Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Penetration Tester - TS/SCI w/Poly image - Rise Careers
Job details

Penetration Tester - TS/SCI w/Poly

Penetration Tester

Herndon, VA.

TS/SCI w/Poly

We are looking for an experienced penetration tester to conduct penetration testing and ethical hacking, to target, assess, and exploit risk and vulnerabilities of information systems.

The Sponsor’s team provides a highly technical and in-depth penetration testing service, in support of enterprise cyber security equities. The Sponsor requires support specializing in penetration testing and ethical hacking, to target, assess, and exploit risk and vulnerabilities of information systems. The intent is to provide senior decision makers with documented and actionable data to aid in making strategic investment decisions. The team will document all identified system risks, planned test procedures, and results; perform analyses of vulnerabilities identified during testing; and review program-level documentation (e.g., requirements specification, system architecture, design documents, test plans, security plans, etc.). They will recommend changes to program-level documentation with an eye to reducing system vulnerabilities, create and document penetration testing plans and procedures, and approved testing plans and procedures to conduct hands-on penetration testing. The team will also analyze test results, document risks, and recommend countermeasures to uncovered risks; participate or lead technical exchange meetings and application review boards; document action items and results from technical exchange meetings and application review boards; and brief management on the status of action items and results of activities.

Required Skills:

Demonstrated work experience in cyber security or related IT field
Demonstrated experience with cyber penetration testing
Demonstrated experience applying computer attack methods and system exploitation techniques
Demonstrated working knowledge of cyber security principles for Linux, Windows, and virtual platforms
Demonstrated experience designing, testing, or implementing IT security architecture
Demonstrated experience performing network security analysis
Demonstrated experience analyzing network architectures
Demonstrated experience using network management tools
Demonstrated experience leveraging adversarial tactics to conduct hands-on security testing
Demonstrated experience developing risk management methodologies
Demonstrated experience analyzing test results to develop risk and threat mitigation plans
Demonstrated experience testing or reviewing system configuration, development, and design specifically around enterprise systems and hypervisors

Demonstrated experience designing, testing, or implementing complex Windows installations

Desired Skills:
Demonstrated experience participating in public and private information security groups and organizations
Demonstrated experience communicating vulnerability results and risk posture to senior executives
Demonstrated experience researching, evaluating, and developing security policies and guidance
Demonstrated experience performing complex technical tasks with minimal direction
A Bachelor's degree in Computer Science, Information Systems, Engineering, or other related scientific or technical discipline

• Vacation – 5 weeks of accrued paid vacation per year (i.e., 8.33 hours accrued per pay period worked)

• Holidays - Paid holidays published annually by the Office of Personnel Management, excluding Inauguration Day

• 100% paid for Health Benefits* (United Healthcare, Guardian Dental, VSP Vision, MetLife, Life and Disability Insurance and annual $1500 employer HSA contribution on qualified plans) *health benefits kick in the 1st of the month following your start date

• 6% 401k Contribution (3% paid out during each pay period, the additional 3% will be paid out as a lump sum in Q1 each year)

• Training Reimbursement – Approved training and education expenses will be reimbursed

• Travel Expenses – Approved travel expenses will be reimbursed *Note – From time to time, the company may change employee benefits.

Average salary estimate

$105000 / YEARLY (est.)
min
max
$90000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Penetration Tester - TS/SCI w/Poly, Leading Path Consulting

As a Penetration Tester at a leading cyber security firm in Herndon, VA, you’ll dive into the thrilling world of ethical hacking! This is an amazing opportunity for you to flex your skills in identifying and exploiting vulnerabilities within information systems. Your work will play a crucial role in helping senior decision-makers understand their security posture and make informed investment decisions. You’ll be documenting system risks, executing planned test procedures, and recommending changes to enhance the organization's security. With a focus on analyzing test results, you’ll be tasked with uncovering risks and suggesting robust countermeasures. You’ll also engage in technical exchange meetings, collaborating with seasoned experts and guiding them through the complex landscape of cyber threats. If you have a strong foundation in cyber security principles and hands-on experience in penetration testing, plus a knack for communicating insights effectively, this could be the perfect role for you! Join a dynamic team that prides itself on delivering top-notch penetration testing services, ensuring the safety and security of enterprise systems. With enticing benefits like 5 weeks of paid vacation, 100% paid health benefits, and professional training reimbursements, this position is not only rewarding in terms of career growth but also incredibly supportive of your personal well-being.

Frequently Asked Questions (FAQs) for Penetration Tester - TS/SCI w/Poly Role at Leading Path Consulting
What are the primary responsibilities of a Penetration Tester at this company?

As a Penetration Tester at our company, your primary responsibilities revolve around identifying and exploiting cybersecurity vulnerabilities in information systems. You'll design testing plans, document risks, and analyze vulnerabilities, ensuring thorough reporting to decision-makers who depend on your insights to improve their security strategies.

Join Rise to see the full answer
What qualifications are needed for the Penetration Tester position?

To qualify for the Penetration Tester role, you’ll need a Bachelor’s degree in Computer Science, Information Systems, or a related field, along with demonstrable work experience in cybersecurity or a related IT discipline. Familiarity with penetration testing techniques and strong analytical skills to interpret test results are also essential for success in this role.

Join Rise to see the full answer
Is previous experience in cybersecurity necessary for the Penetration Tester role?

Yes, previous experience in cybersecurity is crucial for the Penetration Tester position. Candidates are expected to show a strong background in conducting penetration tests, applying attack methods, and understanding security principles for both Linux and Windows environments to excel in this role.

Join Rise to see the full answer
What tools and methodologies will Penetration Testers use at this company?

At our company, Penetration Testers will leverage various network management tools and methodologies to conduct hands-on testing. You will develop risk management methodologies and utilize adversarial tactics to thoroughly assess system vulnerabilities, ensuring the highest level of protection for our enterprise systems.

Join Rise to see the full answer
How does this company support the professional development of its Penetration Testers?

Our company firmly believes in continuous professional development. We offer training reimbursement for approved educational expenses, providing opportunities for Penetration Testers to enhance their skills and stay updated with the latest cybersecurity trends and techniques.

Join Rise to see the full answer
Common Interview Questions for Penetration Tester - TS/SCI w/Poly
Can you explain your experience with penetration testing in various environments?

In responding to this question, highlight specific experiences where you've conducted penetration tests in different operating systems, such as Windows and Linux. Provide examples of methodologies you've applied and the outcomes of your testing efforts, demonstrating both technical effectiveness and a strategic understanding of cybersecurity.

Join Rise to see the full answer
What steps do you take when planning a penetration test?

When planning a penetration test, I begin by understanding the scope and objectives, then I research potential vulnerabilities and choose appropriate testing methodologies. Detailing the steps I take for risk assessment and how I ensure compliance with best practices can provide insight into my organized approach.

Join Rise to see the full answer
How do you prioritize vulnerabilities once they've been identified?

To prioritize vulnerabilities, I assess their impact and exploitability. I categorize them based on their severity and the potential risk they pose to the organization. Sharing my process for analyzing vulnerabilities and how I communicate this information to stakeholders will demonstrate my analytical skills.

Join Rise to see the full answer
What tools do you prefer to use for penetration testing and why?

I prefer using tools like Nmap for network discovery, Metasploit for exploitation, and Wireshark for traffic analysis, as they provide reliable and thorough insights into network vulnerabilities. Mentioning specific instances where these tools have contributed to successful assessments will strengthen my response.

Join Rise to see the full answer
Can you describe a challenging penetration test you’ve conducted?

When asked about a challenging test, I would describe a specific scenario, outlining the goals, the obstacles faced, and the innovative solutions I implemented to overcome them. Emphasizing what I learned from the experience will illustrate my growth and adaptability.

Join Rise to see the full answer
How do you keep yourself updated with the latest cybersecurity threats?

Staying updated with cybersecurity threats is crucial. I regularly participate in webinars, follow relevant blogs, and engage with professional security communities. Sharing specific resources and networks I rely on shows my commitment to continuous learning.

Join Rise to see the full answer
How would you communicate vulnerabilities to a non-technical audience?

I focus on translating technical jargon into understandable language while contextualizing the impact of vulnerabilities to align with business interests. Providing examples of how I’ve successfully communicated with stakeholders in previous roles will showcase my ability to bridge technical and business communication.

Join Rise to see the full answer
What ethical considerations do you keep in mind while performing penetration tests?

Ethics are paramount in penetration testing. I ensure to have explicit permissions, maintain confidentiality, and only report findings to authorized parties. Mentioning any frameworks I adhere to can reinforce my commitment to ethical practices.

Join Rise to see the full answer
Describe your experience with risk management methodologies.

I focus on identifying, analyzing, and mitigating risks effectively. Discussing specific frameworks I’ve employed, like NIST or ISO, along with examples of how I’ve designed risk management plans, will demonstrate my comprehensive approach to cybersecurity.

Join Rise to see the full answer
How do you handle stress or pressure during tight project deadlines?

When under pressure, I prioritize tasks, manage my time effectively, and focus on data-driven decision-making. Sharing examples of previous experiences where I successfully navigated tight deadlines while ensuring quality can showcase my resilience and ability to deliver results under pressure.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
ServiceNow Hybrid 4400 Carillon Point, Floor 4, Kirkland, Washington, United States
Posted 14 days ago
Inclusive & Diverse
Mission Driven
Rise from Within
Diversity of Opinions
Work/Life Harmony
Empathetic
Feedback Forward
Take Risks
Collaboration over Competition
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Conferences Stipend
Paid Time-Off
Maternity Leave
Equity
NXTGIG Remote No location specified
Posted 5 days ago
Photo of the Rise User
Posted 6 days ago
PQ Hybrid 300 Lindenwood Dr, Malvern, PA 19355, USA
Posted 4 days ago
PDI Technologies Remote No location specified
Posted 2 days ago
Photo of the Rise User
Experian Remote Centro Corporativo el Cafetal, Heredia, Heredia, Costa Rica
Posted 7 days ago
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 21, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!