> Markdown version of [/jobs/ext/2212780-cybersecurity-specialist-penetration-tester](https://www.wearedevelopers.com/jobs/ext/2212780-cybersecurity-specialist-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Specialist - Penetration Tester - **Company:** QBE LLC - **Location:** Fore Store, VA, United States (Remote available) - **Experience:** Expert - **Salary:** $115,000.0 - $130,000.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, CompTIA Security+, Cyber Security, Information Systems, Information Systems Security Architecture Professional, Web Applications, Information Technology - **Published:** August 24, 2026 - **Apply:** https://www.disabledperson.com/jobs/74511109-cybersecurity-specialist-penetration-tester ## About the Role * Associate degree in cybersecurity, information technology, computer science, information systems, business, communications, or a related field, or an additional two or more years of relevant experience in place of the degree requirement. * At least 10 years of relevant experience aligned to the responsibilities of this position. * Demonstrated experience performing authorized enterprise penetration tests. * Knowledge of network, web application, operating system, identity, and cloud attack techniques. * Experience developing professional penetration-testing reports. * Strong understanding of risk, remediation, and defensive countermeasures. * CompTIA Security+ certification. * Certified Information Systems Security Professional (CISSP) certification. * EC-Council Certified Ethical Hacker (CEH) certification. * Ability to obtain and maintain the required federal background investigation, Public Trust determination, or security clearance associated with the position. Preferred Qualifications * Federal penetration-testing experience. * Experience with cloud and identity-based penetration testing. * Experience performing adversary emulation or purple-team activities. Physical Requirements * Ability to remain in a stationary position for extended periods while working at a computer. * Ability to communicate effectively through virtual and in-person meetings. * Ability to perform duties in an office, remote, or hybrid environment based on program requirements. * Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the position. ## Description QBE, LLC is seeking an experienced Cybersecurity Specialist - Penetration Tester to conduct authorized penetration testing and security assessments supporting NIH/OD-OIT. This position is primarily remote but will require some TDY. Responsibilities * Conduct authorized network, application, system, cloud, and infrastructure penetration testing. * Develop testing plans, scopes, methodologies, and rules of engagement. * Identify exploitable security weaknesses through manual and automated techniques. * Validate vulnerabilities and determine potential attack paths and business impact. * Conduct reconnaissance, enumeration, exploitation, and post-exploitation activities within authorized scope. * Document technical findings with supporting evidence. * Develop clear remediation recommendations. * Conduct retesting to validate remediation. * Coordinate testing activities with system owners and security stakeholders. * Maintain strict compliance with approved testing boundaries and procedures. #qf #qg ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Generate AI in the Browser with Chrome AI - Raymond Camden](https://www.wearedevelopers.com/videos/1770-generate-ai-in-the-browser-with-chrome-ai-raymond-camden) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [WebXR: Enabling Virtual and Augmented Reality on the Web](https://www.wearedevelopers.com/videos/965-webxr-enabling-virtual-and-augmented-reality-on-the-web) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [How to Write a CV and Interview if You Don't Fully Qualify For The Job](https://www.wearedevelopers.com/magazine/183-how-to-write-a-cv-and-interview-if-you-don-t-fully-qualify-for-the-job)