Penetration Tester
$95k - $112kSkyePoint Decisions
Job Description
Job Description
SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results.
This is a contingent position based upon customer approval.
SkyePoint Decisions is seeking a Penetration Tester to support the Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative, effective, and secure business processes.
This position is located in Arlington, VA and will be onsite 5 days a week. No hybrid/telework allowed.
Responsibilities:
- Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems.
- Identify vulnerabilities and develop recommended remediations to satisfy mandated NIST 800-53 security controls.
- Report and demonstrate findings to system owners and engineers.
- Maintain Red Cell infrastructure.
- Develop or modify tools to automate discovery or exploitation.
Required Qualifications:
- Bachelor of Science and 5 years of relevant experience in Cyber/IT, or a Master's of Science and 3 years of relevant experience in Cyber/IT. In lieu of a degree, 4 years of additional IT security or penetration testing experience may be considered.
- Minimum of 2 years with penetration testing experience.
- Possess one of the following certifications, OR be able to obtain before start date:
- CCNA Cyber Ops, CCNA-Security, CEH, CFR, Cloud+, CySA+, GCIA, GCIH, GICSP, SCYBER, Security+ CE, SSCP
- Demonstrated experience with Kali Linux.
- Demonstrated penetration testing tools experience with Nmap, Burp Suite, Metasploit, etc.
- Demonstrated ability in evaluating vulnerabilities, performing root cause analysis, and reporting findings utilizing assessment methodologies such as NIST SP 800-115, Penetration Testing Execution Standard (PTES), Information Systems Security Assessment Framework (ISSAF), OWASP Web Security Testing Guide (WTG), etc.
- Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers.
- U.S. citizenship required.
- An active Secret security clearance.
- Must have the ability to obtain a final Top Secret security clearance.
Preferred Qualifications:
- Active Top Secret or TS/SCI clearance.
- One of the following certifications or an alternate, verifiable certification demonstrating IT security competence:
- CompTIA CASP+
- ISC2 Certified Information Security Professional (CISSP)
- ISC2 Certified Cloud Security Professional (CCSP)
- ISC2 Information Systems Security Engineering Professional (ISSEP)
- One of the following certifications or an alternate, verifiable certification demonstrating practical penetration testing competence:
- Offensive Security Certified Professional (OSCP)
- Offensive Security Certified Professional (OSCP)
- Hack the Box Certified Penetration Testing Specialist (CPTS)
- TCM Security Practical Network Penetration Tester (PNPT)
- GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)
- Zero Point Security Red Team Ops II
- Advanced understanding of the following:
- NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process.
- Security principles such as CIA, IAAAA, access control models, risk management, etc.
- Networking principles and technologies such as IP routing, TCP/UDP, VPNs, firewalls, NAT, etc.
- Common network protocols such as SSH, FTP, SMTP, SMB, etc.
- Operating system principles such as process management, device management, user management, file systems, etc.
- Data processing principles such as encoding, hashing, encryption, etc.
- Scripting and programming languages such as Bash, Python, PowerShell, JavaScript, etc.
- Common application vulnerabilities and exploits such as outdated components,
- permissions mis-configurations, lack of input validation, logging/monitoring failures, etc.
- Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken authentication mechanisms, etc.
- Active Directory (AD) enumeration and attacks such as kerberoasting, AS-REP roasting, abusing mis-configured privileges, crafting golden tickets, etc.
- Public Key Infrastructure (PKI) and navigating IT environments implementing multifactor authentication.
- Cloud technologies and platforms such as Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (GCP), etc.
Compensation:
Salary Range: $95,000-$112,000
The SkyePoint Decisions salary range for this position is a general guideline only. It represents an estimated range for this position and is just one piece of our total compensation package.
Salary at SkyePoint is determined by various factors, including but not limited to location, work schedule, the candidate's combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability, market data and business considerations.
In addition to a competitive salary, SkyePoint offers benefits including a certification incentive program, PTO, floating federal holiday options, several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, Vision, ST/LT Disability, Life Insurance, and 401k matched.
What We Can Offer You:
- At SkyePoint, we go B.I.G. (beginning in GRATITUDE) by recognizing all we have and giving back to our employees, families, and communities. It instills a positive mindset that permeates all we do. By beginning in gratitude, SkyePoint can continue to spread living in gratitude each day.
- Great Benefits: Several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, ST/LT Disability, Life Insurance, floating federal holiday options, and 401k matched
- Certificate Incentive Program: To promote professional development, we recognize and reward employees who obtain new certifications aligned with business needs.
- Flexible Work Environment
SkyePoint Decisions is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development. We possess a common vision of excellence and foster a collaborative team culture built upon individual performance and accountability. We invest in our people and systems to create value for our clients. It is the SkyePoint Way. We are grateful for the opportunity to work with exceptional people and give back to the communities we serve. Our employees value the flexibility at SkyePoint that allows them to balance quality work and their personal lives.
SkyePoint Decisions is a participating E-Verify Employer.
U.S. Citizenship is required for most positions.
Equal Opportunity Employer/Veterans/Disabled.
CCPA Disclosure Notice Here
$115k - $203k
...Senior Penetration Tester Job Description Overview CoStar Group is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index, CoStar Group is on a mission to digitize the...SuggestedHourly payFull timeWork at officeWork from homeMonday to Thursday$124.54k - $180k
Overview: GovCIO is currently hiring for a Senior Pentration Tester with an active TS/SCI clearance to support DHS onsite in Washington, DC. Responsibilities: The Senior Penetration Tester serves as Key Personnel responsible for leading advanced penetration testing...SuggestedCurrently hiring$95.86k
...your capabilities, then consider a career in Advisory. KPMG is currently seeking a Senior Specialist, MAST Application Penetration Tester to join our Managed Services practice. Responsibilities: Conduct manual application penetration testing against API's...SuggestedH1bLocal area$160k - $205k
...findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high‑value findings Experience performing manual web application...SuggestedShift workDay shift- ...Systems Interoperability Tester, Senior Category: Architecture Main location: United States, Virginia, Arlington Position ID: J0925-2138 Employment Type: Full Time Position Description: CGI Federal has an exciting opportunity for a Systems Interoperability...SuggestedFull timeLocal area
$123.25k - $166.75k
...Skills: Automated Testing, AWS Cloud Computing, Infrastructure Penetration Testing, Security Controls, Security Testing Certifications... ...Required: No Job Description: The Penetration Tester supports the Case Management Modernization (CMM) Program for the...Full timeTemporary workPart timeWork at officeImmediate startRemote workWorldwideFlexible hours- ...identifying candidates for the following position. Requisition Type:Full Time Position Status: Contingent Position Title: Penetration Tester Location:Arlington, VA Security Clearance:Secret Duties and Responsibilities The Penetration Testersupports this...Full timeFor contractors
- ...-first approach ensures that youre not only valued but also set up to thrive in your role and grow your career. Position: Penetration Tester / Security Assessment Specialist Must hold an active TS/SCI with Polygraph Falls Technology is seeking a highly skilled...Flexible hours
$108.8k - $163.2k
Title: Information System Security Officer (ISSO) Belong. Connect. Grow. with KBR! KBR’s National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position...Full timeTemporary workWork experience placementLocal areaRelocation package- ...DHS Suitability 5+ years of directly relevant experience Experience as a hands-on cybersecurity analyst (i.e. SOC Analyst or Penetration Tester) is required Experience with the analysis and characterization of cyber attacks Skilled in identifying different classes of...
- ...Job Description Job Description Job Title: Senior Penetration Tester Pay Type : SALARIED EXEMPT Location : Hybrid, Washington, DC US Citizenship : Required Summary of Position Role/Responsibilities Quzara LLC, a SBA Certified WOSB, EDWOSB, and...Full timeWork experience placementRemote workMonday to FridayShift workNight shift
- At Ardent , we hire people who want more than a job — they want to serve a mission that matters. Our teams support the federal government’s most critical national security and defense priorities, helping protect the nation, strengthen resilience, and advance the technologies...Full timeLocal areaRemote workFlexible hours
$104.8k - $192.2k
...wherever you want it to go. Join EY and help to build a better working world. Government and Public Sector – Cybersecurity – Penetration Tester – Senior Consultant From strategy to execution, the Government & Public Sector practice (“GPS”) of Ernst & Young...For contractorsSummer holidayWork at officeLocal areaFlexible hours$500 per month
...Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements:...Extra incomeRemote work10 hours per week$104k - $156k
...be typical, to allow for future meaningful salary growth in this position. Required Skills: Endpoint Security, Network Security, Penetration Testing, Security Architecture Design, Security Automation, Security Information, Security Information and Event Management (SIEM...Remote work$260.5k - $325.6k
Welcome to Planet. We believe in using space to help life on Earth. Planet designs, builds, and operates the largest constellation of imaging satellites in history. This constellation delivers an unprecedented dataset of empirical information via a revolutionary cloud...Full timeContract workTemporary workWork experience placementWork at officeLocal areaRemote workHome officeShift work3 days per week$80k - $120k
Digital Forensic Analyst Employment Type: Full-Time, Mid-Level Department: Forensics CGS is seeking a Digital Forensic Analyst whose primary focus will be on the preservation and collection of mobile device and cloud-stored data. This candidate should be fluent in a broad...Full timeWork at officeRemote workFlexible hours- Cyber Network Forensic Analyst III, TS/SCI Full-time Raytheon Technologies provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-...Full timeImmediate startRemote work
- Web Developer Security Engineer The Web Developer Security Engineering plays a pivotal role in protecting mission-critical web applications, APIs and sensitive data. The objectives are to embed robust security principles throughout the software development lifecycle...Worldwide
- SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative ...Contract workWork at officeRemote work
$100k - $258k
SpaceXAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging...Permanent employmentTemporary work$80k - $128k
Risk And Vulnerability Analyst Peraton is currently seeking a Risk and Vulnerability Analyst. Location: Chandler, AZ or Washington DC. Role and Responsibilities: The Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by identifying, analyzing...Contract workShift work- ...for Top Secret due to classified threat intelligence. Citizenship: US Citizen (MUST) Key Responsibilities : Lead SBA’s penetration, offensive, and adversarial testing services, including gray/black box testing, red teaming, API testing, and DevSecOps code...Local areaRemote work
$110k - $150k
...built and delivered by operating with a product mindset, prioritizing speed, ownership, and execution over bureaucracy. Lead Penetration Tester Location: Washington, DC, Ft. Collins, CO, or Kansas City, MO (project-based; onsite) Terms: Full-time Salary Range:...Full timeWork experience placementFlexible hours- Required Skills - Bachelor of Science (BS) is required. - Min. 6+ years of experience in an SDET position. In addition to automation, must have knowledge of Backend ETL Testing experience as well. - Must have Healthcare Insurance Experience, specifically supporting...
$164.38k - $212.75k
Type of Requisition: Regular Clearance Level Must Currently Possess: Top Secret/SCI Clearance Level Must Be Able to Obtain: Top Secret SCI + Polygraph Public Trust/Other Required: None Job Family: Cyber and IT Risk Management Job...Temporary workFor contractorsInterim roleImmediate startRemote workWorldwideFlexible hours- The Cyber Security Analyst (Senior) provides expert-level cybersecurity support for Navy systems, ensuring compliance with DoD and Department of the Navy security requirements. This role leads Risk Management Framework (RMF) activities, supports system authorization ...Full time
$66k - $106k
Junior Digital Forensic Analyst Location: Arlington, VA (On-site) Responsibilities Peraton is currently seeking to hire a Junior Digital Forensic Analyst to join our Federal Strategic Cyber program in the Cyber & Intelligence sector. The programs' Computer Investigations...Interim roleCurrently hiringLocal areaShift work$78.6k - $160.2k
Information System Security Officer (ISSO) Arlington, VA At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared purpose to pursue...Local area- Supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution. Contract personnel perform investigations to characterize...Contract workImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Penetration Tester. Be the first to apply!


