
Technical Tester
Posted 3 days ago

Posted 3 days ago
This is a fully remote position, open to applicants in Florida.
• Implement approved cybersecurity testing protocols while documenting any deviations, interruptions, and anomalies.
• Conduct vulnerability assessments, configuration reviews, control validations, and cloud security evaluations.
• Execute controlled adversary simulations, privilege escalation testing, and access control assessments.
• Capture and maintain synchronized technical evidence for audit purposes.
• Compile testing workpapers and evidence packages for quality assurance evaluations.
• Conduct remediation verification testing and document outcomes against initial findings.
• Analyze logs and monitoring activities to facilitate testing and detection validation.
• Report any unusual or unexpected system behavior in accordance with stop-work protocols.
• Collaborate with technical leads, cybersecurity subject matter experts, and government stakeholders within testing environments.
• Over 5 years of experience in conducting technical security assessments, vulnerability testing, or cybersecurity operations.
• Must be a resident of the state of Florida.
• At least one of the following certifications is required at the time of hire: CEH, CISA, or CISSP.
• Proven experience in creating technical documentation that meets audit or compliance standards.
• Experience in following written procedures under supervision within production settings.
• Practical experience with vulnerability scanning, control validations, log analysis, configuration reviews, and cloud security assessments.
• Familiarity with controlled adversary simulations, privilege escalation testing, access control validation, and monitoring effectiveness evaluations.
• Proficient in using tools such as Nessus, OpenVAS, Burp Suite, BloodHound, Kali Linux, Wazuh, Elastic Stack, Wireshark, and Nmap.
• Understanding of Active Directory, Microsoft Defender, Microsoft Entra ID, and Microsoft Sentinel.
• Scripting skills in PowerShell, Python, or Bash.
• Experience in assessing endpoints, servers, databases, and network devices.
• Knowledgeable in vulnerability scoring, risk prioritization, and remediation verification.
• Solid understanding of NIST CSF and applicable state cybersecurity technical requirements, including Rule 60GG-2, F.A.C.
• Preferred qualifications include Security+, GSEC, PenTest+, GPEN, CySA+, OSCP, SC-200, Certified Red Team Operator, or cloud security certifications.
• Additional preferred qualifications include experience with government audit or oversight engagements and familiarity with Atomic Red Team or MITRE CALDERA.
• Opportunity for remote work for candidates based in Florida.
• W-2 employment status.
Abhyaz
Commence
Isenberg & Hewitt, P.C.
CCR GROUP
Get handpicked remote jobs straight to your inbox weekly.