Penetration Tester

Dark Wolf

Colorado Springs (CO)

Hybrid

USD 130,000 - 145,000

Full time

30 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Dark Wolf is seeking a Junior Product and Hardware Security Penetration Tester to join our team in a hybrid role near the DC Metro area. You will perform penetration testing across hardware, software, and embedded systems, conduct vulnerability assessments, and develop PoCs to demonstrate risk and remediation strategies.

The role emphasizes cybersecurity evaluation of integrated systems, reverse engineering of firmware, and security testing of secure boot and TEE, with opportunities to work on

Qualifications

  • Bachelor’s degree in Cybersecurity, IT, or related field.
  • 2+ years’ experience in three or more areas: intelligence analysis, network engineering, security testing, red team operations, hardware/software engineering, exploit development, reverse engineering, or vulnerability assessment.
  • Experience with cloud deployments across AWS, Azure, and GCP.
  • Experience drafting reports and summarizing findings based on system analysis.
  • Experience performing advanced vulnerability scanning and web app security assessments (OWASP Top Ten) and API security testing.
  • US Citizenship with active security clearance at Secret level.

Responsibilities

  • Conduct comprehensive penetration testing on hardware, software, and network components.
  • Perform advanced vulnerability scanning and assessments on all components.
  • Evaluate product cybersecurity to protect confidentiality, integrity, and availability.
  • Analyze software, firmware, hardware, and RF components for security weaknesses.
  • Develop exploits and PoC attacks to demonstrate impact and remediation.
  • Test secure boot processes and Trusted Execution Environments (TEE).
  • Engage in RF security testing on Wi‑Fi, Bluetooth, and Zigbee networks.
  • Plan and execute cross-domain vulnerability assessments and phishing campaigns.

Skills

Penetration testing
Exploit development
Reverse engineering
Vulnerability assessment
Wireless/RF testing

Education

Bachelor's degree in Cybersecurity/IT/Engineering

Tools

AWS
Azure
GCP

Job description

Responsibilities
  • Conducting comprehensive penetration testing on hardware, software, and network components.
  • Performing advanced vulnerability scanning and assessments on all components.
  • Performing a Cybersecurity evaluation of the product under test to identify vulnerabilities that would negatively impact the Confidentiality, Integrity, or Availability of system data or functionality.
  • Analyzing software, firmware, hardware, and/or RF components within the system.
  • Opining on the impact and level of effort required to exploit the identified vulnerabilities as well as providing information on a high-level remediation strategy.
  • Developing and executing exploits and proof-of-concept (PoC) attacks to demonstrate the impact of identified vulnerabilities.
  • Analyzing and reverse engineering firmware and embedded systems to identify security weaknesses.
  • Testing and assessing the security of secure boot processes and Trusted Execution Environments (TEE).
  • Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API security testing.
  • Performing manual verification of vulnerabilities, assessing their risk and exploitability.
  • Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth, and Zigbee networks.
  • Utilizing Software Defined Radio (SDR) for protocol reverse engineering and testing.
  • Reporting detailed findings, documenting case details, and providing actionable recommendations for remediation to enhance product security based on system analysis.
  • Planning and executing full-scale, cross-domain vulnerability assessments, network penetration testing, and phishing/social engineering campaigns.

Dark Wolf is actively seeking an experienced Penetration Tester to join our innovative team. This individual will play a critical role in assessing and enhancing the security of various products, including hardware, software, and embedded systems. This role demands a deep understanding of penetration testing methodologies and advanced exploit development, focusing on identifying and mitigating vulnerabilities across a wide range of technologies. As a Junior Product and Hardware Security Penetration Tester, you will have the chance to work on cutting-edge technologies and contribute to the enhancement of security across a wide range of products. This position is set to be supported in a hybrid work environment out of the DC Metro area.

  • Conducting comprehensive penetration testing on hardware, software, and network components.
  • Performing advanced vulnerability scanning and assessments on all components.
  • Performing a Cybersecurity evaluation of the product under test to identify vulnerabilities that would negatively impact the Confidentiality, Integrity, or Availability of system data or functionality.
  • Analyzing software, firmware, hardware, and/or RF components within the system.
  • Opining on the impact and level of effort required to exploit the identified vulnerabilities as well as providing information on a high-level remediation strategy.
  • Developing and executing exploits and proof-of-concept (PoC) attacks to demonstrate the impact of identified vulnerabilities.
  • Analyzing and reverse engineering firmware and embedded systems to identify security weaknesses.
  • Testing and assessing the security of secure boot processes and Trusted Execution Environments (TEE).
  • Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API security testing.
  • Performing manual verification of vulnerabilities, assessing their risk and exploitability.
  • Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth, and Zigbee networks.
  • Utilizing Software Defined Radio (SDR) for protocol reverse engineering and testing.
  • Reporting detailed findings, documenting case details, and providing actionable recommendations for remediation to enhance product security based on system analysis.
  • Planning and executing full-scale, cross-domain vulnerability assessments, network penetration testing, and phishing/social engineering campaigns.
Required Qualifications
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Engineering, or a related field
  • Minimum of 2+ years’ experience in three or more specific areas to include: intelligence analysis, network engineering, networking security, penetration testing, red team operations, hardware engineering, software engineering, exploit development, reverse engineering, vulnerability assessment, physical security assessments, or social engineering
  • Proficiency with cloud technology and deployments across Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP)
  • Proficiency in the testing and assessment of mobile operating systems, embedded systems, and/or IoT devices
  • Experience in drafting reports, documenting case details, and summarizing findings and recommendations based on system analysis
  • Experience performing advanced vulnerability scanning and assessments on all components
  • Experience conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API security testing
  • Demonstrated strong written and verbal communication skills
  • Strong understanding of NIST 800-53 frameworks
  • US Citizenship and an active security clearance at a minimum of the Secret Level
Desired Qualifications
  • Proven ability to develop and execute complex exploits and PoC attacks
  • Strong analytical skills and experience in firmware, binary exploitation, and embedded systems testing
  • Advanced knowledge of Software Defined Radio (SDR) and protocol reverse engineering
  • Active professional certifications such as CEH, OSCP, PNPT, GPEN, or similar security/pen testing certifications

The salary range for this position is $130,000.00 - $145,000.00 commensurate on experience and technical skillset.

We are open to considering a variety of levels of experience for these projects and potential for 1099 hourly opportunity.

We are proud to be an EEO/AA Employer Minorities/Women/Veterans/Disabled and other protected categories.

In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Penetration Tester
Penetration Tester

Dark Wolf Solutions • Colorado Springs (CO)

Hybrid
USD 130,000 - 145,000
Penetration TesterWashington DC Metro Area
Penetration TesterWashington DC Metro Area

BuddoBot Inc. • Washington

On-site
USD 130,000 - 145,000
Penetration Tester
Penetration Tester

Darkwolfsolutions • Colorado Springs (CO)

On-site
USD 130,000 - 145,000
Penetration Tester
Penetration Tester

TalentFish • Illinois

Remote
USD 100,000 - 160,000
Penetration Tester
Penetration Tester

WarCollar Industries, LLC • Herndon (VA)

On-site
USD 110,000 - 180,000
Medical insurance premium coverage
PTO based on billable hours
Federal holidays plus your birthday
+6
Penetration Tester
Penetration Tester

BlackHount • Bellevue (NE)

On-site
USD 70,000 - 90,000
Penetration Tester
Penetration Tester

Phase2 Technology • Fort Meade (MD)

Hybrid
USD 86,000 - 198,000
Senior IT Penetration Tester
Senior IT Penetration Tester

BDO USA, LLP • Oak Brook (IL)

On-site
USD 120,000 - 160,000
Penetration Tester (RELOCATION BONUS AVAILABLE) - Ogden,UT
Penetration Tester (RELOCATION BONUS AVAILABLE) - Ogden,UT

Dark Wolf • Ogden (UT)

Hybrid
USD 90,000 - 130,000
Relocation assistance
Sign-on bonus up to $25,000
Hybrid role
Senior IT Penetration Tester
Senior IT Penetration Tester

BDO USA, Llp • Northern (KY)

Hybrid
USD 120,000 - 160,000