Jobs and Careers
DE

Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer

Dexian
Washington, United Statesfull_timeVerifiedPosted 25 Jun 2026
💰 $150,000/yr($125,000/yr$150,000/yr)

About the role

Dexian Government Solutions is recruiting for a Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer to support our proposal at the the DHS CIETS in DC Metro area.

Position Overview:

Serves as DHS I&A's senior offensive security and technical assessment specialist. This position is responsible for identifying vulnerabilities, assessing system security posture, validating security control effectiveness, conducting penetration testing activities, evaluating software assurance risks, and providing actionable remediation recommendations across classified and unclassified environments.

Job Duties:

The Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer provides expert support for:

  • Penetration testing
  • Vulnerability assessments
  • Security testing and evaluation
  • Software assurance analysis
  • Security control validation
  • Technical risk identification
  • Security architecture assessment
  • Remediation planning
  • Continuous monitoring support
  • The position functions as the Government's senior technical assessor responsible for independently identifying weaknesses before adversaries do.

Core Responsibilities

Penetration Testing, the engineer shall:

  • Conduct penetration testing of DHS I&A systems and environments.
  • Evaluate system resistance to cyber-attacks.
  • Assess network, application, operating system, and infrastructure security.
  • Perform adversarial testing activities to identify exploitable weaknesses.
  • Validate effectiveness of implemented security controls.
  • Document findings and recommend corrective actions.

Vulnerability Assessment, the engineer shall:

  • Conduct comprehensive vulnerability assessments.
  • Analyze vulnerability scan results.
  • Identify security weaknesses and misconfigurations.
  • Assess severity and operational impact of vulnerabilities.
  • Validate remediation effectiveness.
  • Provide technical recommendations to reduce risk.

Software Assurance Analysis, the engineer shall:

  • Evaluate software security posture.
  • Assess application security controls.
  • Review software development and deployment risks.
  • Identify coding and implementation weaknesses.
  • Support secure software development practices.
  • Analyze software assurance findings and recommend mitigation strategies.

Security Testing and Validation, the engineer shall:

  • Perform security testing supporting RMF activities.
  • Validate implementation of technical security controls.
  • Support Security Control Assessments (SCAs).
  • Evaluate effectiveness of security safeguards.
  • Verify compliance with security requirements.
  • Assist authorization teams in assessing residual risk.

Security Engineering Assessments, the engineer shall:

  • Conduct technical security reviews of systems and architectures.
  • Evaluate proposed technologies and security implementations.
  • Identify engineering weaknesses affecting system security.
  • Support architecture and design reviews.
  • Recommend technical improvements.

Continuous Monitoring Support, the engineer shall:

  • Support ongoing vulnerability management activities.
  • Assess emerging risks and threat exposure.
  • Review remediation progress.
  • Monitor recurring findings and risk trends.
  • Support continuous authorization activities.

Risk Analysis and Remediation, the engineer shall:

  • Analyze risks associated with identified vulnerabilities.
  • Recommend risk mitigation strategies.
  • Evaluate compensating controls.
  • Prioritize remediation activities.
  • Brief Government leade

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Dexian

View company profile →