OWN YOUR OPPORTUNITY
Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.
Advance how our customers operate while you advance your career. Join GDIT as an Ethical Hacker/Penetration Tester Sr Principal and build an impactful career in enterprise IT, collaborating with people who are driven and resourceful like you.
MEANINGFUL WORK AND PERSONAL IMPACT
- Conduct internal penetration testing and vulnerability assessment of servers, web applications, web services, and databases
- Manually exploit and compromise operating systems, web applications, and databases
- Examine results of web/OS scanners, scans and static source code analysis
- Identify vulnerabilities, misconfigurations, and compliance issues
- Write final reports, defend all findings to include the risk or vulnerability, mitigation strategies, and references
- Ability to meet and coordinate with various audiences to include developers, system administrators, project managers, and senior government stakeholders
- Provide security recommendations for developers, system administrators, project managers, and senior government stakeholders
- Report vulnerabilities identified during security assessments
- Write penetration testing Rules of Engagements (RoE), Test Plans, and Standard Operating Procedures (SOP)
- Conduct security reviews, technical research, and provided reporting to increase security defense mechanisms
- Make recommendations to the IC CISO or designee for improving TTPS for better cyber threat protection.
WHAT YOU’LL NEED TO SUCCEED
Bring your technology expertise and drive for innovation to GDIT. The Ethical Hacker/Penetration Tester Sr Principal must have:
- Education: Bachelor’s degree in computer engineering, Computer Science, Electrical Engineering, Information systems, Information Technology, Cybersecurity, or a closely related discipline.
- A Master’s degree in an applicable discipline be substituted for three years of demonstrated work experience
- Experience: 8+ years of related experience
- Security clearance level: TS/SCI with Polygraph
- US citizenship required
DESIRED SKILLS
- Certifications: CEH – Certified Ethical Hacker Certification, CPT – Certified Penetration Tester
- Strong writing skills
- Experience with NIST 800-53 and Risk Management Framework
- Knowledge of system and application security threats and vulnerabilities
- Knowledge of network access, identity, and access management e.g. public key infrastructure (PKI).
- Knowledge of network protocols such as Transition Control Protocol/Internet Protocol (TCP/IP), Dynamic Host Configuration, Domain Name System (DNS), and directory Services.
- Ability to assess the robustness of security systems and designs.
- Knowledge of cybersecurity principles and organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
- Write final reports and defend all findings, including risk or vulnerability, mitigation strategies, and references.
- Report vulnerabilities identified during security assessments.
- Conducted security reviews, technical research and provided reporting to increase security defense mechanisms.
- Travel Domestic 0-25%.
GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
- Growth: AI-powered career tool that identifies career steps and learning opportunities
- Support: An internal mobility team focused on helping you achieve your career goals
- Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
- Community: Award-winning culture of innovation and a military-friendly workplace
#WeAreGDIT
#JET
#VA_2026Alumni