Sr Penetration Tester (Red or Blue)
- Sterling, VA
This BAE Systems program supports our federal customer who plays a key role in providing direct cybersecurity engineering support. This program provides systems and security engineering and integration support to specific Government-sponsored projects, pilots and prototypes. This includes solution planning and engineering, defining security requirements, target architecture, interoperability and integration, system testing, Verification and Validation, Modeling and Simulation, studies and analysis, post-deployment security validation (PDSV), and project risk management. As part of this team, you will contribute to the engineering of current and emerging cybersecurity systems, policies, and processes to enforce standards and identify vulnerabilities and capability gaps, and reduce cybersecurity risk of our customer networks.
The ST&E team is expected to have knowledge and extensive experience in networking, systems management, programming and tool development, the UNIX (different variants) operating system, the Microsoft Windows (different variants) operating system, security analyst tools and techniques, and system design and architecture is necessary to identify required modifications, determine innovative solutions, and to recommend sound security measures.
Required Skills and Education
2 years experience with HP Fortify and/or Checkmarx
2 years experience performing source code analysis
Experience in Red Team (preferable) or Blue Team penetration testing a MUST HAVE. At least three years within LINUX environment a MUST . Incumbent should have engineering management experience and be willing to manage.
- Kali Linux + custom made tools/fuzzing (must have)
- Burp Suite Pro
- Tenable Security Center
- Visual Studio
- Core Impact.
Deep understanding of the methodology associated with penetration testing, such as creating Rules of Behavior, selection of pen testing team, and have a developed tool kit.
Cloud experience a plus! (AWS or Azure)
ANY OF THE BELOW CREDENTIALS ARE A PLUS!
- Licensed Penetration Tester (LPT) Master
- Offensive Security Certified Professional (OSCP)
- Certified Ethical Hacker (CEH)
- IACRB Certified Expert Penetration Tester (CEPT)
- IACRB Certified Expert Penetration Tester (CPT)
- Certified Red Team Operations Professional (CRTOP)
- CompTIA's PenTest+
- GIAC Exploit Researcher and Advanced Penetration Tester (GXPN); and/or
- GIAC Penetration Tester (GPEN)
BAE Systems Intelligence & Security, based in McLean, Virginia, designs and delivers advanced defense, intelligence, and security solutions that support the important missions of our customers. Our pride and dedication shows in everything we do-from intelligence analysis, cyber operations and IT expertise to systems development, systems integration, and operations and maintenance services. Knowing that our work enables the U.S. military and government to recognize, manage and defeat threats inspires us to push ourselves and our technologies to new levels. That's BAE Systems. That's Inspired Work. Equal Opportunity Employer/Females/Minorities/Veterans/Disabled/Sexual Orientation/Gender Identity/Gender Expression. To see Inspired Work in action, visit www.baesystems.com and follow us on Facebook: www.facebook.com/baesystemsintel.
Back to top