• Skip to primary navigation
  • Skip to main content
  • Skip to footer
ControlCase No Tag LOGO md

ControlCase

IT Certifications, Continuous Compliance and Cybersecurity Services Provider

  • Company
    • About Us
    • Careers
    • Locations
    • Team
  • Industries
    • Business Process Outsourcing
    • Cloud Service Providers
    • Retail
    • Telecom | Entertainment
    • Managed Service Providers
  • Certifications
    • PCI DSS Certification
    • CSA STAR Certification
    • GDPR Assessment
    • HIPAA Assessment
    • HITRUST® Certification
    • ISO 27001 Certification
    • FedRAMP 3PAO Services and NIST 800-53
    • CMMC Certification
    • MARS-E Assessment
    • PCI SSF
    • P2PE Certification
    • SOC2 Report
  • Solutions
    • Continuous Compliance Solution
    • One Audit
    • Card Data Discovery Software
    • Data Security Rating
  • Testing
    • Application Reviews
    • Application Security Training
    • Code Reviews
    • Card Data Discovery
    • External Vulnerability Scans
    • Firewall Security Reviews
    • Internal Vulnerability Scans
    • Log Monitoring
    • Penetration Testing
  • Resources
    • Events
    • News
    • Webinars
    • Courses
    • Blog
    • Tools
    • Become a Partner
  • Contact Us
  • English

VAPT Specialist

You are here: Home / Careers / VAPT Specialist
Apply Now

VAPT Specialist

Remote – Including client visits as needed

Location: US Based Candidates Only

About ControlCase

ControlCase is a global leader in certification, cybersecurity, and continuous compliance services. We are dedicated to helping organizations develop and implement streamlined, cost-effective, and comprehensive information security and compliance programs for both on-premise and cloud environments. Our services cater to industries needing compliance with standards such as PCI DSS, HITRUST, SOC 2 Type II, ISO 27001, PCI PIN, PCI P2PE, PCI TSP, PA DSS, CSA STAR, HIPAA, GDPR, SWIFT, CMMC, and FedRAMP.

Headquartered in Fairfax, Virginia, ControlCase operates worldwide, with locations across North America, Europe, Latin America, Asia/Pacific, and the Middle East. We provide innovative Compliance as a Service (CaaS) solutions, enabling businesses to efficiently meet regulatory compliance requirements in a cost-effective manner.

As a Vulnerability Assessment and Penetration Testing Specialist, you will conduct authorized penetration tests on computer systems to identify vulnerabilities that could be exploited. You may choose to specialize in areas such as:

  • Networks and Infrastructure
  • Operating Systems (Windows, Linux, and macOS)
  • Web and Mobile Applications
  • APIs and Web Services

The VAPT Lead role will be a blend of approximately 80% penetration testing and 20% project management. It will also involve understanding complex computer systems and technical cybersecurity terminology.

Key Responsibilities

  • Collaborating with clients to identify their testing requirements, such as the number and type of systems to be tested.
  • Planning and developing penetration testing methods, scripts, and tests.
  • Conducting remote tests on clients’ networks or on-site infrastructure tests to uncover security weaknesses.
  • Simulating security breaches to evaluate system vulnerabilities.
  • Preparing detailed reports and recommendations, including identified security issues and their risk levels.
  • Providing actionable advice on mitigating risks and implementing solutions to strengthen system security.
  • Presenting findings, risks, and recommendations to management and other stakeholders.
  • Assessing the business and user impact of identified vulnerabilities.
  • Analyzing how unresolved security flaws could affect business functions.
  • Leading and managing a team of 5-6 members, fostering collaboration and expertise.

Required Qualifications

  • 4-5+ years of relevant experience
  • US Citizenship or Green Card holder
  • Ability to travel to client sites

Education & Certification Requirements

  • Bachelor’s degree preferred
  • Preferred Certifications:
    • OSCP – Offensive Security Certified Professional
    • CPSA – CREST Practitioner Security Analyst
    • CRT – CREST Registered Tester
    • CRTO – Certified Red Team Operator
    • CRTP – Certified Red Team Professional
    • GWAPT – GIAC Web Application Penetration Tester
    • GPEN – GIAC Penetration Tester
    • GIAC – Global Information Assurance Certification

What Does ControlCase Offer?

At ControlCase, we are committed to supporting our employees’ success and well-being. We offer a comprehensive range of benefits designed to promote work-life balance and foster professional growth, along with the exciting opportunity to collaborate with an international team across various regions.

Employee Benefits

  • Company-Provided Equipment: Essential tools for success, including a computer, to support your work.
  • 401(k) Plan: Competitive retirement savings options to help you plan for the future.
  • Health Insurance: Comprehensive medical coverage for you and your family.
  • Dental & Vision Insurance: Access to dental and vision care to keep you healthy.
  • 100% Company Paid Life Insurance: Peace of mind with life insurance coverage.
  • Paid Time Off (PTO): Generous paid time off and official holidays to recharge.
  • Mileage & Travel Reimbursement: For business-related travel and mileage.
  • Cell Phone & Internet Reimbursement: Stay connected with monthly reimbursements for phone and internet costs.
  • Employee Assistance Program (EAP): Access to resources for mental health, counseling, and personal support.
  • Flexible Spending Account (FSA): Save on healthcare and dependent care expenses.
  • Employee Discount Program: Enjoy discounts at select partners and vendors.
  • Referral Program: Earn rewards for referring talented candidates to join our team.

This is a fully remote position, offering flexibility to work from home. You’ll be part of a dynamic international company, ControlCase, collaborating via virtual meetings and teams. You’ll manage your own schedule, meet deadlines, and contribute to ControlCase’s innovative global efforts in cybersecurity and compliance.

Point of Contact

Andrew Lauchengco
Talent Acquisition Lead
Email: alauchengco@controlcase.com

Apply Now

  • Facebook
  • Instagram
  • LinkedIn
  • Twitter
  • YouTube

Footer

Connect

Corporate Headquarters
3975 FAIR RIDGE DR STE T25S-D
FAIRFAX, VA 22033

Send us a message

Call Us

Search

About Us

ControlCase is a United States based company, headquartered in Fairfax, Virginia with locations in North America, Europe, Latin America, Asia/Pacific, Australia and the Middle East to serve our clients globally.

Quick Links

  • Company
  • Careers
  • Locations
  • Covid-19 Notice
  • Manage Cookies
  • Your Privacy Choices

Certifications, Assessments and Reports

  • PCI DSS Certification
  • CSA STAR Certification
  • GDPR Assessment
  • HIPAA Assessment
  • HITRUST® Certification
  • ISO 27001 Certification
  • FedRAMP and 3PAO Services
  • MARS-E Assessment
  • PCI SSF
  • P2PE Certification
  • SOC2 Report

© ControlCase LLC 2026 | Privacy Policy | Impartiality Statement | Legal Notices

  • English