Secret Vulnerability Penetration Tester

Insight Global
Aberdeen Proving Ground, MD, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$108,160.0 - $135,200.0
Working hours
Regular working hours

Tech stack

Java (Programming Language) Microsoft Windows Software System Penetration Testing Bash Shell Burp Suite C++ (Programming Language) Static Program Analysis Cyber Security Computer Programming Computer Networks Linux VMware ESX Servers
+12 more
Hypervisor Python (Programming Language) Network Protocols Reverse Engineering Software Systems Wireshark VirtualBox Virtualization Technology Web Applications Scripting Vulnerability Analysis Vmware

Job description

A client of Insight Global is seeking a Cybersecurity Penetration Tester to work 100% onsite at Aberdeen, MD in support of a defense program. This role requires an active DoD Secret clearance and the ability to obtain and maintain a TS/SCI clearance. The successful candidate will join a specialized team conducting manual technical cybersecurity assessments across devices, products, web applications, networks, and software systems. Daily responsibilities include identifying vulnerabilities and exploits using tools like Wireshark and Burp Suite, interpreting network traffic, and performing penetration testing in secure SCIF lab environments. Candidates must have at least 5 years of experience in cybersecurity assessments or penetration testing, with strong knowledge of Linux and Windows internals, networking protocols, and hypervisor virtualization platforms such as VMware, VirtualBox, and ESXi.

Requirements

  • Secret
  • 3 years of hands on experience in technical cyber security penetration testing, preferably manual testing experience
  • Proficiency in tools/methodologies for evaluating network and application-level vulnerabilities
  • Intermediate knowledge of Linux and Windows internals
  • Strong understanding of networking protocols, hardware, and software
  • Experience interpreting network traffic using tools like Wireshark, Burp Suite, etc.
  • Familiarity with hypervisor virtualization (VMware, VirtualBox, ESXi)

Nice to Have Skills & Experience

  • Active DoD TS/SCI clearance
  • DoD 8570 IAT Level II certification (Security+ or equivalent)
  • OSCP or equivalent certification
  • Basic knowledge of cryptography
  • Experience with programming/scripting (Python, Java, C/C++, bash)
  • Familiarity with code analysis and reverse engineering
  • Knowledge of hardware hacking techniques (chip-off, fault-injection, etc.)
  • Experience with COTS/GOTS radios, SDRs, and RF concepts

Benefits & conditions

Exact compensation may vary based on several factors, including skills, experience, and education.

Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law., Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.insightglobal.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:22 min

Structuring critical internal and external penetration testing procedures

Jasmin Azemović Jasmin Azemović · WWC 2023

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · WWC 2025

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

Videos

See all

Related articles

See all