> Markdown version of [/jobs/ext/1007875-ts-sci-penetration-tester](https://www.wearedevelopers.com/jobs/ext/1007875-ts-sci-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # TS/SCI Penetration Tester - **Company:** Insight Global - **Location:** San Antonio, TX, United States - **Experience:** Expert - **Salary:** $176,800.0 - $187,200.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Burp Suite, C++ (Programming Language), Databases, IBM DB2, Python (Programming Language), PostgreSQL, MariaDB, Microsoft SQL Server, MongoDB, MySQL, Oracle (Applications), Windows PowerShell, Red Team (Cyber Security), SQLite, Web Testing, Informix, Scripting, Sybase, Backend, Purple Team (Cyber Security) - **Published:** June 18, 2026 - **Apply:** https://www.juju.com/job/00000000g933dg ## About the Role 10-12 years of penetration testing experience - Strong application and web penetration testing background - Specific database penetration testing expertise (MS SQL Server, Oracle, PostgreSQL, MySQL (Maria DB), Mongo DB, Sybase, IBM DB2, SQLite, FireBird, and Informix) - Ability to identify and exploit application and database level vulnerabilities - Strong scripting skills (Python, PowerShell) - Familiarity with Burp Suite and modern web testing tools - IAT Level III (CASP, CISSP+, CISA, etc.) - Database specialist background - GREM certification or equivalent exploit development experience - GPEN, GXPN strongly preferred - C/C++ development experience - Experience in red team or advanced adversary emulation - Prior DoD or Air Force cyber assessment experience - UNIX/Linux lab testing experience - Purple team exposure ## Description Insight Global is looking for a penetration tester that will be leading application, web, and database penetration testing efforts. They will partner with infrastructure-focused pen testers on 2-person mission teams and assess mission-critical databases/backend systems. They will also identify complex application-layer exploits and zero-day opportunities, developing and presenting exploit PoCs to demonstrate risk. This person will conduct onsite missions across Air Force supported customers, supporting a high operational tempo. This position supports security, compliance, and cyber test & evaluation objectives for the 346th Cyber Test & Evaluation Squadron. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [MySQL Protocol Features You Should Be Aware Of](https://www.wearedevelopers.com/videos/100267-mysql-protocol-features-you-should-be-aware-of) - [Introduction to TXT](https://www.wearedevelopers.com/videos/30-introduction-to-txt) - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) - [Coding for Good: Achieving social change with an app](https://www.wearedevelopers.com/videos/1645-coding-for-good-achieving-social-change-with-an-app) - [Stop using Node.js like in 2020! What changed and what you can do today with Node.js](https://www.wearedevelopers.com/videos/100011-stop-using-node-js-like-in-2020-what-changed-and-what-you-can-do-today-with-node-js) ## Related Articles - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 182: GPT5 Prompts, MCP Vulnerabilities, Code Traps](https://www.wearedevelopers.com/magazine/622-dev-digest-182-gpt5-prompts-mcp-vulnerabilities-code-traps) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Should senior developers refuse interview coding challenges?](https://www.wearedevelopers.com/magazine/29-should-senior-developers-refuse-interview-coding-challenges)