Penetration Tester Journeyman

OneZero SolutionsAlexandria, VA
Hybrid

About The Position

We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas. OneZero full-time employees receive a highly competitive benefits package, including health, dental, vision, and life insurance, a 401(k) with company matching, paid time off and holidays, an employee referral program, and educational assistance. Additional details are available on our website: https://www.onezerollc.com/careers/ Position Title: Penetration Tester Journeyman Location: Alexandria, VA Hybrid Clearance: Active Top Secret with SCI eligibility security clearance

Requirements

  • Relevant Years of Experience: 5+
  • Hands on experience with computers and network security.
  • Experience conducting phishing campaigns or social engineering.
  • Hands on experience with red team tasks and pen testing.
  • Familiarity with malware development and EDR/AV bypass strategies.
  • Experience with PowerShell, C, C++, or Python.
  • Hands on experience utilizing Command and Control (C2) Frameworks such as Cobalt Strike, Sliver, Havoc, etc.
  • IAT II or IAT III
  • GPEN, Red Team Apprentice Course (RTAC), or equivalent
  • BA/BS or equivalent years of relevant experience

Responsibilities

  • Deploy, configure, and operate C2 frameworks such as Cobalt Strike, Havoc, Mythic, and Sliver.
  • Apply TTPs for initial access, lateral movement, privilege escalation, persistence and data exfiltration.
  • Leverage proprietary and open-source offensive security tool sets effectively to achieve engagement objectives.
  • Execute phishing assessments.
  • Monitor, manage, and maintain cloud and on-premise infrastructure used during assessments.
  • Understanding the use of Git Repositories for maintaining operational tools and scripts.
  • Internal and external penetration testing.
  • Network mapping and enumeration.
  • Assess web and mobile applications.
  • Perform database scans.
  • Assess Active Directory attack paths using tools such as BloodHound.
  • Assessing Coast Guard's cyber security posture of operational networks through adversary emulation.
  • Develop reports and briefs detailing findings and recommendations for all assessments completed.
  • Perform cyber threat emulation during scripted exercises, to train DoD Cyber Protection Teams

Benefits

  • health, dental, vision, and life insurance
  • 401(k) with company matching
  • paid time off and holidays
  • employee referral program
  • educational assistance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service