LEAD CYBER SECURITY ENG SPEC (Penetration Testing Engineer) at Concurrent Technologies Corporation
DC
—
Jul 19, 2026
DC
Jul 21, 2026
What this job asks for AI summary
A senior-level penetration testing role supporting a classified Department of Defense cybersecurity program, contingent on contract award. Day-to-day work centers on conducting advanced penetration tests, vulnerability assessments, and software assurance activities across enterprise networks, cloud environments, and cross-domain solutions, then documenting findings and validating remediation. The role also involves mentoring junior staff and advising government stakeholders on risk and compliance under the DoD's Risk Management Framework.
Senior level · 10+ years · Washington-Arlington-Alexandria, DC-VA-MD-WV · TS/SCI clearance · Full-time
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $152,225 (middle half $125,286–$177,673).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (9)
This position is contingent upon contract award; candidates may be processed before award notification.
The clearance requirement is unusually specific: an active TS/SCI with FRD (Formerly Restricted Data), RD (Restricted Data), and NATO eligibility or access is required — not merely a standard TS/SCI. Candidates without this specific access may not qualify.
The degree requirement states a Bachelor's in a relevant field but explicitly allows equivalent professional experience in lieu of a degree, so it is not treated as a hard gate.
The 10+ years figure is an overall cybersecurity experience floor; the 2-year minimums are per-domain (Penetration Testing, Vulnerability Assessment, Software Assurance, Patch Management, Secure Cloud Technologies, Cross Domain Solutions) and are captured on each respective skill.
CEH and CISSP are listed under Required Qualifications and are treated as hard gates.
RMF, NIST 800-53, DISA STIGs, and DevSecOps appear under Preferred Qualifications.
The alt SOC (15-1299) reflects that this role's penetration-testing and software-assurance focus sits at the edge of what 15-1212 (Information Security Analysts) typically covers; a specialized Penetration Tester classification does not exist as a distinct SOC code.
Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): Patch Management.
Requires a TS/SCI clearance — the cleared population is a small fraction of this occupation, so the real candidate pool is materially smaller than the estimate below, which does not model clearance.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.