Enterprise Cybersecurity Penetration Tester
Job Description
Lead enterprise network and penetration testing in Booz Allen Hamilton’s internal Red Team environment.
Responsibilities
- Plan, lead, and execute enterprise and system-focused network and penetration assessments
- Assess and surface security risks across applications, controls, and infrastructure
- Coordinate with offensive security reporting teams on findings and analysis
- Partner with consulting teams to support delivery of security solutions
- Evaluate established rules of engagement and system penetration testing requirements
- Explain technical security concepts to both technical and non-technical stakeholders
- Contribute to security research and promote knowledge sharing across the team
Requirements
- 2+ years of experience in penetration testing and red teaming
- Experience with vulnerability enumeration and exploitation frameworks, including: Burp Suite Pro, Metasploit, Cobalt Strike, Armitage, or PowerSploit
- Foundational knowledge of vulnerability discovery, enumeration, exploitation, and post-exploitation techniques
- Ability to write high-quality technical assessment reports and communicate findings to clients and teammates
- Ability to lead organized security testing engagements on a team
- Bachelor’s degree
- Relevant certification such as one or more: OSCP, OSWA, OSEP, OSEE, PNPT, CRTO, GPEN, GWAPT, GCPN, GXPN, or an Offensive Security certification
Technologies
- Burp Suite Pro
- Metasploit
- Cobalt Strike
- Armitage
- PowerSploit
Benefits
- Health, life, disability, financial, and retirement benefits
- Paid leave
- Professional development
- Tuition assistance
- Work-life programs
- Dependent care
- Recognition awards program
- Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs
Nice If You Have
- Experience with covert computer network exploitation or adversary emulation
- Experience exploiting Active Directory, Azure, and Amazon Web Services
- Knowledge of scripting languages, API functionality, and data access methodologies
- Ability to operate in a fast-paced work environment, multitask, and handle delivery deadlines
- Ability to clearly communicate technical details and vulnerability data to non-technical teammates and clients
- Bachelor’s degree in Information Security, Cybersecurity, or CS
Identity Verification
- Complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud
- Be on camera during interviews and assessments
- Booz Allen may take your picture to verify your identity and prevent fraud
Candidate AI Usage Policy
- Use of AI or other tools to assist with responses during interviews (in-person or virtual) is prohibited unless permission is explicitly provided
Work Model
- Onsite: work will primarily be performed full-time at a customer facility, with collaboration required by the role
Location: McLean, VA (onsite)
Compensation: USD 86,800 - 198,000 per year
Experience: 2+ years
Education: Bachelor’s degree