Cyber Penetration Tester- Secret Clearance - Veterans Enterprise Technology Solutions
Rosslyn, VA
About the Job
Overview:
Staffing Pros, a division of VETS Inc., is recruiting for a full-time Cyber Penetration Tester. This position will work a rotating hybrid schedule in Rosslyn, VA. WEEK 1 - 2 days onsite, 3 days remote WEEK 2 - 3 days onsite, 2 days remote. An Active Secret clearance is required for this role.
If you have additional questions not answered by the information contained within this posting, please contact our team directly at StaffingPros@vets-inc.com.
Responsibilities:- Support the Penetration Testing (Red Cell) Team.
- Assesses the current state of the customer’s system security by identifying all vulnerabilities and security measures. Helps customer perform analysis and mitigation of security vulnerabilities.
- Perform and report on penetration testing of systems including cloud to satisfy the NIST 800-53 CA-8 security control and using methodologies that may include, NIST SP 800-115, Penetration Testing Execution Standard (PTES), and Information Systems Security Assessment Framework (ISSAF).
- Stay abreast of current attack vectors and unique methods for exploitation of computer networks.
- Provide support to incident response teams through capability enhancement and reporting.
- Assist in maintaining Red Cell infrastructure.
- Develop or modify tools that automate discovery or exploitation (e.g. bash, Python, JavaScript, powershell).
- Ability to work independently or in a small group.
- A Bachelor of Science degree and at least 5 years of penetration testing experience is required. In lieu of a degree, 4 years of additional experience may be substituted.
- Requires at least ONE of the following certifications:
- CCNA Cyber Ops, CCNA, CEH, CFR, Cloud+, CySA+, GCIA, GCIH, GICSP, Security+ CE, or SSCP.
- Networking and security principles experience and knowledge.
- Experience evaluating system security configurations.
- Understand common Web Application vulnerabilities like SQLi, XSS, CSRF, and HTTP Flooding.
- Experience with penetration testing tools such as Metasploit, Burp Suite, Nmap, etc.
- Fundamentals of network routing & switching and assessing network device configurations
- Familiarity in evaluating findings and performing root cause analysis.
- An active Secret security clearance to start.
- With the ability to obtain a final Top Secret security clearance.
Source : Veterans Enterprise Technology Solutions