What you'll do... -  Perform testing on a wide scope of systems, including web applications, security controls, network infrastructure, wireless, and mobile deployments. 
-  Work as a team to explore the network until you reach their goal, taking time to avoid detection. 
-  Plan, execute, lead, and report on testing activities and outcomes. 
-  Execute covert operations to mimic adversary and threat actor tactics, techniques and procedures and work closely to test exploits. 
 What you'll bring: 
-  Expertise in web application security and practical experience penetration testing in large e-commerce environments 
-  Ability to automate discovery and analysis of new web applications as they are deployed 
-  Practical Reverse Engineering and Vulnerability Research experience. Ability to translate reports and intelligence into real world attacks. 
-  Experience in offensive security tooling and development, including creation of scripts and debugging proof of concept code to leverage in campaigns. 
-  Strong knowledge of concepts and practices in infrastructure engineering and broad networking and systems experience either as a former administrator or in a formal red/blue/purple team role prior. 
-  Be able to leverage social engineering skills and understand human psychology for exploitation and persistence on campaign targets. 
-  Be able to parse and act on threat intelligence. Leverage awareness of tactics, techniques and procedures (TTPs) to mimic adversaries for scoped engagements. 
-  Be versant in technical writing for delivery of reporting to various leadership levels. Ability to clearly document and communicate findings and attack paths. 
-  Expertise relating to Machine Learning (ML) and Large Language Models (LLM) in both concept and adversarial actions 
 Benefits: Beyond our great compensation package, you can receive incentive awards for your performance. Other great perks include 401(k) match, stock purchase plan, paid maternity and parental leave, PTO, multiple health plans, and much more. 
 The above information has been designed to indicate the general nature and level of work performed in the role. It is not designed to contain or be interpreted as a comprehensive inventory of all responsibilities and qualifications required of employees assigned to this job. The full Job Description can be made available as part of the hiring process. 
 You will also receive PTO and/or PPTO that can be used for vacation, sick leave, holidays, or other purposes. The amount you receive depends on your job classification and length of employment. It will meet or exceed the requirements of paid sick leave laws, where applicable. 
 For information about PTO, see 
 Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to a specific plan or program terms. 
 For information about benefits and eligibility, see 
 The annual salary range for this position is $132,000.00-$264,000.00 Additional compensation includes annual or quarterly performance bonuses. Additional compensation for certain positions may also include: - Stock 
 Minimum Qualifications...  Outlined below are the required minimum qualifications for this position. If none are listed, there are no minimum qualifications. 
 Option 1: Bachelor's degree in computer science, information technology, engineering, information systems, cybersecurity, or related area and 4 years’ experience in incident response or related area at a technology, retail, or data-driven company.Option 2: 6 years’ experience in incident response or related area at a technology, retail, or data-driven company. 
 Preferred Qualifications...  Outlined below are the optional preferred qualifications for this position. If none are listed, there are no preferred qualifications. 
 10790 Parkridge Dr. Suite 200, Reston, VA 20191, United States of America