Penetration Tester - Arlington, Virginia
2 days ago

Job description
Description
gTANGIBLE Corporation (gTC), , is a C corporation and a registered Government contractor that provides services and solutions in:
- National Security Programs
- Professional, Administrative, and Management Support
- Mission and Warfighter Support
We are a Service-Disabled Veteran-Owned Small Business (SDVOSB) and the founder has years of successful experience in the Government contracting arena. Our leadership team is an exceptional group of Government contracting professionals. gTANGIBLE is in the process of identifying candidates for the following position.
Requisition Type: Full Time
Position Status: Contingent
Position Title: Penetration Tester
Location: Arlington, VA
Security Clearance:Secret
Duties and Responsibilities
The Penetration Tester supports this Transportation Security Administration Information Technology (TSA IT) Task Order (TO) by performing security attacks against all types of IT assets, and exploiting vulnerabilities found to determine if further reach within the engagement scope can be obtained. Provide final reports and presentations of the findings identified to personnel with a variety of technical knowledge to enable TSA IT management to make informed decisions about how to address the identified findings. Occasional off-hours testing and periodic travel required. Duties include the following:
- Conducts penetration testing activities on TSA network.
- Engages with TSA stakeholders to tailor the Rules of Engagement and create test plans.
- Penetration testing will use both automated tools and manual techniques in order to identify vulnerabilities and exploit vulnerabilities.
- Analyzes and validates test results and generates final reports and presents findings to the TSA IT management to make informed decisions on how to address the identified findings.
- Provides support, review, and recommendations of system security design, configuration, security findings, and data flow.
- Conducts Participates with stakeholders regarding findings meetings and responses.
- Coordinates with the TSA Security Operations Center (SOC) to provide assistance with Security Information and Event Management (SIEM) detection content to improve the TSA SOC's ability to detect activities performed during testing engagements.
- Provides Product and Technology Evaluations (NPTE) on technologies that are used for screening operations at the airports. Evaluation of technologies proposed by the Innovation Task Force's Advancing the Checkpoint Environment (ACE), with Requirements and Capability Analysis (RCA) features, in support of the Acquisitions and Program Management (APM) teams in the Transportations Security Integration Facility (TSIF).
- The overall functions include, Cybersecurity Requirements Determination, Scoping and Security Testing Strategy, Security Test Documentation, Security Testing, Analysis, and Final Reporting with Findings Meetings.
Knowledge and Qualifications
- At least (12) years of technical IT security experience.
- At least (8) years of experience performing Penetration Testing.
- At least (5) years of experience performing Penetration Testing for Federal IT systems.
- Ability to work independently/minimal oversight.
- Experience using automated tools: Kali Linux, AppScan, BurpSuite, SOAPUI, AppDetective, Cobalt Strike, RedSeal, and Nessus.
- Experience with penetration testing methodologies including Open Source Intelligence, Discovery, Enumeration, Vulnerability Identification, Exploitation, and Post Exploitation techniques and tools.
- Experience with manual testing techniques.
- Required Certifications: OSCP, CEH, GWAPT, CISSP or other equivalent.
- Experience with custom programming languages: Python, Perl, Powershell, etc.
- Fluent knowledge of NIST and FIPS security controls, DISA STIGs, and CIS standards.
- Fluent in the OWASP Top 10 weaknesses.
- Experience with switches, routers, firewalls, VPN, ISE; Palo Alto firewalls;, VPN; Load Balancers, AV, Host and Network based devices, and Enterprise Security Tools.
- Fluent TCP/IP, SMB, SSH, NetBios, SOAP, REST, LDAP, SAML, SSO.
gTANGIBLE Corporation is an equal opportunity employer and does not discriminate against any employee or applicant because of race, age, sex, color, physical or mental disability, religion, sexual orientation, marital status, national origin, or political affiliation.
Similar jobs
· Responsibilities · Peraton is seeking an experienced Cyber Penetration Tester to become part of Peratons' Federal Strategic Cyber programs. · Location: Northern VA; Hybrid - flex as long as person can come on-site as/when needed. · In this role, you will: · Support the Red ...
2 days ago
Peraton is seeking an experienced Cyber Penetration Tester to become part of Peratons' Federal Strategic Cyber programs. · ...
1 month ago
Peraton is seeking an experienced Cyber Penetration Tester to become part of Peratons' Federal Strategic Cyber programs. · In this role you will support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems. · Support the Red Cel ...
1 month ago
We're seeking a skilled Penetration Tester to help strengthen our security posture by identifying vulnerabilities before adversaries do. · ...
1 month ago
Peraton is seeking an experienced Cyber Penetration Tester to become part of Peratons' Federal Strategic Cyber programs. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technol ...
1 month ago
Mili Chain needs penetration testers to help test securities before launch.Conduct vulnerability assessments. · Analyze system vulnerabilities. · Perform reverse engineering. · ...
1 month ago
Mili Chain is a petty cash and spend management platform that needs to beef up security before launch looking for multiple penetration tester to help test our securities and help us launch on time. · ...
1 month ago
This job requires a Penetration Tester with active TS/SCI clearance to perform Vulnerability Assessment and Penetration Testing across web apps, mobile apps, APIs, networks, cloud, and infrastructure. · ...
1 month ago
We are seeking an experienced penetration tester to join our team at Net2Source Inc. The ideal candidate will have good experience in application security (Saas), strong experience in pen testing, API testing, and good communication skills. · ...
3 weeks ago
Perform Vulnerability Assessment and Penetration Testing (VAPT) across web apps mobile apps APIs networks cloud and infrastructure. · ...
1 month ago
We are seeking a Penetration Tester to join our team at Net2Source Inc. The successful candidate will have strong concepts of OWASP Top 10 vulneraries and be able to perform penetration testing on web applications. · ...
3 weeks ago
· We are seeking a highly skilled and proactive Penetration Tester to join our cybersecurity team. In this role, you will identify vulnerabilities and test the security of networks, applications, · and systems by simulating real-world attacks.*** Please note that our job opening ...
1 week ago
A leading financial services organization is seeking a Penetration Tester to strengthen application, network, and cloud security across enterprise environments. · ...
2 weeks ago
We are seeking candidates with a passion for offensive security who will drive the security of critical banking applications through hands-on testing. · ...
3 weeks ago
Drive the security of critical banking applications and platforms through hands-on offensive testing. As an Assessments & Exercises Vice President in the Cybersecurity and Technology Controls organization, you will play a key role in safeguarding the firm's most vital assets. · ...
1 week ago
Drive the security of critical banking applications and platforms through hands-on offensive testing. · Plan, scope, and execute penetration testing engagements across a variety of environments. · ...
3 weeks ago
BAE Systems Cybersecurity - Attack Surface Management has an opening for Penetration Tester to assess security controls and work closely with stakeholders to improve overall security posture. · ...
1 week ago
Strategic Analytix is looking for a skilled Penetration Tester who will serve as the Subject Matter expert providing testing expertise of the Risk Management Framework. · Perform vulnerability and penetration testing using a wide variety of tools. · ...
1 week ago
Conducts testing and analysis to identify vulnerabilities and potential threat vectors in systems and networks. · ...
1 week ago
BAE Systems Cybersecurity - Attack Surface Management has an opening for Penetration Tester to assess security controls and work closely with stakeholders to improve overall security posture. · ...
1 week ago