ASRC

Cyber Penetration Tester

ASRC$90K — $130K *
Technical Services
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in a related field
  • 5+ years of experience in cybersecurity and penetration testing
  • Active DOE Q-Clearance or Top Secret (TS) equivalent required
  • Preferred certifications: OSCP, OSCE, CEH, CISSP
  • Strong proficiency in vulnerability analysis and risk remediation.

Responsibilities

  • Lead advanced security assessments and hands-on penetration testing
  • Identify vulnerabilities and deliver actionable remediation recommendations
  • Develop and maintain assessment plans aligned with NIST SP 800-53 and FedRAMP
  • Document findings of security assessments accurately and promptly
  • Design and maintain tools/scripts to automate penetration testing
  • Mentor a team of junior testers with technical guidance
  • Build and lead a Purple Team for joint red/blue team exercises

Benefits

  • Health care, dental, and vision insurance
  • Life insurance
  • 401(k) plan
  • Education assistance
  • Paid time off including PTO and holidays
Full Job Description
ASRC Federal is seeking an experienced Cyber Penetration Testerto lead advanced security assessments and contribute to the development and execution of penetration testing strategies. This role combines hands-on testing with leadership, mentoring, and collaboration across cybersecurity disciplines.

Work Location: Hybrid, DC (3 days per week onsite)

Responsibilities
  • Lead and perform advanced security assessments, including hands-on penetration testing of systems and applications.
  • Identify vulnerabilities, assess risks, and deliver clear, actionable remediation recommendations.
  • Develop and maintain assessment plans aligned withNIST SP 800-53 and FedRAMP Cloud Security Controls.
  • Execute security assessments per defined plans and document findings accurately and promptly.
  • Design, develop, and maintain tools/scripts to automate and enhance penetration testing activities.
  • Manage and mentor a small team of junior penetration testers; provide technical guidance and training.
  • Build and lead a Purple Team to perform joint red/blue team exercises with customer sites.
  • Support secure systems operations and maintenance, including security validation and accreditation activities.
  • Analyze and mitigate system security threats throughout the lifecycle, including risk assessments and implementation of security engineering controls.
  • Ensure compliance with business continuity, operations security, insider threat detection, physical security analysis, and regulatory requirements.
  • Communicate technical findings effectively to technical teams and executive stakeholders.

Requirements
  • Education: Bachelor's degree in a related field.
  • Experience: 5+ years of relevant experience in cybersecurity and penetration testing (or equivalent combination of education and experience).
  • Clearance: Active DOE Q-Clearance or Top Secret (TS) equivalent required.
  • Certifications (Preferred):
    • OSCP (Offensive Security Certified Professional)
    • OSCE (Offensive Security Certified Expert)
    • CEH (Certified Ethical Hacker)
    • CISSP (Certified Information Systems Security Professional)

Technical Skills & Tools
  • Strong proficiency in vulnerability analysis, risk remediation, and reporting.
  • Ability to clearly replicate vulnerabilities and provide actionable mitigation steps.
  • Familiarity with tools including:
    • Linux, Tenable Nessus, Forescout, Carbon Black, Invicti,
    • Scythe, Rubrik, Fidelis
  • Excellent written and verbal communication skills; ability to present technical findings to executive audiences.

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

About ASRC

Arctic Slope Regional Corporation (ASRC) is an Alaska Native corporation that was established in 1972 under the Alaska Native Claims Settlement Act (ANCSA). The company is owned by approximately 13,000 Iñupiat shareholders who live primarily in eight villages on Alaska's North Slope. ASRC is a diversified company with subsidiaries involved in oil and gas exploration and production, government services, construction, and resource development. The company has a strong commitment to sustainability and environmental stewardship, and has implemented a number of initiatives to reduce its environmental impact.
Learn more about ASRC
Size
3,500 employees
Industry
Founded
2003

Similar Jobs

More Jobs at ASRC

More Technical Services Jobs

Find similar Cyber Penetration Tester jobs: