Penetration Tester ASRC Federal Holding CompanyPenetration TesterWashington, DCASRC Federal Technology Solutions is seeking an experienced Penetration Tester to lead advanced security assessments and contribute to the development and execution of penetration testing strategies. Analyze and mitigate system security threats throughout the lifecycle, including risk assessments and implementation of security engineering controls.
NewLead Cyber Threat Analyst Evolver IncLead Cyber Threat AnalystWashington, DCThe Lead Cyber Threat Analyst will lead a team of analysts, collaborate with SOC and incident response teams, and provide actionable intelligence to strengthen the organization's cybersecurity posture. Basic Qualifications: Bachelor's Degree in Computer Science, Information Management (IM), Information Technology, Engineering, or equivalent with 6 years of technical experience and 4 years' experience in IT Solutions at senior management.
Sr. Principal Network Engineer Clarity InnovationsSr. Principal Network EngineerWashingtonClarity Innovations is a trusted national security partner, dedicated to safeguarding our nation’s interests and delivering innovative solutions that empower the Intelligence Community (IC) and Department of Defense (DoD) to transform data into actionable intelligence, ensuring mission success in an evolving world. Hands-on experience with cloud networking in AWS, Azure, or private cloud environments, with strong knowledge of VPCs, security groups, and hybrid cloud networking (Direct Connect, ExpressRoute).
Sr. Cybersecurity Incident Response Specialist Bering Straits Native CorporationSr. Cybersecurity Incident Response SpecialistWashington, DC$100,000–$120,000 / yearParagon offers a wide range of environmental investigation, consulting, compliance, and remediation services as well as IT solutions, Facility O&M, Materiel Support, Supply and Security to both private- and public-sector clients throughout Alaska and the Continental U.S. Paragon's experienced professional staff is dedicated to producing high-quality documentation and providing safe field execution to support its clients' projects in line with local, state and federal guidelines and regulations. Member of the SOC team which provides 24 hours per day, 7 days per week, 365 days per year monitoring and incident response services for the organization's Network, Systems, Applications, and Web services.
(VAT) Computer Security System Specialist - Level III JASINT(VAT) Computer Security System Specialist - Level IIIWashington D.C., DCPerforms penetration testing per recognized methodologies (e.g., MITRE ATT&CK, OWASP) covering pre-engagement, rules of engagement, intelligence gathering, threat modeling, vulnerability analysis, exploitation, post-exploitation and reporting; plus software assurance, vulnerability assessment, security patch management and secure cloud/hybrid engineering. At least 2 years recent experience in EACH of: software assurance; penetration testing with a range of automated tools; vulnerability assessment; security patch management; secure cloud and hybrid engineering; and CDS - for a total of at least 10 years.
Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer LinTech GlobalSenior Penetration Testing, Software Assurance and Vulnerability Assessment EngineerWashington, DCFull timeStakeholder Interaction, the Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer routinely interfaces with:ISSOs ISSMs Security Control Assessors Security Risk Management Engineers Cybersecurity Engineers System Administrators Application Development Teams Enterprise Architects System Owners Authorizing OfficialsRequired Qualifications:The Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer must have at least 2 years of recent experience in each of the following technical areas: software assurance, penetration testing with a range of automated tools, vulnerability assessment, security patch management, secure cloud and hybrid engineering, and CDS, for a total of at least 10 years. Job Duties:The Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer provides expert support for:Penetration testing Vulnerability assessments Security testing and evaluation Software assurance analysis Security control validation Technical risk identification Security architecture assessment Remediation planning Continuous monitoring support The position functions as the Government's senior technical assessor responsible for independently identifying weaknesses before adversaries do.
Cyber Security Project Engineer J5 ConsultingCyber Security Project EngineerChantilly, VAThe Customer requires subject matter expertise in technical risk analysis of enterprise and mission systems, IT systems and networks, mobile and wireless networks, cloud-based computing, network management platforms, communication protocols, scripting or programming products, configuration scripts, and IT hardware and software products in support of Sponsor’s technical risk assessment activities. Demonstrated experience developing IT system or network architecture design, conducting IP data flow analysis, encryption configuration, and vulnerability analysis using both open-source and commercial tools, such as Nmap, Wireshark, Metasploit, Canvas, Kismet, or BackTrack.
Incident Manager (Junior) Node.DigitalIncident Manager (Junior)Arlington, VAOur~MISSION FIRST~approach is designed to keep our customers fully engaged while becoming their trusted partnerWe believe in~SIMPLIFYING~complex problems with a relentless focus on agile delivery excellenceOur mantra is “~Simple * Secure * Speed~” in delivery of innovative services and solutions. Digital is supporting a customer by delivering intelligence support to customer through proactively identifying, analyzing, and responding to cyber threats to inform the customer’s vulnerability management (VM) efforts.
NewCyber Security Project Engineer GrvtyCyber Security Project EngineerHerndon, VirginiaWe've grown on this effort by providing the customer with Engineers who have done exceptional work, and we've retained our staff by paying very strong salaries, and working hard to ensure each Engineer is doing work that aligns with their career interest. Pay Range: At GRVTY, we understand that compensation is influenced by many factors—such as geographic location, federal contract labor categories, wage rates, prior experience, skillsets, education, and certifications.
Security Analyst Integral Consulting Services IncSecurity AnalystMcLean, VAUtilize a combination of COTS, GOTS, and open-source tools to analyze GFD using structured and mathematical analysis methods to discover and document efforts to exploit vulnerabilities in DoWIN infrastructure, as well as efforts to deceive DoWIN users into taking actions that would expose DoWIN information or increase the vulnerability of DoWIN-connected assets. The Security Analyst supports the United States (U.S.) Army C5ISR Center to develop advances within cyber defense research; advanced detection methods; sensor structure, data optimization, and sensor architectures; intrusion detection innovations, evaluation methods, attack behaviors, insider threat, and adversarial threat predictions.
Senior Penetration Testing, Software Assurance and Vulnerability Def-Logix, Inc.Senior Penetration Testing, Software Assurance and VulnerabilityWashington D.C., DCThe ideal candidate will possess extensive experience performing penetration testing using automated tools, supporting secure engineering initiatives, and strengthening the overall cybersecurity posture of mission-critical systems. We are seeking a highly experienced Senior Penetration Testing, Software Assurance, and Vulnerability Assessment Engineer to provide technical expertise in penetration testing, software assurance, vulnerability assessment, and cybersecurity engineering.
Incident Manager III ARSIEMIncident Manager IIIArlington, VAARSIEM is looking for a Cybersecurity Vulnerability Analyst who can support the development of new and innovative Cyber Threat Intelligence techniques, to be the tip of the spear for Vulnerability Managment's threat intelligence capabilities. If you do, ARSIEM has a way for you to earn a bonus through our referral program for persons presenting NEW (not in our resume database) candidates who are successfully placed on one of our projects.
Cybersecurity Engineer SME Electrosoft Services IncCybersecurity Engineer SMEArlington, VADISA FSO certified CCRI Team Lead and certification in penetration testing, such as: Licensed Penetration Tester (LPT), Certified Expert Penetration Tester (CEPT), Certified Ethical Hacker (CEH), Global Information Assurance Certification Penetration Tester (GPEN), Tenable Certified NESSUS Auditor. Excellent knowledge of and proficiency with: VULNERATOR, USCYBERCOM CTO, Compliance Program, Wireless vulnerability assessment, Web Services (IIS, Apache, Proxy), Database (SQL Server, Oracle), Email Services (Exchange), Vulnerability Scans (NESSUS, SCCM), Knowledge of Phishing exercises, USB Detect, Physical Security.
Cybersecurity Analyst, Security & AI Governance Cogent Communications Holdings IncCybersecurity Analyst, Security & AI GovernanceWashington, DC$100,000–$120,000 / yearIdentify, assess, and monitor risks associated with generative AI, large language models (LLMs), machine learning platforms, prompt injection attacks, data leakage, insecure APIs, and AI supply chain vulnerabilities. Research emerging cybersecurity threats, vulnerabilities, cybersecurity trends, AI technologies, and industry best practices and recommend appropriate mitigation strategies/countermeasures.
Cyber Security Engineer Noblis IncCyber Security EngineerWashington, DC$86,800–$135,625 / yearCompensation at Noblis is determined by various factors, including but not limited to, the combination of education, certifications, knowledge, skills, competencies, and experience, internal and external equity, location, clearance level, as well as contract-specific affordability, organizational requirements and applicable employment laws. Personnel performing cybersecurity functions must meet DoD cybersecurity workforce certification requirements in accordance with DoD Manual 8140.3 for their designated role within 9 months of hire.
Cybersecurity Engineer SME ElectrosoftCybersecurity Engineer SMEWashington, DCDISA FSO certified CCRI Team Lead and certification in penetration testing, such as: Licensed Penetration Tester (LPT), Certified Expert Penetration Tester (CEPT), Certified Ethical Hacker (CEH), Global Information Assurance Certification Penetration Tester (GPEN), Tenable Certified NESSUS Auditor. Excellent knowledge of and proficiency with: VULNERATOR, USCYBERCOM CTO, Compliance Program, Wireless vulnerability assessment, Web Services (IIS, Apache, Proxy), Database (SQL Server, Oracle), Email Services (Exchange), Vulnerability Scans (NESSUS, SCCM), Knowledge of Phishing exercises, USB Detect, Physical Security.
Sr. Principal Network Engineer ClaritySr. Principal Network EngineerWashington, DC$120,000–$315,000 / yearClarity Innovations is a trusted national security partner, dedicated to safeguarding our nation's interests and delivering innovative solutions that empower the Intelligence Community (IC) and Department of Defense (DoD) to transform data into actionable intelligence, ensuring mission success in an evolving world. Hands-on experience with cloud networking in AWS, Azure, or private cloud environments, with strong knowledge of VPCs, security groups, and hybrid cloud networking (Direct Connect, ExpressRoute).
Threat Detection & Response Analyst SkyePoint DecisionsThreat Detection & Response AnalystBethesda, MarylandRemoteSkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. This position works closely with Incident Response personnel, Vulnerability Management Analysts, Security Engineers, RMF teams, and system owners to strengthen cybersecurity defenses and protect mission-critical systems and sensitive research data.
HSEEP Cybersecurity/Infrastructure Protection Exercise Professional (Remote) CybervanceHSEEP Cybersecurity/Infrastructure Protection Exercise Professional (Remote)Washington, DCRemoteResponsibilities of the Project Manager include, but are not limited to, providing assistance to the Project Executive; enforcement of the contract provisions; serving as the primary point of contact for Contract communications; maintaining appropriate staffing levels; implementation of quality assurance and control measures; review of daily activity; review and submittal of invoices; and overall management and oversight of action planning and process improvements. Proven production experience in understanding cybersecurity frameworks, familiarity with SIEM tools, knowledge of network protocols and infrastructures, ability to analyze logs for irregularities, basic scripting or coding for task automation, threat intelligence analysis, and incident response.
HSEEP Cybersecurity/Infrastructure Protection Exercise Professional CybervanceHSEEP Cybersecurity/Infrastructure Protection Exercise ProfessionalResponsibilities of the Project Manager include, but are not limited to, providing assistance to the Project Executive; enforcement of the contract provisions; serving as the primary point of contact for Contract communications; maintaining appropriate staffing levels; implementation of quality assurance and control measures; review of daily activity; review and submittal of invoices; and overall management and oversight of action planning and process improvements. Proven production experience in understanding cybersecurity frameworks, familiarity with SIEM tools, knowledge of network protocols and infrastructures, ability to analyze logs for irregularities, basic scripting or coding for task automation, threat intelligence analysis, and incident response.