Penetration Tester - TS/SCI with Polygraph

General Dynamics Information TechnologyBethesda, MD
$172,144 - $232,900Onsite

About The Position

OWN YOUR OPPORTUNITY Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters. Advance how our customers operate while you advance your career. Join GDIT as an Ethical Hacker/Penetration Tester Sr Principal and build an impactful career in enterprise IT, collaborating with people who are driven and resourceful like you. MEANINGFUL WORK AND PERSONAL IMPACT Conduct internal penetration testing and vulnerability assessment of servers, web applications, web services, and databases. Manually exploit and compromise operating systems, web applications, and databases. Examine results of web/OS scanners, scans and static source code analysis. Identify vulnerabilities, misconfigurations, and compliance issues. Write final reports, defend all findings to include the risk or vulnerability, mitigation strategies, and references. Ability to meet and coordinate with various audiences to include developers, system administrators, project managers, and senior government stakeholders. Provide security recommendations for developers, system administrators, project managers, and senior government stakeholders. Report vulnerabilities identified during security assessments. Write penetration testing Rules of Engagements (RoE), Test Plans, and Standard Operating Procedures (SOP). Conduct security reviews, technical research, and provided reporting to increase security defense mechanisms. Make recommendations to the IC CISO or designee for improving TTPS for better cyber threat protection.

Requirements

  • Bachelor’s degree in computer engineering, Computer Science, Electrical Engineering, Information systems, Information Technology, Cybersecurity, or a closely related discipline.
  • 8+ years of related experience
  • TS/SCI with Polygraph security clearance
  • US citizenship required

Nice To Haves

  • CEH – Certified Ethical Hacker Certification
  • CPT – Certified Penetration Tester
  • Strong writing skills
  • Experience with NIST 800-53 and Risk Management Framework
  • Knowledge of system and application security threats and vulnerabilities
  • Knowledge of network access, identity, and access management e.g. public key infrastructure (PKI).
  • Knowledge of network protocols such as Transition Control Protocol/Internet Protocol (TCP/IP), Dynamic Host Configuration, Domain Name System (DNS), and directory Services.
  • Ability to assess the robustness of security systems and designs.
  • Knowledge of cybersecurity principles and organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Write final reports and defend all findings, including risk or vulnerability, mitigation strategies, and references.
  • Report vulnerabilities identified during security assessments.
  • Conducted security reviews, technical research and provided reporting to increase security defense mechanisms.

Responsibilities

  • Conduct internal penetration testing and vulnerability assessment of servers, web applications, web services, and databases
  • Manually exploit and compromise operating systems, web applications, and databases
  • Examine results of web/OS scanners, scans and static source code analysis
  • Identify vulnerabilities, misconfigurations, and compliance issues
  • Write final reports, defend all findings to include the risk or vulnerability, mitigation strategies, and references
  • Ability to meet and coordinate with various audiences to include developers, system administrators, project managers, and senior government stakeholders
  • Provide security recommendations for developers, system administrators, project managers, and senior government stakeholders
  • Report vulnerabilities identified during security assessments
  • Write penetration testing Rules of Engagements (RoE), Test Plans, and Standard Operating Procedures (SOP)
  • Conduct security reviews, technical research, and provided reporting to increase security defense mechanisms
  • Make recommendations to the IC CISO or designee for improving TTPS for better cyber threat protection

Benefits

  • Comprehensive benefits and wellness packages
  • 401K with company match
  • Competitive pay
  • Paid time off
  • Variety of medical plan options
  • Health Savings Accounts
  • Dental plan options
  • Vision plan
  • 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match.
  • Full flex work weeks where possible
  • Variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave.
  • Short and long-term disability benefits
  • Life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service