Overview
Skills
Job Details
Penetration Tester Albany NY 12+ Months Long Term Contract
Seeking an experienced vendor to perform Black Box and Grey Box penetration testing on NYSIF s internal and external network environments. The ideal vendor must demonstrate expertise using tools such as Metasploit, Nmap, Wireshark, Burp Suite, and Nessus to test a broad IT infrastructure, including servers, routers, firewalls, and wireless networks. Testing phases will include Planning, Discovery, Attack, Reporting, and Executive Summary. All testers must hold certifications such as CEH, CISSP, GPEN, OSCP, or CISA and have proven black/grey box testing experience.
Threat Simulation:
External Testing will be performed from outside the organization s perimeter, simulating an
external threat.
Internal Testing will be performed from within the organization s perimeter, simulating an
internal threat.
Wireless Testing Wireless testing can be performed with either the External or Internal testing
component.
AI Enhanced Security Research Use Artificial Intelligence enhanced security research tools to
uncover additional risks.