Penetration Tester
Navy Federal Credit Union.com
Office
Vienna, VA, United States
Full Time
Perform penetration testing against systems across Navy Federal in order to identify weaknesses and provide guidance on remediation and prevention. Conduct application, network, wireless, and mobile assessments as well as lead red team campaigns. Assess a wide variety of critical systems and applications to discover exploitable risks to the credit union and improve the risk posture of the organization. Growing an understanding of business needs and objectives. Solve a range of mostly straightforward problems with some increased scope and complexity. Developing professional with basic skill set and proficiency with procedures and techniques.
- Manage penetration tests from inception through delivery.
- Identify and prescribe remediation for vulnerabilities in applications, systems, and networks.
- Leverage complex tactics including lateral movement, network tunneling/pivoting, and credential compromise.
- Participate in red team exercises with a focus on stealth and realistic threats.
- Enhance testing by identifying novel attack patterns based on real-world data.
- Perform attacks consistent with common threats (e.g., OWASP top 10) and specific technologies.
- Research and develop exploits for local and remote targets.
- Craft proofs of concept and deployable exploits for vulnerabilities.
- Create and automate custom fuzzing techniques.
- Develop custom scripts (Nuclei, Python, etc.) to check for security requirements.
- Collaborate with team members and participate in team projects and initiatives.
- Bachelor’s Degree in Computer Science or the equivalent combination of education, training or experience.
- 2-5 years of experience in cyber or application security.
- Basic understanding of business and operating environment.
- Basic knowledge of MITRE ATT&CK and/or CAPEC Frameworks.
- Experience testing against Active Directory environments.
- Experience testing against both Linux based and Windows based systems.
- Experience developing custom malware and evading EDR solutions.
- Experience coding in languages and on frameworks such as: Python, JavaScript, Bash, PowerShell, Java, C#, C++, Springboot, React, NodeJS.
- Basic networking knowledge spanning: IPv4/6, DNS, TCP/UDP, TLS/SSL, SSH, HTTP, SOCKS.
- Basic knowledge of modern cryptographic hashing & encryption methods and best practices.
Hours: Monday - Friday, 8:00AM - 4:30PM
Locations: 820 Follin Lane, Vienna, VA 22180 | 5510 Heritage Oaks Drive, Pensacola, FL 32526 | 141 Security Drive, Winchester, VA 2260
Navy Federal provides much more than a job. We provide a meaningful career experience, including a culture that is energized, engaged and committed; and fierce appreciation for our teams, who are rewarded with highly competitive pay and generous benefits and perks.
Our approach to careers is simple yet powerful: Make our mission your passion.
- FORTUNE 100 Best Companies to Work For® 2025
- Yello and WayUp Top 100 Internship Programs
- Computerworld® Best Places to Work in IT
- Newsweek Most Loved Workplaces
- FORTUNE Best Workplaces for Women ™ 2024
- 2025 PEOPLE® Companies That Care
- Newsweek Most Trustworthy Companies in America
- Military Times 2024 Best for Vets Employers
- Best Companies for Latinos to Work for 2025
- Forbes® 2025 America’s Best Large Employers
- Forbes® 2025 America's Best Employers for New Grads
- Forbes® 2025 America's Best Employers for Tech Workers
- 2025 RippleMatch Campus Forward Award Winner for Overall Excellence
- Military.com Top Military Spouse Employers 2025
- 2025 Handshake Early Talent Award
From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of, Navy Federal Credit Union.
Equal Employment Opportunity: All qualified applicants will receive consideration for employment without regard to age, race, sex, color, religion, national origin, disability, veteran status, pregnancy, sexual orientation, genetic information, gender identity or any other basis protected by applicable law.
Disclaimers: Navy Federal reserves the right to fill this role at a higher/lower grade level based on business need. An assessment may be required to compete for this position. Job postings are subject to close early or extend out longer than the anticipated closing date at the hiring team’s discretion based on qualified applicant volume. Navy Federal Credit Union assesses market data to establish salary ranges that enable us to remain competitive. You are paid within the salary range, based on your experience, location and market position. For additional details regarding compensation and benefits, review the Benefits page of the Navy Federal Career Site.
Bank Secrecy Act: Remains cognizant of and adheres to Navy Federal policies and procedures, and regulations pertaining to the Bank Secrecy Act.
Penetration Tester
Office
Vienna, VA, United States
Full Time
October 4, 2025