Demo

Penetration Tester

VTG
Chantilly, VA Full Time
POSTED ON 10/13/2025
AVAILABLE BEFORE 12/13/2025
Overview:

Tunuva Technologies (a wholly owned subsidiary of VTG) is looking to hire a Penetration Tester to conduct technical testing and evaluation of customer’s Information Systems (IS), produce detailed reports, and recommendations to the Government that will improve information systems confidentiality, integrity, and availability. This position is also responsible for performing security focused services to improve the security posture of the customer’s information systems.

Responsibilities:
Responsibilities
  • Conduct Vulnerability Assessment of network, host, and web applications, leveraging tools such as Tenable Nessus, NMAP, Wireshark, Rapid7 Metasploit, Burp Suite, etc.
  • Work closely with the Security Control Assessor to perform IT security assessments in support of Risk Management Framework (RMF).
  • Maintain vulnerability assessment toolkit utilizing Ubuntu and Kali platforms
  • Prepare assessment reports that identify technical and procedural findings, and provide recommended remediation strategies/solutions.
  • Research vendor security advisories, vulnerability reports, product changelogs, bug trackers, commits, exploits, and other sources to triage vulnerabilities.
  • Communicate effectively with various stakeholders, including System Owners, Administrators, and Program Management.
  • Participate in meetings and briefings to coordinate test events, recommend remediation, and provide lessons learned.
  • Perform Integrated Security Assessment Program (ISAP) and Technical Information Systems Security Reviews (TISSRs).
Qualifications:
Requirements
  • TS/SCI with Polygraph
  • Bachelor’s degree or higher and 3 years of pen tester experience OR High School/GED and 5 years of relevant experience OR Associate’s degree and 4 years of relevant experience OR Master’s degree or higher and 2 years of relevant experience
  • Knowledge of network security architecture concepts including protocols, components, and principles.
  • Knowledge of Risk Management Framework, in particular the technical controls within NIST 800-53.
  • Knowledge of system and application security threats and vulnerabilities, TCP/IP, and the OSI Model.
  • Knowledge of penetration testing principles, tools, and techniques.
  • Knowledge of threat research, vulnerability analysis, risk assessment, CVSS scoring, and Common Vulnerabilities and Exposures (CVE).
  • Strong problem-solving and critical-thinking skills with the ability to diagnose and troubleshoot technical issues.
  • Excellent problem solving and troubleshooting skills with a strong attention to detail.
  • Excellent verbal and written communication skills, including the ability to convey technical details in a clear and understandable manner to a variety of audiences.
  • Willingness to obtain and maintain Security or equivalent certification.
  • Willing to support up to 20% travel as needed.
Desired Qualifications
  • Experience evaluating systems and recommending changes to improve security posture.
  • Experience with penetration testing, system and network configuration, and familiarity with different operating systems and virtualization platforms.
  • Skill in conducting vulnerability scans and recognizing vulnerabilities and remediation recommendations.
  • Hands on experience using industry standard vulnerability assessment tools and techniques (NMAP, Nessus, Metasploit, Wireshark).
  • Experience with cloud environments.
  • Ability to research, develop, and maintain knowledge of penetration testing tools, tactics, techniques, and procedures.
  • Ability to incorporate threat intelligence data into attack or penetration testing scenarios.
  • Experience with simulated/emulated environments and/or virtualization technologies.
  • Experience with orchestration tools and virtualization environments (Docker, Kubernetes, etc.).
  • ICD 503 and the Government's certification and accreditation process.
  • System methodologies including: client/server, web hosting, web content servers, policy servers, directory servers, firewalls, WAN, MAN, LAN, switches, and routers.
  • Windows, Linux, Unix, and Mac OS X administration.
  • VMware, Xen, Hyper V and other virtualization platforms.
  • Configuring and supporting Windows, Linux, Unix, Mac OS, and other operating systems.
  • Configuring and supporting VMware, Xen, Hyper V and other virtualization platforms.
  • Information system engineering practices.
  • System certification activities and efforts related to system certification and accreditation.
  • Research, development, integration, and distribution of information systems security tools and associated documentation.
  • Education relevant to computer engineering, information security, information management, cyber security, and/or computer science.
  • Penetration Testing or Vulnerability Assessment specific certifications (such as CEH, PenTest , OSCP, GPEN) are a plus.

Salary.com Estimation for Penetration Tester in Chantilly, VA
$97,287 to $122,950
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Penetration Tester?

Sign up to receive alerts about other jobs on the Penetration Tester career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$92,729 - $118,963
Income Estimation: 
$118,965 - $150,754
Income Estimation: 
$141,372 - $178,696
Income Estimation: 
$174,706 - $217,614
Income Estimation: 
$76,865 - $99,440
Income Estimation: 
$92,729 - $118,963
Income Estimation: 
$118,965 - $150,754
Income Estimation: 
$141,372 - $178,696
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at VTG

VTG
Hired Organization Address Chantilly, VA Full Time
Overview: VTG is seeking a talented and experienced Full Stack Software Developer to join our dynamic and innovative tea...
VTG
Hired Organization Address Chantilly, VA Full Time
Overview: iota IT, a subsidiary of VTG, is seeking a Data Scientist in Chantilly, VA. Responsibilities: Develops and con...

Not the job you're looking for? Here are some other Penetration Tester jobs in the Chantilly, VA area that may be a better fit.

Penetration Tester

darkwolfsolutions, Herndon, VA

Penetration Tester

Dark Wolf Solutions, Herndon, VA

AI Assistant is available now!

Feel free to start your new journey!