3 дня назад
Penetration Tester (Cybersecurity)
130 000 - 160 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Penetration Tester (Cybersecurity): Conducting network, API, web, mobile, cloud, and social engineering penetration tests for customers with an accent on vulnerability analysis, remediation guidance, and compliance requirements. Focus on executing engagements in SCIF environments, preparing technical deliverables, presenting findings to customers, and mentoring junior testers.
Location: Hybrid role based in Seattle, Washington, or Herndon, Virginia; work in a SCIF in Seattle or Northern Virginia is required. Periodic travel to client locations may be required.
Salary: $130,000–$160,000 annual salary
Company
provides cloud and cybersecurity services, including FedRAMP third-party assessments, cyber risk quantification, regulatory compliance advisory, and offensive security solutions.
What you will do
- Conduct network, API, web, mobile, cloud, and social engineering penetration tests.
- Work with delivery teams and customers throughout security assessment engagements.
- Explain vulnerabilities, remediation strategies, and compliance requirements to customers.
- Prepare final reports, deliver project readouts, and coordinate engagement readiness.
- Maintain customer and stakeholder relationships while managing multiple priorities.
- Train and mentor junior team members and pursue relevant professional certifications.
Requirements
- Bachelor’s degree or four years of equivalent experience.
- At least two years of professional services experience and three years of web application and network penetration testing experience.
- Proficiency in one or more scripting languages, such as Bash, Python, PowerShell, or Ruby.
- Strong knowledge of penetration testing methodologies and familiarity with OWASP, MITRE ATT&CK, OSSTMM, or PTES.
- Ability to work in a SCIF in Northern Virginia or Seattle, Washington.
- Active Top Secret clearance or ability to obtain a Top Secret clearance, plus eligibility to work in the United States.
Nice to have
- eCPPT, OSCP, OSCE, OSWE, or GPEN certification.
- Experience assessing cloud environments and varied technology stacks.
- Knowledge of network architecture, network devices and services, development platforms, and software suites.
- Experience creating technical content for websites, whitepapers, or blog posts.
- Experience working alongside compliance specialists conducting security control assessments.
Culture & Benefits
- Medical, dental, and vision insurance.
- 401(k) plan with a 4% company match.
- Company-paid short-term disability, long-term disability, AD&D, and life insurance.
- Flexible time off, eleven paid holidays, annual bonuses, and spot awards.
- Training stipends, certification reimbursement, access to more than 30,000 online training courses, and home office and phone allowances.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Penetration Tester, Web/Mobile Apps and Cloud Services (Cybersecurity)
80 000 - 132 000$
3 дня назад
Offensive Security Engineer (Cloud Security)
145 000 - 200 000$
3 дня назад
Senior Principal Engineer, Offensive Security
190 000 - 240 000$
4 дня назад
IT Security Engineer
116 000 - 159 000$
4 дня назад
Offensive Cyber Research Engineer (Cybersecurity)
159 000 - 195 000$
3 дня назад
Security Engineer (Cybersecurity)
140 000 - 190 000$