Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visitperaton.comto learn how we’re keeping people around the world safe and secure.
Responsibilities
Peraton is seeking to hire an experiencedSenior Cyber Threat Analyst - Assessmentresource for its’ Regional Cyber Center-Europe programLocation: On-site, Wiesbaden, GermanyResponsibilities:Lead and execute Network Assistance Visits (NAVs) and Persistent Penetration Tests (PPTs) against USAREUR-AF mission partner networks, coordinating all phases from scoping and planning through execution and reportingConduct comprehensive web application security assessments using OWASP methodology, Burp Suite, and OWASP ZAP to identify vulnerabilities including injection flaws, authentication weaknesses, and access control failuresPerform in-depth Microsoft Active Directory and Linux security assessments, identifying misconfigurations, privilege escalation paths, and lateral movement opportunities using tools such as BloodHound and PowerViewEmploy exploitation frameworks including Metasploit, Core Impact, and Immunity Canvas to validate identified vulnerabilities and demonstrate real-world attack impact to mission ownersProduce detailed, professional assessment reports that clearly communicate findings, risk ratings, evidence, and prioritized remediation recommendations to both technical and executive audiencesMentor and technically guide junior assessment team members, conducting knowledge transfer sessions, reviewing deliverables, and developing team proficiency in emerging offensive security techniques and tools#RCC-E
Qualifications
Required:Bachelor’s degree (STEM/Business Admin) and a minimum of 5 years of penetration testing or vulnerability assessment experience; or an associate’s degree and minimum of 7 years specialized experience; or 11 years of relevant experience in lieu fo the bachelor degree requirementMust meet TESA QualificationDoD 8140- Cybersecurity (Vulnerability Analyst) - IntermediateCertifications - must hold active certifications (one of the following):TCM Security PNPT; OROSCP (Offensive Security Certified Professional); ORHTB CPTS (Hack The Box Certified Penetration Testing Specialist); ORZero Point Security RTO (Red Team Ops); OROSCE (Offensive Security Certified Expert); ORGPEN (GIAC Penetration Tester); ORGWAPT (GIAC Web Application Penetration Tester); ORGAWN (GIAC Assessing and Auditing Wireless Networks); ORGXPN (GIAC Exploit Researcher and Advanced Penetration Tester); ORGWEB (GIAC Certified Web Application Defender)U.S. citizenship requiredActive DoD TS/SCI clearance or higherPreferred:Advanced proficiency with Metasploit Framework and Metasploit Pro for exploitation and post-exploitation operationsExpert-level Burp Suite Pro skills for web application vulnerability identification and exploitationExperience with OWASP ZAP for automated and manual web application security testingFamiliarity with Cobalt Strike or Havoc C2 for adversary simulation and red team operationsProficiency with BloodHound and SharpHound for Active Directory attack path enumerationStrong scripting skills in Python and PowerShell for custom exploit development and automationExperience with PowerShell Empire or similar post-exploitation frameworks for Windows environmentsDemonstrated ability to produce executive-level and technical assessment reports with clear remediation guidance