Penetration Testers

After School Matters, Inc.
United States
8 days ago
Apply on testpros.applytojob.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Part-time (≤ 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$104,000.0 - $176,800.0
Working hours
Shift work

Tech stack

Amazon Web Services Apple Mac Systems Software System Penetration Testing Bash Shell Black-Box Testing Burp Suite C++ (Programming Language) Command-Line Interface Code Review Cyber Security Computer Networks Linux
+10 more
White-Box Testing Python (Programming Language) Open Source Technology Open Web Application Security Windows PowerShell Web Applications Scripting Metasploit Nessus Vulnerability Analysis

Job description

This role is responsible for the successful delivery of penetration testing in both classic hosted and also in cloud hosted environments. In this role, the selected candidate will work with our client’s product development teams to plan for, execute, and report on the results of penetration testing. You must be delivery and efficiency focused, with the ability to manage all aspects of a consulting project to include requirements analysis, bid and proposal development, resource planning, process improvement, and customer relationship management. The ideal candidate will thrive in a fast-paced environment where personal responsibility and open, direct, respectful communications are highly valued. Responsibilities:

  • Conduct complete penetration tests, report on results, and provide improvement recommendations
  • Ensure customer satisfaction through the delivery of high-quality consulting services across a portfolio of commercial and federal government projects
  • Ability to elicit and understand customer requirements and covert those requirements into a technical services solution
  • Ability to accurately estimate time and cost for each project
  • Foster an environment of continuous learning, innovation and excellence
  • Work closely with development teams, product managers, and customer success teams to ensure successful delivery of consulting services or product implementation projects and remove roadblocks
  • Develop, review and approve formal statements of work, change requests, and proposals
  • Formulate timely reports and documentation to track progress
  • Effectively collaborate with peers and company leadership to accomplish team, corporate and client objectives
  • Answer developer, designer, and content contributor questions about IT Security requirements., What’s your citizenship / employment eligibility?* Desired salary* Can you work weekends?* Can you work evenings?* Can you work overtime?* Do you have experience with any of these Pen Testing Methodologies (check all that apply)?* OSSTMMOWASPPTESFedRAMPNISTOther Do you have an active professional certification (check all that apply)?* CEHGPENGWAPTGXPNLPTCPTOSCPCompTIA PenTest+CEPTOther Are you looking for part time work?* Do you have experience with open-source pen testing tools? Give examples* What is your desired 1099 rate?* The following questions are entirely optional. To comply with government Equal Employment Opportunity and/or Affirmative Action reporting regulations, we are requesting (but NOT requiring) that you enter this personal data. This information will not be used in connection with any employment decisions, and will be used solely as permitted by state and federal law. Your voluntary cooperation would be appreciated. Learn more. Gender Race/Ethnicity

Requirements

  • Minimum of 5 years of experience in penetration testing
  • Desired certifications - Security+, CEH, GPEN, OSCP, AWS, or equivalent
  • Understanding of OWASP Top 10 and “industry best practices” for penetration testing
  • Understanding of all aspects of Penetration Testing with an emphasis on white box testing, black box testing, internal networks, external networks, web applications, and application/code review
  • Understanding of Pen Test methods such as Open Source Security Testing Methodology Manual (OSSTMM), Open Web Application Security Project (OWASP), Penetration Testing Execution Standard (PTES), FedRAMP Penetration Test Guide, NIST, etc.
  • Proficient with the command line interface of multiple operating systems - Windows, macOS, Linux, etc.
  • Solid understanding of manual scripting and scripting languages- ex. Python, Bash, PowerShell, C/C++, etc.
  • Proficient with using commercial and open source penetration testing tools - ex. Metasploit, Nikto, SQLMAP, Responder, Nessus, Netcat, Burp Suite, etc.
  • Conduct and document vulnerability scans and penetration testing on web-based applications and their underlying hosts
  • Proven ability to perform computer network vulnerability assessment and penetration testing
  • Understanding of risk planning and mitigation strategies
  • Ability to prepare and present documents and briefing materials
  • Advise on new threats to the technologies and environment and provide mitigation steps when applicable
  • Provide security guidance on design, deployment, and architecture of web-based and cloud hosted applications.
  • Participate in technical discussions and collaborate with team members
  • Exceptional communication skills - both orally and written
  • Strong customer service skills
  • Strong organizational and time-management skills with the ability to handle multiple tasks at once, while still paying attention to detail
  • A strong work ethic and self-starter attitude, with the ability to thrive in a fast-paced environment
  • Bachelor’s degree in a related field or equivalent work experience and advance

Benefits & conditions

Rate: $50-85/hr (1099 or Corp. To Corp.). This range represents a good-faith estimate and is not a guarantee; final compensation is determined by factors such as experience, qualifications, and government contract labor rate requirements and may fall outside the stated range., Invitation for Job Applicants to Self-Identify as a U.S. Veteran

  • A “disabled veteran” is one of the following:
  • a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or
  • a person who was discharged or released from active duty because of a service-connected disability.
  • A “recently separated veteran” means any veteran during the three-year period beginning on the date of such veteran’s discharge or release from active duty in the U.S. military, ground, naval, or air service.
  • An “active duty wartime or campaign badge veteran” means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.
  • An “Armed forces service medal veteran” means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

About the company

TestPros delivers innovative independent IT assessment solutions to critical challenges facing the nation and the world. We support the U.S. Federal Government and Commercial clients within the continental USA. TestPros is dedicated to making lives better, safer and more secure.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on testpros.applytojob.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:22 min

Structuring critical internal and external penetration testing procedures

Jasmin Azemović Jasmin Azemović · World Congress 2023

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

3:31 min

Setting up a penetration testing environment for web apps

Anna Bacher · LIVE

Videos

See all

Related articles

See all