Penetration Tester
Washington, D.C.
Applications have closed
XOR Security
At the forefront of innovation, driving advanced capabilities and solutions tailored to the most critical national security and civilian missions.Description:
At XOR Security, we build solutions that keep our citizens safe, our customer’s information secure and our intelligence professionals one step ahead of the adversary. From defensive and offensive cyber operations to data analytics and strategic consulting, the XOR team provides the insight, expertise and dedication to ensure mission success. Our solutions deliver certainty – the certainty clients need to make critical decisions and lead with confidence.
XOR Security is currently seeking a talented Penetration Tester to support one of our premier clients. The ideal candidate will have a solid understanding of cyber threats and information security and has a passion for making the clients infrastructure more secure. Additionally, the ideal candidate would have familiarity with penetration testing and exploit development, and is familiar with cloud-based and external-facing application.
PRIMARY RESPONSIBILITIES:
Emulate adversary tactics, techniques, and procedures (TTPs) to validate security controls effectiveness; develop rules of engagement, brief partners on findings and mitigation techniques.
Job Duties:
As a member of the Penetration Testing Team, perform the following tasks: • Emulate adversary tactics, techniques, and procedures (TTPs) to validate security controls efficacy • Perform penetration test assessments of DOE assets • Develop rules of engagement, and configure, tune, and operate industry standard pen test assessment tools • Coordinate, schedule, and support pen test requests • Evaluate findings to determine applicability, saturation, and potential impact • Analyze pen test reports and produce summary guidance for System Owners and administrators • Advise System Owners and Administrators of findings and provide remediation guidance • Monitor remediation efforts of findings and communicate progress to stakeholders • Work with Information System Security Officers (ISSOs) and System Owners to develop Plan of Action & Milestones (POA&Ms) or formalized exceptions to document findings • Develop, capture, and deliver summary metrics of pen test activities • Draft and deliver executive and technical briefings on pen testing related topicsClosing Statement:
XOR Security offers a very competitive benefits package including health insurance coverage from first day of employment, 401k with a vested company match, vacation and supplemental insurance benefits.
XOR Security is an Equal Opportunity Employer (EOE). M/F/D/V.
Citizenship Clearance Requirement
Applicants selected may be subject to a government security investigation and must meet eligibility requirements - US CITIZENSHIP and a TOP SECRET CLEARANCE.
Tags: Analytics Clearance Cloud Exploit Pentesting Top Secret Top Secret Clearance TTPs
Perks/benefits: 401(k) matching Health care
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Officer jobs
- Open Information Security Specialist jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Cyber Security Specialist jobs
- Open Cybersecurity Analyst jobs
- Open Manager Pentest H/F jobs
- Open Chief Information Security Officer jobs
- Open Product Security Engineer jobs
- Open Staff Security Engineer jobs
- Open Security Specialist jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Senior Information Security Analyst jobs
- Open Cybersecurity Consultant jobs
- Open Consultant SOC / CERT H/F jobs
- Open IT Security Analyst jobs
- Open Senior Information Security Engineer jobs
- Open Senior Penetration Tester jobs
- Open IT Security Engineer jobs
- Open Security Researcher jobs
- Open Security Operations Analyst jobs
- Open Cybersecurity Specialist jobs
- Open Sr. Security Engineer jobs
- Open CISM-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open Agile-related jobs
- Open ISO 27001-related jobs
- Open Application security-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Analytics-related jobs
- Open Threat intelligence-related jobs
- Open SaaS-related jobs
- Open Security assessment-related jobs
- Open APIs-related jobs
- Open Java-related jobs
- Open Malware-related jobs
- Open Security Clearance-related jobs
- Open Forensics-related jobs
- Open IDS-related jobs
- Open DevOps-related jobs
- Open CEH-related jobs
- Open EDR-related jobs
- Open IPS-related jobs