Offensive Security Engineer: Pen Testing & Vuln Mgmt

Rohde & Schwarz

Maryland

On-site

USD 96,000 - 130,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Rohde & Schwarz is seeking a Cybersecurity Engineer – Offensive Security to identify, validate, and reduce risk across critical systems in North America. You will lead vulnerability management, conduct authorized pen tests, and support security testing across Linux, Windows, IP networks, VoIP, and embedded devices.

The role requires on-site work in Frederick, MD, citizenship, and collaboration with global teams.

Qualifications

  • BS degree in Cybersecurity, Computer Science, Engineering, Information Systems, or related technical field. Master’s degree preferred.
  • 7+ years of relevant cybersecurity, penetration testing, vulnerability management, or security engineering experience.
  • Strong understanding of vulnerability assessment, penetration testing, attack methodologies, and remediation practices.
  • Hands-on experience with security tools such as Nessus, Nmap, Wireshark, Burp Suite, Metasploit, or comparable tools.
  • Strong knowledge of TCP/IP networking, routing, switching, VLANs, firewalls, ACLs, network segmentation, and common network protocols.
  • Working knowledge of Linux and Windows security and system hardening.
  • Experience analyzing CVEs, security advisories, vulnerability scan results, and technical security findings.
  • Ability to distinguish theoretical vulnerabilities from vulnerabilities that present meaningful risk within a specific system architecture.
  • Experience documenting findings, assigning risk, developing remediation recommendations, and communicating results to engineering teams.
  • Knowledge of NIST SP 800-53, NIST CSF, DISA STIGs, CIS Benchmarks, or similar security frameworks.
  • Scripting experience using Python, PowerShell, Bash, or similar languages.

Responsibilities

  • Perform vulnerability assessments of systems, networks, applications, operating systems, COTS products, appliances, and embedded devices.
  • Plan, coordinate, and perform authorized penetration testing and security validation activities within controlled laboratory and customer environments.
  • Identify security weaknesses, attack paths, insecure configurations, exposed services, and potential control deficiencies.
  • Perform vulnerability scanning using tools such as Nessus, Nmap, and other approved security assessment tools.
  • Analyze CVEs and vendor security advisories to determine applicability, exploitability, operational impact, and remediation requirements.
  • Develop vulnerability assessment reports, technical findings, risk ratings, remediation recommendations, and supporting evidence.
  • Maintain and improve vulnerability tracking and remediation processes throughout the system lifecycle.
  • Validate remediation activities and verify that identified vulnerabilities have been appropriately mitigated.
  • Perform network and protocol analysis using tools such as Wireshark and related diagnostic/security tools.
  • Support security testing of IP networks, firewalls, switches, routers, Linux and Windows systems, VoIP systems, applications, and embedded devices.
  • Evaluate system attack surfaces, trust boundaries, data flows, interfaces, authentication mechanisms, and externally accessible services.
  • Participate in threat modeling, attack-path analysis, misuse-case development, and security architecture reviews.
  • Work with engineering and R&D teams to reproduce security findings and develop practical remediation solutions.
  • Support incident response, forensic analysis, and investigation activities when required.
  • Contribute to System Security Plans, security assessment reports, risk assessments, customer documentation, and other cybersecurity deliverables.
  • Support FAT, SAT, customer deployments, onsite assessments, and witness testing.
  • Develop scripts, tools, and repeatable methodologies to improve vulnerability assessment, security testing, evidence collection, and reporting.
  • Research emerging threats, vulnerabilities, exploitation techniques, and defensive technologies relevant to Rohde & Schwarz products and customer environments.
  • Collaborate with cybersecurity, product, and engineering teams in Europe and North America.
  • Support the broader cybersecurity organization as priorities, programs, and customer requirements evolve.

Skills

Vulnerability testing
Penetration testing
Nessus
Nmap
Wireshark
Burp Suite
Metasploit
TCP/IP networking
Linux security
Windows security
CVEs analysis
Security frameworks
Scripting (Python/PowerShell)

Education

BS degree in Cybersecurity, Computer Science, Engineering, Information Systems, or related field
Master's degree preferred

Tools

Nessus
Nmap
Wireshark
Burp Suite
Metasploit

Job description

Rohde & Schwarz is seeking a Cybersecurity Engineer – Offensive Security to identify, validate, and reduce risk across critical systems in North America. You will lead vulnerability management, conduct authorized pen tests, and support security testing across Linux, Windows, IP networks, VoIP, and embedded devices.

The role requires on-site work in Frederick, MD, citizenship, and collaboration with global teams.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer: Offensive Security & Pen Testing
Cybersecurity Engineer: Offensive Security & Pen Testing

ROHDE & SCHWARZ GmbH & Co. KG • Frederick (MD)

On-site
USD 95,000 - 140,000
Cybersecurity Engineer: Offensive Security & Pen Test
Cybersecurity Engineer: Offensive Security & Pen Test

Rohde & Schwarz (China) Technology Co., Ltd. • Frederick (MD)

On-site
USD 100,000 - 140,000
Cybersecurity Engineer – Offensive Security, Penetration Testing & Vulnerability Management
Cybersecurity Engineer – Offensive Security, Penetration Testing & Vulnerability Management

Rohde & Schwarz (China) Technology Co., Ltd. • Frederick (MD)

On-site
USD 100,000 - 140,000
Cybersecurity Engineer – Offensive Security, Penetration Testing & Vulnerability Management
Cybersecurity Engineer – Offensive Security, Penetration Testing & Vulnerability Management

ROHDE & SCHWARZ GmbH & Co. KG • Frederick (MD)

On-site
USD 95,000 - 140,000
Cybersecurity Engineer – Offensive Security, Penetration Testing & Vulnerability Management
Cybersecurity Engineer – Offensive Security, Penetration Testing & Vulnerability Management

Rohde & Schwarz • Maryland

On-site
USD 96,000 - 130,000
Cybersecurity Patch & Automation Engineer
Cybersecurity Patch & Automation Engineer

Rohde & Schwarz (China) Technology Co., Ltd. • Frederick (MD)

On-site
USD 90,000 - 130,000
Cybersecurity Patch Management & Automation Engineer
Cybersecurity Patch Management & Automation Engineer

Rohde & Schwarz • Maryland

On-site
USD 96,000 - 130,000
Cybersecurity Engineer – Patch Management, Testing & Automation
Cybersecurity Engineer – Patch Management, Testing & Automation

Rohde & Schwarz • Maryland

On-site
USD 96,000 - 130,000
Cybersecurity Engineer, Governance & Compliance - Frederick, MD
Cybersecurity Engineer, Governance & Compliance - Frederick, MD

Rohde & Schwarz • Maryland

On-site
USD 96,000 - 130,000
Cybersecurity Governance & Compliance Engineer
Cybersecurity Governance & Compliance Engineer

Rohde & Schwarz • Maryland

On-site
USD 96,000 - 130,000