Penetration Tester

Peraton
Arlington, VA

Program Overview

Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support for Bureau of Diplomatic Security, Cyber and Technology Security Directorate in three key offices/functional areas: Cyber Monitoring and Operations, Cyber Threat and Investigations, and Technology Innovation and Engineering State.

About The Role

Peraton is seeking an experienced Cyber Penetration Tester to become part of Peratons’ Federal Strategic Cyber programs.

Location: Northern VA; Hybrid - flex as long as person can come on-site as/when needed.

In this role, you will:

  • Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems.
  • Identify vulnerabilities and develop recommended remediations to satisfy mandated NIST 800-53 security controls.
  • Report and demonstrate findings to system owners and engineers.
  • Maintain Red Cell infrastructure.
  • Develop or modify tools to automate discovery or exploitation.

Qualifications

Basic Qualifications:

  • Bachelor of Science and 5 years of relevant experience in Cyber/IT, or a Master's of Science and 3 years of relevant experience in Cyber/IT. In lieu of a degree, 4 years of additional IT security or penetration testing experience may be considered.
  • Minimum of 2 years with penetration testing experience.
  • Possess one of the following certifications, OR be able to obtain before start date:
    • CCNA Cyber Ops, CCNA-Security, CEH, CFR, Cloud+, CySA+, GCIA, GCIH, GICSP, SCYBER, Security+ CE, SSCP
  • Demonstrated experience with Kali Linux.
  • Demonstrated penetration testing tools experience with Nmap, Burp Suite, Metasploit, etc.
  • Demonstrated ability in evaluating vulnerabilities, performing root cause analysis, and reporting findings utilizing assessment methodologies such as NIST SP 800-115, Penetration Testing Execution Standard (PTES), Information Systems Security Assessment Framework (ISSAF), OWASP Web Security Testing Guide (WTG), etc.
  • Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers.
  • U.S. citizenship required.
  • An active Secret security clearance.
    • Must have the ability to obtain a final Top Secret security clearance.

Preferred:

  • Active Top Secret or TS/SCI clearance.
  • One of the following certifications or an alternate, verifiable certification demonstrating IT security competence:
    • CompTIA CASP+
    • ISC2 Certified Information Security Professional (CISSP)
    • ISC2 Certified Cloud Security Professional (CCSP)
    • ISC2 Information Systems Security Engineering Professional (ISSEP)
  • One of the following certifications or an alternate, verifiable certification demonstrating practical penetration testing competence:
    • Offensive Security Certified Professional (OSCP)
    • Offensive Security Certified Professional (OSCP)
    • Hack the Box Certified Penetration Testing Specialist (CPTS)
    • TCM Security Practical Network Penetration Tester (PNPT)
    • GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)
    • Zero Point Security Red Team Ops II
  • Advanced understanding of the following:
    • NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process.
    • Security principles such as CIA, IAAAA, access control models, risk management, etc.
    • Networking principles and technologies such as IP routing, TCP/UDP, VPNs, firewalls, NAT, etc.
    • Common network protocols such as SSH, FTP, SMTP, SMB, etc.
    • Operating system principles such as process management, device management, user management, file systems, etc.
    • Data processing principles such as encoding, hashing, encryption, etc.
    • Scripting and programming languages such as Bash, Python, PowerShell, JavaScript, etc.
    • Common application vulnerabilities and exploits such as outdated components,
    • permissions misconfigurations, lack of input validation, logging/monitoring failures, etc.
    • Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken authentication mechanisms, etc.
    • Active Directory (AD) enumeration and attacks such as kerberoasting, AS-REP roasting, abusing misconfigured privileges, crafting golden tickets, etc.
    • Public Key Infrastructure (PKI) and navigating IT environments implementing multifactor authentication.
    • Cloud technologies and platforms such as Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (GCP), etc.

SCA / Union / Intern Rate or Range

Details

Target Salary Range: $86,000 - $138,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at

Application Duration Statement: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Posted 2026-01-13

Recommended Jobs

Student Life Coordinator

VA School for the Deaf & Blind
Augusta County, VA

Student Life Coordinator Location Augusta County, VA : Title: Student Life Coordinator State Role Title: Administrative and Office Specialist III Hiring Range: $27,980 - $40,000 ($16.12 - $23.…

View Details
Posted 2026-01-07

Emergency Veterinarian - Ethos ER Immerse Mentorship Program - Winchester, VA - Offsite Training!

Valley Veterinary Emergency and Referral Center
Winchester, VA

Emergency Veterinarian - Ethos ER Immerse Mentorship Program – Winchester, VA – Offsite Training! Valley Veterinary Emergency & Referral Center is seeking veterinarians passionate about working in…

View Details
Posted 2025-12-30

Emergency Medicine Physician in Danville, Virginia

Sovah Health Danville
Danville, VA

Ask about our newly increased compensation package and night differential! TeamHealth has an excellent opportunity for a nocturnist emergency medicine (EM) physician to join our team at Sovah Health …

View Details
Posted 2025-12-17

Finance & Investments Coordinator

Sunrise
McLean, VA

Essential Duties As a part of the Sunrise team, supporting our Mission, Principles of Service and Core Values is a fundamental part of this job. Our foundational belief is the sacred value of …

View Details
Posted 2025-12-10

Behavior Technician/Registered Behavior Technician (VA Area)_Alexandria, VA

Kona Medical Consulting
Alexandria, VA

Kona Medical Consulting and Body Kinetics Rehab is currently looking for BTs and/or RBTs in the following areas in Virginia: Annandale, Aldie, Woodbridge, Lorton, Arlington, Alexandria, Springfield, M…

View Details
Posted 2025-12-22

Accounts Receivable Analyst

Altamira Technologies
Tysons, VA

Description Altamira Technologies Corporation has a long and successful history providing innovative solutions throughout the U.S. National Security community. Headquartered in McLean, Virgini…

View Details
Posted 2026-01-16

CDL Rigger

The Prolift Rigging Company
Manassas, VA

ProLift Rigging is a privately owned, purpose-driven industrial construction company that has a unique, opportunistic, and growth-oriented culture. OUR PURPOSE To acknowledge and glorify God by…

View Details
Posted 2025-12-01

SIGINT System Engineer - Mid

KBR
Chantilly, Loudoun County, VA

Title: SIGINT System Engineer - Mid Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers i…

View Details
Posted 2025-11-07

Lead Machine Learning Engineer

Capital One
McLean, VA

Lead Machine Learning Engineer At Capital One, we are changing banking for good by creating responsible and reliable AI-powered systems. Our investments in technology infrastructure and world…

View Details
Posted 2025-12-16

Registered Behavior Technician (RBT) Social Skills Group Facilitator (Richmond)

Advanceable ABA VA
Richmond, VA

Advanceable ABA is seeking a skilled and enthusiastic Registered Behavior Technician (RBT) to lead virtual social skills group sessions for children receiving ABA services. This is a great opportu…

View Details
Posted 2025-12-18