Posted at: 11 February
Penetration Tester – Senior
Company
Nationwide IT Services, Inc.
Nationwide IT Services, Inc. (NIS) is a Fairfax, VA-based B2G IT and management consulting firm specializing in federal government contracts, offering a range of IT solutions, cybersecurity, and professional services.
Remote Hiring Policy:
Nationwide IT Services, Inc. supports remote work for certain roles, including positions like Business Data Analyst II, which is fully remote. The company primarily operates within the United States, with employees located across various states.
Job Type
Full-time
Allowed Applicant Locations
United States
Job Description
Penetration Tester – Senior
Location: Remote, with the ability to regularly travel to Ft. Belvoir, VA for meetingsSecurity Clearance Requirement: Required to possess a DOD SECRET Clearance and be eligible for an IT-I Critical Sensitive security clearance or Tier 5 (T5) upon assignment
Position Summary
Nationwide IT Services is seeking a Senior Penetration Tester to independently lead penetration testing activities across DoD systems and enclaves. This role will execute advanced offensive testing techniques, develop detailed reports, and provide recommendations to reduce enterprise risk.Key Responsibilities
- Independently perform penetration testing of applications, systems, and enclaves.
- Conduct advanced applications, network, and wireless penetration testing.
- Identify security flaws and develop mitigation strategies.
- Coordinate testing projects with internal and external system owners.
- Develop detailed technical reports and executive briefings.
- Provide guidance and mentoring to junior penetration testing staff.
Required Qualifications
- Six (6) years proven proficiency in vulnerability assessment and penetration testing
- Three (3) years of experience using testing tools (Nessus, Metasploit, CANVAS, Nmap, Burp Suite, Kismet)
- Three (3) years of experience with network vulnerability assessments and penetration testing methods
- Three (3) years of experience writing testing assessment reports
- Two (2) years of experience administering/troubleshooting Windows Server and IIS
- Knowledge of TCP/IP protocols and networking architecture
- Two (2) years of experience administering/troubleshooting a major version of Linux
- Two (2) years of experience supporting PCI DSS testing
- Excellent written and oral presentation skills
- Knowledge of OWASP standards and testing methodologies
- Knowledge of database, application, and web server design
- Experience scripting in Perl, Python, Ruby, Bash, or Java
- Experience with wireless LAN security testing
- Penetration testing certification (LPT, CEPT, CEH, or GPEN)
Preferred Qualifications
- Experience leading red team activities
- Experience supporting large-scale DoD cybersecurity programs