Senior Penetration Tester
ANALYGENCE Inc
Description Tharros is seeking a Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer to support a DHS Intelligence and Analysis cybersecurity program in the National Capital Region.
This role will support advanced penetration testing, software assurance, vulnerability assessment, cyber supply chain risk management, secure cloud and hybrid engineering, and cross-domain security assessment activities. The ideal candidate is a senior technical assessor who can go beyond automated scanning to identify systemic weaknesses, validate exploitability, assess operational impact, and provide clear remediation recommendations for complex mission environments.
Responsibilities:
This role will support advanced penetration testing, software assurance, vulnerability assessment, cyber supply chain risk management, secure cloud and hybrid engineering, and cross-domain security assessment activities. The ideal candidate is a senior technical assessor who can go beyond automated scanning to identify systemic weaknesses, validate exploitability, assess operational impact, and provide clear remediation recommendations for complex mission environments.
Responsibilities:
- Conduct penetration testing, vulnerability assessments, software assurance, and cyber supply chain risk management activities for Federal mission systems.
- Perform full-scope security testing using established methodologies such as MITRE ATT&CK, OWASP, NIST 800-115, and related Federal or IC assessment practices.
- Support pre-engagement planning, rules of engagement, intelligence gathering, threat modeling, vulnerability analysis, exploitation, post-exploitation, and reporting.
- Use approved automated and manual testing methods to identify vulnerabilities, validate exploitability, and assess potential business and operational impacts.
- Identify vulnerabilities commonly missed by automated tools through manual, expert-driven testing techniques.
- Assess SOC detection and response capabilities through controlled testing activities.
- Produce penetration testing reports, vulnerability assessment reports, software assurance recommendations, and corrective action guidance.
- Support software assurance through vulnerability and compliance testing, source code review, static/dynamic analysis, dependency review, and software supply chain risk identification.
- Conduct vulnerability assessments and interpret results to recommend corrective actions and mitigation strategies.
- Support secure cloud, hybrid, DevSecOps, application, identity, API, microservices, CI/CD, Zero Trust, and cross-domain assessment activities.
- Maintain secure testing kits and assessment tooling, including patching, configuration updates, and approved tool management.
- Update and maintain penetration testing, SCRM, and vulnerability assessment procedures.
- Support audits, working groups, and stakeholder briefings related to penetration testing, software assurance, vulnerability assessment, and cyber supply chain risk.
- Identify opportunities to improve testing processes, automate assessment workflows, strengthen reporting, and produce useful metrics for leadership and technical stakeholders.
- Translate assessment findings into actionable remediation plans, risk insights, POA&M inputs, dashboards, and decision-ready reporting.
- Active TS/SCI w Poly
- 10+ years of related cybersecurity assessment, penetration testing, software assurance, vulnerability assessment, or cyber supply chain risk experience.
- 2+ years of recent experience in each of the following areas: software assurance, penetration testing with automated tools, vulnerability assessment, security patch management, secure cloud and hybrid engineering, and
- Cross Domain Solutions.
- CEH and CISSP certifications, or comparable demonstrable experience.
- Experience conducting penetration testing, vulnerability assessments, software assurance, source code review, SCRM, and cyber supply chain management activities.
- Experience using both automated tools and manual testing processes to identify, validate, and document vulnerabilities.
- Experience producing technical reports, corrective action recommendations, mitigation strategies, and executive-ready summaries.
- Strong understanding of vulnerability management, exploitability, secure configuration, remediation validation, and operational risk.
- Strong written and verbal communication skills.
- Ability to work onsite at a government-approved location as required.
- Prior DHS, Intelligence Community, DoD, CISA, classified red team, software assurance, SCRM, CVPA, vulnerability research, or national security cyber assessment experience.
- Experience with MITRE ATT&CK, OWASP, NIST 800-115, IC "Raise the Bar," NIST SP 800-161, CNSSI 1253, DHS 4300C, or related Federal/IC cybersecurity frameworks.
- Experience testing cloud, application, identity, API, microservices, CI/CD, DevSecOps, Zero Trust, cross-domain, and hybrid TS/SCI environments.
- Experience with SBOM analysis, static/dynamic code analysis, dependency review, source code review, exploit validation, secure configuration, and remediation validation.
- Experience with GRC platforms such as Archer, eMASS, or Xacta, including the ability to translate findings into POA&Ms, dashboards, scorecards, and remediation workflows.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Senior Penetration Tester in Washington DC vacancy
$95.86k
...inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Senior Specialist, MAST Application Penetration Tester to join our Managed Services practice. Responsibilities: Conduct manual application penetration...SeniorH1bLocal area- ...Senior Manual Ethical Hacker Denver, Colorado;Washington, District of Columbia; Seattle, Washington; Charlotte, North Carolina;... ...use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high...SeniorWork at officeShift workDay shift
- ...Job Description Job Description Job Title: Senior Penetration Tester Pay Type : SALARIED EXEMPT Location : Hybrid, Washington, DC US Citizenship : Required Summary of Position Role/Responsibilities Quzara LLC, a SBA Certified WOSB, EDWOSB, and 8...SeniorFull timeWork experience placementRemote workMonday to FridayShift workNight shift
- ...for Top Secret due to classified threat intelligence. Citizenship: US Citizen (MUST) Key Responsibilities : Lead SBA’s penetration, offensive, and adversarial testing services, including gray/black box testing, red teaming, API testing, and DevSecOps code...SeniorLocal areaRemote work
- ...Application Penetration Tester We are seeking a highly skilled and experienced Application Penetration Tester to join our dynamic team. This role is ideal for someone with a passion for cybersecurity, a deep understanding of application security, and the ability to...Suggested
- ...MANTECH seeks a motivated, career and customer-oriented Senior Systems Analyst to join our team in Arlington, VA . The position is onsite . Responsibilities include but are not limited to: ~ Providing Tier II IT Systems support on a wide range of technologies...SeniorWork at office
$101k - $152k
...Applied Information Sciences, Inc in Alexandria, Virginia is seeking a Senior Security Engineer to conduct comprehensive digital forensic examinations across various systems. This role includes responsibility for incident management, malware analysis, and deep investigations...SeniorContract work- ...The Cyber Security Analyst (Senior) provides expert-level cybersecurity support for Navy systems, ensuring compliance with DoD and Department of the Navy security requirements. This role leads Risk Management Framework (RMF) activities, supports system authorization...SeniorFull time
- A cybersecurity solutions provider in Washington, DC is seeking an Information Systems Security Officer (ISSO) to oversee security configurations and ensure compliance across information systems. The ideal candidate will have a Top Secret Security Clearance and at least...Senior
$106.5k - $197.5k
...Harris Technologies currently has an opening for a User Acceptance Tester with expertise in Test and Integration for an important National... ...and verbal communication skills, with experience updating senior leadership. Able to work independently with minimum supervision....SeniorFor contractorsLocal areaFlexible hours- ...Description Apogee Global RMS is seeking a Senior Cybersecurity Engineer / Offensive Security Lead to support high‑visibility federal and IC programs. This role is designed for operators who bring hands‑on offensive tradecraft, current certifications, and recent...SeniorFull time
- ...Penetration Tester Locations: Los Angeles (CA), Dallas (TX), Washington DC. Responsibilities: Assist in project scoping and SOW... ...vulnerabilities Create and deliver findings and/or reports to customer senior management Consult clients on best practices for...Work experience placement
$104k - $166k
...Responsibilities Peraton is currently seeking a Senior Digital Forensic Analyst to support Federal Strategic Cyber programs in the Cyber & Intelligence sector. Location: On-site, Arlington, VA In this role, you will: Conduct forensic examinations of digital data from...SeniorContract workInterim roleLocal areaShift work- ...One Federal Solution provides senior ISSO support for cybersecurity risk management, A&A, FISMA compliance, continuous monitoring, and secure cloud/hybrid environments. We apply NIST, CNSSI 1253, and RMF principles to maintain compliance, strengthen security posture,...SeniorWork at office
$104k - $166k
...Senior Digital Forensic Analyst Job Locations US-VA-Arlington Requisition ID 2026-169184 Position Category Cyber Security Clearance Top Secret Responsibilities Peraton is currently seeking a Senior Digital Forensic...SeniorFull timeContract workFor contractorsInterim roleLocal areaShift work- ...high level of confidence in the current patch management process and patching posture across the environment. Skillset: Senior ISSO with 10+ years of Information Security experience supporting federal systems Deep expertise leading the full RMF lifecycle...SeniorHourly payContract workImmediate startRemote workMonday to FridayShift work
$105.1k - $231.1k
...Senior Information System Security Officer The Opportunity: CACI is searching for a Senior Information System Security Officer (Senior ISSO) to support the FEMA Office of the Chief Information Security Officer (OCISO) in Washington, D.C. As a Senior Information System...SeniorContract workWork experience placementWork at officeFlexible hours$104.8k - $192.2k
...you want it to go. Join EY and help to build a better working world. Government and Public Sector – Cybersecurity – Penetration Tester – Senior Consultant From strategy to execution, the Government & Public Sector practice (“GPS”) of Ernst & Young provides a full...SeniorFor contractorsSummer holidayWork at officeLocal areaFlexible hours- SkyePoint Decisions is seeking a Program Manager to lead the overall management, execution, and delivery of a cyber program. You will be the primary interface with Government leadership, overseeing contract performance, staffing, program planning, risk management, and ...SeniorContract work
$200k - $240k
Description SAIC's Solutions & Technology group is seeking an experienced Solutions Architect to join the Solutions & Technology group. The position is preferred to be based out of Chantilly, VA but open to a hybrid role in Reston, VA or Arlington, VA. Reporting directly...Senior$104k - $166k
...information, and mobile devices all while identifying and responding to cyber risks and threats. In this role, you will: Serve as a senior-level digital forensic analyst conducting examinations on digital data from a variety of sources, including cellphones, tablets,...SeniorFull timeContract workTemporary workInterim roleCurrently hiringWork at officeLocal areaShift work- Two Six Technologies seeks a Senior Software Tester to join our team in Arlington, VA. This hybrid role will involve testing innovative software for a global-scale networking platform. Candidates should have 3+ years in backend API testing and be familiar with Agile methodologies...Senior
$135k - $143k
...,000 - $143,000/year Work Location: Remote with occasional on-site work in Washington, DC, at least once per month. The Senior Cybersecurity Analyst leads in the proactive defense of the organization's information systems. This role provides expert-level guidance...SeniorFull timeContract workCasual workRemote workFlexible hours- ...Time/Part-Time Contingent Travel Required Clearance Required Top Secret Position Cyber Security Specialist Senior Number of Openings 1 Exempt/Non-Exempt Non-Exempt Open Date 3/29/2024 This position is currently...SeniorFull timePart time
$71.2k - $166.1k
...Job Description The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring that system-to-system connections across federal boundaries are properly documented, approved, and compliant with all required...SeniorContract workTemporary workWork experience placementRelocationFlexible hours- ...Senior Director, Principal Gifts About the Company Philanthropic organization supporting Indigenous culture & individuals Industry Non-Profit Organization Management Type Non Profit Founded 2017 Employees 11-50 Categories ~ Non-Profit &...Senior
- Senior Cyber Security Analyst ***Offer Contingent Upon Contract Award*** Crowned Grace International seeks a Senior Cyber Security Analyst for the DC Water Department of Information Technology (DIT) to strengthen the security posture of the Authority's enterprise information...SeniorContract workRemote work3 days per week
- A leadership consulting firm based in Alexandria is looking for a Principal to lead long-term transformational engagements with senior executives. The role demands a proven record of managing large programs, strong client relationship skills, and the ability to mentor...Senior
$80k - $120k
...and experience — talk with your recruiter to learn more. Base pay range $80,000.00/yr - $120,000.00/yr Employment Type: Full Time, Senior-level Department: Information Technology CGS is seeking a Senior Systems Analyst to join our team supporting a wide-ranging technical...SeniorFull timeContract workFor contractorsWork at officeFlexible hours- People, Technology & Processes, LLC is seeking a Cybersecurity Analyst V (Senior) based in Washington, DC. The candidate must have at least 10 years of experience in IT functions and hold a Bachelor's Degree in Cybersecurity or a related field. Responsibilities include...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Penetration Tester. Be the first to apply!
Related searches
- vulnerability analyst Washington DC
- ethical hacker Washington DC
- penetration tester Washington DC
- sr hr business partner Washington DC
- senior lighting artist Washington DC
- senior planner Washington DC
- senior hvac project manager Washington DC
- senior technical product manager Washington DC
- senior cloud infrastructure engineer Washington DC
- senior etl developer Washington DC




