1

Director Metasploit Jobs in Columbia, MD (NOW HIRING)

Penetration Tester

Washington, DC · On-site

$120 - $180/hr

... directed. * Support specialized assessments of edge devices, firewalls, load balancers, and other ... Proficiency with Metasploit, Burp Suite, nMap, and related penetration testing frameworks.

Proficiency in penetration testing tools like Metasploit, Burp Suite, or Nessus * Strong ... With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional ...

Proficiency in penetration testing tools like Metasploit, Burp Suite, or Nessus * Strong ... With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional ...

Penetration Tester

Reston, VA · On-site

$90 - $130/hr

Proficiency in penetration testing tools like Metasploit, Burp Suite, or Nessus * Strong ... With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional ...

Director Metasploit information

See Columbia, MD salary details

$43.2K

$126.6K

$237.2K

How much do director metasploit jobs pay per year?

As of Aug 26, 2026, the average yearly pay for director metasploit in Columbia, MD is $126,574.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,300.00 and $149,400.00 per year, depending on experience, location, and employer.

What is the difference between Director Metasploit vs Security Engineer?

AspectDirector MetasploitSecurity Engineer
Required CredentialsCertifications like OSCP, CISSP, experience with MetasploitCertifications like CEH, CISSP, hands-on with security tools
Work EnvironmentLeadership role overseeing security projects, strategic planningTechnical role focused on vulnerability assessment and mitigation
Employer & Industry UsageCybersecurity firms, large enterprises, government agenciesIT departments, security consulting firms, tech companies

The main difference is that a Director Metasploit focuses on strategic leadership and overseeing security operations involving Metasploit, while a Security Engineer handles hands-on vulnerability testing and security implementation. Both roles require cybersecurity certifications and industry experience, but their responsibilities and focus areas differ significantly.

What are popular job titles related to Director Metasploit jobs in Columbia, MD?

For Director Metasploit jobs in Columbia, MD, the most frequently searched job titles are:

What job categories do people searching Director Metasploit jobs in Columbia, MD look for?

The top searched job categories for Director Metasploit jobs in Columbia, MD are:

Penetration Tester

Washington, DC • On-site

$120 - $180/hr

Other

Posted 7 days ago


Job description

  • Execute penetration tests against NAS and Mission Support systems, networks, and applications following approved Rules of Engagement and test plans.
  • Identify and exploit vulnerabilities in network infrastructure, operating systems, web applications, and databases.
  • Participate in red team and blue team exercises in simulated environments.
  • Execute attack scenarios and document findings.
  • Document all testing activities, findings, and exploitation paths in Penetration Test Reports (PTRs).
  • Perform regression penetration tests to validate remediation of previously identified vulnerabilities.
  • Support aircraft cyber testing activities including avionics and flight system security assessments when directed.
  • Support specialized assessments of edge devices, firewalls, load balancers, and other network infrastructure components.
  • Assess and document the potential for lateral movement when access is gained during testing.
  • Report high-risk findings immediately.
  • Maintain and update penetration testing tools and lab environments. All tools must be FAA-approved prior to use.
  • Support the Penetration Testing Lead in developing Rules of Engagement and test plans for upcoming engagements.
Requirements
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Mathematics, or Physics from an accredited institution
  • A minimum of five (5)+ years of hands-on penetration testing experience, including network, system, and web application testing.
  • At least 2 years of relevant experience must be recent (performed within the last 3 years).
  • Proficiency with Metasploit, Burp Suite, nMap, and related penetration testing frameworks.
  • Experience working within formal Rules of Engagement and producing structured penetration test reports.
  • Understanding of network protocols, routing, switching, firewall configurations, and common misconfigurations.
  • Experience with web application testing following OWASP methodology.
  • Candidate must have the ability to obtain and maintain a Public Trust
  • At least one Red Teaming certification: OSCP, OSCE, OSWP, OSWE, CEH, ECSA, CEH Practical, ECSA Practical, LPT Master, GCIH, GPEN, GWAPT, GXPN, or GAWN.
  • Blue Teaming certifications are also accepted: CND, CNDA, GCIH, GCIA, GDAT, GDSA, GCED, or GCFA. OSCP or GPEN preferred.
  • Experience testing ICS/OT environments or critical infrastructure systems.
  • Experience with wireless security testing or satellite communication systems.
  • Experience with cloud penetration testing (AWS, Azure).
  • Familiarity with aircraft systems, avionics, or aviation communication protocols.
  • Prior red team experience in a government or military context.
  • C2 frameworks (Cobalt Strike, Sliver, Mythic) for adversary simulation beyond Metasploit.
  • BloodHound and Impacket for Active Directory attack path analysis and lateral movement.
  • Nuclei for automated vulnerability detection at scale.
  • Cloud pen testing tools (Pacu, AzureHound) for cloud-hosted environments.
  • SDR/HackRF tools for wireless and RF communications testing.
  • AI-assisted fuzzing tools for expanding exploit discovery on complex systems.
Core Competencies

Demonstrates extensive experience in penetration testing, including network, system, and web application assessments, while adhering to formal Rules of Engagement. Proficient in utilizing advanced penetration testing tools and frameworks to identify and exploit vulnerabilities across various environments.

#J-18808-Ljbffr