Cyber Penetration Tester

Arlington, VA, United States

Applications have closed

Peraton

Peraton drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted and highly...

View company page

Responsibilities

Peraton is seeking a Cyber Penetration Tester to become part of Peraton’s Department of State (DoS) Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative, effective and secure business processes.

 

Location: Arlington, VA.  This is a hybrid role and will require regular onsite work in Arlington, VA 

 

What you’ll do:

  • Support the Penetration Testing (Red Cell) Team.
  • Assesses the current state of the customer’s system security by identifying all vulnerabilities and security measures. Helps customer perform analysis and mitigation of security vulnerabilities.
  • Perform and report on penetration testing of systems including cloud to satisfy the NIST 800-53 CA-8 security control and using methodologies that may include, NIST SP 800-115, Penetration Testing Execution Standard (PTES), and Information Systems Security Assessment Framework (ISSAF).
  • Stay abreast of current attack vectors and unique methods for exploitation of computer networks.
  • Provide support to incident response teams through capability enhancement and reporting.
  • Assist in maintaining Red Cell infrastructure.
  • Develop or modify tools that automate discovery or exploitation (e.g. bash, Python, JavaScript, powershell).
  • Ability to work independently or in a smal group.

#DSCM

Qualifications

Required: 

  • A Bachelor of Science degree and at least 5 years of penetration testing experience is required. In lieu of a degree, 4 years of additional experience may be substituted 
  • Requires at least ONE of the following certifications or the ability to obtain before start date
    • CCNA Cyber Ops, CCNA, CEH, CFR, Cloud+ , CySA+ , GCIA, GCIH, GICSP, Security+ CE, or SSCP.
  • Networking and security principles experience and knowledge.
  • Experience evaluating system security configurations.
  • Understand common Web Application vulnerabilities like SQLi, XSS, CSRF, and HTTP Flooding.
  • Experience with penetration testing tools such as Metasploit, Burp Suite, Nmap, etc.
  • Fundamentals of network routing & switching and assessing network device configurations
  • Familiarity in evaluating findings and performing root cause analysis.
  • U.S. citizenship and the ability to obtain an interim Top Secret security clearance before starting.

 

Peraton Overview

Peraton drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted and highly differentiated national security solutions and technologies that keep people safe and secure. Peraton serves as a valued partner to essential government agencies across the intelligence, space, cyber, defense, civilian, health, and state and local markets. Every day, our employees do the can’t be done, solving the most daunting challenges facing our customers.

Target Salary Range

$86,000 - $138,000. This represents the typical salary range for this position based on experience and other factors.

Tags: Bash Burp Suite CEH Clearance Cloud CSRF GCIA GCIH GICSP Incident response JavaScript Metasploit NIST NIST 800-53 Nmap Pentesting PowerShell Python Security assessment Security Clearance SSCP Top Secret Vulnerabilities XSS

Region: North America
Country: United States
Job stats:  23  4  0
Category: PenTesting Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.