Penetration Tester, Mid

$60,300 - $137,000/Yr

Booz Allen Hamilton - Huntsville, AL

posted 3 months ago

Part-time,Full-time - Mid Level
Remote - Huntsville, AL
Professional, Scientific, and Technical Services

About the position

As a Mid Penetration Tester at Booz Allen, you will play a crucial role in supporting both remote and onsite testing efforts of client networks to identify and expose security weaknesses. Your primary responsibility will be to maintain baseline system security in accordance with organizational policies while monitoring and evaluating the effectiveness of the enterprise's cybersecurity safeguards. This ensures that the systems provide the intended level of protection against potential threats. You will collaborate with various stakeholders to resolve computer security incidents and ensure compliance with vulnerability management protocols. In this position, you will be tasked with identifying, assessing, and recommending cybersecurity products that align with the organization's evaluation and validation requirements. Your expertise in penetration testing will be essential as you conduct assessments on networks, applications, and external systems. You will also be responsible for creating detailed Technical Assessment Reports that outline your findings and suggest remediation efforts. Your knowledge of penetration testing methodologies will guide your approach to testing and reporting. The role requires a proactive mindset, as you will need to stay updated with the latest vulnerability information sources, including alerts, advisories, and bulletins. You will also be expected to create Rules of Engagement (ROE), test plans, and scripts to facilitate your testing efforts. Your ability to conduct web application and API penetration testing will be vital, as will your understanding of network hardware devices and traffic analysis methods. Additionally, you will need to demonstrate knowledge of incident categories and responses, as well as identity and access management protocols such as public key infrastructure and OAuth.

Responsibilities

  • Support remote and onsite testing efforts of a client's network to expose weaknesses in security.
  • Maintain baseline system security according to organizational policies.
  • Monitor and evaluate the effectiveness of the enterprise's cybersecurity safeguards.
  • Work with stakeholders to resolve computer security incidents and vulnerability compliance.
  • Identify, assess, and recommend cybersecurity products for use within a system.
  • Create Technical Assessment Reports detailing findings and remediation efforts.
  • Conduct penetration testing on networks, applications, and external systems.
  • Stay updated with the latest vulnerability information sources.

Requirements

  • 1+ years of experience with penetration testing.
  • Experience with security testing tools such as Burp Suite, SQLMap, Nmap, Nessus, Metasploit, or Cobalt Strike.
  • Experience creating Technical Assessment Reports.
  • Knowledge of penetration test methodology.
  • Secret clearance required.
  • Bachelor's degree or 3+ years of experience in a cybersecurity or system administrator role in lieu of a degree.

Nice-to-haves

  • Experience creating Rules of Engagement (ROE), test plans, and scripts.
  • Experience conducting web application and API penetration testing.
  • Knowledge of defense evasion in enterprise environments and custom payload generation.
  • Knowledge of incident categories, incident responses, and timelines for responses.
  • Ability to keep up with the latest vulnerability information sources.

Benefits

  • Health insurance
  • Flexible spending account
  • Tuition reimbursement
  • Retirement plan
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service