Junior Penetration Tester

3 months ago


Washington, United States Gunnison Consulting Group Inc Full time
Job DescriptionJob Description

Duties and responsibilities:

  • Conduct security testing of IT assets, web applications, infrastructure assets and technologies, mobile applications, custom developed software implementations, virtual technologies, COTS products, cloud implementations, common application platforms, and other technologies connecting to or interacting with the Judiciary network.
  • Develop and maintain a repeatable methodology for performing security testing. Security test planning should include, but is not limited to: threat modeling, map business requirements to the applicable security requirements, determine appropriate security controls, test scenarios and test cases.
  • Develop the Security Test Plans.
  • Perform security testing, vulnerability analysis, and risk analysis in accordance with an industry-proven, repeatable methodology.
  • Evaluate the effectiveness of security controls as they relate to the applicable security controls of the system tested.
  • Relate test results to controls in NIST SP 800-53, as reflected in the JISF.
  • Develop, maintain and use customized testing scripts (testing automation) for individual and team use.
  • Develop and deliver reports as required.

Required Qualifications:

  • Knowledge and experience with manual host testing per CIS benchmarks.
  • 3-5+ years of experience in the information technology field.
  • Knowledge of and experience with Nessus.
  • Knowledge of OWASP Top 10.
  • Some penetration testing experience required.
  • Prefer knowledge of and experience with the following tools:
    • Acunetix
    • Burp Suite
    • Appdetective
    • DbVisualizer
  • Knowledge of NIST SPs and NIST Risk Management Framework (RMF).
  • Knowledge of computer networking concepts and protocols, and network security methodologies.
  • Strong attention to detail.

Education Requirement: Bachelor's Degree in STEM field preferred.

Certification Requirement: Industry standard certification (e.g. Security+) preferred.

Clearance Requirement: Ability to obtain and maintain a Public Trust.

*This opening is contingent upon future vacancy of the Junior Penetration Tester position.


Why Join Gunnison?

  • Gunnison takes on ambitious projects. We target fun, challenging work that requires creative thinking and innovation.
  • Quality is our top priority.
  • Gunnison employee benefits meet or exceed what other companies in the Washington, D.C. metropolitan area offer.
  • As a small firm there is a great sense of camaraderie at Gunnison. Employees are treated like family. This is an atmosphere we will maintain as we continue to grow.
  • We are growing rapidly and the opportunity for individual professional growth with Gunnison is outstanding.
  • We hire for careers at Gunnison, not to fill a position.

Employee Benefits

Gunnison employee benefits meet or beat other companies in the Washington, D.C. metropolitan area, including:

  • Bonuses AND profit-sharing
  • 401k Matching
  • Certifications and training allowance $2,500/year
  • 3 weeks of personal leave your first year (160 hours can roll over every year)
  • Up to 5 days of Flex-Time-Off per year

Equal Opportunity/Affirmative Action Employer. Must be eligible for employment in the United States. We are unable to sponsor candidates at this time

In 1994 Gunnison Consulting Group began serving the greater Washington, D.C. metro area, focused on tackling our customers' most ambitious technology projects. By creating a culture dedicated to enabling our customers and employees to achieve more than they ever thought they could, the company has thrived for 25 years.


  • Penetration Tester

    3 months ago


    Washington, United States Cyber Security Innovations Full time

    Job DescriptionJob DescriptionCSI is looking for a Penetration Tester to join our team on an upcoming Security and Privacy Assessment project in the non-profit telecommunications industry. The Pen Tester will complement risk assessments as ongoing defense against technical security threats of weakness exploitation for the same systems.This role is hybrid...

  • Penetration Tester

    2 weeks ago


    Washington, United States Blue Mantis Full time

    Are you ready to take your cybersecurity career to the next level and work with a team of elite offensive security professionals? We're seeking a seasoned Senior Penetration Tester with extensive experience in red teaming. As a senior member of our offensive security team, you'll play a pivotal role in safeguarding our clients' digital assets by identifying...

  • Penetration Tester

    2 weeks ago


    Washington, United States Blue Mantis Full time

    Are you ready to take your cybersecurity career to the next level and work with a team of elite offensive security professionals? We're seeking a seasoned Senior Penetration Tester with extensive experience in red teaming. As a senior member of our offensive security team, you'll play a pivotal role in safeguarding our clients' digital assets by identifying...

  • Penetration Tester

    3 months ago


    Washington, United States Graham Technologies Full time

    Job DescriptionJob DescriptionJob Overview:Graham Technologies (GTECH) is seeking a Penetration Tester whose primary duties will be providing penetration tests to find, exploit, and report technical risks and recommending steps to remove, mitigate, or avoid each discovered technical risk and weakness.You will be happy to know that this is a hybrid position....

  • Penetration Tester

    4 weeks ago


    Washington, United States Experis Full time

    Position: Penetration Tester Location: Washington DC (metro accessible) Duration: 6 Month Contract with likely extension Hybrid:  on site 3 days a week Experis is partnered with a global financial organization in their search for a Penetration Tester to join their team in Washington, DC. Candidate must have strong manual penetration experience, as well as...


  • Washington, United States New Light Technologies In Full time $110,000 - $150,000

    Job DescriptionJob DescriptionSenior Penetration Tester**Location**: Washington, DC (Remote with potential onsite requirements)**Reports To**: Chief Information Security Officer (CISO)**Contract Type**: Labor-Hour**Position Summary**:The Senior Penetration Tester will be responsible for conducting regular and ad-hoc penetration testing of the HBX's...

  • Penetration Tester

    4 weeks ago


    Washington, United States ASCENDING Full time

    Job DescriptionJob DescriptionLocation: 100% Remote within United StatesOverview:We are seeking a highly skilled Application Penetration Tester to join our client's team in a long-term contract position. This role involves performing hands-on application penetration testing, identifying security vulnerabilities, and working with application teams to...

  • Penetration Tester

    3 months ago


    Washington, United States Fusion Technology LLC Full time

    Job DescriptionJob DescriptionPenetration Tester Who are you?Trusted Employee: The Government trusts you and so do we. You possess an active Public Trust security clearance (Or are able to obtain a Public Trust clearance). You must also be able to obtain Department of Homeland Security (DHS) suitability.U.S. citizenship is a requirement for this position....

  • Penetration Tester

    1 month ago


    Washington, Washington, D.C., United States IBM Full time

    Your Role and ResponsibilitiesAs a Senior Penetration Tester you will be supporting the mission of a progressive Federal agency. You will perform vulnerability assessments and penetration testing following the customer's prescribed scope to target, assess, and exploit risk and vulnerabilities of information systems and inform strategic decisions. The...


  • Washington, United States CODICE Full time

    Job DescriptionJob DescriptionSalary: $65-$85 per hourPOSITION SUMMARY:  CODICE seeks a highly skilled Senior Penetration Tester to join our cybersecurity team. This role is crucial in ensuring the security and compliance of our systems through regular and ad-hoc penetration testing. The ideal candidate will be an expert in building and executing...


  • Washington, United States CODICE Full time $65 - $85

    Job DescriptionJob DescriptionPOSITION SUMMARY:CODICE seeks a highly skilled Senior Penetration Tester to join our cybersecurity team. This role is crucial in ensuring the security and compliance of our systems through regular and ad-hoc penetration testing. The ideal candidate will be an expert in building and executing vulnerability assessment and...


  • Washington, United States CODICE Full time $65 - $85

    Job DescriptionJob DescriptionPOSITION SUMMARY:CODICE seeks a highly skilled Senior Penetration Tester to join our cybersecurity team. This role is crucial in ensuring the security and compliance of our systems through regular and ad-hoc penetration testing. The ideal candidate will be an expert in building and executing vulnerability assessment and...

  • Penetration Tester

    4 weeks ago


    Washington, United States DotWave Solutions Full time

    You must have an active TOP SECRET LEVEL SECURITY CLEARANCE to be considered for this role.We are currently seeking a skilled Penetration Tester with a Top Secret Level Security Clearance to join our team on a remote, part-time contract with one of our esteemed government clients. In this role, you will play a crucial part in assessing and enhancing the...

  • Penetration Tester

    4 weeks ago


    Washington, United States DotWave Solutions Full time

    You must have an active TOP SECRET LEVEL SECURITY CLEARANCE to be considered for this role.We are currently seeking a skilled Penetration Tester with a Top Secret Level Security Clearance to join our team on a remote, part-time contract with one of our esteemed government clients. In this role, you will play a crucial part in assessing and enhancing the...


  • Washington, United States Data Intelligence, LLC Full time

    DI is looking for a Penetration Tester/Red Seal SME to work on our NIWC PAC contract under the United States Coast Guard task order. This is a hybrid position with being onsite at Coast Guard Head Quarters for at least 3 days a week.Responsibilities:Provide Test/Scan support using the RedSeal toolSolid penetration testing skill set with added RedSeal or...


  • Washington, United States Data Intelligence, LLC Full time

    Data Intelligence, LLC is seeking a skilled Cybersecurity Penetration Tester and RedSeal Specialist to contribute to our initiatives supporting government contracts. This role involves a hybrid work model, requiring presence at designated locations for a portion of the week.Key Responsibilities:Conduct comprehensive testing and scanning utilizing the RedSeal...


  • Washington, United States Booz Allen Hamilton Full time

    Penetration Tester, MidKey Role:Support remote testing efforts of a client's network to expose weaknesses in security. Maintain baseline system security according to organizational policies. Monitor and evaluate the effectiveness of the enterprise's cybersecurity safeguards to ensure that they provide the intended level of protection. Work with stakeholders...


  • Washington, United States Booz Allen Hamilton Full time

    Penetration Tester, MidKey Role:Support remote testing efforts of a client's network to expose weaknesses in security. Maintain baseline system security according to organizational policies. Monitor and evaluate the effectiveness of the enterprise's cybersecurity safeguards to ensure that they provide the intended level of protection. Work with stakeholders...


  • Washington, United States GSSR Inc Full time

    Job DescriptionJob DescriptionCandidate must havestrong manual penetration experience, as well as API testing.Responsibilities:Manage, modify and tweak the Application and database security scan profile as per the company\'s baseline standards.Perform security analysis of the different layers of the systems (application database layers) by performing...


  • Washington, United States Sev1Tech Full time

    Position Overview Sev1Tech is seeking a Lead Cybersecurity Vulnerability and Penetration Testing Specialist to contribute to a significant program focused on network security, cybersecurity, and cloud engineering support services for a government client dedicated to safeguarding security and public safety. This role encompasses a diverse array of...