Point your AI agent at freehire and let it find you a job.

Get the CLI →

Amatriot Group

New

Expert Penetration Tester

Posted 4 views
Discussion

Summary

Leads advanced security assessments and hands-on penetration testing, builds testing tools and automation, and mentors junior testers while standing up a purple team for red/blue exercises. Works against NIST SP 800-53/FedRAMP controls using tools like Linux, Nessus, Carbon Black, and Fidelis; hybrid role based in Washington, DC.

Location: Washington, DC
Security Clearance:
Active DOE Q-Clearance or Top Secret (TS) equivalent or eligible to obtain.


Job Type: Full-Time
Target Salary Range*: $200,000 - $215,000

*This represents the potential salary range for this position depending on education level, years of experience and/or certifications in addition to other position specific requirements which may impact salary


Position Overview

Amatriot is seeking an experienced Expert Penetration Tester to lead advanced security assessments and contribute to the development and execution of penetration testing strategies. This role combines hands-on testing with leadership, mentoring, and collaboration across cybersecurity disciplines.

Work Location: Hybrid, DC (3 days per week onsite)


Key Responsibilities

Security Assessments and Penetration Testing

  • Lead and perform advanced security assessments, including hands-on penetration testing of systems and applications.

  • Identify vulnerabilities, assess risks, and deliver clear, actionable remediation recommendations.

  • Develop and maintain assessment plans aligned with NIST SP 800-53 and FedRAMP Cloud Security Controls.

  • Execute security assessments according to defined plans and document findings accurately and promptly.

Tools and Automation

  • Design, develop, and maintain tools and scripts to automate and enhance penetration testing activities.

Team Leadership and Collaboration

  • Manage and mentor a small team of junior penetration testers, providing technical guidance and training.

  • Build and lead a Purple Team to perform joint red/blue team exercises with customer sites.

  • Communicate technical findings effectively to technical teams and executive stakeholders.

Security Operations and Risk Management

  • Support secure systems operations and maintenance, including security validation and accreditation activities.

  • Analyze and mitigate system security threats throughout the lifecycle, including risk assessments and implementation of security engineering controls.

  • Ensure compliance with business continuity, operations security, insider threat detection, physical security analysis, and regulatory requirements.


Qualifications

Education

  • Bachelor's degree in a related field. [Required]

Experience

  • 8+ years of relevant experience in cybersecurity and penetration testing, or an equivalent combination of education and experience. [Required]

Clearance

  • Active DOE Q-Clearance or Top Secret (TS) equivalent, or eligible to obtain. [Required]

Skills

  • Strong proficiency in vulnerability analysis, risk remediation, and reporting.

  • Ability to clearly replicate vulnerabilities and provide actionable mitigation steps.

  • Familiarity with Linux, Tenable Nessus, Forescout, Carbon Black, Invicti, Scythe, Rubrik, and Fidelis.

  • Excellent written and verbal communication skills, with the ability to present technical findings to executive audiences.


Preferred Qualifications

Certifications

  • OSCP (Offensive Security Certified Professional)

  • OSCE (Offensive Security Certified Expert)

  • CEH (Certified Ethical Hacker)

  • CISSP (Certified Information Systems Security Professional)

Skills

Apply

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available