TestPros
Penetration Tester
Job Summary
TestPros is seeking skilled Penetration Testers to conduct cybersecurity assessments and provide technical assistance for the U.S. Department of Health and Human Services. The role involves performing penetration tests on applications, networks, and systems, and preparing detailed reports with findings and recommendations. Candidates should have proven experience in vulnerability assessment, security analysis, and familiarity with security frameworks and tools. The position emphasizes collaboration with stakeholders, staying current with industry best practices, and supporting organizational security improvements.
Required Skills
Benefits
Job Description
Company Overview
TestPros is a successful and growing business, established in 1988 to provide Information Technology (IT) technical support services to a wide range of Commercial and U.S. Federal, State, and Local Government customers. Our capabilities include Program Management, Program Oversight, Process Audit, Intelligence Analysis, Cyber Security, NIST SP 800-171 Assessment and Compliance, Computer Forensics, Software Assurance, Software Testing, Test Automation, Section 508 and WCAG Accessibility Assessment, Localization Testing, Independent Verification and Validation (IV&V), Quality Assurance (QA), Compliance, and Research and Development (R&D) services. TestPros is an Equal Opportunity Employer.
TestPros delivers innovative independent IT assessment solutions to critical challenges facing the nation and the world. We support the U.S. Federal Government and Commercial clients within the continental USA. TestPros is dedicated to making lives better, safer and more secure.
Job Summary
TestPros is seekingskilled Penetration Testers to conduct cybersecurity assessments and provide technical assistance for the U.S. Department of Health and Human Services (HHS), Office of Inspector General (OIG). The Penetration Tester will play a critical role in identifying vulnerabilities within HHS systems and applications, assisting in improving the overall security posture of the organization.
Position:Full-time
Citizenship: U.S. Citizenship
Location:The Call Orders will direct the location of the work to be either remote, at the Contractor’s site, or at an HHS-defined location within the United States of America.
Clearance:Clearable to public trust clearance, Secret or TS clearance a plus
Key Responsibilities:
Conduct Penetration Testing:
- Perform comprehensive penetration tests on applications, networks, and systems to identify security vulnerabilities.
- Utilize industry-standard tools and methodologies to assess security controls and compliance.
Reporting:
- Prepare detailed reports documenting findings, vulnerabilities, and recommendations for remediation.
- Present findings to stakeholders, highlighting risks and suggested improvements.
Collaboration and Technical Assistance:
- Work closely with HHS OIG staff to provide technical assistance and training on identified vulnerabilities and security best practices.
- Collaborate with project teams to ensure findings are addressed and improvements are implemented.
Continuous Learning:
- Stay current with emerging threats, vulnerabilities, and industry best practices to enhance penetration testing techniques.
Qualifications:
- Proven experience in penetration testing, vulnerability assessment, and security analysis.
- Strong understanding of security frameworks and methodologies (e.g., OWASP, NIST).
- Proficiency with penetration testing tools and software.
- Excellent analytical and problem-solving skills.
- Relevant certifications (e.g., CEH, OSCP) are preferred.
Benefits
TestPros offers a competitive salary, medical/dental/vision insurance, life insurance, paid time off, paid holidays, 401(k) retirement plan with company match, opportunities for professional growth, cell phone discounts, and much more! All benefits are per TestPros current policies and are subject to change without notice. Benefits are available to full-time employees.
TestPros, Inc. is an Equal Opportunity Employer.
EEO Statement
All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, marital status, age, national origin, protected veteran status, or disability. VEVRAA Federal Contractor.
TestPros
Since 1988, TestPros has provided leading IT compliance services to both government & commercial clients, ensuring regulatory adherence.
See more jobsSafe Remote Job Search Tips
Verify Employer Thoroughly
Research the company's identity thoroughly before applying. Check for a professional website with contacts, active social media, and LinkedIn profiles. Verify details across platforms and look for reviews on Glassdoor or Trustpilot to confirm legitimacy.
Never Pay to Get a Job
Legitimate employers never require payment for applications, training, background checks, or equipment. Always reject upfront payment requests or demands for bank details, even if they claim it's for purchasing necessary work gear on your behalf.
Safeguard Your Personal Information
Protect sensitive data like SSN, bank details, or ID copies. Share this only after accepting a formal, written job offer. Ensure it's submitted via a secure company system or portal, never through insecure channels like standard email attachments.
Scrutinize Communication & Interviews
Watch for communication red flags: poor grammar, generic emails (@gmail), vague details, or undue pressure. Be highly suspicious of interviews held only via text or chat apps; legitimate companies typically use video or phone calls.
Beware of Unrealistic Offers
If an offer's salary or benefits seem unrealistically high for the work involved, be cautious. Research standard pay for similar roles. Offers that appear 'too good to be true' are often scams designed to lure you into providing information or payment.
Insist on a Formal Contract
Always secure and review a formal, written job offer or employment contract before starting work or sharing final personal details. Ensure it clearly defines your role, compensation, key terms, and conditions to avoid misunderstandings or scams.