Talent.com
IT Security Specialist - Penetration Tester

IT Security Specialist - Penetration Tester

Attainx Inc.Silver Spring, Maryland, United States, 20910
5 days ago
Job type
  • Full-time
Job description

Attainx Inc.

Job Title : IT Security Specialist – Penetration Tester

Location : Hybrid (Reside within a commutable distance of Silver Spring, MD to work onsite as required)

Citizenship : US Citizen

Security Clearance : Must be able to obtain and maintain government agency public trust.

Exemption Status : Computer Exempt

AttainX, Inc. is in search of a highly energetic Penetration Tester to join our team on a cyber security program supporting our US federal government client.

Are you a seasoned penetration tester with a passion for uncovering vulnerabilities and securing complex systems? We’re looking for a highly skilled and experienced professional with a minimum of 5 years of proven expertise in penetration testing and ethical hacking to join our team. In this role, you’ll take a hands-on approach to identify, exploit, and report security weaknesses across diverse environments, including AWS, Azure, and on-premises infrastructure. Your work will directly contribute to fortifying critical systems and protecting sensitive data from evolving cyber threats.

If you thrive in dynamic, high-stakes environments and excel at devising creative solutions to complex security challenges, we want to hear from you. Join us in our mission to build a safer digital future.

Qualifications and Education Requirements :

Basic Qualifications :

  • A minimum of 5 years of proven penetration testing and ethical hacking experience.
  • Hands-on experience in penetration testing across AWS, Azure, and On-Premise environments.
  • At least 5 years of recent experience (within the last 6 years) in applying IT security concepts, methodologies, principles, procedures and using industry-standard IT security tools (e.g. Burp Suite, Metasploit, Wireshark).
  • At least 5 years of recent experience (within the last 6 years) with enterprise architecture methodologies, concepts, procedures, principles, and tools.
  • At least 5 years of recent experience (within the last 6 years) in contingency planning and backup and recovery best practices and application of NIST guidance in this area.
  • At least 5 years of recent experience (within the last 6 years) in using technical testing tools (Tenable Security Center, ArcSight, IBM Big Fix, etc.).
  • At least 5 years of recent experience (within the last 6 years) in conducting penetration testing or the ability to bring in a penetration tester when required.
  • At least 5 years of performing assessments of Federal Information Systems using the Risk Management Framework.
  • Possess at least one of the following professional Certifications required by DOC Enterprise Cybersecurity Policy (ECP) Annex C-1 :
  • Controls Assessor.
  • Certified Information Systems Security Professional (CISSP).
  • Certified Information Systems Auditor (CISA).
  • GIAC Certified Incident Handler (GCIH).
  • GIAC Systems and Network Auditor (GSNA).
  • Electronic Commerce Council Certified Ethical Hacker (CEH).
  • ISC2 Certified in Governance, Risk and Compliance (CGRC).
  • Security Certified Network Professional (SCNP).
  • Security Certified Network Architect (SCNA).
  • Proficiency in verbal and written communications.
  • Proficiency in interview skills.
  • Proficiency in interpersonal skills.
  • Proficiency in handling multiple tasks concurrently.
  • Proficiency in project and time management.
  • Ability to adjust to changing priorities.
  • Ability to work in a cohesive team-oriented environment.
  • Must be a US Citizen able to obtain and maintain a Moderate Public Trust.

Preferred Qualifications :

  • Knowledge of DOC, NOAA, and NWS IT security policies and implementation standards or those of similar sized organizations AND comprehensive understanding of NIST guidance toinclude NIST Special Publications and Federal Information Processing Standards.
  • Self-starter, highly motivated individual who adapts to a dynamic work environment.
  • Strong attention to detail with an ability to operate effectively across multiple priorities.
  • Education / Experience :

    Ideal for candidates with 5–7 years of hands-on penetration testing experience who are looking to advance into intermediate-level roles.

    Skills :

    Cyber Security, Penetration Tester

    Duties :

    We are searching for Penetration Tester to support Security Assessment and Authorization initiatives for our Government client. Job duties include :

  • Protocol analysis, vulnerability discovery and exploitation, post exploitation impact analysis, and physical security.
  • Highly technical problem-solver who understands software architectures, security, communication protocols, virtualization, and hardware, and work with other engineers to the resolution of problems in design, development, and operations.
  • Perform manual and automated firmware analysis on target devices.
  • Perform pen tests, fuzzing and custom exploit attacks against client systems.
  • Review deployment architectures, topologies and conops for compliance regulatory security mandates.
  • Produce security reports suitable for submission to regulatory bodies.
  • Conduct hands-on technical testing beyond automated tool validation, including full exploitation and leveraging of access within multiple environments.
  • Conduct scenario-based security testing, or red teaming to identify gaps in detection and response capabilities of client end systems.
  • Conducting research and testing in support of client requirements.
  • Designing, implementation, and integration of security solutions.
  • Designing, development and support of the company’s line of technology products.
  • Analyzes information security systems and applications.
  • Recommends and develops security measures to protect information against unauthorized modification or loss.
  • Familiar with a variety of the field’s concepts, practices, and procedures.
  • Relies on experience and judgment to plan and accomplish goals.
  • Performs a variety of complicated tasks.
  • Non-Essential Functions :

  • General Duty Requirements.
  • Work Location :

    Shall perform all functional and technical tasks remotely, hybrid work environment with occasional travel for client engagement, industry events, contract negotiations or at AttainX facility.

    About Us :

    AttainX Inc. is SBA Certified 8(a), Women Owned Small Business (WOSB), Economically Disadvantaged WOSB (EDWOSB), CMMI Level 3, ISO 9001 : 2015 certified QMS and Silver Level SaFe Partner. For more than 12 years, AttainX, Inc. has delivered emergent technologies, software products, and high-quality services that meet the needs of our Federal Government customers.

    The last 4 years have shown significant company growth as we have increased our contracts portfolio and hold the “Best in Class” contract vehicles, GSA MAS and OASIS Small Business and 8(a) Pools 1, 2 and 3. In addition, we are prime on several Agency Specific IDIQ’s and BPA’s with the National Oceanic and Atmospheric Administration, Department of Energy, Navy, Health and Human Service and the Defense Intelligence Agency.

    AttainX is dedicated to quality and best practices for the services we provide. We understand our people are the key ingredient to ensuring our customers Mission and Goals are met with excellence.

    Benefits :

    We are proud to offer competitive compensation and benefits packages to include paid vacation, medical, dental, vision, matching 401K plan, tuition / training reimbursement, and Long & Short-Term Disability.

    EEO Commitment :

    AttainX is an equal employment opportunity employer, we are committed to providing a workplace that is free from discrimination based on Title VII of the Civil Rights Act, VEVRAA and Section 503, or other status protected by applicable federal, state, local, or international law. These protections also extend to applicants.

    Accommodation :

    If you are an individual with a disability and would like to request a reasonable workplace accommodation, please send an email to HR@AttainX.com. Indicate the specifics of the assistance needed.

    Physical Demands :

    Sitting and working on a computer for long, continuous periods each day; effective communications by telephone, email, and face-to-face; standing, walking, and sitting; handling and feeling objects or controls; reaching; talking and hearing; lifting and / or moving up to 10 pounds; and specific vision abilities including close vision, distance vision, color vision, peripheral vision, depth perception, and the ability to adjust and focus.

    Work Environment : The noise level in the work environment is usually moderate.

    Compensation details : 130000-150000 Yearly Salary

    PIfd22d0983264-30511-38676212

    Create a job alert for this search

    Penetration Tester • Silver Spring, Maryland, United States, 20910

    Related jobs
    • Promoted
    Security Specialist (A&S Security) - TS / SCI required

    Security Specialist (A&S Security) - TS / SCI required

    LMIWashington, DC, US
    Full-time
    LMI is seeking a Security Specialist who will provide security administrative expertise for our government customer in specialties such as Physical, Information, and Industrial Security.The positio...Show moreLast updated: 24 days ago
    • Promoted
    Junior Information Security Analyst

    Junior Information Security Analyst

    ALTA IT ServicesSpringfield, VA, US
    Full-time
    Junior Information Security Analyst Springfield, VA – onsite Compensation : $75,000 - $83,500 annually Security Clearance : Secret clearance is required DUTIES AND RESPONSIBILITIES : • Review cyber in...Show moreLast updated: 3 days ago
    IT Service Desk Specialist - SECRET clearance required

    IT Service Desk Specialist - SECRET clearance required

    Tesla Laboratories. Inc.Washington, DC, US
    Full-time
    Quick Apply
    Active Secret Clearance Required.The position is on site in Washington DC with FinCen.Works as part of an IT Service Desk team responsible for Tier 1-3 support. Tasks include maintaining and managin...Show moreLast updated: 30+ days ago
    IT Security Engineer (ATO / RMF / POA&M)

    IT Security Engineer (ATO / RMF / POA&M)

    BLH Technologies, Inc.Rockville, MD, USA
    Full-time
    Quick Apply
    BLH Technologies was founded in 2003 and is headquartered in Rockville, Maryland.BLH provides technology solutions for our Federal and commercial clients in the areas of Artificial Intelligence, Ma...Show moreLast updated: 30+ days ago
    • Promoted
    Physical Security Specialist (Industrial Security Analyst 4)

    Physical Security Specialist (Industrial Security Analyst 4)

    Clearance JobsAlexandria, VA, US
    Full-time
    Mission Technologies is currently seeking a Physical Security Specialist to join the team.As a key player in our organization, you'll be responsible for developing, implementing, and overseeing the...Show moreLast updated: 30+ days ago
    • Promoted
    Insider Threat Program Systems SME

    Insider Threat Program Systems SME

    LeidosBowie, MD, US
    Full-time
    The Digital Modernization Sector at Leidos currently has an opening for a Systems Management SME supporting the HEITS Contract as part of an Insider Threat Program (ITP). This is an exciting opportu...Show moreLast updated: 1 day ago
    • Promoted
    Security Classification Guide Specialist

    Security Classification Guide Specialist

    Clearance JobsQuantico, VA, US
    Full-time
    Top Secret / Sci Security Clearance Job.AMERICAN SYSTEMS is an employee-owned federal government contractor supporting national priority programs through our strategic solutions in the areas of Infor...Show moreLast updated: 30+ days ago
    IT Service Desk Specialist - TOP SECRET clearance required

    IT Service Desk Specialist - TOP SECRET clearance required

    Tesla Laboratories. Inc.Vienna, VA, US
    Full-time
    Quick Apply
    Active Top Secret Clearance Required.The position is on site in Vienna VA (Tysons Corner area) with FinCen.Works as part of an IT Service Desk team responsible for Tier 1-3 support.Tasks include ma...Show moreLast updated: 30+ days ago
    • Promoted
    Insider Threat Program Investigative Team Analyst

    Insider Threat Program Investigative Team Analyst

    LeidosBowie, MD, US
    Full-time
    The Digital Modernization Sector at Leidos currently has an opening for a UAM Investigative Team Analyst supporting the HEITS Contract as part of the Department of Homeland Security (DHS) Insider T...Show moreLast updated: 7 days ago
    • Promoted
    • New!
    Sr. Information Security Consultant (Hiring Immediately)

    Sr. Information Security Consultant (Hiring Immediately)

    GuidehouseRESTON, VA, US
    Part-time
    Active Top Secret SCI with Polygraph.Guidehouse has an opportunity for a cleared Sr.Information Security Consultant to leverage their understanding of IC / DOD Risk Management Frameworks (RMF), conti...Show moreLast updated: 13 hours ago
    IT Subject Matter Expert - Technical & Security Lead

    IT Subject Matter Expert - Technical & Security Lead

    Rapid Cycle Solutions, LLCWashington, D.C., District of Columbia, United States
    Full-time
    Quick Apply
    IT Subject Matter Expert - Technical & Security Lead.Rapid Cycle Solutions LLC (RCS) is an innovative small business providing IT and management consulting services to the U.Federal Government ...Show moreLast updated: 30+ days ago
    • Promoted
    Asset Protection Specialist

    Asset Protection Specialist

    Home Depot (Retail)Capitol Heights, MD, US
    Full-time
    The Asset Protection Specialist is primarily responsible for preventing financial loss caused by theft and fraud and supporting safety and environmental program compliance in their assigned store / m...Show moreLast updated: 30+ days ago
    • Promoted
    Insider Threat Program Senior System Engineer

    Insider Threat Program Senior System Engineer

    LeidosAnnandale, VA, US
    Full-time
    The Digital Modernization Sector at Leidos currently has an opening for a Senior System Engineer supporting the HEITS Contract as part of the Department of Homeland Security (DHS) Insider Threat Pr...Show moreLast updated: 1 day ago
    Penetration Tester - Level IV

    Penetration Tester - Level IV

    Lucayan Technology Solutions LLCChantilly, VA, US
    Full-time
    Quick Apply
    Chantilly, VA | 🕒 Full-Time | 🔒 TS / SCI with Poly | Onsite Overview Lucayan Technology LLC is seeking a Level 4 Penetration Tester (Subject Matter Expert) to serve as a ...Show moreLast updated: 12 days ago
    • Promoted
    Security Specialist

    Security Specialist

    ManTechWashington, DC, US
    Full-time
    Shape the future of defense with MANTECH! Join a team dedicated to safeguarding our nation through advanced tech and innovative solutions. Since 1968, we've been a trusted partner to the Department ...Show moreLast updated: 30+ days ago
    • Promoted
    Security Specialist

    Security Specialist

    American SystemsSpringfield, VA, US
    Full-time
    American Systems is an employee-owned federal government contractor supporting national priority programs through our strategic solutions in the areas of Information Technology, Test & Evaluation, ...Show moreLast updated: 30+ days ago
    • Promoted
    Insider Threat Program User Activity Monitor Engineer

    Insider Threat Program User Activity Monitor Engineer

    LeidosAlexandria, VA, US
    Full-time
    The Digital Modernization Sector at Leidos currently has an opening for User Activity Monitor (UAM) Engineer supporting the HEITS Contract as part of the Department of Homeland Security (DHS) Insid...Show moreLast updated: 30+ days ago
    • Promoted
    Insider Threat Program Hunt Team Analyst

    Insider Threat Program Hunt Team Analyst

    LeidosFort Belvoir, VA, US
    Full-time
    The Digital Modernization Sector at Leidos currently has an opening for a Hunt Analyst supporting the HEITS Contract as part of the Department of Homeland Security (DHS) Insider Threat Program (ITP...Show moreLast updated: 30+ days ago
    • Promoted
    Security Access Control Specialist I

    Security Access Control Specialist I

    American SystemsQuantico, VA, US
    Full-time
    Security Access Control Specialist.AMERICAN SYSTEMS is an employee-owned federal government contractor supporting national priority programs through our strategic solutions in the areas of Informat...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cyber Security Detections Engineer

    Senior Cyber Security Detections Engineer

    ManTechSpringfield, VA, US
    Full-time
    Senior Cyber Security Detections Engineer.This role supports our Cyber Operations mission by providing critical detection and response capabilities. You will be part of an industry-leading organizat...Show moreLast updated: 30+ days ago