Penetration Tester w TS/SCI

Overview

On Site
Full Time

Skills

Standard operating procedure
Certified Ethical Hacker
Penetration testing
Vulnerability assessment
Enterprise software
Security QA
Information assurance
Status reports
Cyber security
Information Technology
Patch Management
Web applications
Documentation
Testing
Collaboration
SAP BASIS
Agile
Design
IC
Policies
Regulatory Compliance
Reporting
Metrics
Cloud computing
CISSP
Nessus
Automation
SCAP
Fortify
Sonar
Linux
Cisco
Routing
Switches
Security clearance
Screening

Job Details

Location: Washington, DC
Description:
Title : Penetration Tester W Ts/sci

Location: Washington, DC 20001

Contract | 3+ Months

Job Description

Responsibilities

-Perform penetration testing, software assurance, and vulnerability assessment in support of DHS customers.

-Interpret penetration testing results to identify and recommend corrective actions and/or mitigation strategies.

-Produce and deliver reports on individual and enterprise software assurance efforts, working with service providers and individual programs/systems. Deliverable: Software Assurance Reports.

-Identify and address security implications during software acceptance activities, including completion criteria, risk acceptance and documentation, common criteria, and methods of independent testing. Perform security test assessments in support of DHS and system-specific software assurance efforts, working with service providers and individual programs.

-Collaborate with DevSecOps team participants from other organizations to integrate information assurance and cybersecurity needs and practices on a continuous basis throughout Agile development activities including, but not limited to requirements, design, implementation, testing, and delivery of new IT solutions, applications, services, and systems, or updating and enhancing existing ones.

-Perform and document vulnerability assessments of Government-identified DHS systems (Deliverable: Vulnerability Assessment Reports).

-Update and maintain software assurance SOPs in accordance with IC and DHS policy (Deliverable: Software Assurance Standard Operating Procedures).

-Annually review and update, as needed, all security configurations within automated DevSecOps tools and manual processes to ensure compliance with IC policy. Upon government approval, implement changes to processes and technologies for penetration testing, software assurance, and vulnerability assessment activities, and report metrics in -Monthly Status Reports.

Required Qualifications

-Must have at least 7+ years of total cyber security and or information technology professional experience.

-Must have at least 5+ years of recent experience in the following technical areas: software assurance, penetration testing with a range of automated tools, security patch management, secure cloud, and hybrid engineering, and CDS, Web

Cyber security certifications as a Certified Ethical Hacker (CEH) and CISSP, CASP, or comparable demonstrable experience are preferred but not required.

-Must be proficient in the use of Nessus Security Centre, Security Content Automation Protocol (SCAP), Web Application Scanning, Penetration Testing, Web inspects, Fortify, and similar tools. Must have recent Software Assurance experience. Sonar Cube experience is preferred.

-Linux and Cisco Routing and Switching experience.

-Active Top-Secret w/ SCI clearance required

-This position requires a badge and or clearance the requires an extensive background, credit, and drug screening check.

Desired Qualifications

Bachelor's degree or master's Degree in a technology discipline from an accredited university.

Contact:

This job and many more are available through The Judge Group. Please apply with us today!

About Judge Group, Inc.