The Junior Penetration Tester supports security assessments by planning and executing tests on web applications, infrastructure, cloud environments, and other technologies connected to the client network. This role involves developing test plans, performing vulnerability and risk analyses, automating testing processes, and mapping findings to NIST SP 800-53 controls to ensure compliance and improve security posture. The position requires conducting security testing of various IT assets including web applications, infrastructure assets and technologies, mobile applications, custom developed software implementations, virtual technologies, COTS products, cloud implementations, common application platforms, and other technologies connecting to or interacting with the Judiciary network. A key aspect is developing and maintaining a repeatable methodology for performing security testing, which includes threat modeling, mapping business requirements to the applicable security requirements, determining appropriate security controls, test scenarios, and test cases. The tester will perform security testing, vulnerability analysis, and risk analysis in accordance with an industry-proven, repeatable methodology, evaluate the effectiveness of security controls as they relate to the applicable security controls of the system tested, and relate test results to controls in NIST SP 800-53. Additionally, the role involves developing, maintaining, and using customized testing scripts for automation, and developing and delivering required reports.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Entry Level