Cookies & analytics consent
We serve candidates globally, so we only activate Google Tag Manager and other analytics after you opt in. This keeps us aligned with GDPR/UK DPA, ePrivacy, LGPD, and similar rules. Essential features still run without analytics cookies.
Read how we use data in our Privacy Policy and Terms of Service.
🤖 15+ AI Agents working for you. Find jobs, score and update resumes, cover letter, interview questions, missing keywords, and lots more.

Leidos • Ashburn, Virginia, United States
Salary: $87,100 - $157,450 / year
Role & seniority: Senior Penetration Tester (highly skilled/experienced; opportunities aligned to T3/T4 levels)
Stack/tools: Kali Linux; Metasploit; Burp Suite Pro; Cobalt Strike/Sliver; Tenable Nessus/Security Center; Bloodhound; BladeRF/HackRF; Hak5; Wireshark/tcpdump; Prowler; Scoutsuite; plus cloud, mobile, and web app pen testing in enterprise environments
Conduct penetration tests on CBP systems (web app, network, infrastructure) per best practices
Produce detailed findings and actionable remediation recommendations; partner with SOC, engineering, and security teams to validate and remediate vulnerabilities
Support tool/methodology improvements and knowledge sharing; assist in verifying Bug Bounty findings and remediations
3–5 years (T3) to 5–8 years (T4) in pen testing and vulnerability assessment; emphasis on web apps and enterprise networks; 3–5 years in incident detection/response, malware analysis, or forensics
Experience in at least one specialty (network, web app, AD, mobile, cloud, or RF pentesting)
Proficiency with listed tools (e.g., Kali, Metasploit, Burp Suite Pro, Cobalt Strike/Sliver, Nessus, Wireshark)
Core pen-testing certification (OSCP, GPEN, CRTO, OSWP, GWAPT, or AWS Solutions Architect Associate)
Ability to obtain/maintain CBP background investigation and security clearance
CISSP or GISF; OSCE/OSEE; AWS Security Specialty; CKA
Red Team exper
Description
Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local area networks/wide area networks (LAN/WAN), commercial Internet connection, public facing websites, wireless, mobile/cellular, cloud, security devices, servers and workstations. The CBP SOCis responsible fortheoverall security of CBP Enterprise-wide information systems, and collects, investigates, and reports any suspected and confirmed securityviolations.
Weareseekinga highly skilled and experienced Penetration Tester to join our team supportingtheCBP SOC. Thiscandidate willbe responsible forconducting comprehensive security assessmentsofCBPFISMAsystems with the purpose ofidentifyingvulnerabilities and providing actionable recommendations to enhance the security posture of CBP's critical systems and networks. This role requires a deep understanding of offensive cybersecurity techniques, strong analytical capabilities,detailed report writing skillsand the ability to workas part of a team.
Primary Responsibilities
Conduct penetration testing activities aligned withCBPand industry best practices. Performinternal and externalweb application, network, and infrastructurepentestassessments using commercial and open-source tools. Execute testing operations safely andin accordance withdefined operational guidelines. Produce detailed reports outlining findings and actionable remediation recommendations. Partner with SOC, engineering, and security teams tovalidateand remediate vulnerabilities. Support tool development,methodologyimprovements, and team-wide knowledge sharing. Assistin verifying Bug Bounty findings and remediations
Basic Qualifications
Bachelors’ degree from an accredited college in a related discipline, or equivalent experience/combined education, with3 to 5(T3)/5 to 8(T4)years of professional experience; or 3 to 5 years of professional experience with a Masters’ degree.
3(T3) /5(T4) years in Pen Testing and Vulnerability Assessment, with specific emphasis on web application and enterprise network environments.
3-5 (T3) 5-8(T4) years of professional experience in incident detection and response, malware analysis, or cyber forensics.
Networkpentesting Web applicationpentesting Active directorypentesting Mobile applicationpentesting Cloud infrastructurepentesting RFpentesting
Experience With1-3 (T3)3-5(T4)of The Tools Listed Below
Kali Linux Metaspoilt Burp suite pro Cobalt Strike /Sliver Tenable Nessus Tenable Security Center Bloodhound BladeRF/HakRF Hak5 equipment Wireshark /tcpdump Prowler Scoutsuite
OSCP GPEN CRTO OSWP GWAPT AWS Solutions Architect Associate
Clearance: In addition to specific security clearance requirements all CBP SOC employeesare required tosuccessfully complete a CBP Background Investigation to support this program
Preferred Qualifications
CISSP GISF GXPN OSCE OSEE AWS Certified Security - Specialty Certified Kubernetes Administrator (CKA) Ability to brief seniorgovernment leadershiponpentestingrequirements and results Red Team operator experience Experience creating and updating SOPs Analytical and Problem-Solving Skills Communication Skills
If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.
Original Posting
January 23, 2026
For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range
Pay Range $87,100.00 - $157,450.00
The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
About Leidos
Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.
Pay And Benefits
Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.
Securing Your Data
Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.
If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.