Junior Penetration Tester
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+3 more
Job description
- Conduct security testing of IT assets, web applications, infrastructure, mobile applications, custom software, virtual technologies, COTS products, cloud implementations, common application platforms, and other technologies connecting to or interacting with the Judiciary network.
- Develop and maintain a repeatable methodology for performing security testing, including threat modeling, mapping business requirements to applicable security requirements, determining appropriate security controls, and defining test scenarios and test cases.
- Develop Security Test Plans.
- Perform security testing, vulnerability analysis, and risk analysis using an industry-proven, repeatable methodology.
- Evaluate the effectiveness of security controls for the systems tested.
- Relate test results to controls in NIST SP 800-53, as reflected in the JISF.
- Develop, maintain, and use customized testing scripts to support testing automation.
- Develop and deliver required reports.
Requirements
Due to federal security clearance requirements, applicant must be a United States Citizen or Permanent Resident with ability to obtain Public Trust clearance. Applicants must be willing and able to work on a w2 basis. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance., * Knowledge and experience with manual host testing per CIS benchmarks.
- Strong knowledge of and experience with Burp Suite.
- Strong knowledge of and experience with Qualys.
- 3+ years of experience in the information technology field.
- Knowledge of and experience with Nessus.
- Knowledge of OWASP Top 10.
- Some penetration testing experience.
- Preferred tools: Acunetix, AppDetective, DbVisualizer.
- Knowledge of NIST Special Publications and NIST Risk Management Framework.
- Knowledge of computer networking concepts, protocols, and network security methodologies.
- Strong attention to detail.
Education Requirements:
Education : Bachelor’s Degree in a STEM field preferred. Certification: Industry standard certification (e.g., Security+) strongly preferred. Clearance: Ability to obtain and maintain a Public Trust required.
Benefits & conditions
Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.
W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.
If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:
· When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
About the company
Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients’ capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
9 Ways to Make Money Hacking
Understanding and Mitigating Common Web Vulnerabilities
Should senior developers refuse interview coding challenges?