Application Security-Penetration Tester

Boston Government Services LLC

$170K — $200K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree or equivalent required.
  • Experience in penetration testing or vulnerability assessments essential.
  • Familiar with ROE development and security testing methodologies.
  • Knowledge of OWASP, NIST, and CVSS frameworks important.
  • Strong communication skills for diverse stakeholder interaction.
  • U.S. citizenship and successful drug screening required.
  • Eligibility for security clearance is mandatory.

Responsibilities

  • Develop and maintain penetration testing documentation and plans.
  • Conduct comprehensive security testing across applications and networks.
  • Perform detailed assessments including reconnaissance and vulnerability analysis.
  • Utilize both commercial and open-source tools for vulnerability identification.
  • Draft and finalize reports detailing findings and recommendations.
  • Coordinate testing logistics and stakeholder interactions effectively.
  • Identify trends in security findings to enhance security posture.

Benefits

  • Health, Dental, and Vision insurance.
  • Life Insurance coverage available.
  • Paid Vacation days provided.
  • 401K retirement plan options.
  • Long and Short-Term Disability insurance.
Full Job Description
Responsibilities:

The Application Security-Penetration Tester conducts application, infrastructure, and network security testing to identify exploitable vulnerabilities, validate security controls, support risk reduction, and provide actionable recommendations for client systems.
  • Support development and maintenance of penetration testing rules of engagement, test plans, and testing documentation.
  • Conduct application, network, infrastructure, vulnerability, lateral movement, and related security testing activities.
  • Perform reconnaissance, enumeration, target assessment, vulnerability validation, exploitability analysis, and evidence collection.
  • Use approved commercial and open-source tools to identify and validate vulnerabilities.
  • Prepare draft and final penetration test reports with findings, evidence, access paths, risks, and recommendations.
  • Coordinate kickoff meetings, stakeholder approvals, debriefs, validation testing, and reporting timelines.
  • Identify systemic trends across findings and support security posture improvement recommendations.


Requirements:
  • Bachelor's Degree or equivalent.
  • Experience conducting penetration tests, vulnerability assessments, application security testing, or technical security assessments.
  • Familiarity with ROE development, test planning, exploitability validation, vulnerability scanning, web application security, network testing, and report writing.
  • Knowledge of OWASP, NIST, CVSS, secure configuration, and common attack techniques.
  • Ability to communicate findings clearly to technical and non-technical stakeholders.
  • Must be a U.S. citizen.
  • Successful drug screening.
  • Must be eligible to obtain and maintain a security or clearance badge.


Preferred Qualifications:
  • OSCP, GPEN, GWAPT, PenTest+, CEH, CISSP, or equivalent.


Location/Work Arrangement:
  • Schedule is full-time, Monday - Friday 40-hour week, 4/10's, or 9/80's and may require on call or overnight shifts depending on contract needs.
  • This position may be fully onsite or hybrid/remote depending on the needs of the specific contract.


Benefits:

BGS offers a competitive total compensation package to eligible employees. Benefits include Health, Dental, Vision, Life Insurance, Paid Vacation, 401K, Long and Short-Term Disability.

Starting compensation for this role typical salary ranges between $170,167 - $200,196 annually is commensurate with experience relative to the position and may vary based on candidate geographical location.

Exclusive Agreement Disclaimer:

BGS has standing contracts with federal agencies throughout the United States. We require an affirmative exclusive agreement to represent all candidates to our clients. By submitting this application, you are consenting to allow BGS to represent you as a candidate for the role in which you are applying.
Schedule is full-time, Monday - Friday 40-hour week, 4/10's, or 9/80's and may require on call or overnight shifts depending on contract needs.

Similar Jobs

More Jobs at Boston Government Services LLC

More Information Technology Jobs

Find similar Application Security-Penetration Tester jobs: