Cloud Penetration Tester

3 weeks ago


Arlington, United States Peraton Full time
About Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Responsibilities Peraton is looking for an experienced Cloud Penetration Tester, Subject Matter Expert to become part of Peraton's Department of State (DoS) Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative, effective and secure business processes. Location: Rosslyn, VA. This role supports the Penetration Testing (Red Cell) Team. Position Description: * Design, plan and perform testing of cloud systems to satisfy the NIST 800-53 CA-8 security controls and using methodologies that may include, NIST SP 800-115, Penetration Testing Execution Standard (PTES), and Information Systems Security Assessment Framework (ISSAF).
* Work with the Red Cell leadership to provide support on and/or lead cloud assessments from beginning to completion including meeting with systems owners, scoping assessments, delivery of assessment reports, briefing system owners and stake holders.
* Performs leadership support on cloud implementations , network infrastructure, and operating system infrastructures.
* Organize and lead efforts that document and design improvement strategies for discovered vulnerabilities and monitoring gaps.
* Produce reports and conduct management briefings on test activities, scenarios, results and recommendations with personnel around the globe.
* Stay abreast of current attack vectors and unique methods for exploitation of computer networks.
* Provide support to incident response teams through capability enhancement and reporting.
* Evaluating cloud system security configurations and recommend enhancements.
* Provide mentoring and guidance to senior, mid, and staff members by creating and teaching latest techniques in ethical hacking and vulnerability analysis.
* Securing, testing, having a good understanding of Cloud vulnerabilities and how to address them
#DSCM2022 Qualifications Required: * Bachelor's degree and a minimum of 14 years' of relevant experience. An additional 4 years of experience may be substituted in lieu of degree.
* Experience with Burp Suite Pro or Zap, including identification and usage of relevant plugins preferred
* Experience with security assessment tools, including Nessus, Metasploit, or Cobalt Strike
* Well-rounded background in application, network, cloud, and system security
* Experience with conducting penetration and malicious user testing in Cloud environments, including Amazon Web Services (AWS), Azure, GCP, and, on premise systems.
* Proficient in evaluating cloud system security configurations.
* Has expertise in evaluating findings and performing root cause analysis.
* Understanding of common Web Application vulnerabilities like SQLi, XSS, CSRF, and HTTP Flooding.
* Must possess one of the following certifications:
* CASP+ CE
* CCISO
* CCNA Cyber Ops
* CCNA-Security
* CCNP Security
* CEH
* CFR
* CISA
* CISM
* CISSP (or Associate)
* CISSP-ISSAP
* CISSP-ISSEP
* Cloud+
* CySA+
* GCED
* GCIA
* GCIH
* GICSP
* GSLC
* SCYBER
* U.S. Citizenship required with an active Top Secret clearance before start date.Desired: * Industry certifications such as OSCP, GCPN, CCSP, OSWE, GPEN, GCIH, GWAPT, or GXPN
* Experience with server administration, TCP/IP networking, vulnerability identification and exploitation, vulnerability exploit code development, offensive security operation coordination and communication, vulnerability tracking and remediation, mobile testing
Target Salary Range SCA / Union / Intern Rate or Range EEO An Equal Opportunity Employer including Disability/Veteran. Our Values Benefits At Peraton, our benefits are designed to help keep you at your best beyond the work you do with us daily. We're fully committed to the growth of our employees. From fully comprehensive medical plans to tuition reimbursement, tuition assistance, and fertility treatment, we are there to support you all the way. * Paid Time-Off and Holidays
* Retirement
* Life & Disability Insurance
* Career Development
* Tuition Assistance and Student Loan Financing
* Paid Parental Leave
* Additional Benefits
* Medical, Dental, & Vision Care

  • Arlington, United States Peraton Full time

    About Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our...


  • Arlington, United States Peraton Full time

    About Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our...


  • Arlington, United States Peraton Full time

    About Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our...

  • Performance Tester

    1 week ago


    Arlington, United States Systems Engineering Solutions Inc Defunct Full time

    Performance Tester Years of Experience: 3 years Education Requirements:A Bachelor’s Degree in computer science, electronics engineering or other engineering or technical discipline is required.  Program Description:  Create an end-to-end management perspective to ensure proper compliance and oversight of GI Bill programs, and the use of data and...

  • Performance Tester

    2 weeks ago


    Arlington, Virginia, United States Systems Engineering Solutions Corporation Full time

    Performance Tester Years of Experience: 3 years   Education Requirements:A Bachelor’s Degree in computer science, electronics engineering or other engineering or technical discipline is required.    Program Description:  Create an end-to-end management perspective to ensure proper compliance and oversight of GI Bill programs, and the use of...


  • Arlington, United States Baer Full time

    **Federal Project - Applicant must be a United States Citizen or Permanent Residents, with the ability to obtain a Public Trust** Baer is looking for Senior Systems Tester for a 3-month Federal Remote Project. Title:Senior Systems Tester Location:Remote (Must be based in US) Duration: 3 month Rate: All-inclusive Alignment: W2 or C2C (Vendors Not Permitted)...


  • Arlington, United States Baer Full time

    **Federal Project - Applicant must be a United States Citizen or Permanent Residents, with the ability to obtain a Public Trust** Baer is looking for Mid Level Systems Tester for a 3-month Federal Remote Project. Title:Mid Level Systems Tester Location:Remote (Must be based in US) Duration: 3 month Rate: All-inclusive Alignment: W2 or C2C (Vendors Not...


  • Arlington, United States The Baer Group Full time

    **Federal Project - Applicant must be a United States Citizen or Permanent Residents, with the ability to obtain a Public Trust**Baer is looking for Mid Level Systems Tester for a 3-month Federal Remote Project. Title: Mid Level Systems Tester Location: Remote (Must be based in US) Duration: 3 month Rate: All-inclusive Alignment: W2 or C2C (Vendors Not...


  • Arlington, United States Base One Technologies Full time

    Required Education/ExperienceBS degree and 8 -10 years of prior relevant experience Additional years of experience and cyber Primary Responsibilities• Manage enterprise vulnerability compliance and will conduct vulnerability assessments of IT systems. The VAT team is responsible for the Information Security Vulnerability Management Program and...


  • Arlington, United States Zachary Piper Solutions, LLC Full time

    Zachary Piper Solutions is seeking a Cybersecurity Engineer to join a Contract-to-Hire job opportunity in Arlington, VA. This is an onsite position that offers conversion to a hybrid schedule (3 days onsite) once comfortable in the role. The Cybersecurity Engineer will be responsible for securing our customers cloud computing, data center, and on-premise...

  • Cyber Sme

    4 weeks ago


    Arlington, United States SAIC Full time

    Job ID: 2405782 **Location**:ARLINGTON, VA, US **Date Posted**:2024-04-23 **Category**:Cyber **Subcategory**:Cybersecurity Ops **Schedule**:Full-time **Shift**:Day Job **Travel**:Yes, 10 % of the Time **Minimum Clearance Required**:TS/SCI **Clearance Level Must Be Able to Obtain**:TS/SCI with Poly **Potential for Remote...


  • Arlington, United States SAIC Full time

    Description Cyber SME Description Cyber Subject Matter Expert (SME) with strong knowledge and experience with Department of Defense and Intelligence Community practices in protecting National Security. This Cyber SME will be immersed into a fast - paced, deadline-oriented environment composed of a diverse team of analysts, linguists, cultural experts, and...


  • Arlington, United States BAE Systems Full time

    Job Description BAE Systems is seeking a highly skilled and experienced Cyber Security Lead to join our NATO SEASPARROW Project Office (NSPO) team. This individual will be at the forefront of our cybersecurity efforts, ensuring the protection and integrity of our information systems against cyber threats. The successful candidate will possess a strong...

  • Incident Manager

    4 weeks ago


    Arlington, United States Base One Technologies Full time

    Responsibilities:• Utilize creativity and divergent thinking to assess and explain the impact of cybersecurity vulnerabilities on FCEB and CIKR security postures• Conduct prevalence and sector analysis of vulnerabilities with Attack Surface Management tools• Review vulnerability reporting to identify potential risks and impacts CIKR and FCEB...

  • Senior App Sec

    3 days ago


    Arlington, United States Motion Recruitment Full time

    Senior App Sec This company is the United States financial watchdog that use heavy amounts of data and analytics to track every transaction on the stock market. The company is located in the D.C. Metro area, and will remain 100% remote. Required Skills & Experience: Application Security (AppSec) domain knowledge/experience, including ALL of the...

  • Senior App Sec

    4 days ago


    Arlington, Virginia, United States Motion Recruitment Full time

    Senior App SecThis company is the United States financial watchdog that use heavy amounts of data and analytics to track every transaction on the stock market.The company is located in the D.C. Metro area, and will remain 100% remote. Required Skills & Experience:Application Security (AppSec) domain knowledge/experience, including ALL of the following:...

  • Senior App Sec

    3 days ago


    Arlington, United States Motion Recruitment Partners, LLC Full time

    Senior App Sec This company is the United States financial watchdog that use heavy amounts of data and analytics to track every transaction on the stock market. The company is located in the D.C. Metro area, and will remain 100% remote. Required Skills & Experience: Application Security (AppSec) domain knowledge/experience, including ALL of the...


  • Arlington, United States Base One Technologies Full time

    Senior Security Architect Required Education/ExperienceRequires a Bachelor’s Degree and at least 12 years of prior relevant experience or Master’s Degree and 8 years of prior relevant experience. Primary ResponsibilitiesOur Govt client has an immediate need for a Senior Security Architect for a new customer on a highly-visible and strategic Cybersecurity...


  • Arlington, United States Arsiem Corporation Full time

    Incident Manager - III Seeking a Cybersecurity Vulnerability Analyst to support this critical customer mission support a U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact of vulnerabilities and exploitable conditions across Federal Civilian Executive Branch (FCEB) entities and Critical...


  • Arlington, United States Puyenpa Services LLC Full time

    The Puyenpa family of companies are comprised of multiple SBA Certified Native American Tribal 8(a) and multi-certified organizations focused on delivering Information Technology, Management Consulting, and General Construction solutions to the Federal Government along with the Commercial Sector. We are actively seeking an Information Technology (IT) Systems...