Job Requirements
Remote
Public Trust Polygraph None
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries
Job Description
Penetration Tester
Location: Remote
Required Clearance: Public Trust
Since 1999, ITEC has delivered mission-critical support to the DoD and Intelligence Community. Now part of ManpowerGroup Public Sector (MGPS), we continue that work with expanded capabilities. Employees hired through this process will join MGPS and receive a comprehensive benefits package and competitive pay.
Required Skills:
- A minimum of eight (8) years relevant experience.
- A degree from an accredited College/University in the applicable field of services is required. If the individual's degree is not in the applicable field then four additional years of related experience is required.
- Highly skilled in web application testing, API testing, and network testing.
- Prior experience with Burp Suite Professional, or other similar DAST tools.
- Experience with AI and penetration testing AI.
- Experience with Kali Linux and most of the tools available in the distro for penetration testing.
- Experience with tools such as Metasploit Pro and Cobalt Strike for red team operations.
- Experience with Red Team engagements from planning to execution.
- Experience with phishing network users to gain access for lateral movement on the network.
- Experience with Purple Team engagements to test monitoring controls in coordination with engineering teams and CSOC teams.
- Proficiency in scripting, such as Python and/or PowerShell.
- Experience with penetration testing supporting PCI-DSS.
- Technical writing skills, along with ease in communicating concepts related to security vulnerabilities and attack path scenarios.
- Familiar with OWASP Application Security Verification Standard (ASVS) and MITRE ATT&CK framework.
- Penetration testing certification recommended. Acceptable certifications: Offensive Security Certified Professional (OCSP), Global Information Assurance Certification (GIAC) Certifications (e.g., GIAC Certified Penetration Tester (GPEN), GIAC Web Application Penetration Tester (GWAPT), or GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)).
group id: 91138733B