Exploitation Engineer Lead IV

MartinFed

$110K — $140K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • U.S. Citizen with DoD Secret clearance required.
  • Bachelor's or Master's in Cybersecurity or related field.
  • 8+ years of hands-on experience in vulnerability assessment or penetration testing.
  • Active CompTIA certifications such as PenTest+ CE or CASP+ CE required.
  • Demonstrated experience with enterprise security testing and assessments.
  • Familiarity with specific security tools like Tanium and Burp Suite is necessary.
  • Strong understanding of vulnerability management lifecycle and security frameworks.

Responsibilities

  • Lead advanced vulnerability assessment and penetration testing initiatives.
  • Conduct security testing to identify exploitable vulnerabilities and weaknesses.
  • Develop and implement comprehensive vulnerability management strategies.
  • Analyze assessment results and provide risk-based remediation recommendations.
  • Perform detailed security assessments across various environments and systems.
  • Collaborate with teams to mitigate identified vulnerabilities and improve defenses.
  • Mentor junior engineers and provide technical leadership in cybersecurity assessments.

Benefits

  • Opportunity to work in a dynamic, mission-critical environment.
  • Mentorship and leadership opportunities for career growth.
  • Access to advanced security tools and methodologies.
  • Involvement in compliance with federal cybersecurity standards.
  • Engagement with industry-leading security practices and emerging threat research.
Full Job Description
JOB OVERVIEW:

MartinFed is seeking an experienced Exploitation Engineer Lead IV to lead advanced vulnerability assessment, penetration testing, and security validation efforts supporting enterprise and mission-critical environments. This senior-level position requires a highly skilled cybersecurity professional capable of identifying, analyzing, and mitigating vulnerabilities across networks, systems, applications, databases, and cloud environments.

The successful candidate will serve as a technical lead responsible for planning and executing comprehensive security assessments, developing remediation strategies, mentoring junior engineers, and supporting compliance with federal cybersecurity standards. The Exploitation Engineer Lead IV will leverage industry-leading security tools and methodologies to evaluate organizational security posture and enhance defensive capabilities.
  • Lead vulnerability assessment and penetration testing activities against enterprise infrastructure, applications, databases, and cloud environments.
  • Conduct advanced security testing to identify exploitable vulnerabilities and security weaknesses.
  • Develop, coordinate, and execute vulnerability management strategies across multiple environments.
  • Analyze assessment results and provide risk-based recommendations for remediation and mitigation.
  • Perform web application, network, host, database, and wireless security assessments.
  • Lead red team, adversary emulation, and exploitation activities when required.
  • Validate remediation efforts through retesting and verification assessments.
  • Collaborate with system owners, engineers, and security teams to resolve identified vulnerabilities.
  • Develop detailed technical reports, executive summaries, and risk assessments.
  • Provide technical leadership and mentoring to cybersecurity assessment personnel.
  • Support continuous monitoring and compliance efforts in accordance with federal cybersecurity requirements.
  • Research emerging threats, attack techniques, and security vulnerabilities to improve organizational defenses.
  • Assist in developing security standards, testing methodologies, and assessment procedures.

REQUIRED QUALIFICATIONS:
  • United States Citizen with a DoD Secret clearance.
  • Bachelor's or Master's degree in Cybersecurity, Computer Science, Information Systems, or a related technical field.
  • Minimum 8 years of hands-on experience in vulnerability assessment, penetration testing, or cybersecurity engineering.
  • Active certifications:
    • CompTIA PenTest+ CE
    • CompTIA CASP+ CE
    • CompTIA CySA+ CE
    • CompTIA Security+ CE
  • Demonstrated experience performing enterprise vulnerability assessments and security testing.
  • Experience utilizing the following security tools and platforms:
    • Synack
    • TCNA/TCSE
    • Tanium, BigFix, and/or Tenable Security Center
    • IBM Guardium
    • Burp Suite Enterprise
    • Acunetix 360
    • Trustwave
  • Strong understanding of vulnerability management lifecycle processes.
  • Experience conducting network, application, database, and system security assessments.
  • Knowledge of common attack vectors, exploitation techniques, and threat actor methodologies.
  • Experience interpreting and applying security standards and frameworks including:
    • NIST 800 Series
    • Risk Management Framework (RMF)
    • FISMA
    • STIGs
    • OWASP Top 10

PHYSICAL REQUIREMENTS & ENVIRONMENTAL CONDITIONS
  • Inside office environment.
  • Working on a computer for long periods of time.
  • May involve long period of sitting at a desk.
  • The work environment is fast-paced and sometimes involves extreme deadline pressures.

OTHER DUTIES

This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.

Similar Jobs

More Jobs at MartinFed

More Information Technology Jobs

Find similar Exploitation Engineer Lead IV jobs: