Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Vulnerability Assessment Analyst and Penetration Tester

SteelToad

Job Description

Position Title

\n

Vulnerability Assessment Analyst and Penetration Tester

\n

 

\n

Work Location

\n

Camp Pendleton, CA

\n

 

\n

Position Description

\n

The Vulnerability Assessment Analyst and Penetration Tester is responsible for the delivery of continuous cyber assessments, solving complex technology problems, building tools, and identifying and influencing response to and mitigation of threats. Perform manual assessment of systems, services, and software; specializing in security issues beyond those identified by static analysis tools. The individual ensures services, applications, and websites are designed and implemented to the highest security standards. Responsible for application and hardware penetration testing, automating repetitive tasks using various scripting languages, mentoring, and leading other engineers to deliver complex penetration tests and vulnerability assessments. The individual will be expected to drive automation, tooling, efficiency, and advance the teams penetration testing capabilities. Responsible for creating threat mitigation plans.

\n

\n

Minimum Position Requirements:

\n

·       Five years of hands-on penetration testing experience with operating systems, web applications, and network infrastructure.

\n

·       Administrator-level knowledge of Windows and Linux Server operating systems.

\n

·       Experience with operating system security.

\n

·       Competent with testing frameworks and tools, such as Burp Suite, Metasploit, Cobalt Strike, Kali Linux, Nessus, PowerShell Empire.

\n

·       Knowledge of the functionality and capabilities of computer network defense technologies, including router Access Control Lists (ACLs), firewalls, Intrusion Detection System (IDS)/Intrusion Prevention System (IPS), antivirus/Endpoint Detection and Response (EDR), and web content filtering.

\n

·       Strong written and verbal communication skills, including the ability to explain complex technical topics to non-technical audiences.

\n

 

\n

·       Possess one of the following certifications upon onboarding:

\n

o  Offensive Security Certified Professional (OSCP)

\n

o  Offensive Security Web Assessor (OSWA)

\n

o  GIAC Web Application Penetration Tester (GWAPT)

\n

o  GIAC Penetration Tester (GPEN)

\n

 

\n

·       Obtain one of the following certifications within 9 months of onboarding:

\n

o  GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)

\n

o  Offsec Experienced Penetration Tester (OSEP)

\n

o  Offsec Web Expert (OSWE)

\n

Reports To

\n

Assigned Program Manager

\n

 

\n

Security Clearance Requirements

\n

Secret

\n

\n

Travel Requirements

\n

Travel is anticipated to be 10% - 15% within the Continental United States and 5%-10% outside the Continental United States

\n

 

\n

Benefits & Compensation

\n

•       New employees are eligible to participate in the company’s benefits plan on their day of hire unless

\n

noted otherwise.

\n

•       Medical Insurance

\n

•       Vision & Dental Insurance

\n

•       Long Term & Short-Term Disability, Group Life and AD&D Insurance – 100% Employer Paid

\n

•       Flexible Spending Plan

\n

•       Health Savings Account

\n

•       401(k) Savings Plan – 100% match for the first 3% contributed plus 50% of the next 2% contributed. (no vesting period and eligibility is your date of hire).

\n

•       Paid holidays – Eleven (11) per year

\n

•       Paid Time Off - One hundred-twenty (120) accrued hours per year

\n

•       Professional Development Program

\n

•       Salary will be determined based on the individual’s education and experience level

\n

 

\n

Equal Employment Opportunity Policy Statement

\n

It is the policy of SteelToad Consulting LLC. and its subsidiaries (the “Company”) not to discriminate against any employee or applicant for employment because of race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, marital status, genetic information, mental or physical disability (and medical condition, for employees in California) or because he or she is a protected veteran. It is also the policy of the Company to take affirmative action to employ and to advance in employment,

\n

 

\n

all persons regardless of race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, marital status, genetic information, mental or physical disability (and medical condition, for employees in California) or protected veteran status, and to base all employment decisions only on valid job requirements. This policy shall apply to all employment actions, including but not limited to recruitment, hiring, upgrading, promotion, transfer, demotion, layoff, recall, termination, rates of pay or other forms of compensation and selection for training, including apprenticeship, at all levels of employment.

\n

Employees and applicants of the Company will not be subject to harassment on the basis of race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, marital status, genetic information, mental or physical disability (and medical condition, for employees of California) or because he or she is a protected veteran. Additionally, retaliation, including intimidation, threats, or coercion,

\n

because an employee or applicant has objected to discrimination, engaged or may engage in filing a complaint, assisted in a review, investigation, or hearing or have otherwise sought to obtain their legal rights under any Federal, State, or local EEO law is prohibited.

\n

 

\n

 

\n

NOTE: These statements are intended to describe the general nature and level of work involved for this job. It is not an exhaustive list of all responsibilities, duties, and skills required of this job.

\n

\n

 

Vacancy posted 6 days ago
Similar jobs that could be interesting for youBased on the Vulnerability Assessment Analyst and Penetration Tester in San Diego, CA vacancy
  •  ...Position Title Vulnerability Assessment Analyst and Penetration Tester   Work Location Camp Pendleton, CA   Position Description The Vulnerability Assessment Analyst and Penetration Tester is responsible for the delivery of continuous cyber assessments,... 
    Suggested
    Temporary work
    Apprenticeship
    Local area
    Flexible hours

    SteelToad

    San Diego, CA
    1 day ago
  • $115k - $155k

     ...Job Description Job Description Sigma Defense is seeking a Senior Systems Analyst: Training Technical Assessments SME capable of walking into a Navy training site, understanding the operational C4I system and its installed Fleet configuration, assessing the training... 
    Suggested
    Contract work
    Work at office

    Sigma Defense

    San Diego, CA
    24 days ago
  • $100k - $110k

    Cybersecurity Analyst / Information Systems Security Officer (ISSO) About this position...  ..., Risk Management Framework (RMF), and Assessment & Authorization (A&A) activities across...  ...cybersecurity compliance requirements, vulnerability management, and system authorization... 
    Suggested
    Temporary work
    Local area

    Accelint Holdings LLC

    San Diego, CA
    4 days ago
  • $50 per hour

     ...responsibilities in their absence.Lead the implementation and assessment of security controls as defined by the system authorization...  ...risks.Ensure POA&Ms or remediation plans are in place for vulnerabilities identified during monitoring activity, audits, inspections,... 
    Suggested
    Full time
    Temporary work
    Work experience placement
    Casual work
    Flexible hours
    Shift work
    Day shift

    Lockheed Martin

    San Diego, CA
    5 days ago
  • $130k - $200k

     ...development lifecycle. This is a senior technical role for someone who can operate independently, establish security guardrails, assess vulnerabilities and risk, and translate security requirements into practical solutions for engineering teams. The role will be... 
    Suggested
    Full time

    Insight Global

    San Diego, CA
    3 hours ago
  •  ...OT Security Engineer – IT & OT Vulnerability Assessment Location: San Diego, CA Contract Position Job Summary We are seeking an experienced OT Security Engineer to perform onsite IT and OT Vulnerability Assessments across industrial environments. The... 
    Contract work

    Quantum World Technologies Inc.

    San Diego, CA
    4 days ago
  • $117k - $130k

     ...timeDescriptionThe Cybersecurity Analyst leads Bumble Bee’s day-to-...  ..., and track patching and vulnerability remediation.· Collaborate with...  ....· Conduct security risk assessments for existing and prospective...  ...CIS).· Tabletop exercise and penetration testing experience.· Understanding... 
    Full time
    Local area
    Flexible hours

    Bumble Bee Foods

    San Diego, CA
    2 days ago
  •  ...administrators to ensure security configurations are applied during the system development lifecycle. Conduct comprehensive vulnerability assessments utilizing the Assured Compliance Assessment Solution (ACAS/Nessus) and analyze the results to identify critical flaws.... 
    Contract work

    Jobleads-US

    San Diego, CA
    6 days ago
  •  ...Quality Assurance Tester IIPalco is seeking a Quality Assurance Tester II to join our...  ...developers, product managers, and business analysts to clarify requirements and resolve...  ...including reproduction steps and severity assessments.Participate in Agile ceremonies and contribute... 
    Work experience placement
    Remote work
    Work from home

    American Statistical Association - ASA

    San Diego, CA
    2 days ago
  •  ...The ISSM is responsible for attaining and maintaining system assessments and authorizations through government authorizing agencies from...  .../ or corrective measures have been taken when an incident or vulnerability has been discovered.Communicate, implement, and manage a... 
    Immediate start
    Flexible hours

    MCR

    San Diego, CA
    5 days ago
  •  ...implement methods to remediate network and application security vulnerabilities. Architecture & Risk Management: Lead security architecture...  ...risk-focused reports including internal and 3rd party Risk Assessments. Develop the overall security design, development, testing,... 
    Full time

    Alacrinet

    San Diego, CA
    2 days ago
  • $70 - $90 per hour

     ...Job Description Yoh is seeking a UKG System Analyst for a part-time (20 hours/week) contract engagement supporting enterprise HR systems...  ...processes. \n Partner with internal stakeholders to assess business needs and recommend scalable solutions within UKG, including... 
    Contract work
    Part time
    Immediate start
    Remote work

    Yoh, A Day & Zimmermann Company

    San Diego, CA
    5 days ago
  • $95.5k - $181.7k

     ...validation events, and perform scenario-based analysis to identify and resolve technical observations.Complete system performance assessments and validation testing to ensure compliance with requirements and specifications.Execute integration plans and testing activities... 
    Temporary work
    Work experience placement
    Interim role
    Work at office
    Local area
    Remote work
    Relocation package
    Flexible hours

    Raytheon

    San Diego, CA
    2 days ago
  • $96.6k - $160.85k

     ...knowledge, skills, and abilities of the applicant, internal equity, and alignment with market data. Description Developing and updating assessment and authorization documentation (Body of Evidence) for management and continuous monitoring of information systems Performing... 
    For contractors
    Local area

    Scientific Research

    San Diego, CA
    4 days ago
  • $118.3k - $224.9k

     ...validation events, and perform scenario-based analysis to identify and resolve technical observations.Complete system performance assessments and validation testing to ensure compliance with requirements and specifications.Execute integration plans and testing activities... 
    Temporary work
    Work experience placement
    Interim role
    Work at office
    Local area
    Remote work
    Relocation package
    Flexible hours

    Raytheon

    San Diego, CA
    5 days ago
  •  ...Term Contract Job Description: Develop and implement comprehensive data migration strategies and plans for Teamcenter PLM. Assess the current data environment and identify systemic changes, data model updates required to support migration from source (Agile PLM... 
    Long term contract

    Programmers.io

    San Diego, CA
    1 day ago
  • $141.5k - $212.2k

     ...communication skillsExcellent organization, coordination, leadership, team-building and team engagement talentKnowledge of market assessment techniques and insights along with ability to create aspirational and achievable business plansPossess a valid driver's license... 
    Full time
    Contract work
    Temporary work
    Part time
    Casual work
    Local area
    Flexible hours

    Stantec

    San Diego, CA
    3 days ago
  • $154.38k - $193.13k

     ...iOCR)Agentic AI systems and multi-agent orchestration.Worked across the end-to-end AI solution lifecycle: use case discovery, data assessment, solution architecture, model development, deployment, and monitoring.Experience translating business problems into AI solution... 
    Full time
    Temporary work
    Work experience placement

    Infosys Technologies

    San Diego, CA
    3 days ago
  • $145k - $180k

     ...In this role, you’ll contribute to technical cybersecurity assessment and oversight, evaluating program cyber posture, identifying...  ...related discipline. ~ Experience assessing cyber posture, vulnerabilities, security controls, and Continuous Monitoring capabilities.... 
    Full time
    Temporary work
    Work at office
    Remote work
    Flexible hours

    G2 Ops Inc

    San Diego, CA
    5 days ago
  •  ...diagnostic interfaces on production systemsWrite system architecture specifications for platform security featuresDrive security assessment and audit readiness for AMD platforms, and close findings into the architectureApply AI-assisted engineering tooling to accelerate... 
    Work at office
    Remote work

    AMD

    San Diego, CA
    1 day ago
  •  .... Conduct thorough risk assessments of current and emerging technologies...  ...platforms (SIEM, IDS/IPS, vulnerability management, etc.) into the...  ...assessments and penetration testing efforts, working closely...  ...engineers and analysts, fostering a collaborative... 
    Full time
    Temporary work
    Work experience placement
    Local area
    Shift work

    Old Dominion Freight

    San Diego, CA
    3 days ago
  •  ...Client:TCS Location:Remote Oppurtunity with 20% Travel to San diego,CA Partner with IT and business units to conduct security assessments, generate threat models, address findings, and validate adherence to security guidance. • Provide security recommendations on... 
    Remote work

    Purple Drive

    San Diego, CA
    4 days ago
  • $180k - $200k

     ...improving software and infrastructure security posture through vulnerability management, automated security pipelines, container hardening...  .... Experience supporting ATO packages, security control assessments, compliance documentation, control validation, cybersecurity... 
    Contract work
    Local area

    Jobleads-US

    San Diego, CA
    2 days ago
  • $131.3k - $237.35k

     ...53 or DoD-specific requirements), and assessing those controls for effectiveness. The...  ...continuous monitoring, identify vulnerabilities, address compliance gaps, recommend useful...  ...assessments, vulnerability scans, and penetration testing. eMASS (Enterprise Mission... 
    Work experience placement
    Immediate start
    Flexible hours

    Jobleads-US

    San Diego, CA
    6 days ago
  •  ...continuous monitoring and compliance with DoD requirements. The ideal candidate will perform risk assessments, manage SSP/SAR/POA&M artifacts, and address vulnerabilities using SAST/DAST approaches, while collaborating with mission-focused teams on-site. #J-18808-... 

    Jobleads-US

    San Diego, CA
    6 days ago
  • $97k - $110k

     ..., tuition reimbursement, and more. GENERAL JOB SUMMARY: Conducts audits of internal information technology system and risk assessments. Develops and implements an audit and control framework to monitor IT production environments for potential system integrity, cyber... 
    Temporary work
    Work experience placement
    Work at office

    Kratos Defense

    San Diego, CA
    3 days ago
  • $100.63k - $167.79k

     ...posture. This is an exciting time to join the Information Security Vulnerability Management team as we are continuing to expand the Application...  ...enhance application security CI/CD pipeline and continually assess security posture for improvement. 5+ years of experience... 
    Work from home

    The Private Trust Company, an affiliate of LPL

    San Diego, CA
    2 days ago
  •  ...San Diego. The role focuses on security, RMF, and cross-domain integration across DoD programs. You will design, implement and assess security controls, prepare security plans, and coordinate certifications. A US citizenship and active DoD Secret clearance are required... 

    Jobleads-US

    San Diego, CA
    2 days ago
  • $125.3k - $187.9k

     ...:Design, plan, implement, and perform assessment of security controls, polices, and processes...  ...protocols and architectures, and penetration tools and techniques.Support the...  ...Windows environments.Experience with vulnerability and compliance scanners such.Working experience... 
    Work experience placement
    Relocation
    Shift work

    Jobleads-US

    San Diego, CA
    2 days ago
  • $170k - $205k

     ...cloud security controls across AWS environments* Monitor, investigate, and respond to security threats, vulnerabilities, and incidents* Conduct security assessments and recommend risk mitigation strategies* Partner with infrastructure, application, and engineering teams... 

    KForce

    San Diego, CA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Vulnerability Assessment Analyst and Penetration Tester. Be the first to apply!