1

Application Penetration Tester Jobs (NOW HIRING)

... Application penetration testing. • Experience with Federal and Commercial Cloud technology penetration testing. • Experience conducting High Value Asset Assessments. • Knowledge of Red, Blue ...

... Application penetration testing. • Experience with Federal and Commercial Cloud technology penetration testing. • Experience conducting High Value Asset Assessments. • Knowledge of Red, Blue ...

We are seeking a skilled Penetration Tester with a focus on Java application security is sought to identify, exploit, and fix vulnerabilities in Java applications to guard against cyber threats. Key ...

GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:

GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:

Showing results 21-40

Application Penetration Tester information

See salary details

$96.5K

$132.3K

$159.5K

How much do application penetration tester jobs pay per year?

As of Aug 9, 2026, the average yearly pay for application penetration tester in the United States is $132,307.00, according to ZipRecruiter salary data. Most workers in this role earn between $121,500.00 and $146,500.00 per year, depending on experience, location, and employer.

What does an application penetration tester do?

A typical day for an Application Penetration Tester involves planning and executing tests on web and mobile applications to identify security vulnerabilities, documenting findings, and collaborating with development or security teams to discuss remediation strategies. You might spend time replicating attack scenarios, reviewing code, and researching emerging threats or new testing methodologies. Regular team meetings and client briefings are common, especially when working on larger projects or audits. The work is highly dynamic, often requiring you to juggle multiple projects and stay current with evolving security best practices.

What are the key skills and qualifications needed to thrive as an application penetration tester?

To thrive as an Application Penetration Tester, you need strong knowledge of application security, vulnerability assessment, and web technologies, typically supported by a degree in computer science, cybersecurity, or a related field. Familiarity with common penetration testing tools such as Burp Suite, OWASP ZAP, Kali Linux, as well as certifications like OSCP or CEH, is highly beneficial. Critical thinking, keen attention to detail, and clear written and verbal communication are essential soft skills for effective reporting and collaboration. These competencies ensure thorough security assessments, actionable findings, and effective teamwork to protect digital assets.

What is an application penetration tester?

An Application Penetration Tester is a cybersecurity professional who assesses the security of applications by simulating real-world attacks. They identify vulnerabilities, exploit weaknesses, and provide recommendations to improve security. Their work involves using automated tools and manual testing techniques to uncover risks. They collaborate with developers and security teams to ensure applications are protected against threats. This role requires knowledge of coding, common exploits, and security frameworks.

More about Application Penetration Tester jobs
What cities are hiring for Application Penetration Tester jobs? Cities with the most Application Penetration Tester job openings:
What are the most commonly searched types of Application Penetration Tester jobs? The most popular types of Application Penetration Tester jobs are:
What states have the most Application Penetration Tester jobs? States with the most job openings for Application Penetration Tester jobs include:
What are popular job titles related to Application Penetration Tester jobs? For Application Penetration Tester jobs, the most frequently searched job titles are:
Infographic showing various Application Penetration Tester job openings in the United States as of August 2026, with employment types broken down into 77% Full Time, 17% Part Time, and 6% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $132,307 per year, or $63.6 per hour.

Penetration Tester III

M9 Solutions

Chandler, AZ • On-site

Full-time

Re-posted 10 days ago


Job description

Job Summary:
M9 Solutions is dedicated to providing IT services and solutions to the Federal Government, supporting organizations in achieving improved performance and sustainable change. They are seeking a Penetration Tester III to conduct penetration testing and security assessments for government clients, requiring an active Secret clearance and a Bachelor's degree.
Responsibilities:
• Experience in management or as a team leader, managing projects and tasks against tight deadlines.
• Experience with continuous penetration testing methodologies.
• Experience with planning and conducting Red Team engagements.
• Experience with IoT device penetration testing methodologies.
• Experience with Mobile Device Application penetration testing.
• Experience with Federal and Commercial Cloud technology penetration testing.
• Experience conducting High Value Asset Assessments.
• Knowledge of Red, Blue, and Purple Team assessment processes.
• Knowledge of MITRE ATT&CK frameworks.
• Experience with OSSTMM, OWASP, NIST, PTES, and ISSAF methodologies.
• Experience with a variety of toolsets for gathering information and conducting comprehensive penetration tests.
Qualifications:
Required:
• Bachelor’s degree.
• At least five (5) years of pen test experience, preferably seven (7) years.
• Experience in management or as a team leader, managing projects and tasks against tight deadlines.
• Experience with continuous penetration testing methodologies.
• Experience with planning and conducting Red Team engagements.
• Experience with IoT device penetration testing methodologies.
• Experience with Mobile Device Application penetration testing.
• Experience with Federal and Commercial Cloud technology penetration testing.
• Experience conducting High Value Asset Assessments.
• Knowledge of Red, Blue, and Purple Team assessment processes.
• Knowledge of MITRE ATT&CK frameworks.
• Experience with OSSTMM, OWASP, NIST, PTES, and ISSAF methodologies.
• Experience with a variety of toolsets for gathering information and conducting comprehensive penetration tests.
• Must have at least a GPEN or GXPN certification in addition to one of the following certifications: GRTP, CRTL, OSCP, CRTP, CMWAPT, CEPT, CPT, LPT.
• Must have or be able to obtain CISA AES HVA Assessment Lead or Technical Lead certification.
• Secret Clearance (active).
Company:
M9 Solutions is a national staffing firm focused on cloud, cyber security, web application services, ERP, and BI implementations. Founded in 2007, the company is headquartered in Atlanta, USA, with a team of 51-200 employees. The company is currently Growth Stage.