Penetration Testing EngineerConcurrent Technologies Corporation
On-Site Washington, DC (Metro Area)
Minimum Clearance Required: Active TS/SCI with FRD/RD/NATO eligibility or access required
Clearance Level Must Be Able to Maintain: TS/SCI with FRD/RD/NATO eligibility or access required
This position is contingent upon contract award. Any offer of employment is dependent upon CTC's successful contract award and funding authorization. Candidates may be contacted for interviews and pre-employment processing prior to award notification
Concurrent Technologies Corporation (CTC) is seeking a highly experienced
Senior Penetration Testing Engineer (Key Personnel) to support a mission-critical Department of Defense cybersecurity program. The selected candidate will serve as a senior technical Subject Matter Expert (SME), leading advanced penetration testing, vulnerability assessments, software assurance activities, and secure systems engineering efforts across complex classified environments. The ideal candidate possesses extensive experience identifying, analyzing, and mitigating cybersecurity risks across enterprise networks, cloud environments, cross-domain solutions (CDS), and mission-critical systems. This individual will collaborate closely with government stakeholders, engineers, and cybersecurity teams to improve system resilience while ensuring compliance with DoD cybersecurity requirements and best practices.
Key Responsibilities- Lead and perform advanced penetration testing against enterprise applications, operating systems, networks, and cloud-hosted environments.
- Conduct comprehensive vulnerability assessments and provide technical recommendations for remediation and risk reduction.
- Evaluate software security throughout the Software Development Lifecycle (SDLC), ensuring secure coding practices and software assurance methodologies are implemented.
- Assess and validate secure cloud architectures, configurations, and security controls.
- Support Cross Domain Solution (CDS) security assessments, testing, and accreditation activities.
- Develop technical reports documenting findings, exploit paths, risk assessments, and recommended corrective actions.
- Validate vulnerability remediation efforts through retesting and verification activities.
- Support patch management strategies by identifying security deficiencies and verifying remediation effectiveness.
- Collaborate with system engineers, software developers, ISSOs, and government personnel to strengthen overall cybersecurity posture.
- Provide technical guidance on emerging cyber threats, attack methodologies, and defensive countermeasures.
- Assist with cybersecurity engineering efforts supporting Risk Management Framework (RMF) compliance and continuous monitoring initiatives.
- Mentor junior cybersecurity personnel and provide subject matter expertise during technical reviews and assessments.
Required Qualifications- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related technical discipline. Equivalent professional experience may be considered.
- 10+ years of overall cybersecurity, information assurance, or cyber engineering experience.
- At least 2 years of recent hands-on experience in each of the following areas:
- Software Assurance
- Penetration Testing
- Vulnerability Assessment
- Patch Management
- Secure Cloud Technologies
- Cross Domain Solutions (CDS)
- Demonstrated experience performing penetration testing using industry-standard methodologies and tools.
- Strong understanding of network security, operating systems, application security, and cybersecurity architectures.
- Experience preparing technical assessment reports and presenting findings to technical and executive stakeholders.
- Excellent analytical, troubleshooting, and communication skills.
- Certified Ethical Hacker (CEH)
- Certified Information Systems Security Professional (CISSP)
Preferred Qualifications- Experience supporting Department of Defense or Intelligence Community cybersecurity programs.
- Familiarity with NIST Risk Management Framework (RMF), NIST 800-53, DISA STIGs, and DoD cybersecurity policies.
- Experience supporting classified cloud environments.
- Knowledge of secure software development practices and DevSecOps methodologies.
- Experience with automated vulnerability management and enterprise security assessment tools.
- Ability to lead technical teams and interface directly with Government leadership.
Benefits:- The starting salary range for this position has been established as $150,000 - $170,000
- Medical Insurance and Prescription
- Dental Insurance
- Vision Insurance
- Life and AD&D Insurance
- Short-Term/Long-Term Disability Insurance
- Employee Assistance Program (EAP)
- Voluntary Critical Illness and Accident Insurance
- Tuition Reimbursement Assistance
- Paid Leave
- Paid Holidays
- Bereavement Leave
- Retirement Plan
https://concurrent-technologies-corporation.breezy.hr/
Staffing Requisition: