Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Penetration Tester

Guidepoint Security Llc

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

About GuidePoint Security

GuidePoint Security is a leading cybersecurity solutions and services firm enabling federal government organizations to make smarter security decisions that minimize risk. With more than 800 vetted technology vendor partnerships and deep practitioner expertise across every major cybersecurity domain, GuidePoint serves more than half of the U.S. Government's cabinet-level agencies across Civilian, DoD, and Intelligence Community segments, as well as Federal System Integrators and major defense prime contractors. We are growing our federal engineering team and looking for technically exceptional engineers who thrive at the intersection of federal mission and cybersecurity technology.

The Pen Tester role will be responsible for performing comprehensive Risk and Vulnerability Analysis (RVA) assessments, functioning as penetration and purple team assessments. The role will be in response to performing penetration testing engagements using major frameworks like OWASP and NIST, against a range of technologies such as web applications, servers, operating systems, cloud services, AI workflows, and network devices.

Onsite requirement (Candidates must reside within the Washington, D.C. metropolitan area) - This role supports a federal customer in Alexandria, VA.

What You'll Get To Do:
  • Perform analysis of submitted findings and vulnerabilities and provide a written report covering risk, likelihood of exploitation, and recommendations for remediation.
  • Handle vetting of multiple vulnerabilities simultaneously, demonstrating efficiency and organization, to ensure all vulnerabilities are addressed in a timely manner.
  • Swiftly confirm or deny the legitimacy of submitted vulnerabilities, ensuring rapid response times while maintaining the integrity of the vulnerability disclosure process.
  • Provide insightful guidance and support to system owners regarding the agency's patching processes and timelines, helping them navigate and comply with these procedures.
  • Ensure all findings and analyses are reported in a timely and efficient manner, maintaining a consistent flow of information and updates.
  • Provide comprehensive start-to-finish RVA assessments, encompassing initial customer outreach, meticulous planning, thorough execution, and detailed reporting.
  • Utilize expertise in assessing both current and emerging technology platforms and architectures, ensuring assessments are relevant and comprehensive.
  • Conduct expert-level assessments using major frameworks like OWASP and NIST, covering a range of technologies such as web applications, servers, operating systems, cloud services, AI workflows, and network devices.
  • Perform in-depth insider threat analysis, integrating it as a crucial part of the assessment process to identify potential internal security risks.
  • Research and simulate emerging zero-day threats, creating mock-up scenarios to demonstrate the feasibility of exploitation and assess system vulnerabilities.
  • Develop custom scripts for specialized exploitation scenarios, tailoring attack strategies to effectively test specific system vulnerabilities.
  • Demonstrate hands-on experience with popular penetration testing software such as Meterpreter Pro, Nessus, and Cobalt Strike, using these tools to conduct thorough assessments.
  • Analyze vulnerability scans and perform follow-on testing of systems to verify exploitability, ensuring comprehensive identification of security weaknesses.
  • Conduct trend analysis across assessments to identify common vulnerabilities among disparate systems, aiding in the development of targeted security strategies.
  • Develop SOPs and best practices for penetration testing and vulnerability assessment, documenting these in corporate knowledge repositories for enterprise-wide distribution.
  • Communicate technical issues effectively to non-technical management, translating complex cybersecurity concepts into understandable terms.
  • Work within corporate issue and knowledge tracking systems, providing continuous status updates on projects and ensuring seamless integration with existing workflows.
  • Test and document new tools, techniques, tactics, and scripts for usability security acceptance testing.
Requirements
  • Ability to obtain and maintain a Public Trust clearance.
  • Bachelor's degree in computer science, Cybersecurity, Information Systems, Engineering, or a related technical field, or equivalent experience.
  • 5 years of experience leading penetrating testing
  • OSCP OR CEH Certification
  • Experience developing custom scripts for certain exploit scenarios and tailoring attack scenarios to test specific system vulnerabilities.
  • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes
Preferred Qualifications
  • Experience performing red-team or penetration testing engagements in a federal environment.
  • Penetration testing on HVA assets in a federal environment.
  • Hands-on experience with Meterpreter Pro, Nessus, and Cobalt Strike.
  • US Government Clearance preferred
"Applicants selected will be subject to a security investigation and must meet eligibility requirements for access to classified information."

We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.

Why GuidePoint? GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,300 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers.

Firmly-defined core values drive all aspects of the business, which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.


This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.

Some added perks....
  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Penetration Tester in Alexandria, VA vacancy
  • $90k - $130k

     ...Full-Time Clearance Requirement: TS/SCI Clearance Required Position Overview:Praescient Analytics is seeking a highly motivated Penetration Tester to join our cybersecurity team in Arlington, VA, supporting the Department of War (DoW) Chief Digital and Artificial... 
    Suggested
    Full time
    Work at office

    Praescient Analytics

    Arlington, VA
    3 days ago
  • $86k - $138k

    ResponsibilitiesPeraton is seeking an experienced Cyber Penetration Tester to become part of Peratons’ Federal Strategic Cyber programs. Location: Northern VA; Hybrid - flex as long as person can come on-site as/when needed. In this role, you will: Support the Red Cell... 
    Suggested
    Contract work
    Flexible hours
    Shift work

    Peraton Corporation

    Arlington, VA
    19 hours ago
  •  ...Description Penetration Tester Xcelerate Solutions is seeking a Penetration Tester to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support for DHRA, including DMDC and OUSD(P&R). Come join our award-winning... 
    Suggested

    VMD Corp

    Alexandria, VA
    2 days ago
  •  ...in Alexandria, VA. The first 30 days of work will be full-time on-site. in Alexandria, VA   Our client seeks an experienced penetration testing professional to plan and execute comprehensive security assessments across applications, systems, and infrastructure in alignment... 
    Suggested
    Hourly pay
    Full time
    Contract work
    Temporary work
    Local area
    2 days per week
    3 days per week

    Eliassen Group

    Alexandria, VA
    7 days ago
  • $106.3k - $221.1k

     ...more. Join us to drive positive, lasting change that moves missions and the government forward! Job Description The Penetration Tester will conduct comprehensive penetration tests on applications, networks, and systems. Identify and exploit security vulnerabilities... 
    Suggested
    Live in
    Work at office
    Local area

    Accenture

    Arlington, VA
    19 hours ago
  •  ...identifying candidates for the following position. Requisition Type:Full Time Position Status: Contingent Position Title: Penetration Tester Location:Arlington, VA Security Clearance:Secret   Duties and Responsibilities The Penetration Testersupports... 
    Full time
    For contractors

    gTANGIBLE Corporation

    Arlington, VA
    more than 2 months ago
  •  ...tested leadership, and trusted results to enable national security missions worldwide.Job DescriptionOverviewSOSi is seeking a Penetration Tester III to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting... 
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOSi

    Washington DC
    4 days ago
  • $86.8k - $198k

    Penetration TesterThe Opportunity:Conduct testing and analysis to identify vulnerabilities and potential threat vectors in systems and networks...  ...Certified Professional (OSCP), HTB Certified Penetration Tester Specialist (CPTS), eLearnSecurity Junior Penetration Tester (... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Herndon, VA
    4 days ago
  • DescriptionSAIC is seeking a highly motivated Penetration Tester. The successful candidate will provide support to the Cybersecurity Integrity Center (CIC) in the Department of State Bureau of Information Resource Management (IRM). Duties are in the Washington, D.C. metropolitan... 
    Work at office
    Local area
    Shift work
    3 days per week

    Science Applications International Corporation

    Beltsville, MD
    19 hours ago
  • ASRC Federal Technology Solutions is seeking an experienced Penetration Testerto lead advanced security assessments and contribute to the...  ....Manage and mentor a small team of junior penetration testers; provide technical guidance and training.Build and lead a Purple... 
    3 days per week

    ASRC Federal Holding Company

    Washington DC
    2 days ago
  • $104k - $166k

    ResponsibilitiesPeraton is currently seeking to hire an experienced Penetration Tester for its Federal Strategic Cyber Group. Location: Chandler, AZ and Washington DC.Role and Responsibilities: We are seeking to hire an experienced and highly skilled Penetration Tester... 
    Contract work
    Currently hiring
    Shift work

    Peraton Corporation

    Washington DC
    19 hours ago
  • $124.54k - $180k

    GovCIO is currently hiring for a Senior Pentration Tester with an active TS/SCI clearance to support DHS onsite in Washington, DC.ResponsibilitiesThe Senior Penetration Tester serves as Key Personnel responsible for leading advanced penetration testing and vulnerability... 
    Currently hiring

    Govcio

    Washington DC
    4 days ago
  •  ...Overview: Job Title: Penetration Tester Location: Reston, VA Work Mode - Hybrid role, 2 days' Work from Office (Wednesday and Thursday) Must have Skill Set - Red team pentester Job Description: Network penetration testing and experience working... 
    Work at office

    Orison

    Reston, VA
    2 days ago
  • Job Summary: The Penetration Testing Specialist / Information Security Analyst Journeyman is responsible for conducting thorough penetration...  ...Testing) certification. GPEN (GIAC Penetration Tester) certification. Special Considerations: May require handling... 
    Flexible hours

    vTech Solution

    Washington DC
    2 days ago
  •  ...solutions to  government entities to deliver predictable, measurable impact for the American taxpayer and consumer. The Integration Tester is responsible for validating and testing integrations across Amazon Connect, AWS Bedrock, Amazon Kinesis, Salesforce, Verint, and... 
    Full time
    Local area

    rockITdata

    Arlington, VA
    more than 2 months ago
  • blueStone is seeking a Cyber Security Operations Analyst in Alexandria, Virginia, to support operations for a major government client. The role involves troubleshooting and collaborating with team members while adapting to new challenges in a fast-paced work environment...

    Bluestone.com

    Alexandria, VA
    5 days ago
  • $104k - $166k

    ResponsibilitiesShape the Future of Aviation with PeratonJoin Peraton in advancing the safety, efficiency, and modernization of the National Airspace System (NAS) through the FAA’s Business, National Airspace, and Technical Computing Services (BNATCS) contract. As a trusted...
    Contract work
    Shift work

    Peraton Corporation

    Herndon, VA
    3 days ago
  • $178.4k - $226.7k

    AHAS reduces the risk of human and operator access to AWS production systems and customer environments. As the Senior Security Engineer embedded with an AHAS software development team, you own the security design decisions for the operator-access tooling this team builds...
    Internship
    Remote work
    Flexible hours

    Amazon

    Arlington, VA
    1 day ago
  • $136k - $184k

     ...Engineering, Computer Science, or a related field- Knowledge of system security vulnerabilities and remediation techniques, including penetration testing and the development of exploits or equivalent- Experience with web protocols, common security attacks, and remediation (... 
    Internship
    Flexible hours
    Shift work

    Amazon

    Arlington, VA
    3 days ago
  • $178.4k - $226.7k

    Corporate Services Security (CPSS) is the Amazon security team aligned with Finance & Global Business Services (FGBS), People eXperience & Technology (PXT), Legal and Global Communications and Community Impact (GCCI) business units.Our Mission is to protect and safeguard...
    Internship
    Flexible hours

    Amazon

    Arlington, VA
    3 days ago
  • $159.3k - $202.4k

    Amazon is seeking qualified Security Engineers to join our innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats...
    Internship
    Flexible hours

    Amazon

    Arlington, VA
    3 days ago
  •  ..., and other cyber intelligence reports Required Skills Experience as a hands-on cybersecurity analyst (i.e. SOC Analyst or Penetration Tester) is required Experience with the analysis and characterization of cyber attacks Skilled in identifying different classes of... 
    For contractors

    kozmetickesluzby.vecnakraska.sk - Jobboard

    Arlington, VA
    1 day ago
  • $107.93k - $188.9k

    Position Summary Deloitte’s Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM ...
    Remote work

    Deloitte

    Rosslyn, VA
    4 days ago
  • A leading cybersecurity consultancy is seeking a Cybersecurity Vulnerability Analyst based in Arlington, VA. The role requires an active Top Secret Security Clearance and 5+ years of experience, focusing on vulnerability analysis for federal clients. Candidates must exhibit...

    Node.Digital

    Arlington, VA
    2 days ago
  • Responsibilities Advise the Army leader on cyber risks, applicable policies, and mitigation plans Oversee analysis and reporting of security vulnerabilities across systems Perform vulnerability scans, analyze results, and assess severity Recommend remediation actions Guide...

    Jobtailor

    Arlington, VA
    2 days ago
  •  ...primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, services,...  ...peer reviews of penetration test reports and mentoring junior testers. ~ Continuous learner who keeps up with the latest offensive... 
    Remote work

    Chase

    Washington DC
    2 days ago
  • $112k - $179k

    ResponsibilitiesPeraton is currently hiring Sr Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs.Location: On-site role in Arlington, VA.In this role, you will:Fuse multiple intelligence sources to develop products, recommendations...
    Contract work
    Currently hiring
    Shift work

    Peraton Corporation

    Arlington, VA
    2 days ago
  • $86k - $138k

    ResponsibilitiesPeraton is currently seeking a Mid-Level Digital Forensic Analyst to support Federal Strategic Cyber programs in the Cyber & Intelligence sector.Location: On-site, Arlington, VARole: This role focuses on the recovery, analysis, and reporting of digital evidence...
    Contract work
    Interim role
    Local area
    Shift work

    Peraton Corporation

    Arlington, VA
    2 days ago
  • $104k - $166k

    Responsibilities Peraton is currently seeking a Senior Digital Forensic Analyst to support Federal Strategic Cyber programs in the Cyber & Intelligence sector.Location: On-site, Arlington, VAIn this role, you will: Conduct forensic examinations of digital data from cellphones...
    Contract work
    Interim role
    Local area
    Shift work

    Peraton Corporation

    Arlington, VA
    2 days ago
  • Our Partner provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide...
    Immediate start
    Remote work

    New Gen

    Arlington, VA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Penetration Tester. Be the first to apply!