Jobs
>
Chevy Chase

    Mobile and Web Application Penetration Tester - Chevy Chase, United States - GEICO

    GEICO
    GEICO Chevy Chase, United States

    1 month ago

    GEICO background
    Full time
    Description

    Use data to make strategic decisions.

    GEICO Technology Solutions Cyber Security is seeking a Mobile and Web Penetration tester for its new Cyber Adversary Simulation and Red team. This dedicated team will perform penetration testing against web applications, our networks, and data stores. Additionally, they will employ social engineering to identify weaknesses in business processes and policies. In creating its test plans, the team will coordinate with application architecture teams, Underwriting Fraud, Claims Fraud, Cyber Threat Intelligence, and other teams to ensure alignment. It will also deliver a continuous view into corporate hygiene and attack surface through the use of breach and attack automation tools. Finally, it will provide metrics tracking testing coverage (visibility), time to remediate issues, and detection efficacy to show gaps and improvement opportunities.

    Responsibilities Include:


    • Conduct Web application, API, and Mobile Application penetration testing


    • Performing sophisticated adversary simulation operations against GEICO's systems to identify gaps in prevention, detection, and/or response


    • Research, develop, and apply TTPs of relevant threat actors to simulations


    • Provide subject matter expertise on offensive security


    • Leverage threat intelligence to hunt for indicators of compromise and vulnerabilities


    • Managing and improving breach and attack simulation tools


    • Collaboration with enterprise defenders to improve detection and response


    • Creating and following rules of engagement

    Ideal Candidates Can:


    • Write penetration testing reports on time, with extensive evidence, and excellent grammar


    • Think like an adversary and like a defender


    • Fully understand and apply TTPs, MITRE ATT&CK, and MITRE Pre-ATT&CK to report writings and presentations


    • Plan an attack from reconnaissance to initial access to mission target and finally to successful exfiltration/egress


    • Experience with scripting and editing existing code and programming, including Perl, Python, Ruby, Bash, C/C++, C#, or Java


    • Use automation and scripting languages


    • Read and write relevant programming languages


    • Experience rooting or jailbreaking mobile devices.


    • Experience with LTE and GSM protocols


    • Working knowledge of Frida or Radare2


    • Experience conducting security assessments on IoT platforms


    • Familiar with iOS or Android operating systems


    • Experience performing network and application penetration testing


    • in-depth understanding of enterprise networks and security defenses


    • Understanding of network protocols, *nix, and Windows operating system functionality


    • Strong knowledge of cybersecurity tooling and technology


    • Experience or strong understanding of cloud concepts and platforms

    Benefits:

    At GEICO, we make sure you have the support and resources to leverage and develop your skills, secure your financial future, and take care of your health and well-being. GEICO continually seeks to provide a workplace where everyone can be their authentic self. To help achieve this goal, we support associate-led Employee Resource Groups that foster a true sense of community. Through GEICO's competitive benefits offerings and various training and development opportunities, we have you covered with our Total Rewards Program* that includes:

    • Premier Medical, Dental and Vision Insurance with no waiting period**
    • Paid Vacation, Sick and Parental Leave
    • 401(k) Plan
    • Tuition Reimbursement
    • Paid Training and Licensures

    *Benefits may be different by location. Benefit eligibility requirements vary and may include length of service.

    Coverage begins on the date of hire. Must enroll in New Hire Benefits within 30 days of the date of hire coverage to take effect.

    GEICO is proud to be an equal opportunity employer. We are committed to cultivating an environment where equal employment opportunities are available to all associates and job applicants regardless of race, color, religious creed, national origin, ancestry, age, gender, pregnancy, sexual orientation, gender identity, marital status, familial status, disability or genetic information, in compliance with applicable federal, state and local law. GEICO celebrates diversity and believes it is critical to our success. As such, we are committed to recruit, develop and retain the most talented individuals to join our team.

    #LI-RD2

    Annual Salary

    $72, $185,000.00

    The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate/ annual salary to be offered to the selected candidate. Factors include, but are not limited to, the scope and responsibilities of the role, the selected candidate's work experience, education and training, the work location as well as market and business considerations.


  • Cyber Security Innovations

    Penetration Tester

    3 days ago


    Cyber Security Innovations Washington, United States

    Job Description · Job DescriptionCSI is looking for a Penetration Tester to join our team on an upcoming Security and Privacy Assessment project in the non-profit telecommunications industry. The Pen Tester will complement risk assessments as ongoing defense against technical sec ...

  • Fusion Technology LLC

    Penetration Tester

    1 week ago


    Fusion Technology LLC Washington, United States

    Job Description · Job DescriptionPenetration Tester · Who are you? · Trusted Employee: The Government trusts you and so do we. You possess an active Public Trust security clearance (Or are able to obtain a Public Trust clearance). You must also be able to obtain Department of Hom ...

  • Graham Technologies

    Penetration Tester

    3 days ago


    Graham Technologies Washington, United States

    Job Description · Job DescriptionJob Overview: · Graham Technologies (GTECH) is seeking a Penetration Tester whose primary duties will be providing penetration tests to find, exploit, and report technical risks and recommending steps to remove, mitigate, or avoid each discovered ...

  • QinetiQ

    Penetration Tester

    11 hours ago


    QinetiQ Reston, United States

    Company Overview · We are a world-class team of professionals who deliver next generation technology and products in robotic and autonomous platforms, ground, soldier, and maritime systems in 50+ locations world-wide. Much of our work contributes to innovative research in the fie ...

  • SkyePoint Decisions

    Penetration Tester

    5 days ago


    SkyePoint Decisions Arlington, United States

    Overview: · SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovati ...

  • Booz Allen Hamilton

    Penetration Tester

    3 weeks ago


    Booz Allen Hamilton Fort Belvoir, United States Full time

    Job Number: R0194138 · Penetration TesterThe Opportunity: · Are you looking for an opportunity to use your technical expertise and grow your skills to provide technical solutions in support of our warfighters? We're looking for an Red Team Penetration Tester to help test, configu ...

  • Foxhole Technology

    Penetration Tester

    3 weeks ago


    Foxhole Technology Herndon, United States

    Job Title: Senior Penetration Tester · Clearance: Secret · Location: Leesburg, VA (Onsite 3 days per week) · Discover an exciting career at Foxhole Technology, an innovative IT Engineering firm founded in 2007. As leaders in cybersecurity, DEVSEC OPS, Agile Developemnt, Cloud and ...

  • Delmock Technologies Inc

    Penetration Tester

    1 week ago


    Delmock Technologies Inc Lanham, United States

    Job Description · Job DescriptionAbout Our Company: · Join Delmock Technologies, Inc. (DTI), a leading HUBZone business in Baltimore, known for delivering sophisticated IT and Health solutions with a commitment to ethics, expertise, and superior service. Actively engaged in the l ...

  • California Creative Solutions Inc.

    Penetration Tester

    1 week ago


    California Creative Solutions Inc. Columbia, United States

    Job Description · Job DescriptionLead Penetration Tester · A Lead Penetration Tester is needed to join a high performing agile team using the Scaled Agile Framework (SAFe) methodology. The selected candidate will work on a team of cyber Subject Matter Experts (SMEs) who are provi ...

  • Strategic Analytix

    Penetration Tester

    3 weeks ago


    Strategic Analytix Fort George G Meade, United States

    About Strategic Analytix Strategic Analytix (SA) is an IT engineering and management consulting firm focuses on mission critical services and solutions to the Federal Government including the Department of Defense (DOD), the Intelligence Community (IC) and Civilian Healthcare age ...

  • Leidos

    Penetration Tester

    2 weeks ago


    Leidos Ashburn, United States Full time

    Description · At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to ...

  • QinetiQ US

    Penetration Tester

    4 days ago


    QinetiQ US Reston, United States

    Company Overview · We are a world-class team of professionals who deliver next generation technology and products in robotic and autonomous platforms, ground, soldier, and maritime systems in 50+ locations world-wide. Much of our work contributes to innovative research in the fi ...

  • Synergy Interactive

    Penetration Tester

    3 weeks ago


    Synergy Interactive Rockville, United States

    Synergy Interactive is partnered with a notable financial institution and they are seeking a skilled Penetration Tester (Ethical Hacker) to enhance their cybersecurity team. In this role, you will conduct rigorous assessments to identify vulnerabilities, ensuring the protection o ...

  • iNovex Information Systems

    Penetration Tester

    3 weeks ago


    iNovex Information Systems Columbia, United States

    Job Brief · iNovex is seeking a Penetration Tester to break into computer systems and applications, and in the end, help make those systems more secure. · Job Description · ORANGE · you glad that you chose · iNovex · ? · iNovex · was built on the principle that people matt ...

  • Allyon

    Penetration Tester

    3 weeks ago


    Allyon Ashburn, United States

    Summary: · Allyon, Inc. is an established IT and Healthcare Services firm and we love what we do It makes our day when we are able help talented individuals achieve their career goals while at the same time helping our clients build quality teams. If you are interested in joini ...

  • Peraton

    Penetration Tester

    3 weeks ago


    Peraton Washington, United States Full time

    Responsibilities · Peraton is seeking a Penetration Tester who will have the opportunity to provide support to technical processes and technical management processes in support of comprehensive test and evaluation associated with test support, operational verification of installa ...

  • CACI International

    Penetration Tester

    3 weeks ago


    CACI International Chantilly, United States

    Penetration Tester · Job Category: Information Technology · Time Type: Full time · Minimum Clearance Required to Start: TS/SCI with Polygraph · Employee Type: Regular · Percentage of Travel Required: None · Type of Travel: None · * * · What Youll Get to Do: · + Perform c ...

  • Delmock Technologies

    Penetration Tester

    4 days ago


    Delmock Technologies Laurel, United States

    · About Our Company: · Join Delmock Technologies, Inc. (DTI), a leading HUBZone business in Baltimore, known for delivering sophisticated IT and Health solutions with a commitment to ethics, expertise, and superior service. Actively engaged in the local community, DTI creates o ...

  • Silotech Group, Inc

    Penetration Tester

    3 weeks ago


    Silotech Group, Inc Washington, United States

    Overview Silotech Group provides Advanced Cyber Solutions, Intelligence Solutions, Enterprise/Cloud IT Services and Products, and Managed IT/Security Services to Federal, State, and Commercial clients. We provide Federal Government and Commercial clients with customized, agile te ...

  • Peraton

    Penetration Tester

    2 weeks ago


    Peraton Washington, United States

    About Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deli ...