Summary
Xtreme Solutions Inc is a company focused on providing cybersecurity solutions, and they are seeking an External Network Penetration Tester. The role involves conducting penetration testing against various internet-facing assets for multiple county departments to identify vulnerabilities and ensure data security.
Responsibilities
- Conduct external network and web application penetration testing and vulnerability assessments per NIST SP 800-115 methodology
- Attempt to obtain ePHI, PII, financial data, and privileged communications from external sources without causing service disruption
- Document all findings with risk ratings, evidence, and remediation recommendations for the Assessment report
- Attempt to avoid detection and evade department response efforts during testing windows, as scoped
Skills
- 4+ years of hands-on external network / web application penetration testing experience
- Proficiency with industry-standard tools (Burp Suite, Nmap, Metasploit, or equivalent)
- Strong understanding of OWASP Top 10 and common network attack vectors
- OSCP, GPEN, GWAPT, or CEH certification
- Experience testing government or healthcare-sector environments
Qualifications
Must Haves
- 4+ years of hands-on external network / web application penetration testing experience
- Proficiency with industry-standard tools (Burp Suite, Nmap, Metasploit, or equivalent)
- Strong understanding of OWASP Top 10 and common network attack vectors
Nice to Haves
- OSCP, GPEN, GWAPT, or CEH certification
- Experience testing government or healthcare-sector environments
Benefits
- Contract
- Fully remote; must remain within the continental United States.