108 penetration testing jobs at 68 companies in Washington, DC
2mo
Save
Mark Applied
Hide
2mo
Penetration Testing Lead
Washington or Atlantic City or Warrenton or Melbourne or Oklahoma City or Leesburg
OnsiteFull Time
Koniag Government Services: Providing technical and professional services to federal agencies.
8+ YOE5+ MgmtEight years of penetration testing experience with five years in management; bachelor's degree; recent leadership experience; red/blue team certifications; federal or regulated environment preferred.
OCH Technologies: Provides IT and cybersecurity services for federal government agencies.
15+ YOE5+ Mgmt15+ years cybersecurity experience with 5+ years leading penetration testing; bachelor's degree in a technical field; Public Trust eligibility; security certifications (OSCP, CEH, GPEN, etc.); proficiency with Metasploit, Burp Suite, Nmap and testing methodologies.
Senior Penetration Testing, Software Assurance and Vulnerability
Washington, District of Columbia, United States
$115k-$185k/yrOnsiteFull Time
Def-Logix: Cybersecurity research, software development, and technical services firm.
10+ YOE10+ years cybersecurity experience; 2+ years recent experience in software assurance, penetration testing with automated tools, vulnerability assessment, patch management, secure cloud/hybrid engineering, and Cross Domain Solutions; CEH and CISSP or comparable experience.
LEAD CYBER SECURITY ENG SPEC (Penetration Testing Engineer)
Washington, District of Columbia, United States
OnsiteFull Time
Concurrent Technologies Corporation: Conducts applied research and development for national security.
10+ YOEActive TS/SCI with FRD/RD/NATO eligibility, 10+ years cybersecurity experience, bachelor\u0002s degree or equivalent, CEH and CISSP, 2+ years hands-on in penetration testing, software assurance, vulnerability assessment, patch management, cloud, and CDS.
GDITNYSE: GD: Delivers IT and mission services to government agencies.
8+ YOE8+ years penetration testing/application security experience; AWS cloud and federal security (NIST/RMF/FISMA) knowledge; familiarity with web, API, microservices, container, and cloud testing and reporting.
Burp Suite, OWASP ZAP, Metasploit, Nmap, Nessus, Nikto, K6 Security, Python, JavaScript, AWS CloudWatch, AWS CloudTrail, AWS GuardDuty, Datadog, ELK Stack, Prometheus, Grafana, Jenkins, GitLab CI/CD, GitHub Actions, SonarQube, Checkmarx, Fortify, Jira, Confluence, Microsoft SharePoint, Microsoft Teams, Microsoft Power BI
RiVidium: Provides cybersecurity software and IT services to federal agencies.
7+ YOEActive TS/SCI clearance, 7+ years penetration testing and vulnerability assessment experience in federal/IC environments, CEH and CISSP required, bachelor\u0002s in relevant discipline, secure code review and cloud security experience.
Penetration Testing, Software Assurance and Vulnerability Assessment Engineer
Washington, District of Columbia, United States
OnsiteFull Time
One Federal Solution: Provides professional and technical services to federal government agencies.
10+ YOEMinimum 10 years related experience, 2+ years recent experience in software assurance, penetration testing, vulnerability assessment, patch management, secure cloud/hybrid engineering, and CDS. CEH and CISSP required or comparable experience.
LV8D Solutions: Providing engineering and cybersecurity services for government defense agencies.
Perform reconnaissance and vulnerability scanning, design and conduct penetration tests, document findings, develop tools and remediation guidance; US citizenship and TS/SCI clearance required.
SecureIT: Cybersecurity compliance advisory and assessment services firm.
Experience in web application, network, API and AI penetration testing and red teaming; client-facing experience; relevant certifications such as OSCP, OSWA, OSEP, OSWE, OSEE preferred.
VMD Corp: Provides airport security screening and federal IT services.
3+ YOEBachelor’s degree, three years of experience, U.S. citizenship, and active Secret clearance required. Experience with penetration testing, threat hunting, offensive tools, networks, applications, and code.
5+ YOEBachelor's degree or equivalent experience, 5 years leading penetration testing, custom exploit scripting, and ability to obtain and maintain Public Trust clearance. Federal red-team experience preferred.
Fortreum: Provides cybersecurity compliance and technical auditing services for regulated industries.
3+ YOE3+ years web and network penetration testing, 2+ years professional services, bachelor's degree or 4 years equivalent, proficiency with scripting (bash, python, PowerShell, ruby), and knowledge of security frameworks.
ASRC Federal: Provides engineering and IT services to federal government agencies.
5+ YOE5+ years security experience, conduct penetration tests across apps/networks/cloud, active Top-Secret clearance, IAT II baseline certs, bachelor's degree or equivalent, strong reporting and remediation skills.
M2 Technology Group: Providing specialized cybersecurity and engineering services for government agencies.
12+ YOESenior RMF subject matter expert with 12+ years experience, DoD 8570 IAT/IAM Level III, CEH, vendor OS certification, active security clearance with polygraph, advanced penetration testing and regulatory expertise.
Senior Penetration Testing, Software Assurance and Vulnerability
Washington, District of Columbia, United States
$175k-$215k/yrOnsiteFull Time
CDO Technologies: Provides IT systems integration and engineering design services.
10+ YOE10+ years related experience with at least 2 years recent experience in software assurance, automated penetration testing, vulnerability assessment, patch management, secure cloud/hybrid engineering, and Cross Domain Solutions; CEH and CISSP or comparable experience.
8+ YOE8+ years penetration testing experience across applications, APIs, networks; 6+ years vulnerability identification and remediation; 3+ years leading engagements; experience with AI/LLM testing and tooling.
Burp Suite, Kali Linux, Nessus, Accunetix, Metasploit, AutoSploit, Cobalt Strike, MITRE ATT&CK, MITRE ATLAS, OWASP Top 10, OWASP Top 10 for LLMs, Claude, .NET, JavaScript, Python, Java, PowerShell, Perl, Ruby, Bash, Linux, macOS, Windows, AWS, Azure, Kubernetes, microservices