Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
SC2024-003981 Penetration Testing Services (NS) - THU 23 Jan image - Rise Careers
Job details

SC2024-003981 Penetration Testing Services (NS) - THU 23 Jan

Deadline Date: Thursday 23 January 2025

Requirement: Penetration Testing Services

Location: Off-Site

Note: Please refer to your Subcontract Agreement, article 6.4.1.a, which states “Off-Site Discount: 5% (this discount is applicable to all requirements, and applies when the assigned personnel are permitted to work Off-Site, such as at- home)". Please be sure to price this discount in your overall price proposal when submitting bids against off-site RFQs

Total Scope of the request (hours): 836

Required Start Date: 10 March 2025

End Contract Date: 31 December 2025

Required Security Clearance: NATO SECRET

 

Duties and Role:  

The duties of the individual mainly focus on:

  • Provide Web and application level penetration testing;
  • Provide security design reviews to ensure compliance with NATO policies and directives;
  • Provide security consultancy and advice to projects, plans, and other entities;
  • Brief at technical levels on security reports and testing outcome

Skill, Knowledge & Experience:

  • The candidate must have a currently active NATO SECRET security clearance

The required skillset for the contracted individual is extensive knowledge and experience (more than 5 years) in the following areas:

  • Web application and thick-client penetration testing;
  • Assessing security vulnerabilities within OS, software, protocols & networks;
  • Researching and evaluating security products & technologies;
  • Knowledge in system and network administration of UNIX and Windows systems;
  • Use of penetration testing tools, techniques, and recognized testing methodologies;
  • Scripting skills in at least one of the following: Perl, Python, Ruby, shell (bash, ksh, csh);
  • Technical knowledge in system and network security, authentication and security protocols, cryptography, application security, as well as, malware infection techniques and protection technologies;
  • Ability to evaluate risks and formulate mitigation plans;
  • Proven ability to write clear and structured technical reports including executive summary, technical findings and remediation plan.
What You Should Know About SC2024-003981 Penetration Testing Services (NS) - THU 23 Jan, EMW, Inc.

Are you an experienced penetration tester looking for an exciting opportunity to showcase your skills? If so, we invite you to apply for the SC2024-003981 Penetration Testing Services position with our team. This off-site role allows you to work flexibly from home while contributing to critical security assessments. As a key player in this project, you'll provide web and application-level penetration testing, conduct security design reviews to ensure compliance with NATO policies, and offer invaluable security consultancy to various projects. Your expertise in identifying security vulnerabilities across operating systems, software, and networks will be essential, and you'll be expected to brief technical teams on your findings clearly and effectively. With the required NATO SECRET security clearance and at least five years of experience in penetration testing, especially with web applications, your technical skills will shine as you employ a variety of tools and methodologies to evaluate risks and craft mitigation strategies. Join us as we prioritize cybersecurity and uphold the highest standards in our industry. Your ability to deliver succinct technical reports will be vital, enabling stakeholders to understand complex issues effortlessly. Don't miss this chance to contribute to significant projects and grow within a supportive environment where your input matters.

Frequently Asked Questions (FAQs) for SC2024-003981 Penetration Testing Services (NS) - THU 23 Jan Role at EMW, Inc.
What are the key responsibilities of the SC2024-003981 Penetration Testing Services position?

The SC2024-003981 Penetration Testing Services role involves conducting both web and application-level penetration testing, providing security design reviews to ensure compliance with NATO policies, and offering security consultancy to projects. Additionally, you'll be responsible for communicating technical findings and remediation strategies through clear reports.

Join Rise to see the full answer
What qualifications are required for the SC2024-003981 Penetration Testing Services position?

For the SC2024-003981 Penetration Testing Services position, candidates must possess a NATO SECRET security clearance and have a minimum of five years of experience in the field. Required skills include expertise in penetration testing, knowledge of security vulnerabilities, and proficiency in scripting languages such as Perl or Python.

Join Rise to see the full answer
What is the expected start date for the SC2024-003981 Penetration Testing Services position?

The SC2024-003981 Penetration Testing Services position is set to start on 10 March 2025, providing an excellent opportunity for candidates to prepare and enhance their skills before the role begins.

Join Rise to see the full answer
How does the off-site provision work for the SC2024-003981 Penetration Testing Services role?

The SC2024-003981 Penetration Testing Services role offers the flexibility of off-site work, which allows candidates to perform their duties from home. An off-site discount of 5% applies to price proposals when assigned personnel work remotely, ensuring a cost-effective solution for both the company and clients.

Join Rise to see the full answer
What technical skills are necessary for the SC2024-003981 Penetration Testing Services position?

Candidates for the SC2024-003981 Penetration Testing Services role should have extensive knowledge in web application penetration testing, vulnerability assessment in OS and networks, and experience with UNIX and Windows systems. Familiarity with penetration testing tools and methodologies, along with scripting skills in Perl, Python, or Ruby, is crucial.

Join Rise to see the full answer
Common Interview Questions for SC2024-003981 Penetration Testing Services (NS) - THU 23 Jan
Can you explain your experience with web application penetration testing?

In responding to this question, focus on specific projects where you conducted web application penetration testing. Discuss the tools you used, methodologies followed, and the outcomes achieved, highlighting your technical expertise and your attention to detail.

Join Rise to see the full answer
What steps do you take to identify security vulnerabilities in an application?

Outline a clear step-by-step process. Begin by performing reconnaissance, followed by scanning for vulnerabilities, then exploit testing, and finally generating a comprehensive report. Emphasize the importance of thorough documentation and analysis at each stage.

Join Rise to see the full answer
What scripting languages do you prefer for automation in penetration testing?

Discuss your experience with various scripting languages, such as Python or Perl. Explain how you use these languages to automate tasks during penetration tests, as well as the benefits of automation in enhancing efficiency and accuracy.

Join Rise to see the full answer
Describe a challenging situation you faced during a security assessment and how you handled it.

Share a specific example that highlights your problem-solving skills. Detail the challenges encountered, the steps you took to address them, and the resulting improvements or learnings from that experience.

Join Rise to see the full answer
How do you stay up-to-date with the latest cybersecurity threats and trends?

Mention resources like security blogs, forums, webinars, and certifications that you utilize to keep your knowledge current. Demonstrating a proactive approach to continuous learning will showcase your commitment to the field.

Join Rise to see the full answer
How would you ensure compliance with NATO security directives in your work?

Explain your understanding of the NATO security directives and how you incorporate them into your penetration testing processes. Discuss the importance of adhering to these standards in protecting sensitive information.

Join Rise to see the full answer
Can you provide examples of your experience with security design reviews?

Prepare to share specific instances where you conducted security design reviews. Discuss the methodologies used, the findings, and how you communicated those results to stakeholders for actionable outcomes.

Join Rise to see the full answer
What are your strategies for conveying technical findings to non-technical stakeholders?

Highlight your ability to translate complex technical language into clear and understandable summaries for non-technical audiences. Emphasize the importance of effective communication in facilitating understanding and fostering collaboration.

Join Rise to see the full answer
What penetration testing tools do you find most effective and why?

Discuss a variety of tools you have experience with, such as Burp Suite, Metasploit, or OWASP ZAP. Explain why you prefer these tools, their features, and how they enhance your penetration testing effectiveness.

Join Rise to see the full answer
What role does collaboration play in your penetration testing projects?

Discuss the importance of teamwork within penetration testing projects and how collaborating with other security professionals can lead to more comprehensive assessments and improved security strategies.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 3 days ago
Photo of the Rise User
Posted 2 days ago
Photo of the Rise User
Pansophic Learning Hybrid Columbus, Ohio, United States
Posted 9 days ago
ICE Consulting Remote No location specified
Posted 8 days ago
Photo of the Rise User
Posted 7 days ago
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
LOCATION
No info
EMPLOYMENT TYPE
Contract, remote
DATE POSTED
January 12, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!