1,434,312open jobs
83,785companies
217,826added this week
Browse all
Salary
≈ $124k – $261k per year (Estimated)
Location
Remote (United States)
Seniority
Staff · 9+ years exp

Confirmed on the employer's own hiring board on Oct 9, 2026. First seen by Alion on Oct 5, 2026. SAIC scores B on the Alion truth index.

Overview
Company
Impact
Profile match
SAIC delivers technology integration and mission services to government agencies. Its work spans enterprise information technology, space systems, engineering and digital modernisation. The company is one of the largest federal services contractors.

Science Applications International Corporation (SAIC) is seeking a Penetration Tester to join our offensive security practice supporting a major state & local government customer. This role sits at the intersection of hands-on technical execution and cybersecurity leadership and it's built around delivering real impact for clients who depend on us to find what others miss.

Web application & Network penetration testing is the core of what you'll do every day, and we're looking for someone who brings both technical depth and genuine curiosity to every engagement. Beyond web and network pentesting you'll contribute to our mobile application testing practice (iOS and Android), support ethical hacking operations, and provide strategic guidance on enterprise cyber architecture and cloud security. This position reports to the Security Assessments Manager.

This is a role where your contributions are visible, your growth is intentional, and your voice matters to the team and to the clients we serve.

Essential duties of this position include:

  • Deliver high-quality penetration tests across a range of client environments, applying black box, white box, web app or mobile methodologies as needed and aligned to NIST standards

  • Independently manage engagement workloads from scoping through reporting, with a consistent focus on quality

  • Produce clear, well-structured technical reports that communicate findings, risk context, and actionable remediation guidance to both technical teams and executive stakeholders and translate complex technical documentation into terms any stakeholder can act on

  • Support and contribute to mobile application security assessments (iOS and Android) using the OWASP MASVS/MSTG framework, with the expectation of growing mobile capabilities over time

  • Perform strategic planning and management in cybersecurity and digital forensics in alignment with the National Initiative for Cybersecurity Education (NICE) Framework

  • Address a wide range of security issues including architectures, firewalls, electronic data traffic, and network access

  • Research, evaluate, and recommend new security tools, techniques, and technologies; utilize COTS/GOTS and custom tools to scan, identify, contain, mitigate, and remediate vulnerabilities and intrusions

  • Apply expert engineering knowledge to design, develop, and implement security solutions across enterprise engagements

  • Confidently present findings to clients whether it is walking a developer through a vulnerability chain or explaining business risk to a CISO in the same afternoon

  • Act as a spokesperson and advisor on advanced technical projects and research; participate with senior management to establish strategic plans and objectives

  • Actively share knowledge with teammates, contribute to internal tooling and methodology improvements, and help close skill gaps across the practice

  • Stay current on emerging vulnerabilities, attack techniques, and industry developments and bring that knowledge back to the team

TYPICAL EDUCATION AND EXPERIENCE:

  • Bachelors and nine (9) years or more experience; Masters and seven (7) years or more experience; PhD or JD and four (4) years or more related experience. Additional experience considered in lieu of degree.
  • Candidates must be a US Citizen and able to pass a CJIS Criminal Justice background investigation and maintain CJIS clearance throughout employment term.

Required Experience:

  • Advanced technical knowledge in cybersecurity and digital forensics

  • Strong working knowledge of the OWASP WSTG and OWASP Top 10 - not just the list, but how to find and exploit the vulnerabilities

  • Proficiency with standard web application testing tools (e.g., Burp Suite Pro, FFUF, SQLMap, Nuclei)

  • Working familiarity with mobile application testing concepts and tooling (e.g., Frida, Objection, MobSF, ADB)

  • Proven experience in red-teaming, ethical hacking, and cloud security architecture

  • Proficiency in malware reverse engineering and enterprise cyber architecture

  • Strong background in addressing security issues related to architectures, firewalls, electronic data traffic, and network access

  • Experience researching, evaluating, and recommending new security tools and technologies

  • Proficiency utilizing COTS/GOTS and custom tools for vulnerability management

  • Demonstrated ability to write professional, client-ready penetration test reports with minimal revision

  • GWAPT certification required or strongly preferred; candidates holding OSCP, OSWE, or GWEB will also be considered

  • Preferred Experience:

  • Hands-on experience conducting iOS and/or Android application assessments

  • Familiarity with API security testing (REST, GraphQL, SOAP)

  • Exposure to source code review as part of white box engagements

  • Experience presenting findings directly to client stakeholders, including senior leadership

  • Participation with senior management to establish strategic plans and objectives

  • Experience working on unusually complex technical problems and providing innovative solutions

  • Proven ability to work under consultative direction toward long-range goals and objectives

  • Experience serving as an organizational spokesperson and advisor on advanced technical projects

  • Knowledge of applying advanced technical principles, theories, and concepts to develop new principles and concepts

  • Experience making decisions on administrative or project work matters to achieve program or organizational objectives

  • Strong background in developing advanced technological ideas and guiding them to final product development

  • Experience influencing organizational image and technological capability through decision-making and recommendations

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,434,312 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
In your city
$120k – $150k per year • Remote (United States) • Full-Time • Bachelor's Degree
Cybersecurity
SOC 2
Apply
≈ $146k – $260k per year (Estimated) • Equity • Remote (United States) • Full-Time • 8+ years exp • Santa Clara
DevOps
Azure
AWS
VPN
Cybersecurity
Zscaler
PCI DSS
GDPR
Zero Trust
Least Privilege
Threat Modeling
DLP
Apply
$112k – $179k per year • Remote (United States) • Full-Time • United States
AI/ML
AI Agents
DevOps
Terraform
Helm
GitHub Actions
OpenTofu
Prometheus
GitLab CI
CI/CD
GitOps
AWS
Kubernetes
Grafana
Platform Engineering
Trunk-Based Development
Chaos Engineering
Amazon EKS
Progressive Delivery
SLI/SLO/SLA
GitLab
Amazon S3
IAM
Amazon CloudWatch
Cybersecurity
OWASP ZAP
NIST 800-171
FedRAMP
Least Privilege
Sigstore
Cosign
Management
Agile
Apply
$60k per year • Remote (likely DACH) • Full-Time • Linz • Graz • Vienna
Python
Go
Java
PowerShell
C#
C++
DevOps
containerd
Docker
Kubernetes
TCP/IP
Cybersecurity
LDAP
Apply
$181k – $302k per year • Remote (United States) • 13+ years exp • Bachelor's Degree
Python
SQL
PowerShell
AI/ML
AI Agents
Cybersecurity
MITRE ATT&CK
SIEM
Apply
≈ $56k – $130k per year (Estimated) • In office • Bachelor's Degree • Riyadh
Python
JavaScript
TypeScript
C#
DevOps
CI/CD
Docker
Kubernetes
Cybersecurity
Burp Suite
Snyk
SonarQube
Checkmarx
OWASP Top 10
PCI DSS
OWASP ASVS
OWASP SAMM
Veracode
Fortify
OWASP
Apply
≈ $30k – $84k per year (Estimated) • In office • Internship • Lahore
Python
JavaScript
SQL
C#
Cybersecurity
Burp Suite
Metasploit
Nessus
OWASP ZAP
OWASP Top 10
CWE
Threat Modeling
Apply
$55k – $71k per year • Hybrid
AI/ML
EU AI Act
NIST AI RMF
Cybersecurity
NIST CSF
OWASP Top 10
PCI DSS
OWASP ASVS
OWASP SAMM
Threat Modeling
Management
Agile
Apply
≈ $45k – $126k per year (Estimated) • In office • Bachelor's Degree • Riyadh
Python
PowerShell
AI/ML
Red Teaming
DevOps
GCP
Azure
AWS
Wi-Fi
Cybersecurity
Burp Suite
Metasploit
Nmap
Cobalt Strike
BloodHound
Sliver
Mythic
MITRE ATT&CK
OWASP ASVS
Microsoft Entra ID
Active Directory
OWASP
Apply
Security Engineer 2 days ago
≈ $18k – $50k per year (Estimated) • In office • Full-Time • Pasig
JavaScript
PowerShell
C++
AI/ML
Red Teaming
DevOps
AWS
Windows
Cybersecurity
Metasploit
OWASP ZAP
SonarQube
ISO 27001
Ghidra
OWASP Top 10
SIEM
Apply
≈ $139k – $281k per year (Estimated) • In office • TS/SCI • 9+ years exp • Bachelor's Degree • Chantilly
Apply
≈ $101k – $200k per year (Estimated) • In office • Secret • 5+ years exp • Bachelor's Degree • Quantico
Cybersecurity
Nessus
Management
Microsoft Office
Apply
Cybersecurity Analyst 10 days ago
≈ $106k – $211k per year (Estimated) • In office • TS/SCI • 5+ years exp • Bachelor's Degree • Fayetteville
Python
PowerShell
YARA
DevOps
Splunk
Cybersecurity
YARA
MITRE ATT&CK
SIEM
Apply
≈ $100k – $234k per year (Estimated) • In office • Secret • PhD • United States
DevOps
Splunk
AWS
IAM
Linux
Management
Agile
ITIL
Apply
≈ $113k – $223k per year (Estimated) • In office • Secret • 8+ years exp • Bachelor's Degree • Kittery
Cybersecurity
SIEM
Apply
See all jobs
This is one of many
1,434,312 more open roles from verified company boards, updated every day.