Agile Defense · 1 day ago
Penetration Tester
Maximize your interview chances
Information ServicesInformation Technology
Growth OpportunitiesH1B Sponsor Likely
Insider Connection @Agile Defense
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
The ideal candidate will have a solid understanding of cyber threats and information security in the domains of TTP’s, Threat Actors, Campaigns, and Observables.
Additionally, the ideal candidate would be an expert in penetration testing and exploit development and familiar with intrusion detection systems, intrusion analysis, security information event management platforms, endpoint threat detection tools, big data analytics, and cyber defense operations.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
OSCP
Bachelor's Degree.
A minimum of five years of experience with assessing APT threats, Penetration Testing, Vulnerability Management, attack methodologies, forensics analysis techniques, malware analysis, attack surface comprehension, Cyber Threat Emulation operations, Cyber Advanced Threat Emulation Team operations and research, identification, and verification of new APT TTPs.
Experience with any three of the seven tools listed below: Kali Linux, Metasploit, Burp suite, Cobalt Strike, Tenable Nessus, Web Inspect, Scuba, Appdetective.
A relevant degree or equivalent, and/or proven operational experience in penetration testing or cyber threat emulation.
Knowledge and experience in Penetration Testing, SOC support, and coordination with security teams to strengthen the overall security posture in addition to developing mitigations, including signature development and working with incident management teams to better design and implement signatures and response policies and procedures.
Able to generate threat intelligence indicators during the course of Threat Emulation operations and apply/fine tune them across the enterprise network.
Research and remain up to date with emerging threats and Threat Emulation methodologies.
Familiarity with mapping Cyber Key Terrain and generating priority target lists.
Able to automate tasks and script at a basic level.
Familiarity with NIST and FISMA compliance.
Active Secret or DHS Agency Clearance
Strong proficiency Report writing – a technical writing sample and technical editing test will be required if the candidate has no prior published intelligence analysis reporting.
Provide subject matter expertise support in the detection, analysis, and mitigation of malware, trends in malware development and capabilities, and proficiency with malware analysis capabilities.
Preferred
Experience developing custom exploits and exploitation tools in support of authorized penetration tests or cyber threat emulation exercises.
One or more certifications for Analysts: GCIA, GCED, GCFE, GCTI, GNFA, GCIH, CND, ECSA, OSCP, OSEE, OSCE, GCFA, GREM, CHFI, CEH, GPEN, GWAPT, GISF, GXPN.
Experience with analyzing deceptive technologies such as honeynets.
Ability to work with a cyber network defense organization to improve an organization’s detection capabilities.
Expertise in policies, industry trends, techniques related to penetration testing.
Existing Subject Matter Expert of Advanced Persistent Threat or Emerging Threats.
Company
Agile Defense
Agile Defense is an information technology company located in Reston.
H1B Sponsorship
Agile Defense has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2021 (1)
Funding
Current Stage
Late StageTotal Funding
unknown2022-11-16Acquired
Recent News
2024-10-31
PRNewswire
2024-04-29
2024-04-07
Company data provided by crunchbase