Archived listing. This role was posted over 30 days ago and is no longer accepting applications. We keep it for reference, but the employer may have already filled it. See today's verified listings.

Mid-Level Penetration Tester

Dragonfli Group United States

See live roles like this Save · sign in Alert me to jobs like this

This one is closed

Live roles like this one

See every "Mid Level Penetration" role →

Posted 19 Sep 2026
Last seen 19 Sep 2026
Location United States
Lifecycle mature
Grade C
This listing scored 63/100, which is a C. It lost the most ground on pay transparency. See the breakdown

Every figure above is arithmetic over the posting itself — its salary field, its text, its age, its tags and how many sources carry it. How the grades work →

This listing does not state a salary

$112k – $155k

That is the middle half of what comparable roles paid on this board over the last 90 days — 50 listings that did publish a figure, median $136k. It is not this employer's offer, and we have no idea what they pay. It is only what the rest of the market advertised.

What this role involves →

Developer Mid level Full Time

Description

Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical systems across on-site, hybrid, and fully remote environments.

Dragonfli Group is seeking a Mid-Level Penetration Tester to join a consolidated enterprise Penetration Testing program supporting a large federal agency. In this fully remote role, you will plan and execute authorized penetration tests across network, endpoint, wireless, database, application, and infrastructure environments, following structured Planning, Discovery, Testing, and Reporting phases. You will develop Rules of Engagement, Execution Plans, and decision-ready reporting, coordinate directly with system owners and SOC personnel to confirm scope and safety thresholds, and validate exploitable conditions arising from misconfigurations, outdated software, and weak access controls. You will also support validation of CISA WAS and FAST findings, KEV exposure items, and coordinate retesting to confirm closure, using approved AI-enabled tools to improve reconnaissance and ATT&CK/ATLAS mapping while maintaining human oversight. This role calls for approximately 5 to 8 years of relevant experience leading or independently executing penetration testing engagements.

This is a multi-year contract position involving a large US federal agency. Candidates with previous federal contracting experience are preferred. U.S. Citizenship or Permanent Residency is required. If hired, all work related to this role must be performed within the continental U.S.

This is a fully remote position.

Key Responsibilities:

Requirements

Must-Have

Preferred / Nice-to-Have

Skill(s)

Technical Skills

Soft Skills

Benefits

Originally posted on Himalayas

Apply for this role Opens himalayas.app — the link as listed; we have not yet verified it is the employer's own page

Quick question · anonymous · one tap

Would you apply to this job?

Answer to see what other job seekers said.

Description review

62/100 HR standards 94/100 Title ↔ description 74/100 Fit to the official role
Read the marked-up listing →

Your turn · no account needed

Help the next applicant

You may know something about this listing that we cannot see from here. One tap. No account needed. Signed-in reports earn points once the evidence agrees with you.

I know what it pays

What you were offered, quoted in an interview, or paid in this role. A range is fine.

Sign in with Google to earn points for reports — 100 confirmed points buy a week of Early Access.

Where this listing came from

  1. 19 Sep 2026 Himalayas first sighting

Seen on 1 board over 0 days.