Talent.com
Penetration Tester
Penetration TesterAerstone • Springfield, VA, US
No longer accepting applications
Penetration Tester

Penetration Tester

Aerstone • Springfield, VA, US
5 days ago
Job type
  • Full-time
Job description

Job Description

Job Description
Salary:

Welcome to Aerstone, a place where you get to share your skills and experience with a team of high performing security professionals and in turn, improve on your own capabilities. Working together in a collaborative environment helps our business grow, but more importantly, it will help you grow. At Aerstone, we foster greatness, we champion accountability, and we value kindness.


As a Penetration Tester, you will join our growing testing team and have the opportunity to support, and lead, technical testing and assessment activities including vulnerability scanning, configuration reviews, web application scanning, database scanning, observation or over the shoulder technical control interview sessions, cloud security benchmark scanning, and infrastructure as code (IaC) security analysis. You will have the chance to evaluate test results against compliance standards and conduct risk analyses of findings in order to generate detailed assessment reports to help our customers gain security assurance and secure their systems.

We at Aerstone are highly committed to creating a collaborative work environment where everyone contributes and gains from our collective experiences. It is our belief that creating a culture based on synergy and the coordinated optimization of individual strengths results in mutual benefit and growth.

If this is you, we welcome your interest to join us!


Responsibilities:

  • Support and lead testing of web applications and APIs for susceptibility to SQL injections, Cross-Site Scripting, and other input attacks
  • Support and lead technical evaluation of cloud-based applications and systems, assessing secure configurations and settings of PaaS, SaaS, and IaaS environments. This may include use of automated cloud assessment tools or industry best practices.
  • Support and lead technical assessments of network infrastructure, servers, endpoints, and databases.
  • Perform pre-assessment research and preparation including reconnaissance, documentation and configuration review, and customer interviews.
  • Conduct automated credentialed vulnerability scanning against databases using commercial and open-source scanning tools.
  • Assess compliance posture against regulatory requirements mainly including NIST SP 800-53, and may include OWASP ASVS, and ISO 27001.
  • Conduct reviews of system configurations for identification of security weaknesses or misconfigurations.
  • Research known vulnerabilities and manually validatescannerfinding.
  • Document security weaknesses, including steps to reproduce.
  • Analyze security findings, including risk analysis and root cause analysis.
  • Research and propose practical remediation.


Years of Experience Required: 5+ years

Education Requirements:Bachelors Degree

Required Skills/Qualifications/Certifications:

  • Strong knowledge and experience with Linux based operating systems and Linux based testing tools
  • Experienced with common penetration testing tools and frameworks (Kali Linux, Metasploit, Burp Suite / ZAP, Nessus, etc.)
  • Experienced with virtual machine platforms and remote testing solutions
  • Experienced with cloud computing infrastructures and cloud assessment techniques and tools
  • Experienced with NIST SP 800-53 controls and testing against these requirements
  • Experienced with testing methodologies such as NIST SP 800-115, OSSTMM, or the OWASP Testing Guide.
  • Reliable team player
  • Independent / capable of working effectively and efficiently with minimal supervision
  • Strong time management skills
  • Highly organized and detail oriented
  • Understanding of Internet (HTTP, FTP, etc.) and network (SMB, TCP/IP, etc.) protocols
  • Working knowledge with both Windows and Unix operating systems
  • Technologist mentality (follows, learns, and applies technology trends through self-initiation)
  • Persistent and undeterred work ethic

PreferredSkills/Qualifications/Certifications:

  • Able to properly install, configure, and run common open-source testing tools
  • Experience with web languages including JavaScript, PHP, Java, Swift, and .NET
  • Familiarity with Microsoft SQL Server and Oracle database concepts
  • Familiarity with application DevOps concepts, tools, and technologies
  • Scripting experience (Python, Bash, Ruby, PowerShell, Command Shell, etc.)
  • Experience developing MetaSploit modules, Nessus plugins, and exploit automation
  • Relevant certifications a plus (OSCP, OSCE,CISSP, GPEN, C|EH, Security+, Network+, etc.)


Clearance:

Applicants selected will be subject to a security investigation and may need to meet eligibility requirements.

Compensation:

At Aerstone, we value your time and wellbeing. Our benefit offerings include healthcare, retirement plan, flexible leave program, and training and certification assistance. See a little bit more about those benefits below:

  • Health Care:

Aerstone pays for 100% of the costs of Carefirst medical and pharmacy up to each employees Annual Deductible.

We also offer excellent dental and vision plans through Concordia Dental and Superior Vision. Aerstone pays the premiums for employees. Aerstone also provides $50,000 in life insurance to each employee and pays the premiums for a long-term disability insurance policy.


  • Retirement Plan:

Aerstone offers a 401(k) plan through Fidelity Investments with 10% profit sharing.

  • Flexible Leave Program:

Aerstone has a flexible leave policy, which means that everyone is on their honor to put in an honest days work for an honest days pay. You take the time you need, when you need it.

  • Training and Certification Assistance:

Aerstone recognizes that technical training is an important part of professional development, and extremely valuable to the company.

We have always been committed to budgeting funds for yearly employee training and encourage all employees to develop their own training plan.

Possible training includes keeping current on industry or technology changes and enhancements, learning new software tools and concepts, attending industry events, earning CPE credits as required to maintain existing certifications, and achieving new certifications


EEOC:

Equal Employment Opportunity has been, and will continue to be, a fundamental principle at Aerstone, where employment is based upon personal capabilities and qualifications without discrimination because of race, color, religion, sex, age, national origin, familial status, disability, veteran status, sexual orientation, health/genetic information, or any other protected characteristic as established by law.

In compliance with federal EEOC regulations, the selected employee will work on a cleared contract and therefore be required to hold U.S. citizenship.

Create a job alert for this search

Penetration Tester • Springfield, VA, US

Similar jobs
Penetration Test Lead

Penetration Test Lead

ZTI Solutions, LLC • Falls Church, Virginia, United States
Full-time
Quick Apply
This position is contingent upon contract award.Penetration Test Leads plan and execute complex offensive security assessments identifying exploitable vulnerabilities before adversaries can.This ro...Show more
Last updated: 30+ days ago
Travel Mammography Tech - $2,323 to $2,515 per week in Fredericksburg, VA

Travel Mammography Tech - $2,323 to $2,515 per week in Fredericksburg, VA

AlliedTravelCareers • Fredericksburg, VA, US
Full-time +1
AlliedTravelCareers is working with Aya Healthcare to find a qualified Mammography Tech in Fredericksburg, Virginia, 22401!.Aya Healthcare has an immediate opening for the following position: Mammo...Show more
Last updated: 14 hours ago • Promoted • New!
Senior Readiness Tester

Senior Readiness Tester

Fusion Innovation • Chantilly, VA, United States
Full-time
FusionInnovation's recent growth has earned us a top spot in the Inc 5000 FastestGrowing Private Companies in America and in Washington Business Journal's BestPlaces to Work multiple years in a row...Show more
Last updated: 15 days ago • Promoted
Penetration Tester - Part Time & Remote

Penetration Tester - Part Time & Remote

TestPros • Sterling, VA, US
Remote
Full-time +1
Quick Apply
Company Overview TestPros is a successful and growing business, established in 1988 to provide Information Technology (IT) technical support services to a wide range of Commercial and U.Federal, St...Show more
Last updated: 30+ days ago
Penetration Tester

Penetration Tester

Leidos Inc • Ashburn, Virginia, United States
Full-time
Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber ...Show more
Last updated: 24 days ago • Promoted
Tester Senior

Tester Senior

Guru Schools • McLean, VA, United States
Full-time
Mclean VA / Plano TX - 5 Days Onsite (100% Onsite).Test and ensure quality of ServiceNow modules (IRM/GRC, ITSM, HRSD, CSM) through manual and automated testing.Create and run test cases and automa...Show more
Last updated: 30+ days ago • Promoted
Senior Readiness Tester

Senior Readiness Tester

Peraton • Chantilly, VA, United States
Full-time
Specific Responsibilities include:.Ensure the operational readiness of products before their deployments.Execute and support operational testing.Working as expert, conduct research and evaluate tec...Show more
Last updated: 30+ days ago • Promoted
Penetration Tester

Penetration Tester

Altus Consulting Corp • Herndon, VA, USA
Full-time
Quick Apply
Altus Consulting seeks a seasoned cybersecurity professional to spearhead our penetration testing initiatives.As a key member of our elite team,.Design and execute sophisticated penetration tests a...Show more
Last updated: 30+ days ago
Remote Product Tester – $45/hr + Free Products – Start Now!

Remote Product Tester – $45/hr + Free Products – Start Now!

OCPA • Quantico Base, Virginia, us
Remote
Part-time +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies.We guarantee 15-25 hours per week with an hourly pay of bet...Show more
Last updated: 30+ days ago • Promoted
Senior Penetration Tester - Remote & Red Team Focus

Senior Penetration Tester - Remote & Red Team Focus

Ernst & Young Oman • McLean, VA, United States
Remote
Full-time
A global consulting firm is hiring a Cybersecurity – Attack and Penetration Tester to lead security solutions for clients.Candidates must have a bachelor's degree, significant experience in penetra...Show more
Last updated: 7 days ago • Promoted
Test Engineer (AN/BYG1)

Test Engineer (AN/BYG1)

Jobot • Manassas, VA, US
Full-time
Project Engineer needed for global engineering, procurement, and construction (EPC) contractor!.This Jobot Job is hosted by: Jaclyn D'Amore.Are you a fit? Easy Apply now by clicking the "Apply" but...Show more
Last updated: 2 days ago • Promoted
Usage Tester - Work From Home - $45 per hour

Usage Tester - Work From Home - $45 per hour

GL1 • Manassas Park, Virginia
Remote
Part-time +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies.We guarantee 15-25 hours per week with an hourly pay of bet...Show more
Last updated: 30+ days ago • Promoted
Tester-Expert

Tester-Expert

VTG Defense • Chantilly, VA, United States
Full-time
VTG is seeking a talented and experienced Expert Tester to join our dynamic and innovative team in Chantilly, VA.Develops and implements quality control methodologies to ensure compliance with qual...Show more
Last updated: 9 days ago • Promoted
Senior Penetration Tester at Gray Tier Technologies Ashburn, VA

Senior Penetration Tester at Gray Tier Technologies Ashburn, VA

Gray Tier Technologies • Ashburn, VA, United States
Full-time
Senior Penetration Tester job at Gray Tier Technologies.Developing pen testing resources.Support public facing sites and high value assets within the department.Establish a pen testing program for ...Show more
Last updated: 11 days ago • Promoted
Tester

Tester

Gridiron IT • Falls Church, VA, United States
Full-time +1
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.Supports ServiceNow feature development and produc...Show more
Last updated: 30+ days ago • Promoted
Work From Home Survey Taker – Get Paid Up to $25 Per Survey

Work From Home Survey Taker – Get Paid Up to $25 Per Survey

Earn Haus • Fredericksburg, VA, US
Remote
Full-time +1
We are urgently looking for people interested in taking online surveys for Fortune 500 brands.If you are a self-starter, looking for flexible hours throughout the week, this may be for you! Earn up...Show more
Last updated: 30+ days ago • Promoted
Survey Taker: Earn up to $25 per survey (Remote)

Survey Taker: Earn up to $25 per survey (Remote)

Earn Haus • Fredericksburg, VA, US
Remote
Full-time +1
Looking for people to participate in taking online surveys for Fortune 500 brands.All you need to do is complete online surveys by sharing your opinion.You will help influence brand decisions on se...Show more
Last updated: 30+ days ago • Promoted
Remote Product Tester - $25-45 per hour

Remote Product Tester - $25-45 per hour

Online Consumer Panels America • Gaithersburg, Maryland, US
Remote
Part-time +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies.We guarantee 15-25 hours per week with an hourly pay of bet...Show more
Last updated: 30+ days ago • Promoted