Red Team Penetration Testing Expert

7 days ago


Washington, Washington, D.C., United States Bank of America Full time

About the Role

We are seeking a highly skilled Senior Cybersecurity Threat Replication Specialist to join our team at Bank of America. As a key member of our Cyber Security Assurance Division, you will play a critical role in identifying and mitigating high-risk vulnerabilities across our global technology environment.

Key Responsibilities

  • Lead and participate in advanced technical assessments to identify exploitable vulnerabilities and threats
  • Develop and implement research to understand emerging threats and vulnerabilities
  • Collaborate with senior leadership and security partners to develop and implement effective security controls
  • Mentor junior engineers and share knowledge and experience to enhance the team's capabilities
  • Assist in the monitoring and response functions to ensure effective response and recovery against realistic threat actors

Requirements

  • 5+ years of professional offensive security experience
  • Ability to critically examine an organization and system through the perspective of a threat actor and articulate risk in clear, precise terms
  • Proficiency with common tools associated with red teaming, penetration testing, and vulnerability assessments
  • Solid understanding of voice and data networks, major operating systems, active directory, and associated peripherals
  • Demonstrated knowledge of tactics, techniques, and procedures associated with malicious insider activity, organized crime/fraud groups, and state and non-state sponsored threat actors
  • Ability to effectively code in a scripting language

Desirable Skills

  • Certifications: OSCP, GPEN, GXPN, OSCE, GWAPT
  • Ability to work remotely if necessary
  • Previous experience working in the financial industry
  • Typically 5-10 years of experience in technology and offensive security assessments

About the Team

You will be part of a world-class offensive security team, working with some of the best information security professionals in the world. Our team is responsible for leading and performing assessments of the bank's technologies, applications, and cyber security controls, while adapting testing methods to evolving and emerging threats.

What We Offer

  • A highly technical and challenging role that requires broad technical knowledge and a deep understanding of threats and threat TTPs
  • Opportunities for growth and development, including mentoring and training junior engineers
  • A collaborative and dynamic work environment, with a focus on innovation and excellence

Shift and Hours

1st shift (United States of America), 40 hours per week



  • Washington, Washington, D.C., United States Cognizant Full time

    About Cognizant's QEA PracticeWe are the largest Quality Assurance Practice Globally servicing 800+ Clients including 50+ clients in Fortune 100. We bring the industry leading vision and expertise to help with Quality Engineering transformation journey for our reputed clients.Our OfferingsSystem Modernization assuranceBusiness Process AssuranceQuality...


  • Washington, Washington, D.C., United States Maveris Full time

    Position OverviewMaveris, a dedicated provider of IT and cybersecurity solutions, is focused on empowering organizations to develop secure digital infrastructures that enhance their operational goals. As a Veteran-owned entity, we take pride in serving clients across both the Federal Government and private sectors. We are currently seeking a full-time Senior...

  • Penetration Tester

    2 months ago


    Washington, Washington, D.C., United States IBM Full time

    Your Role and ResponsibilitiesAs a Senior Penetration Tester you will be supporting the mission of a progressive Federal agency. You will perform vulnerability assessments and penetration testing following the customer's prescribed scope to target, assess, and exploit risk and vulnerabilities of information systems and inform strategic decisions. The...


  • Washington, Washington, D.C., United States Procession Systems Full time

    Job OverviewPOSITION SUMMARY:The role involves the development, deployment, and maintenance of operational and exercise infrastructure by a Subject Matter Expert (SME) who possesses the qualifications necessary to fulfill Senior-Level operator responsibilities.Essential QualificationsMANDATORY SKILLS:At least 4 years of practical experience in network and...


  • Washington, Washington, D.C., United States Procession Systems Full time

    Job OverviewPOSITION SUMMARY:The role involves the design, implementation, and upkeep of operational and exercise frameworks, executed by a Subject Matter Expert (SME) who possesses the qualifications outlined below, alongside the capability to fulfill Senior-Level operator responsibilities.Essential QualificationsMANDATORY SKILLS:At least 4 years of...


  • Washington, Washington, D.C., United States Procession Systems Full time

    Job OverviewPOSITION SUMMARY:The role involves the design, implementation, and upkeep of operational and exercise frameworks, led by a Subject Matter Expert (SME) who possesses the qualifications outlined below, alongside the capability to fulfill Senior-Level operator standards.Essential QualificationsMANDATORY SKILLS:At least 4 years of practical...


  • Washington, Washington, D.C., United States Red Gate Group Full time

    Job OverviewThe Red Gate Group is on the lookout for an experienced Acquisition Process Subject Matter Expert (SME) to enhance the operations of the Defense Intelligence Agency (DIA). This pivotal role involves utilizing your extensive knowledge in Contracts and Program Management to aid the Program Execution Office (PEO) in crafting a robust acquisition...


  • Washington, Washington, D.C., United States Red Gate Group Full time

    Company DescriptionAt RED GATE we do everything we can to serve our clients:Using the right technical skills, unique methodologies, best practices, and integrated technology, we help clients implement bold solutions. New approaches to emerging and evolving threats. Non-traditional ways to overcome entrenched obstacles. Advantage through opportunity. If you...


  • Washington, Washington, D.C., United States Nemean Solutions Full time

    Evaluation and Testing Expert at Nemean Solutions, LLCOverview:Nemean Solutions, LLC is in search of an Evaluation and Testing Expert to deliver comprehensive systems and software engineering, program oversight, technical, and analytical testing and evaluation support services to the Department of Homeland Security, Customs and Border Protection.Key...


  • Washington, Washington, D.C., United States Red Gate Group Full time

    Job OverviewCompany Overview:At Red Gate Group, our mission is to provide exceptional service to our clients. We employ the right technical expertise, innovative methodologies, and integrated technologies to assist clients in implementing transformative solutions. We tackle emerging challenges with creative strategies and provide opportunities to overcome...


  • Washington, Washington, D.C., United States Peraton Full time

    Job SummaryWe are seeking a highly skilled and experienced Cybersecurity Specialist to join our team at Peraton. As a key member of our Defensive Cyber Operations team, you will be responsible for conducting penetration testing, vulnerability assessments, and security evaluations to identify and mitigate potential threats to our customers' systems and...


  • Washington, Washington, D.C., United States Editech Staffing Full time

    Job Overview*Editech Staffing does not partner with external agencies, no C2C, no sponsorship*In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.*Completion of I-9, verifying US work...


  • Washington, Washington, D.C., United States Peraton Full time

    Position OverviewRole Highlights: Employ advanced tools such as Metasploit and Kali Linux for the secure evaluation and testing of networks and systems, generating comprehensive vulnerability reports for clients. Detect vulnerabilities, evaluate exploit risks, and document findings to formulate mitigation strategies. Execute penetration testing in accordance...


  • Washington, Washington, D.C., United States Peraton Full time

    Position OverviewRole Highlights: Employ advanced tools such as Metasploit and Kali Linux for secure evaluation and testing of networks and systems, generating comprehensive vulnerability reports for clients. Detect vulnerabilities, evaluate exploitation risks, and document findings to inform mitigation strategies. Execute penetration testing in accordance...


  • Washington, Washington, D.C., United States Peraton Full time

    Position OverviewRole Highlights: Employ advanced tools such as Metasploit and Kali Linux for the secure evaluation and testing of networks and systems, producing comprehensive vulnerability reports for clients. Detect vulnerabilities, evaluate exploitation potential, and document findings to formulate mitigation strategies. Execute penetration testing in...


  • Washington, Washington, D.C., United States Peraton Full time

    Position OverviewRole Highlights: Employ advanced tools such as Metasploit and Kali Linux for the secure evaluation and testing of networks and systems, generating comprehensive vulnerability reports for clients. Detect vulnerabilities, evaluate exploitation potential, and document findings to formulate mitigation strategies. Execute penetration testing...


  • Washington, Washington, D.C., United States Maveris Full time

    Position OverviewMaveris, a dedicated provider of IT and cybersecurity solutions, is focused on empowering organizations to develop secure digital infrastructures that advance their missions. As a Veteran-owned entity, we take pride in serving both Federal Government and private sector clients. We are currently seeking a full-time Lead Offensive Security...


  • Washington, Washington, D.C., United States Peraton Full time

    Position OverviewRole Highlights: Employ advanced tools such as Metasploit and Kali Linux for secure analysis and evaluation of networks and systems, producing comprehensive vulnerability reports for clients. Detect vulnerabilities, evaluate exploitation risks, and document findings to formulate mitigation strategies. Execute penetration testing in...


  • Washington, Washington, D.C., United States Peraton Full time

    Position OverviewRole Highlights: Employ advanced tools such as Metasploit and Kali Linux for secure analysis and evaluation of networks and systems, generating comprehensive vulnerability reports for clients. Detect vulnerabilities, evaluate exploitability, and document findings to formulate mitigation strategies. Execute penetration testing in accordance...


  • Washington, Washington, D.C., United States Peraton Full time

    Job SummaryWe are seeking a highly skilled and experienced Cybersecurity Analyst to join our team at Peraton. As a Cyber Vulnerability Expert, you will be responsible for identifying and mitigating potential security threats to our customers' systems and networks.Key ResponsibilitiesConduct thorough vulnerability assessments and penetration testing to...