Jobs · Utah

Penetration Tester (RELOCATION BONUS AVAILABLE) - Ogden,UT

Dark Wolf · Ogden, UT · 1 mo ago
Full-time

Dark Wolf is seeking a Penetration Tester to plan and perform continuous cross-domain vulnerability assessments, full-scale penetration testing, and red team operations.

About the role

The ideal candidate will be familiar with both cloud-based and on-premises Windows, Linux, and mobile operating systems and environments. You will conduct network and application security vulnerability analysis, analyze commercial and federal mission systems to identify potential vulnerabilities, and help implement remediation strategies for customers.

This is a hybrid role based on Hill Air Force Base in Ogden, UT. Relocation assistance and sign-on bonuses up to $25,000 are available, based on skillset and experience level.

Responsibilities

  • Move between projects and participate in either single engagement penetration tests or continuous engagement Red Teams.
  • Lead the technical aspect of long-term penetration testing efforts, conducting varied testing against applications and networks for the federal government.
  • Develop continuous campaign-based assessments that emulate real-world adversaries by creating new tools specific to the target.
  • Integrate into ongoing testing efforts, requiring expertise in multiple disciplines of vulnerability testing and assessment.
  • Interact and liaison directly with clients, and document findings with strong written communication.
  • Conduct open-source research on clients and their infrastructure to identify data leakage that could lead to vulnerabilities.
  • Leverage programming knowledge to develop custom tools and exploits for targeting unique client systems and building internal testing capabilities.
  • Prepare assessments and presentations of analyses and findings.
  • Develop and maintain analytical procedures to meet changing requirements and ensure effective operations.
  • Occasional travel for clients requiring onsite testing.

Requirements

  • 3+ years’ experience in three or more of the following areas: intelligence analysis, network engineering, networking security, penetration testing, red team operations, hardware engineering, software engineering, exploit development, reverse engineering, vulnerability assessment, physical security assessments, social engineering.
  • Strong knowledge of testing simulated intrusion attempts and physical penetration testing.
  • Proficiency in testing and assessing mobile operating systems, embedded systems, and/or IoT devices.
  • Familiarity with unmanned aerial vehicles and associated mobile and wireless technologies.
  • Proficiency with various operating systems: Windows, iOS, Android, Mac, or Linux.
  • Proficiency with cloud technology and deployments: Amazon Web Services, Microsoft Azure, Google Cloud Platform.
  • Moderate competency in at least one scripting and/or coding language.
  • Working knowledge of software development, with preference for experience working with software development teams.
  • Experience in network analysis methodologies.
  • Experience drafting reports, documenting case details, and summarizing findings and recommendations based on system analysis.
  • Demonstrated strong written and verbal communication skills.
  • BS (or equivalent) in Cybersecurity, Information Security, IT, EE, Network Engineering, Computer Science, or related field.
  • US Citizenship and an active Secret clearance with the ability to be upgraded to a Top Secret level.

Qualifications

  • Familiarity with container technologies, including container orchestration and microservices.
  • Experience with DevSecOps and adjacent tools; strong preference for experience with Kubernetes and software development pipelines.
  • Security Certification: CEH, OSCP, PNPT, or similar security/pentesting certs.
  • Experience employing advanced forensic tools and techniques for attack reconstruction, including dead system analysis and volatile data collection and analysis.
  • Experience performing post-incident computer forensics without destruction of critical data.
  • Experience ensuring quality assurance and spreading best practices.
  • MS degree in a technical field.
  • Security+ Certification.

Similar jobs