Senior Systems Security Specialist
Ashburn Consulting
Company Description Ashburn Consulting, LLC, based in the Washington, DC metropolitan area, specializes in providing network and network security solutions in complex environments to a select set of government and business clients. The company, an established leader in its field, is composed of an elite team of engineers and business consultants, each of whom is recognized, and highly regarded, within the network and security communities.
Job Description Ashburn Consulting, LLC is seeking a Senior Systems Security Specialist to perform internal and external penetration testing of networks, web applications, APIs, and cloud environments to identify security vulnerabilities and exploit paths, and other related tasks.
Work is equally performed in the field as well as in a normal office environment. Lifting (up to 50lbs) may be required. Ladder climbing may be required. Driving is required. All duties performed with or without reasonable accommodations. Additional Information Equal Opportunity Employer/Veterans/Disabled. An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status Ashburn Consulting is an Equal Opportunity Affirmative Action Employer.
In compliance with the American with Disabilities Act Amendments Act (ADAAA), if you have a disability and would like to request and accommodation in order to apply for a position with Ashburn Consulting, please e-mail View email address on click.appcast.io." Ashburn Consulting is an Equal Opportunity Affirmative Action Employer.
In compliance with the American with Disabilities Act Amendments Act (ADAAA), if you have a disability and would like to request and accommodation in order to apply for a position with Ashburn Consulting, please e-mail View email address on click.appcast.io."
Job Description Ashburn Consulting, LLC is seeking a Senior Systems Security Specialist to perform internal and external penetration testing of networks, web applications, APIs, and cloud environments to identify security vulnerabilities and exploit paths, and other related tasks.
- Conduct internal and external penetration testing of networks, web applications, APIs, and cloud environments to identify security vulnerabilities and exploit paths.
- Perform red team engagements simulating real-world adversary tactics, techniques, and procedures (TTPs) aligned with MITRE ATT&CK.
- Execute vulnerability assessments and validate remediation efforts through retesting and technical verification. Develop comprehensive penetration testing reports, including executive summaries, risk ratings, proof-of-concept evidence, and actionable remediation guidance.
- Perform threat modeling and attack surface analysis to identify high-risk exposure areas and privilege escalation pathways.
- Conduct secure configuration reviews of operating systems, network infrastructure, cloud platforms, and identity systems.
- Evaluate application security through dynamic and manual testing techniques, including authentication, session management, input validation, and access control testing. Review source code for security weaknesses and secure coding gaps, particularly in C/C++, Python, Java, or similar languages.
- Develop and maintain custom scripts or tooling to automate testing activities and enhance offensive security capabilities.
- Support incident response activities by recreating attack chains, validating compromise scenarios, and identifying root causes. Assess Zero Trust implementations, micro-segmentation strategies, and identity-based security controls for effectiveness.
- Conduct phishing simulations and social engineering exercises to evaluate user awareness and organizational resilience. Provide technical briefings to executive leadership and technical stakeholders regarding risk posture and remediation prioritization.
- Collaborate with engineering, DevOps, and infrastructure teams to remediate identified vulnerabilities and strengthen security architecture.
- Contribute to the development of security policies, testing methodologies, and enterprise security standards.
- Support compliance efforts by mapping testing results to NIST, OWASP, CIS, or other applicable security frameworks. Participate in continuous improvement of penetration testing methodologies, tools, and adversary emulation strategies.
- Adhere to all security, change control, and MHBE Project Management Office (PMO) policies, processes, and methodologies.
- A Minimum eight (8) years of progressive experience in cybersecurity.
- A minimum of five (5) years performing penetration testing or red team engagements.
- A minimum of five (5) years conducting network penetration testing, web application and API testing, internal and external vulnerability assessments and threat modeling and attack path analysis.
- A minimum of five (5) years developing and delivering formal penetration test reports, including executive summaries and technical remediation guidance.
- A minimum of five (5) years supporting incident response investigations and validation testing.
- A minimum of five (5) years with common penetration testing tools (e.g., Metasploit, Burp Suite, Nmap, Wireshark, Nessus, etc.).
- Strong knowledge of Secure coding practices, Application security testing (SAST/DAST concepts), Network architecture and segmentation and Identity and access management concepts.
- A minimum of five (5) years of demonstrated scripting or development ability in at least one language (e.g., Python, C/C++, PowerShell, Bash).
- A minimum of five (5) years of working with NIST Cybersecurity Framework, NIST 800-53 or similar federal control frameworks, MITRE ATT&CK and OWASP Top 10.
- A minimum of five (5) years of experience mapping findings to security control frameworks.
- At least one recognized offensive security certification (e.g., OSCP, GPEN, GXPN, CEH, or major experience can substitute for certification).
- Demonstrated ability to communicate technical findings to executive and non-technical audiences, and provide actionable remediation recommendations.
- Demonstrated experience working in government or highly regulated environments.
- A Minimum ten (10) years of progressive experience in cybersecurity.
- A minimum of eight (8) years of experience in Advanced Offensive Security:
- Experience leading red team engagements.
- Experience performing adversary emulation exercises.
- Experience conducting phishing and social engineering simulations. Experience performing purple team exercises.
- A minimum of five (5) years of experience in Zero Trust & Architecture:
- Experience designing or assessing Zero Trust implementations.
- Experience evaluating micro-segmentation strategies and identity-centric controls.
- A minimum of five (5) years of experience in Cloud & Modern Infrastructure:
- Experience performing security assessments in AWS or Azure environments, Containerized environments (Docker/Kubernetes) and Infrastructure-as-Code deployments.
- Experience testing CI/CD pipelines.
- A minimum of ten (10) years of experience in Software Development Depth:
- Strong low-level development knowledge (kernel, assembly, embedded systems) that supports advanced exploit analysis.
- Experience reviewing source code in JAVA or other compiled languages for vulnerabilities.
- A minimum of ten (10) years of experience in Government in the following:
- Experience supporting federal or state government security programs.
- Familiarity with FedRAMP, FISMA, or IRS Pub 1075 environments.
Work is equally performed in the field as well as in a normal office environment. Lifting (up to 50lbs) may be required. Ladder climbing may be required. Driving is required. All duties performed with or without reasonable accommodations. Additional Information Equal Opportunity Employer/Veterans/Disabled. An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status Ashburn Consulting is an Equal Opportunity Affirmative Action Employer.
In compliance with the American with Disabilities Act Amendments Act (ADAAA), if you have a disability and would like to request and accommodation in order to apply for a position with Ashburn Consulting, please e-mail View email address on click.appcast.io." Ashburn Consulting is an Equal Opportunity Affirmative Action Employer.
In compliance with the American with Disabilities Act Amendments Act (ADAAA), if you have a disability and would like to request and accommodation in order to apply for a position with Ashburn Consulting, please e-mail View email address on click.appcast.io."
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior Systems Security Specialist in Baltimore, MD vacancy
- ...Title: Systems Security Specialist (Senior) Location: Baltimore, MD (the candidate may be required to work on-site or remotely on specific days as determined by Client) Long Term Duties / Responsibilities: Conduct internal and external penetration...SeniorRemote work
- ...Senior Systems Security Specialist (Penetration Testing & Offensive Security) Multi-year Contract Onsite/Hybrid - Baltimore, Maryland We are seeking a Senior Systems Security Specialist to lead and execute offensive security initiatives, including advanced...SeniorContract work
- ...Position Title: Systems Security Specialist (Senior) Job ID- RFR#146 Client- State of MD Contract 3+ Start Date: ASAP Work Location: Baltimore, MD Description of Project The Maryland Health Benefit Exchange (MHBE), an independent unit of state...SeniorContract workFor contractorsImmediate startRemote workFlexible hours
$60 - $65 per hour
...Job Title: Systems Security Specialist (Senior) - Cybersecurity Penetration Tester Job Location: Baltimore, MD (2 days onsite / week) Duration: Long term contract Payrange : $60 - $65/hr Benefits for Eligible Employees - Health Insurance...SeniorLong term contract2 days per week- ...We are looking for a Systems Security Specialist to join our team supporting (MHBE). This hybrid role will focus on implementing and monitoring cloud security, identity and access management, incident response, and compliance across critical systems. Job Title...SuggestedFull timeContract workH1bFlexible hours
- ...Oversight Services. Job Description About the Role: ANGARAI – a professional management consulting firm – is seeking a Systems Security Specialist to support a key government client in ensuring the security, compliance, and resiliency of its IT infrastructure. The...
- ...Labor Category/s (From Section 1 Above) Duties / Responsibilities Systems Security Specialist Develop and implement cloud security controls, cloud-based processes and tools, and cloud security task automation. Perform security assessments, working closely...For contractorsRemote workFlexible hours
- ...Systems Security Specialist - Cloud & IAM Baltimore, MD (Onsite) Long-Term Contract We are seeking an experienced Systems Security Specialist with strong expertise in AWS Cloud Security, Identity & Access Management (ForgeRock/SailPoint), and Security...Long term contract
$75.52k - $113.28k
...mission-critical facilities, secure environments, complex infrastructure... ..., audiovisual, and IT systems. Headquarters in Tysons, Virginia... ...Security Systems Application Specialist (Systems Administrator 1) to... ...communication with senior leadership as well as local office...Work at officeLocal areaFlexible hours- A government health organization is seeking a Senior Systems Security Specialist to implement cloud security controls, conduct security assessments, and administer Identity and Access Management products. Candidates must have at least 8 years of security experience, including...Senior
- ...Senior Executive Protection Security Specialist Preferred Qualifications Advanced degree (e.g. CPA, CFA, MBA) Ability to obtain and maintain a secret or top secret clearance Certifications: Certified Protection Professional (CPP), Physical Security Professional...Senior
$75.52k - $113.28k
M.c.-Dean,-Inc. is looking for a PCD/TOC Security Systems Application Specialist to join our Security and Electronic Systems team in Baltimore, Maryland. This role involves programming access control and video management systems, providing deployment support, and troubleshooting...$52 - $60 per hour
...Senior Linux System Administrator Location: Baltimore, MD Job ID: #72594 6 month contract Pay Range: $52-60 We are currently seeking a senior-level Linux Administrator to join the Messaging Application Engineering team. The ideal candidate is a self-starter and a team...SeniorContract work$53k
...seeking a skilled Steamfitter for a role at Towson University. Responsibilities include installing and maintaining various piping systems and general plumbing duties. Candidates should have four years of experience in steamfitting, with knowledge of safety practices and...Senior$108.8k - $163.2k
...employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for... ...Principal Radar Modeling Simulation & Analysis Systems Engineer or Senior Principal Radar Modeling Simulation & Analysis Systems Engineer...SeniorFull timeContract workRelocation packageShift work$108.8k - $163.2k
As an integral part of our Specialty Systems Engineering team in Mission Systems, you will be fulfilling the role of a Principal / Senior Principal Human Factors & Maintainability Systems Engineer. Develop and implement a sound human factors program, providing support...SeniorFull timeShift work- ...Senior Systems Analyst HYB Need local to Baltimore, MD Need state exp USC/GC/H4 Job Summary: We are seeking a highly motivated and experienced Senior Systems Analyst to join our dynamic team. This individual will play a key role in analyzing business...SeniorLocal area
$135k - $175k
An environmental services company is seeking a seasoned NetSuite System Administrator in Baltimore, MD to oversee and optimize their ERP system. The role involves administering NetSuite modules, managing integrations, and providing user support. Candidates should have...Senior- A technology consulting firm is seeking an experienced ICM System Administrator to install and configure the Case Manager tool within a WebSphere/Linux environment. The ideal candidate will have over 5 years of experience with FileNet P8 and Case Manager installations,...Senior
- A leading technology service provider in Maryland seeks a Senior Systems Administrator to support a Federal agency's technical initiatives. The role involves managing Relativity databases, consulting on system requirements, and ensuring successful project completion. Candidates...Senior
$100k - $140k
SimVentions, Inc is seeking a Systems Engineer in Baltimore, MD, to support the AN/SLQ-32(V)7 Electronic Warfare program. The role involves applying systems engineering principles and managing technical documentation. Candidates should have 5+ years of experience, an active...Senior- A leading energy management company is seeking a Sr. Power Systems Engineer to join their Consulting Services Organization. This individual will work directly with clients to develop solutions targeting their goals, particularly in Protection Control and Automation. Responsibilities...Senior
$70k - $85k
...leading real estate services firm seeks a Building Engineer in Baltimore, MD, to oversee maintenance and repairs of vital building systems. Candidates must have a Universal CFC/EPA certification and additional certifications in HVAC or related fields. The role includes...Senior- A healthcare organization in Baltimore is seeking an experienced Senior Application System Analyst to enhance and support business and clinical applications. The role requires strong knowledge of Athena/IDX professional billing systems, SQL, and healthcare compliance. The...Senior
- Delmarva Power & Light Co. is seeking an experienced engineer to be a subject matter expert in the BGE electric distribution system. This role will provide onsite engineering support and lead technical efforts, mentoring junior staff while ensuring alignment with project...Senior
- ...seeking an experienced Mechanical Engineer to join the Building Design Group. This role involves designing and implementing mechanical systems, collaborating with various stakeholders, and mentoring junior staff. Key responsibilities include developing technical...Senior
- Jacobs is looking for a qualified designer to lead the design and drafting of life safety systems in Baltimore, Maryland. The role involves utilizing AutoCAD and Revit MEP to create BIM models and ensures designs meet industry standards. Applicants should possess at least...Senior
- A consulting firm in Maryland is seeking a Systems Analyst to support state projects. The ideal candidate will need a bachelor’s degree in a related field and significant experience in IT systems analysis and design. Responsibilities include establishing automated systems...Senior
$103.2k - $141.9k
...seeking an experienced engineer based in Baltimore, Maryland, to join its team as a technical expert for the BGE electric distribution system. The role will involve leading technical efforts, mentoring junior staff, and providing onsite engineering support. Applicants...Senior- MECS Africa is seeking an experienced mechanical engineer in Baltimore, Maryland. The role involves overseeing mechanical system installations, maintenance, and repairs, developing technical specifications, and ensuring safety compliance. Candidates should have a Bachelor...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Systems Security Specialist. Be the first to apply!
Related searches
- information security compliance analyst Baltimore, MD
- application security analyst Baltimore, MD
- network security analyst Baltimore, MD
- network security consultant Baltimore, MD
- security specialist Baltimore, MD
- junior security analyst Baltimore, MD
- physical security consultant Baltimore, MD
- security systems specialist Baltimore, MD
- security coordinator Baltimore, MD
- security consultant Baltimore, MD


