Senior Penetration Tester Job at GDR Defense, Vermont

Wlp2RWd1TU94akhOZHFaRkorWlg1RmVMa1E9PQ==
  • GDR Defense
  • Vermont

Job Description

"Join GD Resources for dynamic opportunities in business management and IT, where innovation meets excellence."




About the Company:

GD Resources is a Veteran Women-Owned Business Management and Information Technology company committed to excellence. GD Resources provides dynamic opportunities for veterans and professionals alike to contribute to innovative projects and drive success in a collaborative and supportive environment. Join us to make a difference, advance your career, and grow with a company that values integrity, diversity, and continuous improvement.

Senior Penetration Tester / Application Security Engineer

Location: Remote (U.S.-based preferred)
Duration: 1.5 Months

Clearance: Preferred (Public Trust / Secret / Top Secret varies by project)

About the Role

We are seeking a highly skilled Senior Penetration Tester / Application Security Engineer to join our cybersecurity team. This role focuses on identifying, exploiting, and validating vulnerabilities across web applications, APIs, mobile platforms, and enterprise infrastructure.

You will perform real-world attack simulations, partner with engineering teams, and provide actionable remediation guidance to strengthen the organization's security posture.

Key Responsibilities

  • Conduct web application, API, mobile, and network penetration testing
  • Perform manual and automated vulnerability assessments
  • Identify and exploit vulnerabilities aligned with OWASP Top 10
  • Execute end-to-end penetration testing lifecycle :
    • Reconnaissance
    • Scanning & enumeration
    • Exploitation
    • Post-exploitation
    • Reporting
  • Perform threat modeling and risk assessments
  • Test authentication, authorization, and session management controls
  • Conduct API security testing (REST, SOAP, GraphQL)
  • Simulate real-world attack scenarios (red team-style engagements)
  • Validate vulnerabilities and develop proof-of-concepts (PoCs)
  • Collaborate with DevOps and engineering teams to drive remediation
  • Produce detailed technical reports and executive summaries
  • Support secure SDLC and DevSecOps initiatives
  • Stay current with emerging threats, tools, and techniques

Required Qualifications

  • 5+ years of experience in penetration testing or application security
  • Strong expertise in:
    • Web application security vulnerabilities (OWASP Top 10)
    • API security testing
    • Network and infrastructure security
  • Hands-on experience with tools such as:
    • Burp Suite, OWASP ZAP, Nmap, Nessus, Metasploit, SQLMap
  • Experience with manual testing techniques (not just automated scans)
  • Knowledge of:
    • Authentication & access control flaws (IDOR, OAuth, JWT, etc.)
    • Common exploits (SQLi, XSS, CSRF, SSRF, RCE)
  • Familiarity with scripting (Python, Bash, or similar)
  • Experience with Linux-based testing environments (e.g., Kali Linux)
  • Strong understanding of:
    • TCP/IP, DNS, firewalls, and network protocols
  • Excellent communication and reporting skills

Preferred Qualifications

  • Experience with:
    • Cloud security (AWS, Azure, GCP)
    • Containerized environments (Docker, Kubernetes)
    • CI/CD and DevSecOps integration
  • Background in:
    • Red teaming or adversary simulation
    • Threat modeling methodologies (e.g., STRIDE)
  • Certifications such as:
    • OSCP, CEH, Security+, CySA+, GPEN, GWAPT
  • Experience working in federal or regulated environments (NIST, RMF, FedRAMP)

Job Tags

Remote work

Similar Jobs

GAATCO

Class A Local Truck Driver Job at GAATCO

 ...NO EXPERIENCE NEEDED Full job description Job Description: CDL-A driving job. This lane is home daily. The position is for a dedicated account serving a...  ...home time. ~$1,200-1500+ Average Weekly Pay ~ Drivers can earn trip pay based on a calculation of... 

American Logistics Authority

Entry-Level Freight Dispatcher (Remote) - Earn $2,200 to $3,000 Weekly ($114,400-$156,000 Annually) Job at American Logistics Authority

Entry-Level Freight Dispatcher (Remote) Earn $2,200 to $3,000 Weekly ($114,400$156,000 Annually) We are hiring motivated individuals to join our logistics team as Freight Dispatchers. This is a remote position with strong income potential. Candidates must already ...

26FIVE Global Lab

Graphic Designer - Intern Job at 26FIVE Global Lab

 ...Join the 26FIVE team as our newest Graphic Design Intern. We are a focused, passionate, driven, fun-loving, supportive, and successful NYC-based team looking for a Graphic Design Intern who shares our outlook and wants to work and learn in a growth-driven environment... 

Olde Hearth Bread Company

Bakery Delivery Driver Job at Olde Hearth Bread Company

 ...Wholesale Bakery Driver - Tuesday through Sunday 2 am - 10 am. Duties and Responsibilities: Delivery drivers are responsible for the delivery of the products of...  ...You must be available to work late night and/or morning shifts. You must be self-motivated, reliable... 

Czarnowski Collective

Event Producer Job at Czarnowski Collective

 ...Company Czarnowski is one of the four studios of the Czarnowski Collective. It combines operations, strategy, design, and fabrication to create exhibits and events that engage communities, generate brand enthusiasm, and educate consumers. Its been over 75 years since we...