Why This Role Stands Out
This role offers a fantastic opportunity to deepen your expertise in internal network penetration testing and directly impact the security posture of various facilities, developing invaluable skills in offensive security techniques. You'll thrive here if you have a strong background in Active Directory attack paths and enjoy hands-on testing in diverse environments, making this a compelling next step in your cybersecurity career. Apply now to join a team dedicated to strengthening defenses through proactive vulnerability discovery.
Quick Overview
Job Description
Position Summary
Executes internal network penetration testing from two pre-determined footholds - an unauthenticated physical network port and a simulated-phishing authenticated workstation - across County facilities, testing servers, workstations, endpoints, and password strength.
Key Responsibilities
• Physically connect to County network ports to simulate an unauthenticated internal attacker.
• Simulate a successful phishing/Trojan compromise from an authenticated workstation foothold.
• Attempt password cracking and lateral movement while evading department detection and response efforts.
• Document internal attack paths, exploited vulnerabilities, and business impact for each department report.
Requirements:Required Qualifications
• 4+ years of internal/network penetration testing experience, including Active Directory attack paths.
• Comfort working onsite at client facilities, including data centers and administrative offices.
• Experience with internal recon and lateral movement tooling (BloodHound, Responder, or equivalent).
Preferred Qualifications
• OSCP or GPEN certification.
• Experience testing in HIPAA-regulated or government network environments.
Travel
Onsite travel required to department locations in San Bernardino, Colton, Redlands, Rialto, Fontana, Ontario, Rancho Cucamonga, Montclair, Victorville, Hesperia, Apple Valley, Adelanto, Barstow, Needles, Big Bear Lake, and Yucca Valley; travel, lodging, and per diem are firm-borne.
Similar jobs
- TI
Cybersecurity Engineer
Auto ApplyTillster
San Diego Office🇺🇸$80k - $110k/yrHybrid7 weeks agoDockerGCPAWS+18Technology - TE
Information Systems Security Manager (ISSM)
NewTekSynap
Fort Belvoir, Virginia🇺🇸$130k - $150k/yrHybrid2 hours agoData EntryTechnology - FO
Cyber Security Analyst
NewFedEx Office
Memphis, TN🇺🇸$7.1k/moHybrid17 hours agoExpressMFAMachine Learning+11Technology - FO
Sr Cyber Security Analyst
FedEx Office
Memphis, TN🇺🇸$9.2k - $16.6k/yrOn-site1 week agoSAFeDockerExpress+15Technology - RA
Senior Principal Software Security Engineer
NewRaytheon
Austin, TX🇺🇸$132.4k - $251.6k/yrHybrid17 hours agoScrumAgileC+++3Technology - RA
Embedded Security Software Engineer II (Onsite)
NewRaytheon
Miami, FL🇺🇸$68.9k - $131.1k/yrHybrid17 hours agoScrumAgileC+++3Technology - SE
Security Watch Center Analyst
NewSecuritas
Los Angeles, CA🇺🇸Hybrid2 days agoSchedulingAdministrative - SE
Global Security Operations Center Threat Monitoring Specialist
NewSecuritas
San Jose, CA🇺🇸Hybrid2 days agoMicrosoft OfficeTechnology - ST
Security Technician
Securitas Technology
West Palm Beach, FL🇺🇸On-site2 months agoMicrosoft OfficeAdministrative - ST
Security Technician
Securitas Technology
Orlando, FL🇺🇸On-site2 months agoMicrosoft OfficeAdministrative - AU
Security Solutions Engineer II
NewAllied Universal
Fort Myers, FL🇺🇸Hybrid17 hours agoLoad BalancingVMwareTechnology - SA
Information Systems Security Officer
NewSAIC
Chantilly, VA🇺🇸$120k - $160k/yrRemote17 hours agoSAFeAWSEncryption+3Technology