Penetration Tester

ASRC Federal

Washington (District of Columbia)

Hybrid

USD 140,000 - 200,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

ASRC Federal Technology Solutions in Washington, DC is seeking an experienced Penetration Tester to lead advanced security assessments and drive testing strategies across cybersecurity disciplines.

This hybrid role requires 8+ years of experience, DOE Q or TS clearance, and strong skills with vulnerability analysis, reporting, and a suite of security tools.

Qualifications

  • Bachelor's degree in a related field.
  • 8+ years of cybersecurity and penetration testing experience.
  • Active DOE Q-Clearance or TS clearance required.
  • Preferred certifications: OSCP, OSCE, CEH, CISSP.

Responsibilities

  • Lead and perform advanced security assessments, including hands-on penetration testing of systems and applications.
  • Identify vulnerabilities, assess risks, and deliver clear remediation recommendations.
  • Develop and maintain assessment plans aligned with NIST SP 800-53 and FedRAMP Cloud Security Controls.
  • Execute security assessments per defined plans and document findings accurately and promptly.
  • Design, develop, and maintain tools/scripts to automate and enhance penetration testing activities.
  • Manage and mentor a small team of junior penetration testers; provide technical guidance and training.
  • Build and lead a Purple Team to perform joint red/blue team exercises with customer sites.
  • Support secure systems operations and maintenance, including security validation and accreditation activities.
  • Analyze and mitigate system security threats throughout the lifecycle, including risk assessments and implementation of security engineering controls.
  • Ensure compliance with business continuity, operations security, insider threat detection, physical security analysis, and regulatory requirements.
  • Communicate technical findings effectively to technical teams and executive stakeholders.

Skills

Vulnerability analysis
Risk remediation
Security reporting
Effective communication
Hands-on pentesting

Education

Bachelor's degree

Tools

Nessus
Forescout
Carbon Black
Invicti
Scythe
Rubrik
Fidelis

Job description

ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™

ASRC Federal Technology Solutions is seeking an experienced Penetration Tester to lead advanced security assessments and contribute to the development and execution of penetration testing strategies. This role combines hands-on testing with leadership, mentoring, and collaboration across cybersecurity disciplines.

Work Location: Hybrid, DC (3 days per week onsite)

Responsibilities

  • Lead and perform advanced security assessments, including hands-on penetration testing of systems and applications.
  • Identify vulnerabilities, assess risks, and deliver clear, actionable remediation recommendations.
  • Develop and maintain assessment plans aligned with NIST SP 800-53 and FedRAMP Cloud Security Controls.
  • Execute security assessments per defined plans and document findings accurately and promptly.
  • Design, develop, and maintain tools/scripts to automate and enhance penetration testing activities.
  • Manage and mentor a small team of junior penetration testers; provide technical guidance and training.
  • Build and lead a Purple Team to perform joint red/blue team exercises with customer sites.
  • Support secure systems operations and maintenance, including security validation and accreditation activities.
  • Analyze and mitigate system security threats throughout the lifecycle, including risk assessments and implementation of security engineering controls.
  • Ensure compliance with business continuity, operations security, insider threat detection, physical security analysis, and regulatory requirements.
  • Communicate technical findings effectively to technical teams and executive stakeholders.

Requirements

  • Education: Bachelor's degree in a related field.
  • Experience: 8+ years of relevant experience in cybersecurity and penetration testing (or equivalent combination of education and experience).
  • Clearance: Active DOE Q-Clearance or Top Secret (TS) equivalent required.
  • Certifications (Preferred):
    • OSCP (Offensive Security Certified Professional)
    • OSCE (Offensive Security Certified Expert)
    • CEH (Certified Ethical Hacker)
    • CISSP (Certified Information Systems Security Professional)
Technical Skills & Tools

  • Strong proficiency in vulnerability analysis, risk remediation, and reporting.
  • Ability to clearly replicate vulnerabilities and provide actionable mitigation steps.
  • Familiarity with tools including:
    • Linux, Tenable Nessus, Forescout, Carbon Black, Invicti,
    • Scythe, Rubrik, Fidelis
  • Excellent written and verbal communication skills; ability to present technical findings to executive audiences.
We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

EEO Statement

ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Penetration Tester
Senior Penetration Tester

Clear Destination Inc. • Washington, Northern (KY)

Hybrid
USD 140,000 - 180,000
Cloud Threat Analyst
Cloud Threat Analyst

ASRC Federal • Hanover (MD)

Hybrid
USD 115,000 - 135,000
Health benefits
401(k)
Education assistance
+1
Senior Penetration Tester & Security Lead (Hybrid DC)
Senior Penetration Tester & Security Lead (Hybrid DC)

Clear Destination Inc. • Washington, Northern (KY)

Hybrid
USD 140,000 - 180,000
Continuous Vetting Analyst
Continuous Vetting Analyst

ASRC Federal • Boyers (PA)

Hybrid
USD 60,000 - 85,000
Continuous Vetting Analyst
Continuous Vetting Analyst

ASRC Federal • Northern (KY)

Hybrid
USD 55,000 - 75,000
Senior Cyber Tools Architect/Engineer
Senior Cyber Tools Architect/Engineer

ASRC Federal • Quantico (VA)

Hybrid
USD 140,000 - 210,000
Health care
Dental
Vision
+4
Associate Software Integration & Test Engineer
Associate Software Integration & Test Engineer

ASRC Federal • Moorestown Township (NJ)

On-site
USD 65,000 - 90,000
Health care
Dental
Vision
+4
Systems Integration & Test Engineer
Systems Integration & Test Engineer

ASRC Federal • Colorado Springs (CO), Northern (KY)

Hybrid
USD 110,000 - 140,000
Health insurance
Dental insurance
Vision insurance
+4
RMF Cybersecurity Analyst
RMF Cybersecurity Analyst

ASRC Federal • Quantico (VA)

Hybrid
USD 70,000 - 100,000
Health care
Dental
Vision
+4
Jr Cyber Penetration Tester
Jr Cyber Penetration Tester

Peraton • Arlington (VA)

On-site
USD 66,000 - 106,000