Job Directory Penetration Tester

Penetration Tester
Washington, DC

Companies like
are looking for tech talent like you.

On Hired, employers apply to you with up-front salaries.
Sign up to start matching for free.

About

Job Description

Penetration Tester

The Challenge:

Everyone knows security needs to be "baked in" to a system architecture, but you actually know how to bake it in. You can identify and implement ways to harden systems and reduce their attack surface. What if you could use your hacking skills to design and build secure systems for the DoD? We're looking for an penetration tester who can help create and test solutions for the DoD that will stand up to even the most advanced Cyber threats.

As a penetration tester on our project, you'll work to help secure our nation's critical infrastructure and platform systems. You'll work with our internal teams, OEMs, and the client to identify the right mix of tools and techniques to translate your client's needs and future goals into a plan that will enable secure and effective solutions. We need to come up with the best solution, so you'll investigate new techniques, break free from the legacy model, and go where the industry is going. As a team, we'll take a critical approach to network design, providing alternatives and customizing solutions to maintain a balance of security and mission needs. This is a chance to learn from a team of experts as you make a difference in the security of critical infrastructure and platform systems. Your contributions will help clients overcome their most difficult challenges by integrating secure practices like continuous monitoring, integrated testing capabilities, and model-based security. You'll be able to gain experience with testing in challenging environments, including legacy systems, non-traditional communication systems, and mission critical environments while building peace of mind in a critical infrastructure. Join our team as we ensure client system resiliency through Cybersecurity.

Empower change with us.

Build Your Career:

Rewarding work, fun challenges, and a ton of investment in our people-that's Booz Allen cyber. When you join Booz Allen, we'll help you develop the career you want.

Competitions - From programming competitions at our PyNights (Python competition and learning events) to competing in CTFs, we've got plenty of chances for you to show off your skills.

Paid Research - Have an innovative idea to explore or hypothesis to test? You can participate in challenges via our crowdsourcing platform, the Garage, and other programs to be awarded dedicated time and/or funding to advance your skills.

Cyber University - CyberU has more than 5000 instructor-led and self-paced Cyber courses, a free online library that you can access from just about anywhere-including your phone-and certification exam prep guides that include practical assessments to prepare you for your exam.

Academic Partnerships - In addition to our tuition reimbursement benefit, we've partnered with University of Maryland University College to offer two graduate certificate programs in Cybersecurity-fully funded without a tuition cap.

Maker/Hackerspaces - Race drones, print 3D gadgets, drink coffee from our Wi-Fi coffee maker, and get hands-on training on tools and tech from in-house experts in our dedicated maker and hackerspaces.

You Have:

* Experience with using, administering, and troubleshooting two or more major flavors of Linux, including Ubuntu or RedHat
* Experience in Windows environments
* Experience with scripting and editing existing code and programming using one or more of the following: Perl, Python, Ruby, bash, C/C++, C#, or Java
* Experience with security assessment tools, including Nessus, WebInspect, AppDetective, Hailstorm, Metasploit, Burp Suite Pro, Cobalt Strike, or Empire
* Knowledge of application, database, or Web server design
* Knowledge of network vulnerability assessments, Web application security testing, network penetration testing, red teaming, security operations, or hunt
* Knowledge of open security testing standards and projects, including OWASP or ATT&CK
* Ability to convey results clearly in formal technical reports
* Secret clearance
* HS diploma or GED

Nice If You Have:

* Experience with working in a commercial consulting or professional services environment
* Experience with assembly languages, including x86 or reverse engineering
* Experience with wireless LAN security, including 802.11 standards
* Experience with phishing and other social engineering tactics
* Experience with hardware reverse engineering using JTAG or UART
* Experience with physical security assessments, including the use of proxmark3 or similar proximity card spoofing or copying devices
* Ability to show passion and enthusiasm for security and technology
* BS degree in Computer Engineering, CS, or a related field preferred

Clearance:

Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Secret clearance is required.

We're an EOE that empowers our people-no matter their race, color, religion, sex, gender identity, sexual orientation, national origin, disability, veteran status, or other protected characteristic-to fearlessly drive change.

Let your dream job find you.

Sign up to start matching with top companies. It’s fast and free.