reinforcing longer-term financial security as part of the rewards package.
Deutsche Bank Insights
What We Do
At Deutsche Bank, we give original thinkers the space and support they need to shine. Merging local knowledge with global vision, in-depth insight with industry-leading digital expertise, if you’re an innovator by nature, we can help you to unleash your potential. We see things differently at Deutsche Bank – and we’re proud of our fresh perspective. Today, we’re driving growth through our strong client franchise, investing heavily in digital technologies, prioritising long-term success over short term gains, and serving society with ambition and integrity. Wherever your interests lie – in investment banking, trading, private wealth, asset management, retail banking - or many of the infrastructure functions that support them – you’ll discover resources, training and opportunities designed to keep you ahead of the curve. Intelligence has no boundaries: we welcome high-achieving, talented individuals from any background. If you’re full of imagination, enjoy solving problems and respond positively to complex challenges, discover a career to look forward to and join us!







