Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Penetration Tester Team Lead

$131.3k - $237.35k

Leidos

Description

The U.S.Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a U.S.Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local area networks/wide area networks (LAN/WAN), commercial Internet connection, public facing websites, wireless, mobile/cellular, cloud, security devices, servers and workstations.? The CBP SOCis responsible fortheoverall security of CBP Enterprise-wide information systems, and collects, investigates, and reports any suspected and confirmed securityviolations.

Weareseekinga highly skilled and experienced PenetrationTesting Team Leadto join our team supportingCBP.As the leader of this highly technical Penetration Testing Team supporting CBP, youwill be responsible formanaging theday-to-dayoperations of the team,coordinating efforts of the team, leading by example, andconducting comprehensive security assessments ofCBPFISMA systems with the purpose of identifying vulnerabilities and providing actionable recommendations to enhance the security posture of CBP's critical systems and networks. This role requires a deep understanding of offensive cybersecurity techniques, strong analytical capabilities, detailed report writing skills and the ability toleada teamofskilled penetration testers.

Primary Responsibilities:

  • Responsible for managing the team of Penetration Testers, penetration tests, theschedulingand coordination ofpentests,

  • Lead and execute advanced penetration testing, purple team engagements, andred team engagements across complex enterprise environments, including internal/external network infrastructure,Active Directory domains, APIs,hybrid cloud architectures,and on-prem systems.

  • Develop,coordinateandenforce Rules of Engagement (ROE) for penetration tests,lead stakeholder planning sessions to define scope and constraintsof upcomingpentests,and deliver clear, actionableoutbriefingson findings, impact, and remediation to technical and executive audiences.

  • Develop,modify, and deploy custom exploits, payloads, and tooling, including scripting in Python,Ruby,PowerShell, Bash, andother languagesto bypass security controls, automate attack paths, and enhance tradecraft.

  • Conduct penetration testing activities aligned with CBP and industry best practices.

  • Provide real-time technical mentorship during engagements, including pairedtesting, whiteboarding attack paths, and guiding junior testers through exploitation chainsand industry best practices.

  • Maintain accountability for engagement quality and technical depth, reviewing findings,validatingexploit paths, and ensuring reports accurately reflect risk, attack feasibility,potentialimpacts, and recommended remediations.

  • Conduct technical oversight and quality assurance across all engagements, reviewing testing approaches,validatingexploit chains, and ensuring consistency inmethodology, depth, and reporting standards across the teamand engagements.

  • Lead purple team collaboration effortsfrom thepentestperspective, working directly withthe CBP SOC,detection engineering team, and Cyber Threat Hunt teamtoexecute actions designed tovalidatedetections, tune SIEM use cases, and improve defensive posture.

  • Mentor and develop team members through structured andad hoctechnical coaching, raising the overall capability of the team whilemaintainingindividual technicalskillsets and experience.

  • Utilize the MITRE ATT&CK framework to understandand emulateTTPs of adversaries, threat actors, APTs, and threats targetingCBPand mapoperationsto ATT&CK techniques and sub-techniques.

  • Create detailed reports listing vulnerabilitiesidentifiedduringpentests, with actionable mitigation recommendations following completion ofpentestengagements.

  • Stay actively engaged in emerging vulnerability research, exploit techniques, and adversary methodologies, rapidly integrating new capabilities into both personal and team operations.

  • Foster a high-performance, technically rigorous team culture, driving continuous learning through labs, internal exercises, and knowledge-sharing sessions whilenurturingcutting-edgeoffensive skillsets.

Basic Qualifications:

T5:Candidate shall have a minimum of a Bachelors andtwelve(12) years of professional experiencepenetration testing, red teaming, or offensive securityexperience,with a minimum of four (4) years of experience directly leading a Penetration Testing Team.Additional years of experience can be accepted in lieu of degree.

T6:Candidate shall have a minimum ofa Bachelors and fifteen(15) years of professional experiencepenetration testing, red teaming, or offensive securityexperience,with a minimum of four (4) years of experience directly leading a Penetration Testing Team.Additional years of experience can be accepted in lieu of degree.

  • Must have an active TS/SCI.

  • Demonstratedexpertisein multi-layer exploitation, with the ability toidentify, chain, and execute attacks across network infrastructure, operating systems (Windows/Linux), web applications, APIs, and cloud platforms; proven capability to move frominitialaccess through full domain or environment compromise.

  • Proficiencywith offensive security tooling and frameworks, including Cobalt Strike, Mythic, Sliver, Metasploit, Burp Suite Pro,BloodHound, Nmap, and similar toolswith specificexperiencemodifyingand extending tools to evade controls.

  • Strong understanding of enterprise networking and protocolswith theability toenumerate, pivot, and exploit across complex, segmented network environments.

  • Hands-on experience with cloud and modern infrastructure security, familiarity with IAM abuse, privilege escalation, token theft, insecure configurations, and lateral movement within cloud-native services and hybrid environments.

  • In-depth knowledge of operating systems and security controls, including Windows/Linuxinternals, endpoint protections, logging mechanisms, and common defensive controlswith ademonstrated ability to bypass or evade these protections during engagements.

  • Proven leadership and team management experience, including leading technical teams through complex engagements, mentoring junior and mid-level testers, conducting quality assurance on deliverables, and managing multiple concurrent assessments without sacrificing technical depth.

  • Strong communicationskills, with the ability to clearly articulate complex technical findings, attack paths, and risk implications to both technical stakeholders and executive leadership through written reports and verbal briefings

  • Must be a US Citizen

  • Must be able to travel to the Ashburn VA office location up to 5 days per week

Core Certifications: At least one certificationfrom thebelowlist:

  • OSCP

  • OSCE

  • OSWP

  • OSEE

  • GPEN

  • GISF

  • GXPN

  • GWAPT

Clearance:

  • All CBP SOC employeesare required tofavorably pass a 5-year Background Investigation(BI)

  • The candidate must currentlypossessaTop SecretClearance with the ability to obtain a Top Secret/SCI Clearance

Preferred Qualifications:

  • Experience conducting full-scope red team operations and adversary emulation campaigns.

  • Familiarity with MITRE ATT&CK framework and threat-informed testing methodologies.

  • Knowledge of container and Kubernetes security testing.

  • Prior experience supporting federal or regulated environments.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting:

May 5, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $131,300.00 - $237,350.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit .

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at .

Securing Your Data

Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at View email address on click.appcast.io .

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission ( .

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

REQNUMBER: R-00182515

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. Leidos will consider qualified applicants with criminal histories for employment in accordance with relevant Laws. Leidos is an equal opportunity employer/disability/vet.

Vacancy posted 12 hours ago
Similar jobs that could be interesting for youBased on the Penetration Tester Team Lead in Ashburn, VA vacancy
  • $131.3k - $237.35k

     ...violations. We are seeking a highly skilled and experienced Penetration Testing Team Lead to join our team supporting CBP. As the leader of this...  ...and the ability to lead a team of skilled penetration testers . Primary Responsibilities: ~Responsible for managing... 
    Suggested
    Work at office
    Local area
    Immediate start

    Navstar

    Ashburn, VA
    3 hours ago
  • $87.1k - $157.45k

     ...investigates, and reports any suspected and confirmed securityviolations. Weareseekinga highly skilled and experienced Penetration Tester to join our team supportingtheCBP SOC. Thiscandidate willbe responsible forconducting comprehensive security... 
    Suggested
    Local area
    Immediate start

    Leidos

    Ashburn, VA
    3 days ago
  •  ...Overview: Job Title: Penetration Tester Location: Reston, VA Work Mode - Hybrid role, 2 days' Work from Office (Wednesday and Thursday) Must have Skill Set - Red team pentester Job Description: Network penetration testing and experience working... 
    Suggested
    Work at office

    Orison

    Reston, VA
    4 days ago
  • A woman-owned IT solutions firm based in Virginia seeks a Penetration Tester to establish and execute penetration testing programs. The role involves developing testing plans and coordinating tests across applications and environments. Candidates should possess strong... 
    Suggested

    Yakshna Solutions

    Herndon, VA
    4 days ago
  •  ...Penetration Tester LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship...  ...and proactive Penetration Tester to join our cybersecurity team. In this role, you will identify vulnerabilities and test the... 
    Suggested
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    Chantilly, Loudoun County, VA
    4 days ago
  •  ...RESPONSIBILITIES Under general supervision, perform penetration testing of applications, systems, and...  ...briefings to leadership and technical teams. Support compliance-driven testing...  ..., such as: Licensed Penetration Tester (LPT) Certified Expert Penetration... 
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Remote work
    Monday to Friday
    Weekend work
    Day shift
    Afternoon shift

    TekSynap

    Reston, VA
    9 hours ago
  •  ...__ We are seeking a highly skilled and proactive Penetration Testing SME to join our Cybersecurity team. As a Penetration Testing SME, you will play a critical...  ...Penetration Testing Expertise: Proven experience leading and conducting complex penetration tests in... 
    Temporary work
    Local area
    Immediate start

    Vibrint

    Reston, VA
    4 days ago
  •  ...Responsibilities & Qualifications We are seeking a Penetration Tester - Senior to join our Defense Logistics Agency (DLA) Team. REQUIRED QUALIFICATIONS Experience Minimum six (6) years of experience performing vulnerability assessments and penetration testing... 
    Full time
    Contract work
    Temporary work
    Local area
    Remote work
    Monday to Friday
    Weekend work
    Day shift
    Afternoon shift

    TekSynap

    Reston, VA
    4 days ago
  • $86.8k - $198k

     ...Job Number: R0233826 Penetration Tester The Opportunity : Conduct testing and analysis to identify vulnerabilities and potential threat...  ...without considerable direction, and mentor and supervise team members, as needed. You Have: ~3+ years of experience... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Herndon, VA
    9 hours ago
  •  ...Sr. Penetration Tester Job Locations US ID 2026-4358 Category Defense Type Full Time Overview Amyx is seeking a Sr. Penetration Tester for our DOD client to work remotely. Responsibilities Independently performs... 
    Full time
    Temporary work
    For contractors
    Remote work
    Flexible hours

    Amyx

    Reston, VA
    1 day ago
  • $86k - $138k

     ...Penetration Tester, Senior Job Locations US-VA-Herndon Requisition ID 202...  ...innovative Penetration Tester to join our team in the greater DMV area, supporting the...  ...Guard. Responsibilities Plan and lead advanced penetration testing operations... 
    Contract work
    Shift work

    Peraton

    Herndon, VA
    1 day ago
  • $113.2k - $237.8k

     ...Job Title: Penetration Tester Job Category: Engineering Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Polygraph...  ...penetration security assessments in a cybersecurity red team environment. Be part of a department with an expanding range... 
    Full time
    Contract work
    Work experience placement
    Immediate start
    Flexible hours

    CACI International

    Chantilly, Loudoun County, VA
    4 days ago
  •  ...Overview: CDT is looking for an experienced Penetration Tester/Red Team Security Engineer to support a government customer in Chantilly, VA. As...  ...senior member of the Red Team, you will be responsible to lead in the design and execution of adversarial based security testing... 
    Work experience placement

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...Principal Penetration Tester Altus Consulting seeks a seasoned cybersecurity professional to...  ...initiatives. As a key member of our elite team, you'll play a crucial role in safeguarding...  ..., presentations, and industry forums Lead quality assurance initiatives for our... 

    Altus Consulting Corp

    Herndon, VA
    1 day ago
  • $86.8k - $198k

     ...Penetration Tester Conduct testing and analysis to identify vulnerabilities and potential threat vectors in systems and networks, develop...  ...Work without considerable direction, and mentor and supervise team members, as needed. Location: Herndon, VA Top Secret/SCI Polygraph... 
    Full time
    Contract work
    Part time
    Local area

    Navstar

    Herndon, VA
    1 day ago
  •  ...offer exciting opportunities to work with leading industry experts, business consultants...  ...current requirements, our recruitment team will contact you as soon as possible....  ...development assistance. YSI is seeking a Penetration Tester. The ideal candidate will be... 
    Temporary work
    Immediate start
    Remote work

    Yakshna Solutions

    Herndon, VA
    4 days ago
  •  ...innovations in mission systems and business platforms. We leverage leading-edge secure systems and software development, backed by industry...  ..., and best practices Collaborate with cross-functional teams including engineering, operations, and security teams to support... 
    Temporary work
    Monday to Friday

    Cydecor

    Ashburn, VA
    1 day ago
  •  ...Overview: CDT is looking for a Red Team Operator/ Cloud Penetration Tester to support a government customer onsite in Chantilly, VA. The ideal candidate...  ...infrastructure, testing and validating capabilities, leading assessments from kick-off through remediation, and... 

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    3 days ago
  • 4305 Cyber Threat Intelligence Team Lead 4305 | Top Secret Job Description: OVERVIEW: We are looking for a talented Cyber Threat Intelligence Team Lead to join our team and support our mission critical customer in Reston, VA. This position leads a team... 
    Contract work

    Procession Systems

    Reston, VA
    1 day ago
  •  ...Team Lead #1044 Clearance: U.S. Citizenship is required. Ability to obtain the required government security clearance (CBP Public Trust Final). Existing clearance is preferred. Dev Technology Group is hiring a Team Lead for an existing software delivery team... 
    Work experience placement
    Remote work
    Flexible hours
    Night shift
    2 days per week
    Early shift
    1 day per week

    Dev Technology

    Ashburn, VA
    2 days ago
  •  ...Team Leader Opportunity At CAVA At CAVA, we love what we do, and we try and make every day as fulfilling as the last. Our restaurants...  ...culture built on five core values: Generosity First, Always: We lead with kindness. Our best work happens when we act in service of... 
    Local area
    Shift work

    CAVA

    Ashburn, VA
    2 days ago
  • $130k - $160k

     ...The Vulnerability Assessment Team Lead manages enterprise vulnerability identification and remediation efforts to reduce risk across CBP systems. If you enjoy finding weaknesses before adversaries do, this role puts you in a position of real influence. As the Vulnerability... 

    UltraViolet Cyber

    Ashburn, VA
    1 day ago
  •  ...Gritter Francona is looking for a Vulnerability Assessment Team Lead to support a potential project with the Department of Homeland Security...  ...for conducting enterprise-wide vulnerability scanning, penetration testing, and specialized assessments (web, database, wireless)... 
    Temporary work

    Gritter Francona

    Ashburn, VA
    2 days ago
  •  ...vulnerability scanning and review Nessus findings. Support RMF activities and DHS 4300A compliance. Coordinate with the ISSM and security teams for incident response. Prepare FISMA, ISVM, and audit documentation. Required Qualifications ~5-10 years of experience... 
    Contract work
    Local area
    Night shift

    Navstar

    Ashburn, VA
    1 day ago
  •  ...the Department of Homeland Security (CBP). In this role, you will lead the implementation and management of cybersecurity policies,...  ...with organizational cybersecurity policies. Collaborate with IT teams, leadership, auditors, and federal stakeholders to address security... 
    Immediate start
    Flexible hours

    Novul Solutions

    Ashburn, VA
    1 day ago
  •  ...System Security Officer to work in Ashburn, Virginia. To join our team of outstanding professionals, apply today!...  ...refers only the most complex issues to higher-level staff. May act as lead. The Contractor shall identify the ISSO positions, as key personnel... 
    For contractors
    Work experience placement
    Remote work

    Akima

    Ashburn, VA
    4 days ago
  • $107.9k - $195.05k

     ...Description Leidos is seeking an ISSO Lead to support a wide range of systems engineering, administration, and Cyber security & regulatory compliance services necessary to maintain and secure OPR information technology networks used in the detection and investigations... 
    For contractors
    Work experience placement
    Work at office
    Local area
    Immediate start

    Leidos

    Ashburn, VA
    1 day ago
  •  ...of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about... 
    Work experience placement
    Work at office

    Agile Defense

    Ashburn, VA
    1 day ago
  •  ...and maintain the necessary documentation for ATT and ATO reviews and approvals. Proactively coordinate with program and cybersecurity teams to secure ATT and ATO approvals. Cybersecurity Compliance: Ensure the implementation of required security improvements.... 
    Full time
    Work experience placement
    Immediate start
    Flexible hours

    Novul Solutions

    Ashburn, VA
    4 days ago
  •  ...System Security Officer to work in Ashburn, Virginia. To join our team of outstanding professionals, apply today! Responsibilities...  ...refers only the most complex issues to higher-level staff. May act as lead. The Contractor shall identify the ISSO positions, as key... 
    For contractors
    Work experience placement
    Local area
    Remote work

    NANA Regional Corp

    Ashburn, VA
    9 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Penetration Tester Team Lead. Be the first to apply!