8+ YOEBachelor's degree or equivalent, minimum 8 years information security experience focused on penetration testing, expertise with offensive techniques, cloud/app security, scripting, and at least one offensive security certification.
8+ YOEBachelor's or equivalent, 8+ years in information security with penetration testing focus; hands-on with Burp Suite, Nessus, Metasploit, Nmap; scripting (Bash, Python, Go, PowerShell, JavaScript); offensive cert (OSCP or similar).
Techximius: Provides specialized IT and engineering services for defense missions.
3+ YOEHands-on vulnerability scanning and analysis (Tenable/Qualys/NMAP), experience with vulnerability lifecycle tracking (ServiceNow/SharePoint/PowerBI), OSCP preferred, DoD Secret clearance, Bachelor's in related field or 2yrs experience, 3+ years cybersecurity experience.
Nessus, Security Center, Tenable.IO, Qualys WAS, NMAP, ServiceNow, SharePoint, Microsoft SQL, PowerBI, Azure, AWS, GCP, Python, PowerShell, SQL, DAX
GDITNYSE: GD: Delivers IT and mission services to government agencies.
8+ YOE8+ years penetration testing/application security experience; AWS cloud and federal security (NIST/RMF/FISMA) knowledge; familiarity with web, API, microservices, container, and cloud testing and reporting.
Burp Suite, OWASP ZAP, Metasploit, Nmap, Nessus, Nikto, K6 Security, Python, JavaScript, AWS CloudWatch, AWS CloudTrail, AWS GuardDuty, Datadog, ELK Stack, Prometheus, Grafana, Jenkins, GitLab CI/CD, GitHub Actions, SonarQube, Checkmarx, Fortify, Jira, Confluence, Microsoft SharePoint, Microsoft Teams, Microsoft Power BI
Aerstone: A cybersecurity services delivering risk assessments and penetration testing.
5+ YOE5+ years of penetration testing experience; Bachelor's degree; strong Linux knowledge; various security tool experience; cloud and network assessment skills; ability to lead testing and produce reports.
SecureIT: Cybersecurity compliance advisory and assessment services firm.
Experience in web application, network, API and AI penetration testing and red teaming; client-facing experience and relevant offensive security credentials preferred.
Bespoke Technologies: Provides technical engineering and data solutions for national security.
Active polygraph required. Experienced in penetration testing, adversarial tactics, network and system exploitation across Linux, Windows, and virtual platforms; risk analysis and mitigation; communicating technical results.
BarclaysLondon Stock Exchange: BARC: Global bank providing retail, corporate, and investment financial services.
Perform and lead penetration tests across web, mobile, infrastructure and cloud; analyze and report vulnerabilities; collaborate with stakeholders and develop testing methodologies.
Washington or San Antonio or Cleveland or California or Colorado or Hawaii or Illinois or Maine or Maryland or Massachusetts or Minnesota or New Jersey or New York or Vermont or Virginia or Washington
$126k-$243k/yrHybridFull Time
Accenture Federal ServicesNYSE: ACN: Provides technology and consulting services to U.S. federal agencies.
2+ YOE2+ years penetration-testing experience across at least two domains (network, cloud, web app, identity, containers); proficiency with offensive-security tools and producing technical reports; experience with Rules of Engagement.
Schellman: Provides IT compliance, cybersecurity, and attestation services.
Hands-on penetration testing and project execution, knowledge of security domains and professional standards, strong communication and time management, proficiency with Microsoft Office and service delivery applications, pursuing/maintaining security or audit certifications.
Microsoft Word, Microsoft Excel, Microsoft PowerPoint
Dark Wolf Solutions: Provides cybersecurity and software development services to defense agencies.
3+ YOE3+ years in penetration testing, red team, vulnerability assessment; strong Windows, Linux, mobile; cloud (AWS/Azure/GCP); scripting; onsite work in Ogden, UT; US Citizenship with TS/SCI clearance.
AWS, Azure, Google Cloud Platform, Kubernetes, DevSecOps tools
A-LIGN: Provides cybersecurity compliance and audit services.
2+ YOE2+ years performing network and application penetration tests, OSCP certification, Bachelor’s or Master’s in cybersecurity/MIS/CS, familiarity with Kali Linux, nMap, Nano/Vi, SSH, Bash scripting, and strong communication skills.
ASRC Federal: Provides engineering and IT services to federal government agencies.
5+ YOE5+ years security experience, conduct penetration tests across apps/networks/cloud, active Top-Secret clearance, IAT II baseline certs, bachelor's degree or equivalent, strong reporting and remediation skills.
United Kingdom or London or San Francisco or New Hampshire
RemoteFull Time
Bugcrowd: Provides a crowdsourced platform for security vulnerability testing.
0.5+ YOE6+ months equivalent penetration testing experience, familiarity with BurpSuite and Nmap, strong written/spoken English (C1+), ability to follow methodologies, and willingness to work UK core hours (09:00-17:30 GMT).
M2 Technology Group: Providing specialized cybersecurity and engineering services for government agencies.
12+ YOESenior RMF subject matter expert with 12+ years experience, DoD 8570 IAT/IAM Level III, CEH, vendor OS certification, active security clearance with polygraph, advanced penetration testing and regulatory expertise.
OCH Technologies: Provides IT and cybersecurity services for federal government agencies.
15+ YOE5+ Mgmt15+ years cybersecurity experience with 5+ years leading penetration testing; bachelor's degree in a technical field; Public Trust eligibility; security certifications (OSCP, CEH, GPEN, etc.); proficiency with Metasploit, Burp Suite, Nmap and testing methodologies.
A-LIGN: Provides cybersecurity audits and compliance assessments for global businesses.
2+ YOEPerform internal, external, wireless, web app, and social engineering penetration tests; run vulnerability scans; write client reports; use Kali Linux command line and Bash; reimage devices; familiarity with text editors, Nmap, SSH.