LEAD CYBER SECURITY ENG SPEC (Penetration Testing Engineer)
Employment Type: Full-Time (Contingent Upon Contract Award)
Concurrent Technologies Corporation
Location: On-Site Washington, DC (Metro Area)
Minimum Clearance Required: Active TS/SCI with FRD/RD/NATO eligibility or access required
Clearance Level Must Be Able to Maintain: TS/SCI with FRD/RD/NATO eligibility or access required
This position is contingent upon contract award. Any offer of employment is dependent upon CTC's successful contract award and funding authorization. Candidates may be contacted for interviews and pre-employment processing prior to award notification
Concurrent Technologies Corporation (CTC) is seeking a highly experienced Senior Penetration Testing Engineer (Key Personnel) to support a mission-critical Department of Defense cybersecurity program. The selected candidate will serve as a senior technical Subject Matter Expert (SME), leading advanced penetration testing, vulnerability assessments, software assurance activities, and secure systems engineering efforts across complex classified environments. The ideal candidate possesses extensive experience identifying, analyzing, and mitigating cybersecurity risks across enterprise networks, cloud environments, cross-domain solutions (CDS), and mission-critical systems. This individual will collaborate closely with government stakeholders, engineers, and cybersecurity teams to improve system resilience while ensuring compliance with DoD cybersecurity requirements and best practices.
Key Responsibilities
- Lead and perform advanced penetration testing against enterprise applications, operating systems, networks, and cloud-hosted environments.
- Conduct comprehensive vulnerability assessments and provide technical recommendations for remediation and risk reduction.
- Evaluate software security throughout the Software Development Lifecycle (SDLC), ensuring secure coding practices and software assurance methodologies are implemented.
- Assess and validate secure cloud architectures, configurations, and security controls.
- Support Cross Domain Solution (CDS) security assessments, testing, and accreditation activities.
- Develop technical reports documenting findings, exploit paths, risk assessments, and recommended corrective actions.
- Validate vulnerability remediation efforts through retesting and verification activities.
- Support patch management strategies by identifying security deficiencies and verifying remediation effectiveness.
- Collaborate with system engineers, software developers, ISSOs, and government personnel to strengthen overall cybersecurity posture.
- Provide technical guidance on emerging cyber threats, attack methodologies, and defensive countermeasures.
- Assist with cybersecurity engineering efforts supporting Risk Management Framework (RMF) compliance and continuous monitoring initiatives.
- Mentor junior cybersecurity personnel and provide subject matter expertise during technical reviews and assessments.
Required Qualifications
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related technical discipline. Equivalent professional experience may be considered.
- 10+ years of overall cybersecurity, information assurance, or cyber engineering experience.
- At least 2 years of recent hands-on experience in each of the following areas:
- Software Assurance
- Penetration Testing
- Vulnerability Assessment
- Patch Management
- Secure Cloud Technologies
- Cross Domain Solutions (CDS)
- Demonstrated experience performing penetration testing using industry-standard methodologies and tools.
- Strong understanding of network security, operating systems, application security, and cybersecurity architectures.
- Experience preparing technical assessment reports and presenting findings to technical and executive stakeholders.
- Excellent analytical, troubleshooting, and communication skills.
- Certified Ethical Hacker (CEH)
- Certified Information Systems Security Professional (CISSP)
Preferred Qualifications
- Experience supporting Department of Defense or Intelligence Community cybersecurity programs.
- Familiarity with NIST Risk Management Framework (RMF), NIST 800-53, DISA STIGs, and DoD cybersecurity policies.
- Experience supporting classified cloud environments.
- Knowledge of secure software development practices and DevSecOps methodologies.
- Experience with automated vulnerability management and enterprise security assessment tools.
- Ability to lead technical teams and interface directly with Government leadership.
Why CTC?
- Mastering the future of manufacturing: Be at the forefront of technological advancements in advanced manufacturing.
- Innovate for impact: Your work will push the boundaries of what's possible, from next-generation armaments to groundbreaking environmental solutions that directly impact critical missions and the lives of those protecting our country.
- Work alongside the best: Collaborate with a passionate team of engineers and scientists, united by a shared drive to excel and a commitment to delivering outstanding results.
- Leave your mark: CTC is more than just a job. It's a launchpad for your engineering dreams.
- Competitive salary and benefits package.
- Although our work at CTC is extremely important, we also recognize the need for our employees to maintain a proper mix of work and personal life.
- Visit www.ctc.com to learn more.
Join us! CTC offers exceptional career growth, cutting edge technology, educational opportunities, and recognition for quality work.
https://concurrent-technologies-corporation.breezy.hr/
Staffing Requisition: SR# 2026-0094
"We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability status, protected veteran status, or any other characteristic protected by law."