Security & Safety Jobs in Virginia (Now Hiring) — 10,220 open — Page 164
Digital Global Connectors
Penetration Tester / Red Team Operator
Fairfax County, Virginia, United States · Hybrid
$120k–$165k/yr
Senior
Penetration Tester / Red Team Operator Location: Bethesda, MD (Hybrid; On-site as Required) Clearance: Tier 2 Public Trust (Required) Employment Type: Full-Time Position Summary Digital Global Connectors (DGC) is seeking…
Skills: Penetration Testing, Red Team Operations, Adversary Emulation, Web Application Security, Cloud Security
Digital Global Connectors
Cybersecurity Analyst, Incident Responder
Fairfax County, Virginia, United States · Hybrid
$105k–$125k/yr
Mid level
Cybersecurity Analyst, Incident Responder Location: Bethesda, MD (Hybrid; On-site as Required) Clearance: Tier 2 Public Trust (Required) Employment Type: Full-Time Position Summary Digital Global Connectors (DGC) is seek…
Skills: Incident Response, Cybersecurity Analysis, Digital Forensics, Malware Analysis, SIEM
Digital Global Connectors
Cyber Threat Intelligence Analyst
Fairfax County, Virginia, United States · Hybrid
$110k–$125k/yr
Senior
Cyber Threat Intelligence Analyst Location: Bethesda, MD (Hybrid; On-site as Required) Clearance: Tier 2 Public Trust (Required) Employment Type: Full-Time Position Summary Digital Global Connectors (DGC) is seeking an e…
Digital Forensics / Malware Analyst Location: Bethesda, MD (Hybrid; On-site as Required) Clearance: Tier 2 Public Trust (Required) Employment Type: Full-Time Position Summary Digital Global Connectors (DGC) is seeking an…
Continuous Diagnostics & Mitigation (CDM) Specialist / Vulnerability Management Location: Bethesda, MD (Hybrid; On-site as Required) Clearance: Tier 2 Public Trust (Required) Employment Type: Full-Time Position Summary D…
Skills: Continuous Diagnostics and Mitigation, Vulnerability Management, Tenable, Qualys, Rapid7
Digital Global Connectors
Cybersecurity Analyst, Threat Hunter
Fairfax County, Virginia, United States · Hybrid
$120k–$145k/yr
Senior
Cybersecurity Analyst, Threat Hunter Location: Bethesda, MD (Hybrid; On-site as Required) Clearance: Tier 2 Public Trust (Required) Employment Type: Full-Time Position Summary Digital Global Connectors (DGC) is seeking a…
Printpack Rigid is seeking a candidate to fill a Rigid Extruder Operator position in our Newport News, VA facility on day shift. The Extruder Operator is a skilled manufacturing professional responsible for operating and…
Prince William County, Virginia, United States · On-site
Entry level
Job DetailsJob Location: YFT Bristow HQ - Bristow, VA 20136Education Level: High SchoolTravel Percentage: NoneJob Shift: AnyJob Category: Nonprofit - Social ServicesYouth For Tomorrow is a 501 (c) (3) and a faith based, …
Skills: Behavior management, Crisis intervention, Resident supervision, Documentation, First aid
Prince William County, Virginia, United States · On-site
Entry level
Job DetailsJob Location: YFT Bristow HQ - Bristow, VA 20136Education Level: High SchoolTravel Percentage: NoneJob Shift: AnyJob Category: Nonprofit - Social ServicesYouth For Tomorrow is a 501 (c) (3) and a faith based, …
Overview Allied Universal®, North America’s leading security and facility services company, offers rewarding careers that provide you a sense of purpose. While working in a dynamic, welcoming, and collaborative workplace…
This position requires an ACTIVE DoD Top Secret SCI security clearance. Applicants who do not currently hold an active clearance will not be considered. This role is contingent. It is not immediately available, and candi…
Job DetailsJob Location: LLC Corporate Headquarters - Hopewell, VA 23860Position Type: Full TimeEducation Level: Not SpecifiedTravel Percentage: Up to 25%Job Shift: AnyJob Category: ManagementPosition Summary The State M…
Job DetailsJob Location: LLC Corporate Headquarters - Hopewell, VA 23860Position Type: Full TimeEducation Level: Not SpecifiedTravel Percentage: Up to 25%Job Shift: AnyJob Category: ManagementPosition Summary The State M…
Job Description BAE Systems is looking for a Software Engineer/ DevSecOps (Senior) to join our visible technical program driving the Model Based Systems Engineering (MBSE) cloud platform that supports collection, managem…
Hearing Officer: State Farm Correctional Center #00158
Goochland, Virginia, United States · On-site
$49k–$76k/yr
Mid level
Title: Hearing Officer: State Farm Correctional Center #00158 State Role Title: Hearing Legal Servcs Offcr I Hiring Range: $49,391.00 - $76,332.00 Pay Band: 4 Agency: Dept of Corr - Central Admin Location: State Farm Cor…
Biometrics and Forensics Analyst The Opportunity: Support the government in the development, implementation, and annual update of a five‑year Science and Technology (S&T) strategic plan. Assist in the identification of b…
Skills: Biometrics, Forensics, Strategic planning, Systems engineering, Project management
AT&T Global Public Sector is a trusted provider of secure, IP enabled, cloud-based, network solutions and professional services to the Federal Government. We are dedicated to recruiting, developing and empowering a diver…
Skills: Requirements management, Project management, Systems engineering, IT service management, ServiceNow
Data Scientist, Senior The Opportunity: As a data scientist, you’re excited at the prospect of unlocking the secrets held by a data set, and you’re fascinated by the possibilities presented by IoT, machine learning, and …
Skills: Data exploration, Data cleaning, Data analysis, Data visualization, Data mining
Job Title: Cybersecurity Architect II Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: Secret Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: …
Skills: Cybersecurity, Information Assurance, Risk Management Framework, DoD Security Requirements, Security Assessment
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
$120k–$165k/yr
Full-time
bachelor degree, postgraduate degree
Posted 8d ago
~40 hrs/week
Responsibilities
The Penetration Tester performs authorized security assessments and red team operations to identify vulnerabilities in enterprise systems, cloud environments, and applications. They collaborate with security teams to validate findings, document attack paths, and provide actionable remediation recommendations.
Requirements
Candidates must possess a bachelor's degree in a relevant field and at least five years of experience in penetration testing or offensive cybersecurity. U.S. citizenship and the ability to obtain a Tier 2 Public Trust clearance are mandatory requirements.
Full job description
Penetration Tester / Red Team Operator
Location: Bethesda, MD (Hybrid; On-site as Required)
Clearance: Tier 2 Public Trust (Required)
Employment Type: Full-Time
Position Summary
Digital Global Connectors (DGC) is seeking an experienced Penetration Tester / Red Team Operator to support a Federal information security program. The Penetration Tester is responsible for performing authorized security assessments that evaluate the effectiveness of technical, administrative, and operational security controls protecting enterprise information systems, cloud environments, applications, wireless networks, and supporting infrastructure.
This position conducts penetration tests, adversary emulation exercises, vulnerability exploitation, security validation, and red team assessments to identify weaknesses before they can be exploited by malicious actors. The Penetration Tester collaborates with Security Engineers, Security Architects, Threat Hunters, Incident Responders, ISSOs, System Owners, and program leadership to strengthen enterprise cybersecurity through proactive security testing and risk-based recommendations.
The successful candidate will possess extensive experience performing enterprise penetration testing, application security testing, network exploitation, and adversary simulation within complex enterprise environments.
Essential Duties and Responsibilities:
Penetration Testing
Conduct authorized internal and external penetration tests against enterprise systems.
Perform network, application, wireless, cloud, and infrastructure security assessments.
Validate vulnerabilities identified during automated vulnerability scans.
Identify exploitable weaknesses in enterprise environments.
Document attack paths and associated business risks.
Recommend remediation strategies to eliminate identified vulnerabilities.
Red Team Operations
Conduct adversary emulation exercises based on real-world threat actor tactics.
Perform security assessments of Microsoft Azure, Microsoft 365, Amazon Web Services (AWS), and hybrid cloud environments.
Evaluate cloud identity configurations and privileged access.
Test cloud networking and storage configurations.
Assess cloud-native security controls.
Identify cloud misconfigurations and excessive permissions.
Recommend improvements to cloud security architecture.
Security Assessment Tools
Utilize technologies including:
Kali Linux
Metasploit Framework
Burp Suite Professional
Nmap
Nessus
Tenable Security Center
BloodHound
Cobalt Strike (where authorized)
Impacket
Wireshark
OWASP ZAP
Microsoft Defender XDR
Microsoft Sentinel
PowerShell
Python
Security Information and Event Management (SIEM) platforms
Evaluate new tools and techniques to improve testing effectiveness.
Reporting and Documentation
Develop and maintain:
Penetration Test Reports
Executive Summary Reports
Technical Findings Reports
Risk Assessments
Remediation Recommendations
Red Team After-Action Reports
Attack Path Diagrams
Proof-of-Concept Documentation
Standard Operating Procedures
Lessons Learned
Ensure reports clearly communicate technical findings, business impacts, and recommended corrective actions.
Collaboration
Coordinate with Security Engineers, Security Architects, ISSOs, SOC Analysts, Threat Hunters, Incident Responders, System Owners, and Government stakeholders.
Support remediation planning and validation efforts.
Participate in security assessments and technical working groups.
Provide technical briefings to technical and executive leadership.
Mentor junior penetration testers when appropriate.
Continuous Improvement
Monitor emerging attack techniques, exploit methodologies, and threat actor tactics.
Evaluate new penetration testing tools and methodologies.
Recommend improvements to enterprise security testing capabilities.
Support purple team exercises and continuous security validation initiatives.
Maintain professional certifications and technical expertise.
Minimum Qualifications
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Systems, Engineering, or a related discipline.
Minimum five (5) years of experience performing penetration testing, red team operations, or offensive cybersecurity assessments.
Experience performing network, web application, cloud, and infrastructure penetration testing.
Experience using industry-standard penetration testing tools and frameworks.
Familiarity with the OWASP Testing Guide, MITRE ATT&CK Framework, NIST SP 800-115, and Federal cybersecurity requirements.
Strong analytical, troubleshooting, technical writing, and communication skills.
U.S. Citizenship required.
Ability to obtain and maintain a Tier 2 Public Trust.
Preferred Qualifications
Master's degree in Cybersecurity, Computer Science, Information Assurance, Engineering, or a related discipline.
Experience supporting a Federal civilian agency.
Experience conducting cloud security assessments in Azure or AWS environments.
Experience supporting purple team or adversary emulation exercises.
Offensive Security Certified Professional (OSCP)
GIAC Penetration Tester (GPEN)
GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)
Certified Ethical Hacker (CEH)
CompTIA PenTest+
Certified Information Systems Security Professional (CISSP) (preferred)
Knowledge, Skills, and Abilities
Penetration Testing
Red Team Operations
Adversary Emulation
Purple Team Exercises
Ethical Hacking
Web Application Security
API Security Testing
OWASP Top 10
Network Security Testing
Cloud Security Assessments
Microsoft Azure
Amazon Web Services (AWS)
Microsoft 365 Security
Active Directory Security
Kali Linux
Metasploit Framework
Burp Suite Professional
Nmap
Nessus
Tenable Security Center
BloodHound
Cobalt Strike (authorized use)
Impacket
Wireshark
OWASP ZAP
Microsoft Defender XDR
Microsoft Sentinel
PowerShell
Python
MITRE ATT&CK Framework
NIST SP 800-115
Technical Documentation
Microsoft Office Suite
ServiceNow
Jira
Security Requirements
Ability to successfully obtain and maintain a Tier 2 Public Trust investigation.
Compliance with all applicable Federal security, privacy, ethics, and information assurance training requirements before receiving system access.
Ability to support authorized penetration testing engagements, scheduled maintenance windows, continuity of operations (COOP), emergency response activities, and surge support as required.
Must maintain strict confidentiality while handling assessment results, exploit methodologies, vulnerability data, system configurations, and Federal information systems.
Ability to conduct authorized offensive security assessments in a safe, controlled, and ethical manner while collaborating with Government stakeholders and technical teams to identify vulnerabilities, validate security controls, and improve the organization's overall cybersecurity posture.
Related keywords
Penetration TestingRed TeamAdversary EmulationCloud SecurityAzureAWSOWASP Top 10Kali LinuxMetasploitBurp SuiteNmapNessusBloodHoundCobalt StrikeImpacketWireshark
Frequently asked questions
How much do Security & Safety jobs in Virginia pay?
Based on 5549 listings with disclosed salaries, most security & safety jobs in Virginia pay between $77k–$200k per year. Individual offers vary with seniority, company size, and specialization.
How many Security & Safety jobs are open in Virginia right now?
There are currently 10,220 open security & safety positions in Virginia listed on Clera. New openings are added daily as companies post roles.
Which companies are hiring for Security & Safety roles in Virginia?
Companies currently hiring include Allied Universal, Booz Allen Hamilton, Virginia Information Technologies Agency, CACI International Inc, Amazon, among others. Browse the listings above to see every active employer.
Are there remote or hybrid Security & Safety jobs in Virginia?
Yes — 1529 of the 10220 open security & safety positions offer remote or hybrid work (451 remote, 1078 hybrid).
How do I apply for Security & Safety jobs in Virginia?
Each listing links directly to the employer's application page. Apply early — fresh listings get the most recruiter attention in the first two weeks.