Penetration Tester
Manassas, VA - USA
Job Summary
Our Client is seeking a Penetration Tester to help ensure the continued operation of the systems that protect a clients network against unauthorized access modification of data and malicious activity. These systems require continuous management and monitoring to ensure they are functioning as expected and to analyze and respond to alerts as they occur.
- Lead enterprise and system-focused network and application penetration assessments to identify security risks and vulnerabilities.
- Perform testing on a wide scope of systems including Web applications security controls network infrastructure wireless and mobile deployments.
- Conduct hands-on technical testing beyond the use of automated tool validation. Plan execute report and lead technical debriefs on testing activities and outcomes.
- Execute covert Red Team Cyber operations to mimic adversary tactics and work closely in a Purple Team to test exploits needed to build detections.
- Communicate findings and remediation strategies effectively to stakeholders including technical staff and executive leadership.
- OSCP GPEN or GXPN certification preferred.
- Perform other official duties as assigned.
- Demonstrated experience and advanced knowledge of security systems analysis testing and documentation
- Knowledge of virtual environments network operating systems mobile device environments and data encryption methods
- Demonstrated expertise in communication protocols network operating systems servers firewall implementation IPS/IDS systems and advanced malware detection systems
- Demonstrated knowledge of TCP/IP network fundamental network security NetFlow and knowledge of tools such as Wireshark.
- Demonstrated knowledge of NetWitness FireEye Splunk AWS Direct Connect Checkpoint/Barracuda Firewalls StealthWatch ThreatConnect O365 Bro AWS/AZURE Security Onion Gigamon and VMware. Experience with scripting languages such as Perl a plus.
- Exceptional communication skills both verbally and written
- Strong attention to detail
- Ability to work alone and in team environments
- Critical thinking skills
- Flexibility/Adaptability
Level of Education: Bachelors or above Area(s) of Concentration :
Bachelors degree in computer related field plus 5 years of professional experience or equivalent work experience is required for each lieu of a bachelors degree proposed staff should have at least eight (8) years of Information Technology security experience
Certifications Preferred :
CISSP GIAC CCE ECIH CEH.
Marathon TS is committed to the development of a creative diverse and inclusive work order to provide equal employment and advancement opportunities to all individuals employment decisions at Marathon TS will be based on merit qualifications and abilities. Marathon TS does not discriminate against any person because of race color creed religion sex national origin disability age or any other characteristic protected by law (referred to as protected status ).