Penetration Tester

General Dynamics

Confirmed live 2 days ago High trust

Quick summary

Work type
On-site
Location
Bethesda, MD
Salary
$172,144–$232,900 / yr
Posted
13 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $164k
This role $203k
$127k most similar roles pay here $244k

This role pays more than 84% of similar roles. Most pay $137,937–$189,386 — the shaded band above. At the midpoint, this role pays about $203k versus about $164k for comparable roles.

Based on 240 similar postings.

Employer

About General Dynamics

General Dynamics is a global aerospace and defense company offering a broad portfolio of products and services in business aviation, ship construction, land combat vehicles, and information technology. It serves customers in the U.S. government, allied governments, and a diverse array of commercial markets.

General Dynamics currently has 1123 open roles on FindRole.

Listed pay typically runs $124,093–$150,385 across 984 roles with salary data.

Most-posted roles

View all roles at General Dynamics

At a glance

TL;DR · Penetration Tester

The Penetration Tester - TS/SCI with Polygraph joins the cyber team to perform internal penetration testing and vulnerability assessments of servers, web applications, web services, and databases. This role involves manually exploiting operating systems, analyzing results from web and OS scanners, and conducting static source code analysis to identify misconfigurations or compliance issues. The successful candidate will write technical reports, develop Rules of Engagement, and provide security recommendations to developers and government stakeholders. Key skills include proficiency in network protocols like TCP/IP, DNS, and PKI, as well as knowledge of NIST 800-53 and the Risk Management Framework. The position focuses on enhancing cyber threat protection by conducting technical research and security reviews to identify vulnerabilities within complex systems while ensuring robust defense mechanisms for critical infrastructure and information technology environments.

What you'll do

  • Conduct internal penetration testing and vulnerability assessments of servers, web applications, services, and databases.
  • Manually exploit and compromise operating systems, web applications, and databases to identify security flaws.
  • Analyze results from web/OS scanners, manual scans, and static source code analysis.
  • Identify system misconfigurations, vulnerabilities, and non-compliance issues.
  • Write detailed reports documenting findings, risk levels, mitigation strategies, and technical references.
  • Develop penetration testing Rules of Engagement (RoE), Test Plans, and Standard Operating Procedures (SOP).
  • Provide security recommendations to developers, system administrators, and senior government stakeholders.
  • Conduct technical research and security reviews to improve cyber threat protection mechanisms.

What we're looking for

  • Must possess a Top Secret SCI with Polygraph security clearance.
  • Must be a United States citizen.
  • Bachelor's degree in computer engineering, computer science, electrical engineering, information systems, IT, cybersecurity, or a related field.
  • A Master's degree may substitute for three years of work experience.
  • 8+ years of related experience required.
  • Experience with NIST 800-53 and Risk Management Framework.
  • Knowledge of network protocols (TCP/IP, DHCP, DNS) and identity management systems like PKI.
  • US Citizenship.

More like this

Similar roles

Security Control Assessor

General Dynamics

Bethesda, MD 6 days ago $139,400$188,600
AWS Azure Cloud NIST SP 800-53 Risk Management Framework MITRE ATT&CK PKI TCP/IP DNS Cyber Defense Information Assurance ICD 503 CNSSI 1253
6+ yrs exp

Cyber Technical Analyst

General Dynamics

Herndon, VA 13 days ago $170,000$230,000
NIST 800-53a Risk Management Framework A&A Process Vulnerability Scanning Information Technology Security CompTIA Security+ cyber security Security Compliance Remediation Body of Evidence (BoE)
8+ yrs exp

Tester

General Dynamics

Herndon, VA 73 days ago $161,500$218,500
Software Testing Automated Testing Quality Control Quality Assurance SAFe
10+ yrs exp

Cyber Security Engineer

General Dynamics

Herndon, VA 23 days ago $187,179$253,000
Cross Domain Solutions Risk Management Framework CNSS JIRA Confluence Systems Engineering Cybersecurity Information Security AI Data Transit Assurance Governance, Risk, and Compliance Triage
10+ yrs exp

Cybersecurity Analyst, Risk Management Framework

General Dynamics

Annapolis Junction, MD +1 8 days ago $127,500$172,500
Risk Management Framework NIST 800-53 Xacta Information Assurance Cybersecurity Assessment and Authorization Security+ CySA+ CCNA Security GSEC CND SSCP GICSP System Security Plans Security Assessment Report
6+ yrs exp

Senior ISSE / Penetration Tester

Leidos

Annapolis Junction, MD 136 days ago $131,300$237,350
Penetration Testing Nessus NMAP Wireshark Risk Management Framework Agile Public Key Infrastructure Firewalls Scripting Information Assurance Security Architecture Configuration Management Incident Response Defense in Depth
10+ yrs exp