Penetration Tester

3 days ago


Silver Spring, Maryland, United States Emagine IT Full time
Cloud Security Penetration Tester

Emagine IT is seeking a highly skilled Cloud Security Penetration Tester to join our team. As a Cloud Security Penetration Tester, you will be responsible for facilitating Penetration Tests, Threat Hunting exercises, and Continuous Monitoring Activities within cloud-based environments.

You will work in a team atmosphere with an experienced Sr. Consultant Project Lead, and you will be assigned technical sections and provide client-ready deliverables.

Key Responsibilities:
  • Execute testing procedures in accordance with NIST SP 800-53A Revision 4
  • Test for vulnerabilities, validate exploitable vulnerabilities within network, cloud, web, and mobile environments
  • Perform Social Engineering campaigns, including email phishing, spear phishing, phone pretext calling
  • Develop Rules of Engagement, Penetration Test Plans, Penetration Testing report, PowerPoint presentations for kick-off and closing of client engagements
  • Author recommendations based on findings to improve security postures compliant with NIST controls
  • Penetration Testing/Threat Hunting (75%); Advisory/Consulting (25%)
Requirements:
  • Bachelor's degree (4-yr college or university) or equivalent combination of education and experience
  • Minimum three (3) years of experience in IT industry with strong familiarity with NIST Special Publications (SP Revision 1, Revision 4, and 800-53A Revision 1, PCI-DSS, SOX, HIPAA)
  • Strong written and verbal communication skills including the ability to explain technical matters to non-technical audiences
  • Strong NIST experience (in order of preference): NIST SP 800-53, FedRAMP, RMF, FISMA, NIST SP
  • Ability to independently lead small, less complex system assessments
  • Ability to assist team members with proper artifact collection and detail to client's examples of artifacts to satisfy assessment requirements
  • At least one of the following certifications in order of preference: CISA, CISM, CRISC, CGEIT, CCSP, CISSP, and/or CAP certification
  • Must have a Penetration Testing Certification - order of preference: OCSP, GIAC-GPEN, LPT
  • Second certification in order of preference to be obtained within 6 months or by conversion date: CISA, CISM, CRISC, CGEIT, CCSP, CISSP, or CAP
  • Candidate must perform 'CTF' style penetration test including presentation of findings prior to offer of employment
Additional Qualifications:
  • Experience reviewing Nessus output
  • Basic knowledge of networking components and various operating systems in a cloud environment, including UNIX and Microsoft
  • Expertise in other Security Frameworks (ISO, NIST, COBIT, HIPAA/HITECH, etc.) and regulatory requirements
  • Experience with Amazon Web Services, Microsoft Azure, Google Cloud, etc.
  • Project management experience or certification (PMP)
  • Must be eligible for Secret Clearance or Public Trust
  • This role cannot sponsor Visa candidates.

Emagine IT is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Emagine IT team and the consultants working in partnership with our customers.

Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions.

Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end users, and give our customers a competitive edge, now and into the future.


  • Penetration Tester

    2 weeks ago


    Silver Spring, Maryland, United States Saxon Global Full time

    Job Title: Penetration TesterWe are seeking an experienced Penetration Tester to join our team at Saxon Global. As a Penetration Tester, you will be responsible for identifying and exploiting vulnerabilities in our systems and applications.Key Responsibilities:Conduct thorough vulnerability assessments and penetration testing to identify security...


  • Silver Spring, Maryland, United States Zen Strategics LLC Full time

    Job OpportunityZen Strategics LLC is seeking a highly skilled Penetration Tester to join our team. As a Penetration Tester, you will play a critical role in ensuring the security and integrity of our clients' digital assets.Key Responsibilities:Conduct thorough security assessments of cloud systems, blended on-prem systems with cloud components, and hybrid...


  • Silver Spring, Maryland, United States Zen Strategics LLC Full time

    About Zen Strategics LLCZen Strategics LLC is a leading provider of innovative cybersecurity solutions, dedicated to delivering cutting-edge technologies and proactive security measures to protect our clients' digital assets.Job DescriptionWe are seeking a highly skilled Security Assessment Specialist to join our team. As a Security Assessment Specialist,...


  • Silver Spring, Maryland, United States HP Full time

    Senior Cloud Security Engineer/ArchitectThe senior cloud security engineer will be part of a talented, global team of cloud security engineers, penetration testers, and security architects at HP. This role applies cybersecurity subject matter expertise to challenging security engineering, cloud, and architecture problems across HP.This role is a central...


  • Spring Valley, Nevada, United States HP Development Company, L.P. Full time

    Cybersecurity Penetration Tester Job DescriptionHP Development Company, L.P. is seeking a highly skilled Cybersecurity Penetration Tester to join our team. As a Penetration Tester, you will be responsible for identifying vulnerabilities in our systems and developing strategies to mitigate them.Key Responsibilities:Identify and analyze security threats and...