Назад
Company hidden
3 дня назад

Red Team Penetration Tester (Cybersecurity)

Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Red Team Penetration Tester (Cybersecurity): Conducting continuous manual cyber assessments of applications, hardware, services, and websites with an accent on offensive security, vulnerability discovery, and threat emulation. Focus on developing penetration testing tools, automating assessments with scripting, performing exploit development, and creating threat mitigation plans.

Location: United States citizenship required due to a government requirement

Company

hirify.global is recruiting for a growing federal contractor seeking cybersecurity professionals for continuous cyber assessments and threat mitigation.

What you will do

  • Perform manual penetration testing of applications, hardware, systems, services, and websites.
  • Identify security issues beyond findings produced by static analysis tools.
  • Automate repetitive assessment tasks using scripting and programming languages.
  • Develop and advance penetration testing tools, capabilities, and techniques.
  • Mentor and lead engineers through complex penetration tests and vulnerability assessments.
  • Create threat mitigation plans and help improve the security of services, applications, and websites.

Requirements

  • US citizenship is required due to the government requirement.
  • Active DoD Top Secret/SCI clearance required.
  • Bachelor’s degree in cybersecurity, cyber operations, engineering, information technology, computer science, mathematics with a computer science concentration, or an equivalent discipline.
  • DoD 8570.01-M baseline certification at the CSSP Auditor level, with certifications such as CISA, CEH, CySA+, GSNA, CFR, or PenTest+ accepted.
  • One of the following certifications: OSCP, OSCE, OSEE, or OSWP.
  • Seven years of full-time professional experience in penetration testing or offensive cyber operations, including threat emulation, Active Directory, exploit development, multiple operating systems, and at least two programming or scripting languages.

Nice to have

  • Experience developing and using Metasploit, NMAP, Kali Linux, and Cobalt Strike.
  • Experience identifying gaps in penetration testing tools and development techniques.

Culture & Benefits

  • Work supporting a growing federal contractor.
  • Opportunity to solve complex technology and cybersecurity problems.
  • Responsibilities include mentoring engineers and advancing offensive security capabilities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →