Peraton

Senior Cyber Threat Analyst – Assessment / Active TS/SCI

Peraton  •  $104k - $166k/yr  •  Federal Republic of Germany (Onsite)  •  2 months ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Responsibilities

Peraton is seeking to hire an experienced Senior Cyber Threat Analyst – Assessment resource for its’ Regional Cyber Center-Europe program

Location: On-site, Wiesbaden, Germany

Responsibilities:

  • Lead and execute Network Assistance Visits (NAVs) and Persistent Penetration Tests (PPTs) against USAREUR-AF mission partner networks, coordinating all phases from scoping and planning through execution and reporting
  • Conduct comprehensive web application security assessments using OWASP methodology, Burp Suite, and OWASP ZAP to identify vulnerabilities including injection flaws, authentication weaknesses, and access control failures
  • Perform in-depth Microsoft Active Directory and Linux security assessments, identifying misconfigurations, privilege escalation paths, and lateral movement opportunities using tools such as BloodHound and PowerView
  • Employ exploitation frameworks including Metasploit, Core Impact, and Immunity Canvas to validate identified vulnerabilities and demonstrate real-world attack impact to mission owners
  • Produce detailed, professional assessment reports that clearly communicate findings, risk ratings, evidence, and prioritized remediation recommendations to both technical and executive audiences
  • Mentor and technically guide junior assessment team members, conducting knowledge transfer sessions, reviewing deliverables, and developing team proficiency in emerging offensive security techniques and tools

#RCC-E

Qualifications

Required:

  • Bachelor’s degree (STEM/Business Admin) and a minimum of 5 years of penetration testing or vulnerability assessment experience; or an associate’s degree and minimum of 7 years specialized experience; or 11 years of relevant experience in lieu fo the bachelor degree requirement
    • Must meet TESA Qualification
  • DoD 8140- Cybersecurity (Vulnerability Analyst) - Intermediate
  • Certifications — must hold active certifications (one of the following):
    • TCM Security PNPT; OR
    • OSCP (Offensive Security Certified Professional); OR
    • HTB CPTS (Hack The Box Certified Penetration Testing Specialist); OR
    • Zero Point Security RTO (Red Team Ops); OR
    • OSCE (Offensive Security Certified Expert); OR
    • GPEN (GIAC Penetration Tester); OR
    • GWAPT (GIAC Web Application Penetration Tester); OR
    • GAWN (GIAC Assessing and Auditing Wireless Networks); OR
    • GXPN (GIAC Exploit Researcher and Advanced Penetration Tester); OR
    • GWEB (GIAC Certified Web Application Defender)
  • U.S. citizenship required
  • Active DoD TS/SCI clearance or higher

Preferred:

  • Advanced proficiency with Metasploit Framework and Metasploit Pro for exploitation and post-exploitation operations
  • Expert-level Burp Suite Pro skills for web application vulnerability identification and exploitation
  • Experience with OWASP ZAP for automated and manual web application security testing
  • Familiarity with Cobalt Strike or Havoc C2 for adversary simulation and red team operations
  • Proficiency with BloodHound and SharpHound for Active Directory attack path enumeration
  • Strong scripting skills in Python and PowerShell for custom exploit development and automation
  • Experience with PowerShell Empire or similar post-exploitation frameworks for Windows environments
  • Demonstrated ability to produce executive-level and technical assessment reports with clear remediation guidance

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Target Salary Range

$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Peraton

About Peraton

At Peraton, we're at the forefront of delivering the next big thing every day. We're the partner of choice to help solve some of the world's most daunting challenges, delivering bold, new solutions to keep people around the world safer and more secure.

How do we do it? By thinking differently. We're not mired in the past. We look at all problems with fresh eyes. We look past the obvious to bring the best talent, tech, and ideas together to completely transform how things get done. So bring your unique ideas, your entrepreneurial spirit, and your drive to succeed and get ready to be part of something bigger. Get ready to do the can't be done.

________

Recruitment fraud is a growing trend where fraudsters have been known to attempt to use our name to trick job seekers with fake employment opportunities. This type of scam is typically carried out through fake job postings, fake websites, or email accounts claiming to be from Peraton. The intent of recruitment fraud is to gain access to your personal information, such as your banking information, credit card number, or social security number.

Please be aware that our careers site can be found at careers.peraton.com and our corporate site can be found at peraton.com.

To learn more about Recruitment fraud and what to expect and not to expect from a Peraton recruiter, please visit: https://careers.peraton.com/recruitment-fraud/

Industry
IT & Software
Company Size
10,000+ employees
Headquarters
Reston, Virginia
Year Founded
2017
Social Media