> Markdown version of [/jobs/ext/2697896-penetration-testing-lead](https://www.wearedevelopers.com/jobs/ext/2697896-penetration-testing-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Penetration Testing Lead - **Company:** Mantech International Corporation - **Location:** Chandler, AZ, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Software System Penetration Testing, Software as a Service, Cloud Computing, Cyber Security, Infrastructure as a Service (IaaS), Local Area Networks, Platform as a Service (PAAS), Quantum Computing, Red Team (Cyber Security), Zero Trust Network Access, Wide Area Networks, Cyber Threat Analysis, SC Clearance, Purple Team (Cyber Security) - **Published:** September 3, 2026 - **Apply:** https://dejobs.org/x/x/6311A7E2AE9740939FD85D5FF88D3562/job/ ## About the Role * Bachelor's Degree. * 5+years of penetration testing experience. * Must have GPEN or GXPN AND one of: GRTP, CRTL, OSCP, CMWAPT, CEPT, CPT, or LPT * Ability to obtain CISA AES HVA Assessment Lead or Technical Lead certification. Preferred Qualifications: * Experience with Cloud technology (IaaS/SaaS/PaaS) and NSA Red Team certification. * Experience with post-quantum computing assessment/implementation Clearance Requirements * Must possess an active Secret clearance. * Must be able to obtain and maintain an ICE Entry on Duty (EOD) Suitability. Physical Requirements: * Must be able to remain in a stationary position 50% of the time. * Occasionally move about inside the office to access file cabinets, office machinery, or to communicate with co-workers and customers. ## Description MANTECH seeks a motivated, career, and team-oriented Penetration Testing Lead to support a DHS customer in Chandler, AZ OR the National Capital Region . As part of this mission, you will help the organization maintain its prestigious designation as a Cybersecurity Service Provider (CSP) and Center of Excellence (COE). Our team provides comprehensive, 24/7/365 security services supporting an expansive network across LANs, WANs, and advanced Cloud-based infrastructures. This is a unique opportunity to utilize a "kill chain" process to thwart Advanced Persistent Threats (APT) and implement cutting-edge technologies like Zero Trust Architecture, AI/ML risk mitigation, and Post-Quantum Computing readiness. Responsibilities include but are not limited to: * Conduct continuous penetration testing on ICE FISMA systems, mobile devices, and IoT. * Perform Red Team engagements and support Purple Team remediation verification. * Execute High Value Asset (HVA) Assessments and social engineering tests. * Develop and follow security testing Rules of Engagement (ROE). * Support the organization's status as a Cybersecurity Service Provider (CSP) through active testing. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 182: GPT5 Prompts, MCP Vulnerabilities, Code Traps](https://www.wearedevelopers.com/magazine/622-dev-digest-182-gpt5-prompts-mcp-vulnerabilities-code-traps) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 162: AI careers, MCP, AWS best practices & floppy sweaters](https://www.wearedevelopers.com/magazine/571-dev-digest-162-ai-careers-mcp-aws-best-practices-floppy-sweaters) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer)