FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Penetration Tester
QuesTek Europe ABPenetration Tester for OCH Technologies conducting cybersecurity assessments on FAA infrastructure systems and networks. Leading testing efforts while ensuring compliance with established Rules of Engagement.
Posted 7/28/2026full-timeWashington, DC • District of Columbia, Washington • 🇺🇸 United StatesMid-LevelSeniorWebsite
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates extensive experience in penetration testing, including network, system, and web application assessments, while adhering to formal Rules of Engagement. Proficient in utilizing advanced penetration testing tools and frameworks to identify and exploit vulnerabilities across various environments.
Highest-signal resume keywords
Penetration Testing ExperienceMetasploit ProficiencyWeb Application Testing (OWASP)Red Teaming Certification (OSCP Preferred)Cloud Penetration Testing (AWS, Azure)
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Penetration TestingNetwork Vulnerability AssessmentWeb Application TestingExploit DevelopmentRegression TestingNetwork Protocols UnderstandingFirewall ConfigurationCloud Security TestingICS/OT Environment TestingWireless Security Testing
Tools & Technologies
MetasploitBurp SuiteNMapCobalt StrikeBloodHoundImpacketNucleiPacuAzureHoundHackRF
Certifications & Qualifications
OSCPOSCEOSWPOSWECEHECSAGCIHGPENCNDGCFA
Industry Keywords
CybersecurityRed TeamBlue TeamRules of EngagementPenetration Test ReportsAvionics SecurityCritical InfrastructureLateral MovementAdversary SimulationFAA-Approved Tools
Tech Stack
Tools & technologiesAWSAzureCloudCyber SecurityFirewallsSwitching
About the role
Key responsibilities & impact- Execute penetration tests against NAS and Mission Support systems, networks, and applications following approved Rules of Engagement and test plans.
- Identify and exploit vulnerabilities in network infrastructure, operating systems, web applications, and databases.
- Participate in red team and blue team exercises in simulated environments.
- Execute attack scenarios and document findings.
- Document all testing activities, findings, and exploitation paths in Penetration Test Reports (PTRs).
- Perform regression penetration tests to validate remediation of previously identified vulnerabilities.
- Support aircraft cyber testing activities including avionics and flight system security assessments when directed.
- Support specialized assessments of edge devices, firewalls, load balancers, and other network infrastructure components.
- Assess and document the potential for lateral movement when access is gained during testing.
- Report high-risk findings immediately.
- Maintain and update penetration testing tools and lab environments. All tools must be FAA-approved prior to use.
- Support the Penetration Testing Lead in developing Rules of Engagement and test plans for upcoming engagements.
Requirements
What you’ll need- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Mathematics, or Physics from an accredited institution
- A minimum of five (5)+ years of hands-on penetration testing experience, including network, system, and web application testing.
- At least 2 years of relevant experience must be recent (performed within the last 3 years).
- Proficiency with Metasploit, Burp Suite, nMap, and related penetration testing frameworks.
- Experience working within formal Rules of Engagement and producing structured penetration test reports.
- Understanding of network protocols, routing, switching, firewall configurations, and common misconfigurations.
- Experience with web application testing following OWASP methodology.
- Candidate must have the ability to obtain and maintain a Public Trust
- At least one Red Teaming certification: OSCP, OSCE, OSWP, OSWE, CEH, ECSA, CEH Practical, ECSA Practical, LPT Master, GCIH, GPEN, GWAPT, GXPN, or GAWN.
- Blue Teaming certifications are also accepted: CND, CNDA, GCIH, GCIA, GDAT, GDSA, GCED, or GCFA. OSCP or GPEN preferred.
- Experience testing ICS/OT environments or critical infrastructure systems.
- Experience with wireless security testing or satellite communication systems.
- Experience with cloud penetration testing (AWS, Azure).
- Familiarity with aircraft systems, avionics, or aviation communication protocols.
- Prior red team experience in a government or military context.
- C2 frameworks (Cobalt Strike, Sliver, Mythic) for adversary simulation beyond Metasploit.
- BloodHound and Impacket for Active Directory attack path analysis and lateral movement.
- Nuclei for automated vulnerability detection at scale.
- Cloud pen testing tools (Pacu, AzureHound) for cloud-hosted environments.
- SDR/HackRF tools for wireless and RF communications testing.
- AI-assisted fuzzing tools for expanding exploit discovery on complex systems.
Benefits
Comp & perks- Paid time off and Holidays
- Medical, Dental, and Vision Insurance
- Paid Parental Leave
- Short-term disability, long-term disability, and life insurance - Employer Paid!
- 401(k)
- Additional Voluntary Life Insurance
- Tuition Reimbursement & More!