Find Jobs
Find Jobs Near You – Available Work in Your Location
Cyber Security Vulnerability Researcher (Advanced)
Career Insights for Vulnerability Analyst / Penetration Tester
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Maryland data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Vulnerability Analyst or Penetration Tester probes for and exploits security vulnerabilities in web-based applications, networks and systems. Penetration Tests are designed to achieve a specific, attacker-simulated goal and should be requested by customers who are already at their desired security posture. A typical goal could be to access the contents of the prized customer database on the internal network, or to modify a record in an HR system. Vulnerability Assessments are designed to yield a prioritized list of vulnerabilities and are generally for clients who already understand they are not where they want to be in terms of security. The customer already knows they have issues and simply need help identifying and prioritizing them.
$121,766 / year median in Maryland
+3% projected growth
Job Description
Job Location Patuxent River, Maryland Location of Position Patuxent River, Maryland Work Arrangement On Site:
100% Position Type Full-Time/Regular Clearance Required? Yes Level of Clearance RequiredTS-SCI COLSA
is seeking a Cyber Security Vulnerability Researcher (Advanced) to support advanced vulnerability research, security assessments, and tool development for U.S. Navy cyber warfare programs. This position will also serve as a functional team lead, providing technical leadership and coordinating the work of team members supporting vulnerability research activities. This position is located on-site at Naval Air Station Patuxent River, Maryland. This position is contingent upon contract award. The selected candidate will be proposed as Key Personnel in accordance with proposal requirements. Duties & Responsibilities- Conduct research into fundamental computer and information science as theorists, designers, or inventors.
- Conduct research into cyber threats, adversarial offensive and defensive tools, techniques, and methods, and mitigation solutions.
- Develop solutions to problems in the field of computer hardware and software, with a focus on system security and vulnerability.
- Perform technical (evaluation of technology) and nontechnical (evaluation of people and operations) risk and vulnerability assessments of relevant technology focus areas, including local computing environments, networks and infrastructure, enclave boundaries, supporting infrastructure, and applications.
- Analyze the security of new or existing computer applications, software, or specialized utility programs and provide actionable results.
- Perform risk analysis, including threat, vulnerability, and probability of occurrence, whenever an application or system undergoes a major change.
- Identify issues and vulnerabilities associated with the development and implementation of operational programs.
- Serve as the functional lead, including coordinating and overseeing the tasking of other team members, tracking project progress, and participating in project, resource, and event planning.
Required Experience Required Qualifications:
- Bachelor's degree from an accredited college or university in Computer Science, Engineering, Information Technology, Cybersecurity, Data Science, Software Engineering, or a related discipline or equivalent.
- At least 10 years of relevant experience.
- Experience conducting cybersecurity vulnerability research, vulnerability assessments, or security assessments of computer hardware, software, networks, or applications
- Must obtain qualifications aligned with one or more of the following DoD Cyber Workforce Framework (DCWF) work roles within 30 days of contract start: 111, 221, 461, 511, 531, 541, 551, 612, or 622.
CWFModel ) .
- Must possess a current Top Secret security clearance with the ability to obtain SCI.
- Ability to interact and communicate with our clients and project/task sponsors
- Ability to work in a diverse team environment
- Ability to work in a fast-paced, high-performing team environment
- High degree of organizational and communication skills
Preferred Qualifications:
- Knowledge of adversarial threat representation tactics, techniques, and procedures
- Experience programming in Python
- Experience and knowledge of naval aviation acquisition programs
- Certification in either Microsoft or Linux OS Applicant selected may be subject to a government security investigation and must meet eligibility requirements for access to classified information.