Penetration Tester
Job Description
This onsite role in Arlington, VA supports the TSA IT Task Order and offers the chance to influence federal cybersecurity through hands-on penetration testing of TSA IT assets. You will conduct security testing, analyze findings, and present final reports to TSA IT management. The position may require occasional off hours testing and travel, with opportunities to collaborate closely with TSA stakeholders and the Security Operations Center.
Responsibilities
- Conduct penetration testing activities on the TSA network.
- Engage with TSA stakeholders to tailor the Rules of Engagement and create test plans.
- Utilize both automated tools and manual techniques to identify and exploit vulnerabilities.
- Analyze and validate test results, generate final reports, and present findings to TSA IT management to inform remediation decisions.
- Provide support, review, and recommendations for system security design, configuration, security findings, and data flow.
- Participate in findings meetings and responses with stakeholders.
- Coordinate with the TSA Security Operations Center to contribute SIEM detection content and enhance the SOC’s ability to detect activities performed during testing engagements.
- Provide Product and Technology Evaluations (NPTE) on screening technologies used in airports. Evaluate technologies proposed by the Innovation Task Force’s Advancing the Checkpoint Environment (ACE) with Requirements and Capability Analysis (RCA) features, in support of the Acquisitions and Program Management (APM) teams in the Transportations Security Integration Facility (TSIF).
- Contribute to Cybersecurity Requirements Determination, Scoping and Security Testing Strategy, Security Test Documentation, Security Testing, Analysis, and Final Reporting with Findings Meetings.
Requirements
- At least 12 years of technical IT security experience.
- At least 8 years of experience performing penetration testing.
- At least 5 years of experience performing penetration testing for federal IT systems.
- Ability to work independently with minimal oversight.
- Experience using automated tools: Kali Linux, AppScan, BurpSuite, SOAPUI, AppDetective, Cobalt Strike, RedSeal, Nessus.
- Experience with penetration testing methodologies including Open Source Intelligence, Discovery, Enumeration, Vulnerability Identification, Exploitation, and Post Exploitation techniques and tools.
- Experience with manual testing techniques.
- Required Certifications: OSCP, CEH, GWAPT, CISSP or other equivalent.
- Experience with custom programming languages: Python, Perl, PowerShell, etc.
- Fluent knowledge of NIST and FIPS security controls, DISA STIGs, and CIS standards.
- Familiarity with OWASP Top 10 weaknesses.
- Experience with switches, routers, firewalls, VPN, ISE; Palo Alto firewalls; VPN; Load Balancers, AV, host and network based devices, and enterprise security tools.
- Fluent in TCP/IP, SMB, SSH, NetBIOS, SOAP, REST, LDAP, SAML, SSO.
Technologies
- Kali Linux
- AppScan
- BurpSuite
- SOAPUI
- AppDetective
- Cobalt Strike
- RedSeal
- Nessus
- Python
- Perl
- Powershell