Summer Associate Internship (Penetration Tester)

United States

Navy Federal Credit Union

Navy Federal Credit Union is an armed forces bank serving the Navy, Army, Marine Corps, Air Force, Space Force, Coast Guard, veterans, DoD & their families. Join now!

View all jobs at Navy Federal Credit Union

Apply now Apply later

The Adversarial Security Practice (ASP) team is tasked with executing penetration tests against Navy Federal applications and infrastructure. The ASP performs penetration testing leveraging a variety of manual and automated testing techniques to assess NFCU’s applications and systems for resilience against various types of attack and to identify exploitable weaknesses. Penetration testers present findings and recommendations for remediation to application and system owners and act as subject matter experts to help engineering teams understand findings and potential impact from security vulnerabilities that have been identified. Types of assessments conducted include application, network, wireless, and mobile application penetration tests.

The Adversarial Security Practice (ASP) Summer Associate will assist in the full lifecycle for a penetration test, including:

  • Pre-engagement
    • Information Gathering
    • Threat Modeling
  • Execution
    • Vulnerability Identification
    • Exploitation
    • Post-exploitation & Lateral Movement
  • Reporting
    • Drafting Penetration Test Report

The Adversarial Security Practice (ASP) Summer Associate will also work on projects that could involve pre-engagement, testing infrastructure, remediation validation, reporting, and/or penetration testing governance. Projects will be determined based upon specific interests of the Summer Associate and needs of the ASP.

  • Perform application, network, wireless, and/or mobile application penetration tests
  • Complete projects related to building, managing, and running a penetration testing program
  • Knowledge of MITRE ATT&CK and/or CAPEC Frameworks
  • Experience testing against or working with Active Directory environments 
  • Experience using both Linux based and Windows based systems
  • Experience coding in languages and on frameworks such as: Rust, Go, Python, JavaScript, Bash, PowerShell, Java, C#, C++, Springboot, React, NodeJS
  • Networking knowledge spanning: IPv4/6, DNS, TCP/UDP, TLS/SSL, SSH, HTTP, Proxies
  • Knowledge of modern cryptographic hashing & encryption methods and best practices
  • Communication, presentation, and analytical skills

Navy Federal provides much more than a job. We provide a meaningful career experience, including a culture that is energized, engaged and committed; and fierce appreciation for our teams, who are rewarded with highly competitive pay and generous benefits and perks.

  • Best Companies for Latinos to Work for 2024
  • Computerworld® Best Places to Work in IT
  • Forbes® 2024 America’s Best Large Employers
  • Forbes® 2023 The Best Employers for New Grads
  • Fortune Best Workplaces for Millennials™ 2023   
  • Fortune Best Workplaces for Women ™ 2023       
  • Fortune 100 Best Companies to Work For® 2024
  • Military Times 2023 Best for Vets Employers
  • Newsweek Most Loved Workplaces 
  • Ripplematch Campus Forward Award - Excellence in Early Career Hiring
  • Yello and WayUp Top 100 Internship Programs

From Fortune. ©2024 Fortune Media IP Limited. All rights reserved. Used under license. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of, Navy Federal Credit Union.

Equal Employment Opportunity: Navy Federal values, celebrates, and enacts diversity in the workplace. Navy Federal takes affirmative action to employ and advance in employment qualified individuals with disabilities, disabled veterans, Armed Forces service medal veterans, recently separated veterans, and other protected veterans. EOE/AA/M/F/Veteran/Disability EOE/AA/M/F/Veteran/Disability

Hybrid Workplace: Navy Federal Credit Union is a hybrid workplace, and details will be discussed during your interview process.

Disclaimers: Navy Federal reserves the right to fill this role at a higher/lower grade level based on business need. An assessment may be required to compete for this position. Job postings are subject to close early or extend out longer than the anticipated closing date at the hiring team’s discretion based on qualified applicant volume. Navy Federal Credit Union assesses market data to establish salary ranges that enable us to remain competitive. You are paid within the salary range, based on your experience, location and market position.

Bank Secrecy Act: Remains cognizant of and adheres to Navy Federal policies and procedures, and regulations pertaining to the Bank Secrecy Act.

Apply now Apply later
  • Share this job via
  • 𝕏
  • or
Job stats:  31  6  0
Category: PenTesting Jobs

Tags: Active Directory Bash C DNS Encryption Governance Hashing Java JavaScript Linux MITRE ATT&CK Node.js Pentesting PowerShell Python Rust SSH TLS Vulnerabilities Windows

Perks/benefits: Competitive pay

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.