Penetration Tester Senior

VulnU

Ashburn, Northern (VA, KY)

Hybrid

USD 143,000 - 170,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Comprehensive benefits package
Flex work weeks where possible

Job summary

GDIT is seeking a Senior Penetration Tester to lead complex engagements across network, application, and wireless vectors. You will guide junior testers, design tailored test plans, and deliver detailed reports that drive remediation across critical systems.

The role requires strong leadership, cutting-edge tooling, and the ability to communicate findings to technical and executive audiences. Join a mission-focused team supporting CBP cybersecurity operations, with opportunities for technical

Qualifications

  • Five+ years of offensive security or penetration testing experience.
  • Strong leadership and communication abilities.
  • Advanced proficiency with penetration testing tooling and exploitation techniques.
  • Strong technical writing and oral presentation skills.
  • CBP background investigation desired.

Responsibilities

  • Lead complex penetration testing engagements and guide junior testers in scoping, tooling, exploitation techniques, and reporting quality.
  • Plan test approaches, perform advanced exploitation, and deliver detailed remediation-focused reports.
  • Define objectives, rules of engagement, and test boundaries with stakeholders.
  • Design tailored test plans reflecting system architecture and compliance needs.
  • Lead hands-on testing across network, application, wireless, and enclave targets using modern red-team methods.
  • Produce comprehensive technical reports with vulnerability details, reproduction steps, affected assets, and remediation recommendations.

Skills

Cybersecurity Operations
Network Penetration Testing
Penetration Testing Software
Vulnerability Management

Education

Cybersecurity/CS degree preferred

Tools

Nmap
Nessus
Metasploit
Burp Suite
CANVAS
Kismet

Job description

# Penetration Tester SeniorGDIT · gdit.comCategory: Red Team / OffensiveLocation: USA VA AshburnLevel: SeniorSalary: $142,792 – $170,200Clearance: Public Trust## Quality of lifeWhat the posting states. Hover or tap a perk to see the line it came from.* Retirement match* Paid parental leaveType of Requisition:RegularClearance Level Must Currently Possess:NoneClearance Level Must Be Able to Obtain:NonePublic Trust/Other Required:BI Full 6C (T4)Job Family:Cyber and IT Risk ManagementJob Qualifications:Skills:Cybersecurity Operations, Network Penetration Testing, Penetration Testing Software, Vulnerability ManagementCertifications:NoneExperience:5 + years of related experienceUS Citizenship Required:YesJob Description:The U.S. Customs and Border Protection (CBP) Cyber Security Directorate (CSD) is leading one of the most comprehensive, mission critical cybersecurity operations in the federal government, protecting the digital infrastructure that safeguards America’s borders. This multifaceted program spans 24/7/365 Security Operations Center (SOC) monitoring, advanced threat intelligence, forensics, incident response, cloud and network security engineering, zero trust modernization, vulnerability assessment, and enterprise-wide risk and compliance activities. The Penetration Tester Senior will support teams at the forefront of national security, supporting sophisticated cyber operations that defend vital systems, enable secure mission execution, and counter rapidly evolving threats. You will find this work uniquely impactful, fast-paced, and deeply collaborative, offering the opportunity to lead high performing technical teams, shape CBP’s cybersecurity strategy, and contribute directly to the protection of the nation.MEANINGFUL WORK AND PERSONAL IMPACTThe Penetration Tester plays a critical role in assessing the security of enterprise systems by emulating real‐world adversary behaviors to identify, validate, and help remediate vulnerabilities across networks, applications, and infrastructure. Operating within a high‐stakes cybersecurity mission environment, this role contributes directly to strengthening defensive capabilities and ensuring mission resilience.The candidate will:Lead complex penetration testing engagements and guides junior and mid‐level testers in scoping, tooling, exploitation techniques, documentation quality, and professional development.Plan test approaches, perform advanced exploitation, and deliver detailed reporting that informs corrective actions across critical systems.Define objectives, rules of engagement, and test boundaries in partnership with system owners, ISSOs, engineering leads, and mission stakeholders.Design tailored test plans that reflect system architecture, threat scenarios, and compliance requirements.Lead hands‐on penetration testing across network, application, wireless, and enclave targets, using modern red‐team methodologies to discover and validate exploitable weaknesses.Employ industry tools and frameworks such as Nmap, Nessus, Metasploit, Burp Suite, CANVAS, and Kismet to enumerate, exploit, and confirm vulnerabilities at scale.Develop proofs of concept, chained exploits, and post‐exploitation procedures that demonstrate realistic impact and support prioritization of remediation by system owners.Produce comprehensive technical reports that include vulnerability descriptions, reproduction steps, affected assets, exploit evidence, and prioritized remediation recommendations suitable for engineering and executive audiences.Present findings, defend methodologies, and translate technical risk into mission‐aligned decisions during briefs and touchpoints.Partner with developers, system engineers, SOC, and risk teams to advise on mitigation strategies and validate fixes during retesting cycles.WHAT YOU’LL NEED TO SUCCEEDMinimum of five (5) years of years of offensive security or penetration testing experience, leading complex assessments and delivering authoritative reports.Strong leadership and communication abilities.Advanced proficiency with penetration testing tooling and exploitation techniques, including network, application, and wireless vectors.Strong technical writing and oral presentation skills that meet audit and executive communication standards.Ability to collaborate with technical and non‐technical stakeholders across federal and enterprisePreferred certifications:OSCP (highly valued)GIAC Penetration Tester (GPEN)CREST Registered Pen Tester (CRT)EDUCATION AND EXPERIENCEin cybersecurity, computer science, information technology, or a related field preferred..Previous or Current CBP Background Investigation desired.OWN YOUR OPPORTUNITYExplore a career in cyber security at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your passion for securing the mission.The likely salary range for this position is $142,792 - $170,200. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.Scheduled Weekly Hours:40Travel Required:Less than 10%Telecommuting Options:OnsiteWork Location:USA VA AshburnAdditional Work Locations:Total Rewards at GDIT:Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most. Our Identity Verification Process:As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes. About Our Work:We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.Join our Talent Community to stay up to date on our career opportunities and events atgdit.com/tc.Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Penetration Tester Senior
Penetration Tester Senior

gdit • Ashburn (VA)

On-site
USD 143,000 - 170,000
Penetration Tester Senior
Penetration Tester Senior

General Dynamics Information Technology, Inc. • Ashburn (VA)

On-site
USD 143,000 - 170,000
Health plans
401(k) with company match
Flexible work options
Penetration Tester Mid-Level
Penetration Tester Mid-Level

General Dynamics Information Technology, Inc. • Ashburn (VA)

On-site
USD 108,000 - 129,000
Medical/dental/vision plans
401(k) with company match
Flexible work weeks
+2
Penetration Tester Mid-Level
Penetration Tester Mid-Level

VulnU • Ashburn (VA), Northern (KY)

Hybrid
USD 108,000 - 129,000
Penetration Tester Mid-Level
Penetration Tester Mid-Level

gdit • Ashburn (VA)

On-site
USD 108,000 - 129,000
Penetration Tester Junior
Penetration Tester Junior

VulnU • Ashburn (VA), Northern (KY)

Hybrid
USD 91,000 - 124,000
Retirement match
Paid parental leave
Penetration Tester Mid-Level
Penetration Tester Mid-Level

General Dynamics IT • Ashburn (VA)

On-site
USD 108,000 - 129,000
Penetration Tester Junior
Penetration Tester Junior

General Dynamics Information Technology, Inc. • Ashburn (VA)

On-site
USD 91,000 - 124,000
Penetration Tester Junior
Penetration Tester Junior

gdit • Ashburn (VA)

On-site
USD 91,000 - 124,000
Penetration Tester Junior
Penetration Tester Junior

General Dynamics IT • Ashburn (VA)

On-site
USD 91,000 - 124,000