Lead Cybersecurity Penetration Specialist
Reston, Va, Us
Lead penetration tester at SAIC. Led over 50 penetration tests for twelve different commercial and government customers. Performed all phases of a penetration test: scoping, proposal writing, meeting with the customer, conducting reconnaissance, host discovery, port scanning, service discovery, vulnerability scanning, vulnerability research, exploitation, maintaining access, pivoting to new targets, and reporting. Performed advanced exploits including blind SQL injection, command injection, bypassing authentication, SSL man-in-the-middle, ARP spoofing, directory traversal to recover passwords, password cracking, and session hijacking through cross-site scripting. Delivered written reports and oral presentations to customers, focusing on the impact of each finding to the customer. Direct supervisor of four penetration testers. Managerial responsibilities included performance reviews, interviewing and hiring new employees, scheduling and assigning tasks, training the new employees, and managing the penetration test lab.