Penetration Tester
$87.1k - $157.45kLeidos
Leidos is seeking experienced Penetration Tester to support the Defense Manpower Data Center (DMDC) CyberPRIMES program. Leidos is a major partner on the contract and will provide a substantial portion of the cybersecurity workforce supporting the Defense Human Resources Activity (DHRA) and DMDC. The Penetration Tester will conduct Government-directed penetration testing and threat-hunting assessments across DHRA systems, networks, applications, and supporting technologies. This position will identify exploitable weaknesses, validate the effectiveness of defensive cybersecurity capabilities, and provide actionable findings that help system owners and cybersecurity teams reduce risk. Work Location: Mark Center, Alexandria, VirginiaMission Environment DMDC supports the Defense Human Resources Activity within the Office of the Under Secretary of Defense for Personnel and Readiness (OUSD(P&R)) and maintains the Department of Defense’s largest and most comprehensive central repository of personnel, manpower, casualty, pay, entitlement, personnel security, identity, readiness, training, and related data. The DHRA Information Technology (IT) environment includes approximately 15,000 network and endpoint devices supporting more than 600 Government-Off-The-Shelf (GOTS) applications and approximately 100 Risk Management Framework (RMF) authorization boundaries managed through the Enterprise Mission Assurance Support Service (eMASS). The penetration-testing team conducts Government-selected assessments of DHRA programs and also performs ad hoc testing with cybersecurity-tool administrators and Security Operations Center personnel to determine whether defensive capabilities are detecting and alerting as intended. Testing may span enterprise networks, web applications, applications, code, and other mission systems. Primary Responsibilities:Conduct Government-selected penetration-testing assessments and threat-hunting activities in accordance with established DMDC procedures and the National Institute of Standards and Technology (NIST) Special Publication (SP) 800-115. Develop assessment plans, methodologies, test objectives, rules of engagement, and technical approaches appropriate to the target environment. Execute authorized penetration-testing activities against networks, systems, applications, web applications, and code. Identify vulnerabilities, exploitable configurations, attack paths, and weaknesses that could be used by a malicious actor. Assess the practical exploitability and potential mission impact of identified security weaknesses. Research emerging and existing threats, attack techniques, vulnerabilities, and adversary behaviors that may affect DHRA systems. Develop testing methodologies designed to identify areas of risk likely to be targeted by an intruder. Conduct threat-hunting activities to identify suspicious or malicious activity that may not be detected through routine monitoring. Perform cooperative testing with cybersecurity-tool administrators, Security Operations Center (SOC) analysts, incident-response personnel, and Security Information and Event Management (SIEM) content developers. Validate whether enterprise cybersecurity tools properly detect, generate alerts for, and support analysis of authorized offensive activity. Identify detection or alerting gaps discovered during testing and provide technical findings to the appropriate cybersecurity teams. Support pre-audit penetration testing to identify exploitable weaknesses before formal assessments or reviews. Apply established penetration-testing methodologies and approved commercial or open-source offensive-security tools. Support Red Team and Blue Team activities designed to evaluate and improve enterprise cybersecurity defenses. Document testing activities, technical evidence, vulnerabilities, exploitation results, and risk findings. Develop post-assessment out-briefs and final assessment reports for Government stakeholders. Provide technically actionable remediation recommendations based on assessment findings. Coordinate findings with system owners, application teams, network engineers, cybersecurity personnel, SOC analysts, and incident responders. Maintain Government-Furnished Equipment and approved penetration-testing systems, laptops, software, and tools required to perform assessments. Protect assessment data, technical artifacts, credentials, exploit information, and other sensitive testing information in accordance with Government requirements. Basic Qualifications:Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related technical discipline and 4 – 8 years of prior relevant experience in order to operate within the scope contemplated by the level. Specific experience, education and training may be considered in lieu of degree.Experience conducting penetration testing, vulnerability assessment, threat hunting, offensive security, or comparable cybersecurity assessment activities. Experience assessing enterprise networks, systems, applications, web applications, or code for exploitable cybersecurity weaknesses. Experience using commercial or open-source penetration-testing and offensive-security tools. Understanding of common attack techniques, exploitation methods, network protocols, operating systems, and application-security concepts. Experience developing penetration-testing methodologies, test plans, or technical assessment procedures. Experience documenting vulnerabilities, technical evidence, exploitation results, and remediation recommendations. Ability to distinguish theoretical vulnerabilities from weaknesses that present practical exploitation or mission risk. Ability to communicate technical findings clearly to system owners, engineers, cybersecurity personnel, and Government stakeholders. Ability to conduct authorized offensive-security activities within defined rules of engagement and Government-approved procedures. U.S. Citizenship required. Active Secret security clearance required. Preferred Qualifications: Experience conducting penetration testing within Department of Defense or Federal environments. Experience applying National Institute of Standards and Technology Special Publication 800-115 testing methodologies. Experience conducting network, web-application, application, and source-code security assessments. Experience performing threat hunting or adversary-emulation activities. Experience supporting Red Team and Blue Team exercises. Experience working with Security Operations Center analysts and incident responders during cooperative testing. Experience validating SIEM detections, security alerts, or cybersecurity-tool effectiveness using controlled offensive activity. Experience conducting pre-audit or pre-authorization security assessments. Experience researching emerging vulnerabilities, attack techniques, and adversary tradecraft. Experience developing executive and technical penetration-testing out-briefs and assessment reports. Familiarity with Department of Defense Risk Management Framework processes. Familiarity with DHRA, DMDC, or comparable Department of Defense enterprise environments. If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:September 22, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $87,100.00 - $157,450.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: Alexandria, VAType: Full time
$155k - $170k
...Dark Wolf is actively seeking a Senior Penetration Tester to join our innovative team. This individual will play a critical role in assessing and enhancing the security of various products, including hardware, software, and embedded systems. This role demands a deep...SuggestedHourly payRemote work$86k - $138k
...ResponsibilitiesPeraton is seeking an experienced Cyber Penetration Tester to become part of Peratons’ Federal Strategic Cyber programs. Location: Northern VA; Hybrid - flexible as long as person can come on-site as & when needed. In this role, you will: Support the Red...SuggestedContract workFlexible hoursShift work- ...identifying candidates for the following position. Requisition Type:Full Time Position Status: Contingent Position Title: Penetration Tester Location:Arlington, VA Security Clearance:Secret Duties and Responsibilities The Penetration Testersupports...SuggestedFull timeFor contractors
- ...holidays, an employee referral program, and educational assistance. Additional details are available on our website: Title: Penetration Tester JourneymanLocation: Alexandria, VA HybridClearance: Active Top Secret with SCI eligibility security clearancePosition SummaryAdversary...SuggestedFull timeApprenticeshipLocal area
- ...solutions to government entities to deliver predictable, measurable impact for the American taxpayer and consumer. The Integration Tester is responsible for validating and testing integrations across Amazon Connect, AWS Bedrock, Amazon Kinesis, Salesforce, Verint, and...SuggestedFull time
$69.55k - $125.73k
Description We are currently seeking a Vulnerability Analyst to join the Compartmented Enterprise Services Office (CESO) effort. This program is establishing a modern secure web service (SWS) operation as part of a state-of-the-art, highly automated platform capable of...Work at officeLocal areaImmediate start- ...Penetration Tester NikSoft Systems Corporation is a recognized Information Technology solutions provider. Founded in 1998 and based in Reston, Virginia, NikSoft is a CMMI Level 3 Certified company with an established reputation for excellence and on-time delivery with...
- ...Penetration Tester Locations: Los Angeles (CA), Dallas (TX), Washington DC. Responsibilities: Assist in project scoping and SOW creation Perform offensive engagements including red teaming and penetration testing Perform penetration tests against external...Work experience placement
$130k - $190k
...Penetration Tester At Battelle, your expertise in national security plays a direct role in safeguarding our nation and shaping global security strategies. Join our team and become part of a distinguished community of professionals dedicated to developing innovative...Full timeWork experience placementWork at officeLocal areaRemote workWorldwideFlexible hours$172.14k - $232.9k
...protecting what matters. Advance how our customers operate while you advance your career. Join GDIT as an Ethical Hacker/Penetration Tester Sr Principal and build an impactful career in enterprise IT, collaborating with people who are driven and resourceful like you...Temporary workWork experience placementImmediate startRemote workWorldwideFlexible hours- ..., and other cyber intelligence reports Required Skills Experience as a hands-on cybersecurity analyst (i.e. SOC Analyst or Penetration Tester) is required Experience with the analysis and characterization of cyber attacks Skilled in identifying different classes of...For contractors
- ...Description Tharros is seeking a Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer to support a DHS Intelligence and Analysis cybersecurity program in the National Capital Region. This role will support advanced penetration...
- ...primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and... ...peer reviews of penetration test reports and mentoring junior testers. ~ Continuous learner who keeps up with the latest offensive...
$69.55k - $125.73k
We are currently seeking a Vulnerability Analyst to join the Compartmented Enterprise Services Office (CESO) effort. This program is establishing a modern secure web service (SWS) operation as part of a state-of-the-art, highly automated platform capable of supporting a...Work at officeLocal areaImmediate start- ...TITLE : Penetration Tester WORK LOCATION : Falls Church, VA (Remote) Local only CLEARANCE : Candidates should have at least a Public Trust Clearance ( Active or Inactive ) SKILLS : penetration testing, web application testing, Api testing, burp suite...Local areaRemote work
- DescriptionSAIC is seeking a highly motivated Penetration Tester. The successful candidate will provide support to the Cybersecurity Integrity Center (CIC) in the Department of State Bureau of Information Resource Management (IRM). Duties are in the Washington, D.C. metropolitan...Work at officeLocal areaShift work3 days per week
- Job Summary: The Penetration Tester is responsible for conducting hands-on security testing to assess vulnerabilities across cloud, network, and application layers. This part-time remote role focuses on ensuring the integrity of evidence, thorough documentation, and reproducible...Contract workPart timeRemote workFlexible hours
- A leading cybersecurity consultancy is seeking a Cybersecurity Vulnerability Analyst based in Arlington, VA. The role requires an active Top Secret Security Clearance and 5+ years of experience, focusing on vulnerability analysis for federal clients. Candidates must exhibit...
- ...Federal Technology Solutions is seeking an experienced Senior Penetration Testerto lead advanced security assessments and contribute to... ...activities.Manage and mentor a small team of junior penetration testers; provide technical guidance and training.Build and lead a...3 days per week
- ...DHS Suitability 5+ years of directly relevant experience Experience as a hands-on cybersecurity analyst (i.e. SOC Analyst or Penetration Tester) is required Experience with the analysis and characterization of cyber attacks Skilled in identifying different classes of...
- NTT DATA seeks a Cybersecurity and Risk Analyst to join the VAPT team, identifying and mitigating cybersecurity risks across enterprise systems, networks, and applications. You will perform vulnerability assessments, risk evaluations, and threat simulations aligned with...
$187k - $253k
Type of Requisition: Regular Clearance Level Must Currently Possess: Top Secret/SCI Clearance Level Must Be Able to Obtain: Top Secret SCI + Polygraph Public Trust/Other Required: None Job Family: IT Infrastructure and Operations Job Qualifications: Skills: Cyber ...Contract workTemporary workImmediate startRemote workWorldwideFlexible hours- Raytheon Technologies is seeking a Cyber Network Forensic Analyst III to contribute to advanced cybersecurity operations. This role involves monitoring network activity to identify and analyze cyber threats, ensuring the protection of information systems. As part of a specialized...Remote job
- Cyber Network Forensic Analyst III, TS/SCI Raytheon Technologies provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity...Immediate startRemote work
- Cyber Network Defense Analyst (CNDA) Our partner provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis...Immediate startRemote work
$122k - $253k
Responsibilities Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense ...Contract workImmediate start- ...cybersecurity, a strong analytical background, and the ability to work collaboratively across locations. Required skills include network security knowledge and hands-on experience as a SOC Analyst or Penetration Tester. #J-18808-Ljbffr kozmetickesluzby.vecnakraska.sk - Jobboard
$120k - $185k
The Leidos Analysis Solutions Business Area is seeking engineers to support the characterization of undersea naval and multi-domain threats at both the subsystem and integrated networked combat-system levels. This position will also support the development and dissemination...Work at office$101k - $152k
Senior Security EngineerWhen you join AIS, you're joining a mission-driven team that's passionate about making a difference. You'll work on projects that matter, alongside industry-leading experts, in an environment that fosters innovation, driving client success, and ...Contract work- Career Opportunities with Dynamo Technologies LLC A great place to work. Share with friends or Subscribe! Are you ready for new challenges and new opportunities? Join our team! Current job opportunities are posted here as they become available. Subscribe to our RSS feeds...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Penetration Tester. Be the first to apply!


