Ashburn Consulting LLC is seeking a Senior Systems Security Specialist to perform internal and external penetration testing of networks web applications APIs and cloud environments to identify security vulnerabilities and exploit paths and other related tasks.
Conduct internal and external penetration testing of networks web applications APIs and cloud environments to identify security vulnerabilities and exploit paths.
Perform red team engagements simulating real-world adversary tactics techniques and procedures (TTPs) aligned with MITRE ATT&CK.
Execute vulnerability assessments and validate remediation efforts through retesting and technical verification. Develop comprehensive penetration testing reports including executive summaries risk ratings proof-of-concept evidence and actionable remediation guidance.
Perform threat modeling and attack surface analysis to identify high-risk exposure areas and privilege escalation pathways.
Conduct secure configuration reviews of operating systems network infrastructure cloud platforms and identity systems.
Evaluate application security through dynamic and manual testing techniques including authentication session management input validation and access control testing. Review source code for security weaknesses and secure coding gaps particularly in C/C Python Java or similar languages.
Develop and maintain custom scripts or tooling to automate testing activities and enhance offensive security capabilities.
Support incident response activities by recreating attack chains validating compromise scenarios and identifying root causes. Assess Zero Trust implementations micro-segmentation strategies and identity-based security controls for effectiveness.
Conduct phishing simulations and social engineering exercises to evaluate user awareness and organizational resilience. Provide technical briefings to executive leadership and technical stakeholders regarding risk posture and remediation prioritization.
Collaborate with engineering DevOps and infrastructure teams to remediate identified vulnerabilities and strengthen security architecture.
Contribute to the development of security policies testing methodologies and enterprise security standards.
Support compliance efforts by mapping testing results to NIST OWASP CIS or other applicable security frameworks.
Participate in continuous improvement of penetration testing methodologies tools and adversary emulation strategies.
Adhere to all security change control and MHBE Project Management Office (PMO) policies processes and methodologies.
Note: The candidate must be flexible to work overtime on-site/off-site as needed including weekends holidays and off-hours.
Qualifications :
Minimum Qualifications
Preferred Qualifications
Additional Information :
PHYSICAL REQUIREMENTS:
Work is equally performed in the field as well as in a normal office environment. Lifting (up to 50lbs) may be required. Ladder climbing may be required. Driving is required. All duties performed with or without reasonable accommodations.
Additional Information
Equal Opportunity Employer/Veterans/Disabled. An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race color religion sex sexual orientation gender identity national origin or protected veteran status
Ashburn Consulting is an Equal Opportunity Affirmative Action Employer.
In compliance with the American with Disabilities Act Amendments Act (ADAAA) if you have a disability and would like to request and accommodation in order to apply for a position with Ashburn Consulting please e-mail .
Ashburn Consulting is an Equal Opportunity Affirmative Action Employer.
In compliance with the American with Disabilities Act Amendments Act (ADAAA) if you have a disability and would like to request and accommodation in order to apply for a position with Ashburn Consulting please e-mail .
Remote Work :
No
Employment Type :
Full-time
...Information About the Role The BJC HealthCare New Graduate Nurse position is available for all student nurses - regardless of... ...injury, including post treatment home care needs and medication administration. Uses critical thinking skills to assess and evaluate...
...developing the technologies to make this possible with the ultimate goal ofenabling human life on Mars. MECHANICAL INTEGRATION & TEST ENGINEER USER PRODUCTS (STARSHIELD) Integration and Test Engineers are responsible for generating and understanding manufacturing and...
...Job Title: Security Screening Officer Military and/or Law Enforcement Experienced Required Location: Manhattan, New York Work... ...particularly in a security or combat role (e.g., Military Police, Elite Forces)~ Completion of a public safety or law enforcement...
Service Plumbing, Heating & Drain Cleaning TechnicianHardy Plumbing - Riverhead, NYWhy Top Techs Choose Hardy! At Hardy Plumbing, we dont just hire technicianswe invest in professionals. We run a modern, performance-driven service company that combines strong...
...Location:WA-Seattle Job Title: Maintenance Engineer - KIRO TV Position Overview The KIRO-TV Maintenance Technician candidate... .... Troubleshoot and repair a variety of TV broadcast and production equipment Provide operational support for end-users; respond...