​​Penetration Tester - Mid​

3400 Reston VA Headquarters

Apply now Apply later

Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local area networks/wide area networks (LAN/WAN), commercial Internet connection, public facing websites, wireless mobile/cellular, cloud, security devices, servers and workstations.  The CBP SOC is responsible for the overall security of CBP Enterprise-wide information systems, and collects, investigates, and reports any suspected and confirmed security violations. 

 

Primary Responsibilities: 

  • Perform internal and external pentest against systems to determine vulnerabilities and offer mitigation strategies. 

  • Perform web app pentests.

  • Perform vulnerability risk assessment.

  • Perform physical pentests and social engineering.

  • Perform cyber incident response as needed for programs 

  

Basic Qualifications: 

  • Bachelors’ degree from an accredited college in a related discipline, or equivalent experience/combined education, with 5 to 8 years of professional experience; or 3 to 5 years of professional experience with a Masters’ degree. 

  • Additional years of experience and certifications may be considered in lieu of a degree.

  •  Must have a Secret Clearance. 

  • In addition to specific security clearance requirements all Department of Homeland Security CBP SOC employees are required to have or be able to favorably pass a 5 year (BI) Background Investigation.  

  •  5 years in Pen Testing and Vulnerability Assessment, with specific emphasis on web application and enterprise network environments. 

  • 8 years of professional experience in incident detection and response, malware analysis, or cyber forensics. 

 

Specific experience in at least 1 f the following specialties: 

  • Mobile application testing 

  • Cloud infrastructure testing 

  • RF Testing 

  • Mainframe systems 

 

Experience with the majority of the tools listed below: 

  • Kali Linux 

  • Metaspoilt 

  • Burp suite pro 

  • Cobalt Strike / Empire 

  • Tenable Nessus 

  • Debuggers such as Immunity 

  • Bloodhound 

  • BladeRF / HakRF 

  • Hak5 equipment 

  • Wireshark / tcpdump 

 

Certifications: At least one pentesting certification: 

  • CISSP 

  • GISF 

  • GPEN 

  • GWAPT 

  • GXPN 

  • OSCE 

  • OSCP 

  • OSEE 

  • OSWP 

 

Clearance:  In addition to specific security clearance requirements all CBP SOC employees are required to successfully complete a CBP Background Investigation to support this program.

 

Preferred Qualifications:  

  • Understanding of Cyber Kill Chain & Intelligence Defense. 

  • Ability to brief senior officials on pentesting requirements and results.

Original Posting Date:

2024-12-12

While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range -

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0
Category: PenTesting Jobs

Tags: Burp Suite Business Intelligence CISSP Clearance Cloud Cobalt Strike Cyber Kill Chain Forensics GPEN GWAPT GXPN Incident response Intrusion detection Kali Linux Mainframe Malware Monitoring Nessus OSCE OSCP OSEE OSWP Pentesting Risk assessment Security Clearance SOC Vulnerabilities

Perks/benefits: Equity / stock options

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.