ClearanceJobs logo

Lead Penetration Tester with Security Clearance

ClearanceJobs Annapolis Junction, Maryland, United States

onsitefull-time
Posted Jan 21, 2026Apply by Feb 20, 2026

Role & seniority: Lead Penetration Tester (senior/lead role) on an agile SAFe team

Stack/tools: Java, XML, Perl, HTML; Python, PowerShell, C, JavaScript; Burp Suite, WebInspect, AppDetective; Kali Linux; IPS/IDS; Cyber Kill Chain methodology

Top 3 responsibilities

  • Conduct internal and external penetration tests (including web apps) and provide mitigation strategies

  • Perform vulnerability risk assessments and support cyber security programs

  • Execute physical pentests, social engineering, and cyber incident response as needed

Must-have skills

  • TS/SCI w/FS P clearance (must be from NSA) with FS poly from MD customer (last poly within 6 years)

  • 5+ years of relevant experience

  • Web development/programming experience (Java, XML, Perl, HTML) and IT security risk assessments

  • Experience with web app and physical pentests; scripting in Python/PowerShell/C/C++/JavaScript

  • Familiarity with Burp Suite, WebInspect, AppDetective; Kali; IPS/IDS; Cyber Kill Chain

  • Strong collaboration with technical staff/customers; ability to manage multiple projects and adapt to changing priorities

Nice-to-haves

  • BS degree (or higher) and 8+ years of relevant experience

  • Certifications: GWAPT, GPEN, CEH, CISM, GWEB, CISSP

  • Location & work type: Not specified (location and work-type details not provided)

Full Description

Open Systems Technologies Corporation is a leader in the government contracting marketplace, providing Enterprise Security and Cloud Computing solutions to support large organizations. Our capabilities include supplying federal government entities and private businesses with software development, scientific and engineering technical assistance, systems integration, and enterprise security. Since its founding in 1996, OST has been committed to delivering high-quality, best-in-class results that bring added value to our clients while investing in our employees' futures by providing exciting projects to work on, and robust benefits to include technical training and certifications, relocation assistance and a 401K match with immediate vesting. Open Systems Technologies Corporation is seeking a Lead Penetration Tester to join a high-performing agile team using the Scaled Agile Framework ?SAFe? methodology. The selected candidate will work on a team of cyber Subject Matter Experts SMEs who are providing support to a large, complex technical program for preventing, identifying, containing and eradicating cyber threats to networks through monitoring, intrusion detection and protective security services on information systems including local area networks/wide area networks /LAN/WAN, commercial Internet connections, public facing websites, security devices, servers and workstations. She/he will be responsible for the overall security of Enterprise-wide information systems, and will collect, investigate, and report any suspected and confirmed security violations. Responsibilities: * Perform internal and external pentest against systems to determine vulnerabilities and offer mitigation strategies.

Perform web app pentests. Perform vulnerability risk assessment. Perform physical pentests and social engineering. Perform cyber incident response as needed for programs.

Required Qualifications: * CLEARANCE: TS/SCI w/FSP (must be from NSA). Must have a FS poly from the MD customer, last poly must be within the past 6 years, no CCAs * At least 5 years of relevant experience

Must have experience in web development and programming languages such as Java, XML, Perl and HTML. Must have extensive experience performing IT security risk assessments. Must have experience performing web app and physical pentests. Experience with programming/scripting in Python, Powershell, C, JavaScript, etc. Must have experience with or strong familiarity of the following Web Application tools; Burp Suite, Web Inspect, Appdetective. Must have experience with or strong familiarity of Kali. Must have experience with or strong familiarity of IPS/IDS solutions. Must have a strong understanding of the Cyber Kill Chain methodology. Must have the ability to effectively collaborate with technical staff and customers when necessary to form strategies and plan for continuous modernization and legacy integration. Must have experience managing multiple projects and quickly and effectively adjusting to shifting priorities and resolving issues.

Preferred Qualifications: * BS in a related feild and at least 8 years of relevant experience

Certifications in one or more of the following areas

  • GIAC Web Applications Penetration Tester/GWAPT
  • GIAC Penetration Tester/GPEN
  • Certified Ethical Hacker/CEH
  • Certified Information Security Manager/CISM
  • Certified Web Application Defender/GWEB
  • Certified Information System Security Professional/CISSP

BENEFITS OST is an Equal Opportunity Employer and has been operating since 1996 providing support on various contracts with Government agencies. We offer a comprehensive benefits package that includes 3 weeks paid time off, 11 Federal Holidays, medical/dental coverage, STD, LTD, Life Insurance, AD&D, 401k with up to 4% match, and end-of-year profit sharing.

multi-location

Cookies & analytics consent

We serve candidates globally, so we only activate Google Tag Manager and other analytics after you opt in. This keeps us aligned with GDPR/UK DPA, ePrivacy, LGPD, and similar rules. Essential features still run without analytics cookies.

Read how we use data in our Privacy Policy and Terms of Service.