Washington, DC · Information Technology · Fully remote
We are looking for a Penetration Test Engineer to join our client’s team in support of a SOC program with their federal client. You will be responsible for conducting penetration testing, database scanning, web application scanning, and phishing exercises as part of a Security Operations Center. You will manage the penetration testing process end-to-end, ensuring the highest security and efficiency standards.
This is a remote position, however, due to occasional customer meetings, it is preferred that candidates reside in the Washington, DC metro area. This is a direct hire position with a salary range of $120-150k and requires a current DoD Top Secret clearance.
Responsibilities Include:
Conduct comprehensive penetration testing, including internal and external assessments.
Lead phishing exercises, database scans, and web application scans to identify vulnerabilities.
Manage all phases of the penetration testing process, from scoping to execution and reporting.
Develop detailed penetration testing documents such as scoping documents, Rules of Engagement (ROE), and reports.
Utilize various penetration testing tools, including but not limited to Nmap, Burp, curl, wget, Nessus, Nikto, and SQLMAP.
Perform detailed database and web application scanning using appropriate tools.
Write clear and compelling documentation that captures findings and recommendations.
Required Experience, Skills, and Qualifications:
Must be a US Citizen with a current DoD Top Secret Clearance.
Bachelor’s degree in computer science, information security, or a related field.
Certification in Penetration Testing (e.g., SANS or equivalent).
5+ years of related experience.
Proficiency in Python programming.
Experience leading internal and external penetration tests.
Experience with a wide array of penetration testing tools and methodologies.
Robust documentation and communication skills, with the ability to write clear, compelling, and technical reports. Will be required to provide a writing sample before the interview.