×
Register Here to Apply for Jobs or Post Jobs. X

Penetration Testing Engineer, Senior — Army; TS​/SCI

Job in Arlington, Arlington County, Virginia, 22201, USA
Listing for: Praescient Analytics
Full Time position
Listed on 2025-11-20
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Data Security, Security Manager
Salary/Wage Range or Industry Benchmark: 80000 - 100000 USD Yearly USD 80000.00 100000.00 YEAR
Job Description & How to Apply Below
Position: Penetration Testing Engineer, Senior — Army (TS/SCI)

Location: Arlington, VA
Clearance Required: Active TS/SCI Clearance (U.S. Citizen)
Employment Type: Full-Time (W-2 or 1099)

About Praescient Analytics: Praescient Analytics is a mission-focused technology and analytics company dedicated to delivering innovative solutions that empower decision-makers across the defense, intelligence, and law enforcement communities. We integrate cutting-edge technologies, data-driven methodologies, and technical expertise to address complex operational challenges and enhance our clients’ capabilities.

Position Overview

Praescient Analytics is seeking a seasoned Senior Penetration Testing Engineer to join our team supporting Army programs. The ideal candidate will be an experienced offensive security practitioner with strong hands‑on technical skills in penetration testing, vulnerability management, and software/system assurance. This role requires creativity in attack development, excellent reporting skills, and the ability to collaborate with developers, system owners, and leadership to reduce risk across complex environments.

Key Responsibilities
  • Plan, develop, and execute comprehensive penetration tests against applications, services, hosts, and networks to identify security weaknesses and exploitability.
  • Perform hands‑on offensive activities including reverse shells, SQL injection, buffer overflow analysis, trojan/backdoor development, password‑cracking, privilege escalation, and social‑engineering campaigns where authorized.
  • Conduct threat and vulnerability assessments, risk analysis, and recommend pragmatic mitigation strategies.
  • Develop attack vectors, perform reconnaissance, OSINT collection, enumeration, foot printing, and build exploit payloads/backdoors for testing purposes.
  • Test system and software modifications to validate security posture prior to deployment.
  • Document findings clearly and concisely in vulnerability reports and trackers; maintain databases of known defects and test artifacts.
  • Participate in software design and architecture reviews to provide security input on requirements and operational characteristics.
  • Integrate vulnerability management processes and tools into development/operational workflows; advise on secure coding and configuration baselines.
  • Mentor junior testers and contribute to team best practices, playbooks, and test automation.
  • Support red team / purple team engagements and collaborate with defensive teams to validate mitigations.
Required Qualifications
  • Active TS/SCI clearance
    - Required
  • GPEN (GIAC Penetration Tester)
    or OSCP (Offensive Security Certified Professional) —
    Required.
  • Minimum 5+ years hands‑on experience in penetration testing, vulnerability assessment, or offensive security roles.
  • Strong practical experience with common pentest tools and frameworks (e.g., Metasploit, Burp Suite, Nmap, Wireshark, Empire, Cobalt Strike, password‑cracking tools) and offensive distributions (Kali, Parrot).
  • An IAT Level III certification (one of the following: CASP, CCNP, CISA, CISSP, or GCIH)
  • Proven ability to develop and modify exploits, payloads, and backdoors; experience with reverse engineering and debugging.
  • Solid programming/scripting skills (Python, Bash, Power Shell). Comfortable reading or writing C/C++/assembly when needed for exploit development or binary analysis.
  • Deep understanding of web application vulnerabilities (OWASP Top 10), network protocols, authentication systems, and privilege escalation techniques.
  • Experience with vulnerability management workflows and bug‑tracking systems.
  • Excellent written and verbal communication skills; ability to produce high‑quality technical reports tailored to technical and non‑technical stakeholders.
  • U.S. citizenship required.
Preferred / Nice‑to‑Have
  • Experience with targeting cloud platforms (AWS, Azure) and containerized environments.
  • Familiarity with CI/CD security, SAST/DAST tooling, and secure SDLC practices.
  • Experience with red team operations, social engineering campaigns, or physical/technical assessment integration.
  • Additional certifications: OSCE, CREST, CISSP, GWAPT, GPYC, or similar.
  • Prior experience in or supporting Army / DoD programs and mission environments.
What you can expect from us
  • Rea…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary