Exploit Development/Penetration Tester
Requisition ID: R10097856
-
Category: Information Technology
-
Location: Fairfax, VA, USA | Unknown City, VA, USA +1 more -
Citizenship Required: United States Citizenship
-
Clearance Type: Top Secret
-
Telecommute: Yes- May Consider Full Time Teleworking for this position
-
Shift: 1st Shift (United States of America)
-
Travel Required: Yes, 25% of the Time
Northrop Grumman is seeking creative, skilled, and motivated Exploit Development / Penetration Tester security professional to join our Cyber Assessment Tiger Team in Fairfax, VA. The role is focused on vulnerability research, reverse engineering, and exploit development against Northrop Grumman’s systems, products & services. CATT conducts full-scope vulnerability assessment, exploit development, and penetration testing against Space Systems, Aeronautics, Mission Systems, manufacturing and enterprise IT.
To succeed, the team member must have an intense desire to exploit real production or R&D satellites, avionics, and weapons systems, and be knowledgeable in a wide range of security issues including various computing architectures, network comms protocols, programming languages and defenses.
Position conducts network or software vulnerability assessments and penetration testing, utilizing reverse engineering techniques. It perform vulnerability analysis and exploitation of applications, operating systems, or networks. Also identifies intrusion or incident path and method. Isolates, blocks or removes threat access. Evaluates system security configurations. Evaluates findings and performs root cause analysis. Performs analysis of complex software systems to determine both functionality and intent of software systems. Resolves highly complex malware and intrusion issues. Contributes to the design, development and implementation of countermeasures, system integration, and tools specific to Cyber and Information Operations. May prepare and presents technical reports and briefings. May perform documentation, vetting and weaponization of identified vulnerabilities for operational use.
Responsibilities include:
- Code analysis & hardware/binary reverse engineering to identify functionality and vulnerabilities on hardware & software including avionics and embedded systems
- Evaluate system security configurations for effectiveness and exploitation opportunities
- Develop and execute complete adversarial cyber testing scenarios against components, applications, operating systems, or complete integrated systems
- Contribute to the design, development, implementation, and integration of Offensive Cyber Operations tools against platforms, payloads & systems
- Contribute to the design, development, implementation, and integration of system Cyber Survivability Attributes
- Contribute to the preparation of technical reports and briefings
- Continually improve the knowledge and capabilities of yourself & the greater team
This position requires occasional travel within the continental United States, as well as possible international travel (up to 25% of the time). The individual will be required to work from Fairfax, VA during the interim phase of employment. However, some level of remote work may be supported after initial start period.
NOTE- This Evergreen requisition does not necessarily represent an actual opening. However, this requisition may be used to consider candidates across multiple technical disciplines, and/or various levels, for our future hiring needs.
Basic Qualifications:
- High School Diploma, or a GED, and 2 years of experience with Cyber Security, Red Team, Penetration Testing, or Exploit Development is required
- Must have software development to support penetration testing, including vuln dev, R/E tool modules, covert tunneling, scanning scripts, and passive collection
- Must have 2 years of experience in at least three (3) of the following languages: C, C++, C#, Python, Ruby, Perl, Bourne/Bash, PowerShell, Visual Basic, VBScript, PHP, Javascript, HTML
- Must be willing to travel domestically and internationally (up to 25% per year)
- Must have the ability to obtain, and maintain, a DOD Top Secret security clearance, as well as an SCI access level, as a condition of continued employment. Additional clearances may also be required for certain government programs
Preferred Qualifications:
- The ideal candidate will have a BS degree in Software Development, Computer Engineering, Computer Science, or other similar STEM related degree, to include 9 years of experience in Cyber Protection
- Technical computer/network knowledge and understanding of common computer hardware, software, networks, communications and connectivity
- Experience conducting full-scope assessments and penetration tests including: social engineering, server & client-side attacks, protocol subversion, physical access restrictions, and web application exploitation
- Proficiency in the internal workings of either Linux, Unix, and/or Windows operating systems
- Experience using scan / attack / assess tools and techniques
- Ability and desire to learn additional Operating Systems, Computing Architectures, and Programming languages
- Demonstrated experience in technical report writing
- Technical certifications that support pen testing such as OSCP/OSCE/OSEE, GPEN/GXPN
- Software/hardware reverse engineering for vulnerability and exploit R&D
- RTOS experience (Integrity, Nucleus, VxWorks, etc.)
- PowerPC, ARM, Xilinx FPGA, RISCx, other hardware computing development experience
- Assembly language experience (any current architecture/OS)
- TCP/IP MITM, spoofing, exploitation experience
- Platform communications protocol expertise (ARINC 429, MIL-STD-1553, Spacewire, etc.)
- Cryptanalysis and cryptosystem exploitation experience
- In depth understanding of layer 2-7 communication protocols, common encoding and encryption schemes and algorithms
- Understanding of and experience either executing or defending against complex, targeted cyber threats to high-value systems and data
- Active Top Secret, and/or SCI access with an SSBI completed within the past 4 years, is highly desirable
This position reports to Fairfax, VA, USA, however, this position can also be worked from Unknown City, VA, VA, USA.
The health and safety of our employees and their families is a top priority. The company encourages employees to remain up-to-date on their COVID-19 vaccinations. U.S. Northrop Grumman employees may be required, in the future, to be vaccinated or have an approved disability/medical or religious accommodation, pursuant to future court decisions and/or government action on the currently stayed federal contractor vaccine mandate under Executive Order 14042 https://www.saferfederalworkforce.gov/contractors/.
Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO/AA and Pay Transparency statement, please visit http://www.northropgrumman.com/EEO. U.S. Citizenship is required for most positions.
Apply Now
What's great about
Northrop Grumman
- Be part of a culture that thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work.
- Use your skills to build and deliver innovative tech solutions that protect the world and shape a better future.
- Enjoy benefits like work-life balance, education assistance and paid time off.
Did you know?
Northrop Grumman leads the industry team for NASA’s James Webb Space Telescope, the largest, most complex and powerful space telescope ever built. Launched in December 2021, the telescope incorporates innovative design, advanced technology, and groundbreaking engineering, and will fundamentally alter our understanding of the universe.
- Administrative Services
- Business Development
- Business Management
- Communications
- Engineering
- Environmental
- Facilities/Real Estate
- Flight Operations
- Global Supply Chain
- Government Relations
- Health & Safety
- Human Resources
- Information Technology
- Legal and Regulatory
- Manufacturing and Production
- Mission and Quality Assurance
- Non-CJCS
- Program Management
- Research and Sciences
- Security
- Technical Support
- alabama
- alaska
- arizona
- arkansas
- california
- colorado
- connecticut
- delaware
- district of columbia
- florida
- georgia
- hawaii
- idaho
- illinois
- indiana
- iowa
- kansas
- kentucky
- louisiana
- maine
- maryland
- massachusetts
- michigan
- minnesota
- mississippi
- missouri
- montana
- nebraska
- nevada
- new hampshire
- new jersey
- new mexico
- new york
- north carolina
- north dakota
- ohio
- oklahoma
- oregon
- pennsylvania
- rhode island
- south carolina
- south dakota
- tennessee
- texas
- utah
- vermont
- virginia
- virgin islands
- washington
- west virginia
- wisconsin
- wyoming
- Albuquerque--- NM, New Mexico
- Alice Springs--- Northern Territory, Northern Territory
- Amberley--- Queensland, Queensland
- Annapolis Junction--- MD, Maryland
- Annapolis--- MD, Maryland
- Apopka--- FL, Florida
- Aurora--- CO, Colorado
- Australia-Fortitude Valley--- Queensland, Queensland
- Azusa--- CA, California
- Baltimore--- MD, Maryland
- Beale AFB--- CA, California
- Beavercreek--- OH, Ohio
- Belle Chasse--- LA, Louisiana
- Bellevue--- NE, Nebraska
- Beltsville--- MD, Maryland
- Bethpage--- NY, New York
- Bloomington--- MN, Minnesota
- Boulder--- CO, Colorado
- Buckley AFB--- CO, Colorado
- Buffalo--- NY, New York
- Burlington--- MA, Massachusetts
- California--- MD, Maryland
- Camarillo--- CA, California
- Canoga Park--- CA, California
- Cape Canaveral--- FL, Florida
- Chandler--- AZ, Arizona
- Chantilly--- VA, Virginia
- Charlotte--- NC, North Carolina
- Charlottesville--- VA, Virginia
- Cheltenham--- Gloucestershire, Gloucestershire
- Cincinnati--- OH, Ohio
- Clearfield--- UT, Utah
- Colorado Springs--- CO, Colorado
- Commerce--- CA, California
- Corinne--- UT, Utah
- Devens--- MA, Massachusetts
- Dulles--- VA, Virginia
- East Hartford--- CT, Connecticut
- Edinburgh Parks--- South Australia, South Australia
- Edwards AFB--- CA, California
- Eielson AFB--- AK, Alaska
- El Segundo--- CA, California
- Elk River--- MN, Minnesota
- Elkridge--- MD, Maryland
- Elkton--- MD, Maryland
- Emerado--- ND, North Dakota
- Fairbairn--- Australian Capital Territory, Australian Capital Territory
- Fairfax--- VA, Virginia
- Falls Church--- VA, Virginia
- Fort Bliss--- TX, Texas
- Fort Carson--- CO, Colorado
- Fort Gordon--- GA, Georgia
- Fort Greely--- AK, Alaska
- Fort Leavenworth--- KS, Kansas
- Fort Polk--- LA, Louisiana
- Fort Riley--- KS, Kansas
- Fort Sill--- OK, Oklahoma
- Fort Worth--- TX, Texas
- Gilbert--- AZ, Arizona
- Goleta--- CA, California
- Grand Forks AFB--- ND, North Dakota
- Hollywood--- MD, Maryland
- Hopkinton--- MA, Massachusetts
- Houston--- TX, Texas
- Huntsville--- AL, Alabama
- Irving--- TX, Texas
- Iuka--- MS, Mississippi
- Jacksonville--- FL, Florida
- Kennedy Space Center--- FL, Florida
- Kettering--- OH, Ohio
- Kirtland AFB--- NM, New Mexico
- Lake Charles--- LA, Louisiana
- Langley AFB--- VA, Virginia
- Lanham--- MD, Maryland
- Lemoore--- CA, California
- Lincoln--- Lincolnshire, Lincolnshire
- Linthicum--- MD, Maryland
- London--- London, London
- Los Angeles--- CA, California
- Madison--- AL, Alabama
- Magna--- UT, Utah
- Manchester--- Manchester, Manchester
- Manhattan Beach--- CA, California
- Mayport--- FL, Florida
- McClellan--- CA, California
- McLean--- VA, Virginia
- Melbourne--- FL, Florida
- Merritt Island--- FL, Florida
- Mesa--- AZ, Arizona
- Middle River--- MD, Maryland
- Mojave--- CA, California
- Morrisville--- NC, North Carolina
- Moss Point--- MS, Mississippi
- Naval Station Mayport--- FL, Florida
- Nellis AFB--- NV, Nevada
- New Church--- VA, Virginia
- New London--- CT, Connecticut
- New Malden--- London, London
- New Town--- ND, North Dakota
- Northridge--- CA, California
- Ocean Springs--- MS, Mississippi
- Oklahoma City--- OK, Oklahoma
- Orlando--- FL, Florida
- Oxnard--- CA, California
- Palm Beach Gardens--- FL, Florida
- Palmdale--- CA, California
- Panama City--- FL, Florida
- Patuxent River--- MD, Maryland
- Philadelphia--- PA, Pennsylvania
- Pinkenba--- Queensland, Queensland
- Plymouth--- MN, Minnesota
- Point Mugu--- CA, California
- Port Hueneme--- CA, California
- Radford--- VA, Virginia
- Redondo Beach--- CA, California
- Richmond--- New South Wales, New South Wales
- Ridgecrest--- CA, California
- Riyadh--- Riyadh, Riyadh
- Rocket Center--- WV, West Virginia
- Rocklin--- CA, California
- Rolling Meadows--- IL, Illinois
- Roy--- UT, Utah
- Saint Augustine--- FL, Florida
- Saint Charles--- MO, Missouri
- Salt Lake City--- UT, Utah
- San Antonio--- TX, Texas
- San Diego--- CA, California
- San Jose--- CA, California
- Schriever AFB--- CO, Colorado
- Sicily--- Catania, Catania
- Sierra Vista--- AZ, Arizona
- Signal Hill--- CA, California
- Sigonella--- Catania, Catania
- Springfield Central--- Queensland, Queensland
- Stafford--- VA, Virginia
- Sterling--- VA, Virginia
- Stuttgart--- Baden-Wurttemberg, Baden-Wurttemberg
- Suffolk--- VA, Virginia
- Sunnyvale--- CA, California
- Sykesville--- MD, Maryland
- Symonston--- Australian Capital Territory, Australian Capital Territory
- Tampa--- FL, Florida
- Tinker AFB--- OK, Oklahoma
- Tucson--- AZ, Arizona
- United Kingdom-Home Based--- London, London
- Unknown City--- AL, Alabama
- Unknown City--- AZ, Arizona
- Unknown City--- CA, California
- Unknown City--- CT, Connecticut
- Unknown City--- Guam, Guam
- Unknown City--- HI, Hawaii
- Unknown City--- MD, Maryland
- Unknown City--- NH, New Hampshire
- Unknown City--- NJ, New Jersey
- Unknown City--- NY, New York
- Unknown City--- OR, Oregon
- Unknown City--- PA, Pennsylvania
- Unknown City--- TX, Texas
- Unknown City--- UT, Utah
- Unknown City--- VA, Virginia
- Unknown--- VA, Virginia
- Vandenberg AFB--- CA, California
- Ventura--- CA, California
- Walpole--- MA, Massachusetts
- Warner Robins--- GA, Georgia
- Warrenton--- VA, Virginia
- Washington--- DC, District of Columbia
- Whiteman AFB--- MO, Missouri
- Williamtown--- New South Wales, New South Wales
- Woodland Hills--- CA, California
- Wright-Patterson AFB--- OH, Ohio
- Yigo--- Guam, Guam
- Yorktown--- VA, Virginia
- Yuma--- AZ, Arizona