- Home
- Jobs
- Cybersecurity
- Penetration Tester

Penetration Tester at Dark Wolf Solutions
Ogden, UT, Salt Lake City, UTFull-timeCybersecurityPosted about 1 month ago
Apply with PipelineAbout the Role
<div>
<p><strong>Dark Wolf</strong><span style="font-weight: 400;"> is looking for a</span><strong> Penetration Tester</strong><span style="font-weight: 400;"> who will plan and perform continuous cross-domain vulnerability assessments, full-scale penetration testing and red team operations. The ideal candidate must display familiarity with both cloud-based and on-premises Windows, Linux and mobile operating systems and environments and be able to conduct network and application security vulnerability analysis. The candidate will analyze both commercial and federal mission systems to help identify potential vulnerabilities and help to provide and implement remediation strategies to customers for these issues. The successful candidate must have prior experience with multiple facets of penetration testing, using and ideally developing or contributing to both open source and proprietary tools. Conducts open-source research on clients and their infrastructure to help identify data leakage that could lead to vulnerabilities. Leverages programming knowledge to develop custom tools and exploits both for targeting unique client systems and building internal testing capabilities. Prepares assessments and presentations of analyses and findings. Develops and maintains analytical procedures to meet changing requirements and ensure effective operations. This position requires full-time onsite work at Hill Air Force Base in Ogden, UT. </span></p>
<p><strong>Duties/Responsibilities:</strong></p>
<p><span style="font-weight: 400;">Candidates may be asked to move between projects and participate in either single engagement penetration tests or continuous engagement Red Teams. The position will primarily require the candidate to lead the technical aspect of a specific, long-term penetration testing effort, helping to conduct varied testing efforts against applications and networks for the federal government. Candidates may also be placed on a larger Red Team and be expected to develop a continuous campaign-based assessment that emulates the target’s real-world adversaries by developing new tools specific to the target. Candidates will be expected to integrate into ongoing testing efforts, requiring subject matter expertise in multiple disciplines of vulnerability testing and assessment, the ability to interact and liaison directly with clients and a strong ability to write and document findings. Travel is required on an occasional basis for clients requiring onsite testing. </span></p>
<p><strong>Required Qualifications:</strong></p>
<ul>
<li style="font-weight: 400;"><span style="font-weight: 400;">3+ years’ experience in three or more specific areas to include: intelligence analysis, network engineering, networking security, penetration testing, red team operations, hardware engineering, software engineering, exploit development, reverse engineering, vulnerability assessment, physical security assessments, social engineering</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Strong knowledge of testing simulated intrusion attempts and physical penetration testing</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Proficiency in the testing and assessment of mobile operating systems, embedded systems and/or IoT devices</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Familiarity with unmanned aerial vehicles and associated mobile and wireless technologies</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Proficiency of various operating systems: Windows, iOS, Android, Mac or Linux</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Proficiency with cloud technology and deployments: Amazon Web Services, Microsoft Azure, Google Cloud Platform</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Moderate competency in at least one scripting and/or coding language</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Working knowledge of software development, with preference for experience working around software development teams and efforts</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Experience in network analysis methodologies</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Experience in drafting reports, documenting case details, and being able to summarize findings and recommendations based on system analysis</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Demonstrated strong written and verbal communication skills</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">BS (or equivalent) in Cybersecurity, Information Security, IT, EE, Network Engineering, Computer Science, or related field</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Willingness to travel</span></li>
<li style="font-weight: bold;"><strong>US Citizenship and an active Top Secret/SCI security clearance required</strong></li>
</ul>
<p><strong>Desired Qualifications:</strong></p>
<ul>
<li style="font-weight: 400;"><span style="font-weight: 400;">Familiarity with container technologies to include container orchestration and microservices</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Experience with DevSecOps and adjacent tools; strong preference for experience with Kubernetes, software development pipelines</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Security Certification: CEH, OSCP, PNPT or similar security/pentesting certs</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Experience employing advanced forensic tools and techniques for attack reconstruction, including dead system analysis and volatile data collection and analysis</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Experience in performing post-incident computer forensics without destruction of critical data.</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Desired experience ensuring quality assurance and the spreading of best practices</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">MS degree in technical field</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Security+ Certification</span></li>
</ul>
<p>This position is located in Ogden, UT. </p>
<p>We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.</p>
</div>
<div>In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.</div>
Related Roles
Data Privacy SME
Dark Wolf Solutions
Washington DC Metro AreaCybersecurity Analysts
Dark Wolf Solutions
Washington DC Metro AreaDefensive Cyber Operations (DCO) Analyst
Dark Wolf Solutions
Washington DC Metro AreaSystems Engineer
Dark Wolf Solutions
Colorado Springs, COCybersecurity Systems Engineer
Dark Wolf Solutions
Herndon, VA or Colorado Springs, COMid-Level DevSecOps SME / Cloud Security Engineer (ISSE)
Dark Wolf Solutions
Herndon, VA or Colorado Springs, CO