Junior Penetration Tester

Eliassen Group
Trenton, NJ, United States
1 day ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
3 years minimum
Compensation
$62,400.0 - $83,200.0
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Automation of Tests Burp Suite Cloud Engineering Computer Networks Custom Software Mobile Application Software Network Security Open Web Application Security Web Applications Information Technology Nessus
+3 more
CIS Benchmarks Qualys Vulnerability Analysis

Job description

  • Conduct security testing of IT assets, web applications, infrastructure, mobile applications, custom software, virtual technologies, COTS products, cloud implementations, common application platforms, and other technologies connecting to or interacting with the Judiciary network.
  • Develop and maintain a repeatable methodology for performing security testing, including threat modeling, mapping business requirements to applicable security requirements, determining appropriate security controls, and defining test scenarios and test cases.
  • Develop Security Test Plans.
  • Perform security testing, vulnerability analysis, and risk analysis using an industry-proven, repeatable methodology.
  • Evaluate the effectiveness of security controls for the systems tested.
  • Relate test results to controls in NIST SP 800-53, as reflected in the JISF.
  • Develop, maintain, and use customized testing scripts to support testing automation.
  • Develop and deliver required reports.

Requirements

Due to federal security clearance requirements, applicant must be a United States Citizen or Permanent Resident with ability to obtain Public Trust clearance. Applicants must be willing and able to work on a w2 basis. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance., * Knowledge and experience with manual host testing per CIS benchmarks.

  • Strong knowledge of and experience with Burp Suite.
  • Strong knowledge of and experience with Qualys.
  • 3+ years of experience in the information technology field.
  • Knowledge of and experience with Nessus.
  • Knowledge of OWASP Top 10.
  • Some penetration testing experience.
  • Preferred tools: Acunetix, AppDetective, DbVisualizer.
  • Knowledge of NIST Special Publications and NIST Risk Management Framework.
  • Knowledge of computer networking concepts, protocols, and network security methodologies.
  • Strong attention to detail.

Education Requirements:

Education : Bachelor’s Degree in a STEM field preferred. Certification: Industry standard certification (e.g., Security+) strongly preferred. Clearance: Ability to obtain and maintain a Public Trust required.

Benefits & conditions

Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.

W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.

If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:

· When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.

About the company

Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients’ capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:22 min

Structuring critical internal and external penetration testing procedures

Jasmin Azemović Jasmin Azemović · World Congress 2023

4:36 min

Exploiting e-commerce basket identifiers with Burp Suite

Anna Bacher · LIVE

3:31 min

Setting up a penetration testing environment for web apps

Anna Bacher · LIVE

1:51 min

Leveraging continuous penetration testing via red teams

Reto Kaeser · LIVE

Videos

See all

Related articles

See all