Penetration Tester Journeyman
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+5 more
Job description
Adversary Simulation:
Deploy, configure, and operate C2 frameworks such as Cobalt Strike, Havoc, Mythic, and Sliver. Apply TTPs for initial access, lateral movement, privilege escalation, persistence and data exfiltration. Leverage proprietary and open-source offensive security tool sets effectively to achieve engagement objectives. Execute phishing assessments. Infrastructure:
Monitor, manage, and maintain cloud and on-premise infrastructure used during assessments. Understanding the use of Git Repositories for maintaining operational tools and scripts. Penetration Testing:
Internal and external penetration testing. Network mapping and enumeration. Assess web and mobile applications. Perform database scans. Assess Active Directory attack paths using tools such as BloodHound. Security Assessments:
Assessing Coast Guard’s cyber security posture of operational networks through adversary emulation. Develop reports and briefs detailing findings and recommendations for all assessments completed. Perform cyber threat emulation during scripted exercises, to train DoD Cyber Protection Teams
Requirements
Relevant Years of Experience: 5+ Hands on experience with computers and network security. Experience conducting phishing campaigns or social engineering. Hands on experience with red team tasks and pen testing. Familiarity with malware development and EDR/AV bypass strategies. Experience with PowerShell, C, C++, or Python. Hands on experience utilizing Command and Control (C2) Frameworks such as Cobalt Strike, Sliver, Havoc, etc. Certifications:
IAT II or IAT III GPEN, Red Team Apprentice Course (RTAC), or equivalent Education: BA/BS or equivalent years of relevant experience
Benefits & conditions
We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas. OneZero full-time employees receive a highly competitive benefits package, including health, dental, vision, and life insurance, a 401(k) with company matching, paid time off and holidays, an employee referral program, and educational assistance. Additional details are available on our website: https://www.onezerollc.com/careers
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
The 8 Best Code Testing Tools
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again