VDP Pen Tester

2 months ago


Springfield, United States GuidePoint Security Full time

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

A Public Trust clearance, or the ability to obtain, is required for consideration for this opportunity.

Work will be performed 100% onsite

GuidePoint is seeking highly qualified candidates for an upcoming Government contract award. Hiring for this position is contingent upon contract award.

The VDP Pen Tester role will be responsible for tracking, documenting, and supporting remediations of all disclosed vulnerabilities, using expertise in penetration testing and exploitation tools in support of the customer's Vulnerability Disclosure Program (VDP).

This position requires an active Public Trust security clearance. It will be performed on multiple customer sites in the DC Metro area.

What You'll Get To Do:

  • Perform analysis of submitted findings and vulnerabilities and provide a written report covering risk, likelihood of exploitation, and recommendations for remediation.
  • Handle vetting of multiple vulnerabilities simultaneously, demonstrating efficiency and organization, to ensure all vulnerabilities are addressed in a timely manner.
  • Swiftly confirm or deny the legitimacy of submitted vulnerabilities, ensuring rapid response times while maintaining the integrity of the vulnerability disclosure process.
  • Maintain detailed records of the procedures used for verifying vulnerabilities, ensuring transparency and reproducibility in the verification process.
  • Identify system owners and effectively communicate technical data to them, facilitating prompt system patching and remediation efforts.
  • Confirm that vulnerability remediation has been successfully completed, ensuring that vulnerabilities are fully resolved, and systems are secured.
  • Provide insightful guidance and support to system owners regarding the agency's patching processes and timelines, helping them navigate and comply with these procedures.
  • Conduct trend analysis on both found and submitted vulnerabilities, identifying patterns and areas of concern that could inform future security strategies.
  • Ensure all findings and analyses are reported in a timely and efficient manner, maintaining a consistent flow of information and updates.
  • Establish, refine, and document operating procedures for the operation of the VDP and HackDHS Programs.
  • Maintain an electronic repository on the DHS network for all VDP and HackDHS related information.
  • Identify trends and improvement opportunities then present the results to the Federal Lead on a quarterly basis.

You'll Bring These Qualifications:

  • Minimum 3 years of experience performing penetrating testing engagements.
  • Minimum 5 years in a vulnerability management role in a federal environment.
  • Must possess an active Public Trust clearance or eligible to obtain a Public Trust clearance
  • Understanding of vulnerability exploits and technologies and TTPs used to exploit vulnerabilities.

These Qualifications Would Be Nice To Have:

  • Experience performing red-team or penetration testing engagements in a federal environment.

We use Greenhouse Software as our applicant tracking system and Free Busy for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.


Why GuidePoint?

GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1000 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 4,200 customers.

Firmly-defined core values drive all aspects of the business, which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.

This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.

Some added perks....

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • 100% employer-paid medical premiums (employee only $0 deductible and HSA plans) along with 75% employer-paid family contributions
  • 100% employer-paid dental premiums (employee only) along with 75% employer-paid family contributions
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option