​​Penetration Tester​

Leidos

Quick summary

Work type
On-site
Location
Ashburn, VA
Salary
$87,100–$157,450 / yr
Posted
132 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $161k
This role $122k
$74k most similar roles pay here $211k

This role pays less than 85% of similar roles. Most pay $137,675–$184,325 — the shaded band above. At the midpoint, this role pays about $122k versus about $161k for comparable roles.

Based on 239 similar postings.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 230 open roles on FindRole.

Listed pay typically runs $106,600–$192,700 across 218 roles with salary data.

Most-posted roles

View all roles at Leidos

At a glance

TL;DR · ​​Penetration Tester​

The Penetration Tester role at the Department of Homeland Security's Customs and Border Protection Security Operations Center involves conducting comprehensive security assessments to identify vulnerabilities in CBP’s FISMA systems. This senior-level position requires a deep understanding of offensive cybersecurity techniques, strong analytical skills, and the ability to produce detailed reports with actionable recommendations. Day-to-day responsibilities include performing internal and external web application, network, and infrastructure penetration tests using tools like Kali Linux, Metasploit, and Burp Suite Pro, while adhering to operational guidelines. The ideal candidate will have 3-5 years of experience in pen testing and vulnerability assessment, with expertise in areas such as network pentesting or cloud infrastructure pentesting, and hold certifications like OSCP or GPEN. Additionally, the role demands collaboration with SOC, engineering, and security teams to validate and remediate vulnerabilities, supporting tool development and knowledge sharing within the team.

What you'll do

  • Conduct comprehensive security assessments of CBP FISMA systems to identify vulnerabilities.
  • Perform internal and external web application, network, and infrastructure penetration tests using various tools.
  • Produce detailed reports with actionable remediation recommendations for identified vulnerabilities.
  • Validate and remediate vulnerabilities in partnership with SOC, engineering, and security teams.
  • Assist in verifying bug bounty findings and their corresponding remediations.

What we're looking for

  • 3-5 years of professional experience in penetration testing and vulnerability assessment.
  • Deep understanding of web application and enterprise network environments.
  • Experience in incident detection and response, malware analysis, or cyber forensics.
  • Proficiency with tools such as Kali Linux, Metasploit, Burp Suite Pro, and Wireshark.
  • Possession of at least one penetration testing certification (OSCP, GPEN, CRTO, OSWP, GWAPT).
  • Ability to produce detailed reports and collaborate with security teams for remediation.

More like this

Similar roles

Penetration Tester Team Lead

Leidos

Ashburn, VA 30 days ago $131,300$237,350
Python Ruby PowerShell Bash Cobalt Strike Mythic Sliver Metasploit Burp Suite Pro BloodHound Nmap Mitre ATT&CK Kubernetes AWS Azure GCP CI/CD
Hybrid

Security Engineer

Leidos

Reston, VA 17 days ago $131,300$237,350
AWS Azure DISA_STIGs Nessus Splunk PRTG Trellix_Endpoint_Security ePolicy_Orchestrator CI/CD Agile Linux RHEL Windows Python SQL PostgreSQL Active_Directory Network_Monitoring SIEM Threat_Modeling OWASP Microsoft_Threat_Modeling_Tool NIST_RMF Red_Hat_OpenShift Kubernetes Terraform

Senior Penetration Tester

Fiserv

Berkeley Heights, NJ 17 days ago $90,000$158,400
AWS Azure GCP Docker Kubernetes Terraform Jenkins GitHub Actions Python Bash OWASP Top 10 NIST SANS PCI DSS CI/CD IaC Burp Suite Metasploit MobSF Postman Veracode Checkmarx Fortify

Senior Penetration Tester

Fiserv

Berkeley Heights, NJ 17 days ago $90,000$158,400
AWS Azure GCP Kubernetes Docker CI/CD IaC Terraform Jenkins GitHub Actions Python Bash OWASP Top 10 NIST SANS PCI DSS Burp Suite Metasploit MobSF Postman Veracode Checkmarx Fortify

Senior Penetration Tester

CoStar Group

VA 23 days ago
Python PowerShell C# Java JavaScript Go Burp_Suite OWASP_ZAP Nmap Bloodhound Metasploit Active_Directory Cobalt_Strike Sliver Mythic MITRE_ATT&CK AWS Kubernetes CI/CD PostgreSQL
Hybrid

Sr Analyst, Penetration Testing

McDonald’s Corporation

Chicago, Illinois 17 days ago $138,207$172,758
Python PowerShell Go C C++ MITRE ATT&CK TCP/UDP SSL/TLS HTTP/S REST/SOAP APIs Windows Active Directory Linux OSCP OSCE OSEP OSWE GWAPT GPEN GXPN GRTP CRTO PNPT EDR SIEM Email Gateway SOAR