About this role
About the Role As a Penetration Tester at Booz Allen Hamilton, you will conduct testing and analysis to identify vulnerabilities and threat vectors in systems and networks, develop exploits, and engineer attack methodologies, leveraging MITRE ATT&CK to plan threat-based assessments. You will apply technical expertise, provide advisory support, and mentor team members as needed. What You'll Do
- Conduct testing and analysis to identify vulnerabilities and potential threat vectors in systems and networks, develop exploits, and engineer attack methodologies.
- Leverage MITRE ATT&CK and common cybersecurity control implementations to plan and conduct threat-based assessments.
- Apply advanced advising skills, extensive technical expertise, and full industry knowledge to develop innovative solutions to complex problems.
- Work without considerable direction, and mentor and supervise team members as needed. What We're Looking For
- 3+ years of experience with MITRE ATT&CK, test planning and security control assessment
- 3+ years of experience with cyber penetration testing or developing risk and threat mitigation plans
- 3+ years of experience operating in Linux, Windows, and virtual platforms
- 3+ years of experience with computer attack methods and system exploitation techniques
- 3+ years of experience leveraging adversarial tactics to conduct hands-on security testing
- 3+ years of experience performing network security analysis, including software or traffic analysis
- Secret clearance
- HS diploma or GED Nice to Have
- Experience with Breach and Attack Simulation tools such as Atomic Red Team, Scythe, Mandiant ASV or AttackIQ
- Experience manually auditing source code, including Java, Ruby, Python, JavaScript, Rust, or C, to find security issues
- Experience with system security engineering and security architecture
- Knowledge of tools, tactics, and techniques targeting Artificial Intelligence (AI) systems and their ecosystems
- Bachelor's degree in CS, Information Systems, Engineering, or a related field
- Offensive Security Certified Professional (OSCP), HTB Certified Penetration Tester Specialist (CPTS), eLearnSecurity Junior Penetration Tester (EJPT), GIAC Global Information Assurance Penetration Tester (GPEN), or GIAC Cloud Penetration Tester Certification Compensation & Benefits
- Salary range: $86,900.00 to $198,000.00 (annualized USD).
- Booz Allen offers health, life, disability, financial, and retirement benefits, paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and value-driven behavior.
- Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits.
- This posting will close within 90 days from the Posting Date.