Security Testing Engineer
2 weeks ago
Overview
Job Title: Security Testing Engineer
Location: Springfield, VA
Clearance: Secret
Telework: Hybrid
Discover an exciting career at Foxhole Technology, an innovative IT Engineering firm founded in 2007. As leaders in cybersecurity, DEVSEC OPS, Agile Developemnt, Cloud and IT support for federal civilian and defense agencies, we're at the forefront of addressing complex technology challenges. Our talented employee-owners provide agile, scalable solutions, bridging operational gaps, operating critical systems, and securing enterprises worldwide. If you're ready to be part of a team driving impactful innovations, apply today and shape the future of IT with us
Job Description
Foxhole Technology is seeking a Security Testing Engineer in support of a government client. The individual should be capable of cybersecurity testing activities across multiple technologies, assets, and networks. The effort requires testing of operating systems, databases, network fabric assets, web applications and services, source code, wireless communications, and emerging cloud solutions. To thoroughly test these technologies, individuals must be well-versed in vulnerabilities and weaknesses that can affect these assets.
Individuals supporting this effort should be capable of the following:
Maintain and stay current with in-depth technical knowledge of security testing tools in use by the customer and testing techniques.
Perform automated security testing, manual validation of automated results, and manual configuration validation of items not covered by automated testing, for the assigned area.
Make recommendations for updates, additions, and modifications to security policy as gaps or deficiencies in security policy are identified.
Provide recommendations to update existing, or create new, processes and procedures to improve the security testing program.
Engage with testing stakeholders to gather all required information needed to create detailed test plans.
Conduct security testing using the provided automated testing tools in conjunction with manual configuration validation techniques.
Have experience with the following primary tools: Nessus Professional, Nipper, DbProtect, NMAP, BurpSuite. Additional supplementary tools are available.
Handle the installation, use, and technical troubleshooting of all security testing tools, including the creation of any customized configurations within the testing tools to complete testing engagements.
Validate target lists and perform discovery scans of target subnets to determine if assets exist within subnets that have not been identified for testing.
Troubleshoot any technical issues preventing the successful completion of testing engagements within the scheduled time allotted for the engagement (i.e., insufficient credentials, whitelisting not implemented, no network access, etc.).
Validate and enrich results generated by automated testing tools. Example activities include the identification of false positive findings generated by testing tools and the adjustment of finding severities based on specific considerations within, or associated with, the affected target.
Participate in findings meetings to review and provide input on the validity of operating system stakeholder responses to findings.
Provide Subject Matter Expertise for a variety of topics concerning operating systems in various formats (verbal or written).
Work during non-core business hours, holidays, weekends, and on an as-needed basis to support off-hours testing, when required. This is estimated to occur approximately 30 days each year.
Travel on a periodic basis to support remote testing when required. This is estimated to occur five (5) days each month for local sites (i.e., within fifty (50) miles of HQ), and approximately ten (10) days each quarter to sites further than fifty (50) miles.
Support ad-hoc operating system testing engagements of a non-standard nature as they are identified to provide a benefit to IAD’s security testing requirements.
Additional duties as assigned in support of this security testing effort.
Minimum Requirements
At least eight (8) years of technical IT security experience. Such experience can come from system or network administration, security analysis, security testing and evaluation, security incident response, security monitoring, IT project implementation, or other similar technical activities.
At least five (5) years of experience performing security control assessments (i.e., security testing such as security auditing, primary assessor for Security Control Assessments, etc.).
Experience with manual scanning of complex technical architectures using appropriate tools and configurations (Tenable, DbProtect, Nipper, NMAP, Burp, Prowler, or industry alternatives).
Experience with NIST and FIPS security controls, DISA STIGs, CIS standards, and cloud hardening standards.
Experience working in groups acting as the sole security practitioner, as well as experience working in teams of various sizes of security personnel reviewing the same system.
Desired Experience/Certifications
Security Certifications to include: CISSP, CEH, Pen Test, Web App Testing etc.
More Information
Requirements of position: Think analytically, effective verbal and written communication skills, make decisions, observe/remember details, interpret data, concentrate on tasks, adjust to change, handle stress/emotions. Regular attendance, maintain work schedule, attend meetings, meet deadlines, keyboard/type, handle confidential information, use math/calculations, stay organized, operate office equipment, may direct others. Must be able to see, have eye/hand coordination, and lift up to 10 lbs. May be exposed to dust/dirt, humidity, and noise.
Foxhole Technology is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, religion, creed, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding), age, medical condition, marital or domestic partner status, sexual orientation, gender, gender identity, gender expression and transgender status, mental disability or physical disability, genetic information, military or veteran status, citizenship, low-income status or any other status or characteristic protected by applicable law.
#MON
-
Security Testing Engineer
1 week ago
Springfield, VA, United States Foxhole Technology Full timeOverview A variety of soft skills and experience may be required for the following role Please ensure you check the overview below carefully. Job Title: Security Testing Engineer Location: Springfield, VA Clearance: Secret Telework: Hybrid Discover an exciting career at Foxhole Technology, an innovative IT Engineering firm founded in 2007. As leaders...
-
Network Security Engineer, TS/SCI
4 days ago
Springfield, United States GuidePoint Security Full timeGuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...
-
Senior Systems Integration
1 month ago
Springfield, United States GeoLogics Corporation Full timeRole: Senior Systems Integration & Test EngineerClient: Defense-AerospacePay Rate: up to $90/hr (W2, non-benefited)Length: 1-year (w/ possible extension)Location:Springfield, VirginiaClearance: Active and transferable U.S. government issued TS/SCI with Poly security clearance is required prior to start date.Description:Provide regular updates to the on-site...
-
Integration and Test Engineer
1 month ago
springfield, United States The Computer Merchant, LTD (TCM) Full timeJOB TITLE: INTEGRATION AND TEST ENGINEERLOCATION: SPRINGFIELD, VARATE RANGE: $88-92 PER HOURJOB#: 14496103REQUIRED SKILLS: Typically requires a Bachelor's in Science, Technology, Engineering, or Mathematics (STEM) and a minimum of 8 years of prior relevant systems integration and test experience or 5 years of relevant experience with a Master's degree in...
-
Integration and Test Engineer
1 month ago
springfield, United States The Computer Merchant, LTD (TCM) Full timeJOB TITLE: INTEGRATION AND TEST ENGINEERLOCATION: SPRINGFIELD, VARATE RANGE: $88-92 PER HOURJOB#: 14496103REQUIRED SKILLS: Typically requires a Bachelor's in Science, Technology, Engineering, or Mathematics (STEM) and a minimum of 8 years of prior relevant systems integration and test experience or 5 years of relevant experience with a Master's degree in...
-
Integration and Test Engineer
1 month ago
Springfield, United States The Computer Merchant, LTD (TCM) Full timeJOB TITLE: INTEGRATION AND TEST ENGINEERLOCATION: SPRINGFIELD, VARATE RANGE: $88-92 PER HOURJOB#: 14496103REQUIRED SKILLS: Typically requires a Bachelor's in Science, Technology, Engineering, or Mathematics (STEM) and a minimum of 8 years of prior relevant systems integration and test experience or 5 years of relevant experience with a Master's degree in...
-
Security Engineer II
2 months ago
Springfield, United States Armavel, LLC Full timeJob DescriptionJob DescriptionSecurity Engineer IIThe Security Engineer II provides technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation. Responsible for designing and implementing solutions for protecting the confidentiality, integrity and availability of sensitive...
-
Integration & Test Engineer - Cleared On-site
4 weeks ago
Springfield, United States The Computer Merchant, LTD. Full timeJOB TITLE: INTEGRATION AND TEST ENGINEERThe following information provides an overview of the skills, qualities, and qualifications needed for this role.LOCATION: SPRINGFIELD, VARATE RANGE: $88-92 PER HOURJOB#: 14496103REQUIRED SKILLS: Typically requires a Bachelor's in Science, Technology, Engineering, or Mathematics (STEM) and a minimum of 8 years of prior...
-
Integration & Test Engineer - Cleared On-site
3 weeks ago
Springfield, United States The Computer Merchant, LTD. Full timeJOB TITLE: INTEGRATION AND TEST ENGINEERThe following information provides an overview of the skills, qualities, and qualifications needed for this role.LOCATION: SPRINGFIELD, VARATE RANGE: $88-92 PER HOURJOB#: 14496103REQUIRED SKILLS: Typically requires a Bachelor's in Science, Technology, Engineering, or Mathematics (STEM) and a minimum of 8 years of prior...
-
Endpoint Engineer, TS/SCI
2 days ago
Springfield, United States GuidePoint Security Full timeGuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...
-
Security Systems Engineer
4 weeks ago
Springfield, United States SAIC Full timeDescriptionThe DOS-Systems Integrity Division support team currently has an opening for a Security Systems Engineer to support the Department of State (DoS) Bureau of Diplomatic Technology (DT) PKI program. This program provides transparent security services in support of the Department’s goals to secure communications among Department staff and systems....
-
Integration and Test Engineering
2 weeks ago
Springfield, United States Volt Full timebr />We are passionate about your careerVolt is immediately hiring Systems Integration & Test Engineer in Springfield, VirginiaAs Systems Integration & Test Engineer, you will: Seeking a Senior Systems Integration & Test Engineer to join our Engineering team in Springfield, Virginia for the role of Operations & Maintenance (O&M) team member. The O&M...
-
Integration and Test Engineer
3 weeks ago
Springfield, VA, United States The Computer Merchant, LTD (TCM) Full timeJOB TITLE: INTEGRATION AND TEST ENGINEERLOCATION: SPRINGFIELD, VARATE RANGE: $88-92 PER HOURJOB#: 14496103REQUIRED SKILLS: Typically requires a Bachelor's in Science, Technology, Engineering, or Mathematics (STEM) and a minimum of 8 years of prior relevant systems integration and test experience or 5 years of relevant experience with a Master's degree in...
-
Information Security Engineer
3 weeks ago
Springfield, United States INflow Federal Full timeAt INflow Federal, we're not just navigating the frontier of digital transformation; we're reshaping it. Our dedication to merging the prowess of humans and machines to solve complex problems has set us apart in designing and engineering solutions for the Department of Defense (DoD) networks. Here, every challenge is an opportunity to advance, and every...
-
Application Security Engineer
3 weeks ago
Springfield, United States MassMutual Full timeThe Opportunity We are seeking an experienced Application Security Engineer to join our Software Security team and take charge of ensuring the security and integrity of our software applications. The ideal candidate will have advanced knowledge of secure software development, extensive experience with identifying vulnerabilities, and the ability to...
-
PKI Systems Engineer
6 months ago
Springfield, United States SAIC Full timeDescriptionThe Vanguard 2.2.1 contract provides enterprise IT services to the Department of State (DOS) Diplomatic Technology Bureau. The contract currently has an opening for a Senior Public Key Infrastructure (PKI) system engineer. As a Senior PKI Engineer, you will be joining the team to participate and lead in managing, securing, engineering, and...
-
Application Security
3 weeks ago
Springfield, United States Undisclosed Full timep>The OpportunityWe are seeking an experienced Application Security Engineer to join our Software Security team and take charge of ensuring the security and integrity of our software applications. The ideal candidate will have advanced knowledge of secure software development, extensive experience with identifying vulnerabilities, and the ability to...
-
Cyber Security Engineer
3 weeks ago
Springfield, United States TRIAEM LLC Full timeCyber Security Engineer (Expert)Overall Assignment Description: Expert Cyber Security Engineers capture and refine information security requirements and ensure that the requirements are integrated into information technology component products and information systems through purposeful security architecting, design, development, and configuration. Duties...
-
Lab Support Engineer
1 month ago
Springfield, United States KBR Full timeTitle:Lab Support EngineerBelong. Connect. Grow. with KBR!KBR’s National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country’s most critical role – protecting our national...
-
Software Engineer
5 months ago
Springfield, United States KBR Full timeTitle:Software Engineer***Active TS/SCI Clearance Required***KBR is seeking Senior Software Engineers to work on a multi-discipline team that supports various government customers in the Washington Metropolitan Area in the fields of photogrammetry, remote sensing, computer vision, and statistical analysis. Responsibilities/Job Function:Work with a team of...