Expert Penetration Tester

ASRC Federal

Washington (District of Columbia)

Hybrid

USD 140,000 - 190,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Competitive pay and benefits

Job summary

ASRC Federal is seeking an experienced cybersecurity professional to join our penetration testing team. You will lead advanced security assessments, develop testing plans, and deliver actionable remediation recommendations for government systems.

The role requires strong communication skills, DOE/TS clearance eligibility, and the ability to mentor junior staff. Hybrid work in Washington, DC, with on-site three days per week, offers dynamic collaboration with customers.

Qualifications

  • 8+ years of cybersecurity and penetration testing experience.
  • Active DOE Q-Clearance or Top Secret equivalent or eligible to obtain.
  • Bachelor's degree in a related field; relevant certifications preferred.

Responsibilities

  • Lead and perform advanced security assessments, including hands‑on testing of systems and applications.
  • Identify vulnerabilities, assess risks, and deliver remediation recommendations.
  • Develop and maintain assessment plans aligned with NIST SP 800-53 and FedRAMP controls.
  • Execute assessments and document findings accurately and promptly.
  • Design, develop, and maintain tools/scripts to automate testing activities.
  • Mentor a small team of junior testers and provide technical guidance.
  • Build and lead a Purple Team for joint red/blue team exercises with customers.

Skills

Vulnerability analysis
Risk remediation
Reporting
Executive communication

Education

Bachelor's degree in related field
DOE Q-Clearance or TS eligibility
OSCP
OSCE
CEH
CISSP

Tools

Linux
Nessus
Forescout
Carbon Black
Invicti
Scythe
Rubrik
Fidelis

Job description

ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™.

Working Location

Hybrid, DC (3 days per week onsite)

Responsibilities
  • Lead and perform advanced security assessments, including hands‑on penetration testing of systems and applications.
  • Identify vulnerabilities, assess risks, and deliver clear, actionable remediation recommendations.
  • Develop and maintain assessment plans aligned with NIST SP 800-53 and FedRAMP Cloud Security Controls.
  • Execute security assessments per defined plans and document findings accurately and promptly.
  • Design, develop, and maintain tools/scripts to automate and enhance penetration testing activities.
  • Manage and mentor a small team of junior penetration testers; provide technical guidance and training.
  • Build and lead a Purple Team to perform joint red/blue team exercises with customer sites.
  • Support secure systems operations and maintenance, including security validation and accreditation activities.
  • Analyze and mitigate system security threats throughout the lifecycle, including risk assessments and implementation of security engineering controls.
  • Ensure compliance with business continuity, operations security, insider threat detection, physical security analysis, and regulatory requirements.
  • Communicate technical findings effectively to technical teams and executive stakeholders.
Requirements
  • Education: Bachelor's degree in a related field.
  • Experience: 8+ years of relevant experience in cybersecurity and penetration testing (or equivalent combination of education and experience).
  • Clearance: Active DOE Q-Clearance or Top Secret (TS) equivalent or eligible to obtain.
  • Certifications (Preferred):
    • OSCP (Offensive Security Certified Professional)
    • OSCE (Offensive Security Certified Expert)
    • CEH (Certified Ethical Hacker)
    • CISSP (Certified Information Systems Security Professional)
Technical Skills & Tools
  • Strong proficiency in vulnerability analysis, risk remediation, and reporting.
  • Ability to clearly replicate vulnerabilities and provide actionable mitigation steps.
  • Familiarity with tools including:
  • Linux, Tenable Nessus, Forescout, Carbon Black, Invicti,
  • Scythe, Rubrik, Fidelis
  • Excellent written and verbal communication skills; ability to present technical findings to executive audiences.
Benefits

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law.

The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

EEO Statement

ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Penetration Tester
Senior Penetration Tester

Cybersecurity Jobs • Washington

Hybrid
USD 155,000 - 264,000
Health care
Life insurance
401(k)
+2
Senior Penetration Tester & Purple Team Lead (Hybrid)
Senior Penetration Tester & Purple Team Lead (Hybrid)

ASRC Federal • Washington

Hybrid
USD 140,000 - 190,000
Competitive pay and benefits
Cloud Threat Analyst
Cloud Threat Analyst

ASRC Federal • Hanover (MD)

On-site
USD 115,000 - 135,000
Health benefits
401(k)
Education assistance
+1
Continuous Vetting Analyst
Continuous Vetting Analyst

ASRC Federal • Northern (KY)

On-site
USD 55,000 - 75,000
Associate Software Integration & Test Engineer
Associate Software Integration & Test Engineer

ASRC Federal • Moorestown Township (NJ)

On-site
USD 65,000 - 90,000
Health care
Dental
Vision
+4
Senior Cyber Tools Architect/Engineer
Senior Cyber Tools Architect/Engineer

ASRC Federal • Quantico (VA)

On-site
USD 140,000 - 210,000
Health care
Dental
Vision
+4
Continuous Vetting Analyst
Continuous Vetting Analyst

ASRC Federal • Boyers (PA)

On-site
USD 60,000 - 85,000
Linux System Administrator Senior
Linux System Administrator Senior

ASRC Federal Holding Company • Town of Vermont (WI)

Remote
USD 95,000 - 135,000
Linux System Administrator Senior
Linux System Administrator Senior

ASRC Federal Holding Company • Arkansas

Remote
USD 110,000 - 150,000
Great Place to Work
Best for Vets Employer
Senior Cyber Security Engineer
Senior Cyber Security Engineer

Colonial Group • Beltsville (MD)

Hybrid
USD 130,000 - 180,000