Penetration Tester

Saic

Texas

Hybrid

USD 120,000 - 160,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Science Applications International Corporation (SAIC) seeks a Penetration Tester for our offensive security practice supporting a major state & local government customer. You will perform web, mobile, and network testing, contribute to enterprise cyber architecture, and deliver actionable remediation guidance to clients.

Role includes engaging with developers, CISOs, and senior leadership, and growing mobile capabilities over time while aligning with NICE framework and CJIS requirements.

Qualifications

  • Advanced technical knowledge in cybersecurity and digital forensics.
  • Strong working knowledge of the OWASP WSTG and OWASP Top 10 and how to identify and exploit vulnerabilities.
  • Proficiency with standard web app testing tools (e.g., Burp Suite Pro, FFUF, SQLMap, Nuclei).
  • Familiarity with mobile app testing concepts and tooling (Frida, Objection, MobSF, ADB).
  • Proven red-teaming, ethical hacking and cloud security architecture experience.
  • Experience writing professional penetration test reports for clients.

Responsibilities

  • Deliver high-quality penetration tests across client environments using black box, white box, web app or mobile methodologies per NIST standards.
  • Independently manage engagements from scoping through reporting with focus on quality.
  • Produce clear, well-structured reports communicating findings, risk, and remediation to technical and executive stakeholders.

Skills

Penetration testing
Cybersecurity
Red-teaming
Cloud security
Digital forensics
Reporting

Education

Bachelor's degree + years
Master's degree + years
PhD/JD + years

Tools

Burp Suite Pro
FFUF
SQLMap
Nuclei
Frida
Objection
MobSF
ADB

Job description

Description

Science Applications International Corporation (SAIC) is seeking a Penetration Tester to join our offensive security practice supporting a major state & local government customer. This role sits at the intersection of hands-on technical execution and cybersecurity leadership and it's built around delivering real impact for clients who depend on us to find what others miss.

Web application & Network penetration testing is the core of what you'll do every day, and we're looking for someone who brings both technical depth and genuine curiosity to every engagement. Beyond web and network pentesting you'll contribute to our mobile application testing practice (iOS and Android), support ethical hacking operations, and provide strategic guidance on enterprise cyber architecture and cloud security. This position reports to the Security Assessments Manager.

This is a role where your contributions are visible, your growth is intentional, and your voice matters to the team and to the clients we serve.

Essential duties of this position include:
  • Deliver high-quality penetration tests across a range of client environments, applying black box, white box, web app or mobile methodologies as needed and aligned to NIST standards
  • Independently manage engagement workloads from scoping through reporting, with a consistent focus on quality
  • Produce clear, well-structured technical reports that communicate findings, risk context, and actionable remediation guidance to both technical teams and executive stakeholders and translate complex technical documentation into terms any stakeholder can act on
  • Support and contribute to mobile application security assessments (iOS and Android) using the OWASP MASVS/MSTG framework, with the expectation of growing mobile capabilities over time
  • Perform strategic planning and management in cybersecurity and digital forensics in alignment with the National Initiative for Cybersecurity Education (NICE) Framework
  • Address a wide range of security issues including architectures, firewalls, electronic data traffic, and network access
  • Research, evaluate, and recommend new security tools, techniques, and technologies; utilize COTS/GOTS and custom tools to scan, identify, contain, mitigate, and remediate vulnerabilities and intrusions
  • Apply expert engineering knowledge to design, develop, and implement security solutions across enterprise engagements
  • Confidently present findings to clients whether it is walking a developer through a vulnerability chain or explaining business risk to a CISO in the same afternoon
  • Act as a spokesperson and advisor on advanced technical projects and research; participate with senior management to establish strategic plans and objectives
  • Actively share knowledge with teammates, contribute to internal tooling and methodology improvements, and help close skill gaps across the practice
  • Stay current on emerging vulnerabilities, attack techniques, and industry developments and bring that knowledge back to the team
Qualifications
Typical Education and Experience:
  • Bachelors and nine (9) years or more experience; Masters and seven (7) years or more experience; PhD or JD and four (4) years or more related experience. Additional experience considered in lieu of degree
  • Candidates must be a US Citizen and able to pass a CJIS Criminal Justice background investigation and maintain CJIS clearance throughout employment term
Required Experience:
  • Advanced technical knowledge in cybersecurity and digital forensics
  • Strong working knowledge of the OWASP WSTG and OWASP Top 10 — not just the list, but how to find and exploit the vulnerabilities
  • Proficiency with standard web application testing tools (e.g., Burp Suite Pro, FFUF, SQLMap, Nuclei)
  • Working familiarity with mobile application testing concepts and tooling (e.g., Frida, Objection, MobSF, ADB)
  • Proven experience in red-teaming, ethical hacking, and cloud security architecture
  • Proficiency in malware reverse engineering and enterprise cyber architecture
  • Strong background in addressing security issues related to architectures, firewalls, electronic data traffic, and network access
  • Experience researching, evaluating, and recommending new security tools and technologies
  • Proficiency utilizing COTS/GOTS and custom tools for vulnerability management
  • Demonstrated ability to write professional, client-ready penetration test reports with minimal revision
  • GWAPT certification required or strongly preferred; candidates holding OSCP, OSWE, or GWEB will also be considered
Preferred Experience:
  • Hands-on experience conducting iOS and/or Android application assessments
  • Familiarity with API security testing (REST, GraphQL, SOAP)
  • Exposure to source code review as part of white box engagements
  • Experience presenting findings directly to client stakeholders, including senior leadership
  • Participation with senior management to establish strategic plans and objectives
  • Experience working on unusually complex technical problems and providing innovative solutions
  • Proven ability to work under consultative direction toward long‑range goals and objectives
  • Experience serving as an organizational spokesperson and advisor on advanced technical projects
  • Knowledge of applying advanced technical principles, theories, and concepts to develop new principles and concepts
  • Experience making decisions on administrative or project work matters to achieve program or organizational objectives
  • Strong background in developing advanced technological ideas and guiding them to final product development
  • Experience influencing organizational image and technological capability through decision‑making and recommendations

Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Penetration Tester
Penetration Tester

Saic • Town of Texas (WI)

On-site
USD 120,000 - 160,000
Penetration Tester
Penetration Tester

SAIC • United States

Remote
USD 120,000 - 160,000
Senior Penetration Tester
Senior Penetration Tester

Cybersecurity Jobs • Alexandria (VA)

Hybrid
USD 145,000 - 155,000
401(k)
Health insurance
Relocation assistance
+2
Penetration Tester
Penetration Tester

TalentFish • Illinois

On-site
USD 100,000 - 160,000
Senior Penetration Tester
Senior Penetration Tester

The Matlen Silver Group, Inc. • Charlotte (NC)

Remote
USD 85,000 - 121,000
Remote Penetration Tester
Remote Penetration Tester

Philadelphia Comapny • Atlanta (GA)

Remote
USD 80,000 - 120,000
Senior Penetration Tester
Senior Penetration Tester

Cybersecurity Jobs • United States

Remote
USD 125,000 - 145,000
401(k)
Dental insurance
Health insurance
+7
Senior IT Penetration Tester
Senior IT Penetration Tester

BDO USA, LLP • Oak Brook (IL)

On-site
USD 120,000 - 160,000
Senior IT Penetration Tester
Senior IT Penetration Tester

BDO USA, Llp • Northern (KY)

On-site
USD 120,000 - 160,000
Penetration Tester
Penetration Tester

Dark Wolf • Colorado Springs (CO)

Hybrid
USD 130,000 - 145,000