1

Cloud Penetration Tester Jobs (NOW HIRING)

WV ยท On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Automated Testing, AWS Cloud Computing, Infrastructure Penetration Testing, Security Controls, Security Testing Certifications: None Experience: 8 + years of related experience US Citizenship ...

Experience performing IoT, mobile, and cloud penetration testing * Experience supporting High Value Asset (HVA) assessments * Experience applying MITRE ATT&CK, OSSTMM, OWASP, NIST, PTES, and ISSAF ...

Experience performing IoT, mobile, and cloud penetration testing * Experience supporting High Value Asset (HVA) assessments * Experience applying MITRE ATT&CK, OSSTMM, OWASP, NIST, PTES, and ISSAF ...

Penetration Tester

Washington, DC ยท On-site

$126K - $243K/yr

This role will unify penetration-testing activities across network, application, and cloud environments, ensuring consistent execution, standardized reporting, and alignment with enterprise security ...

Penetration Tester

Leesburg, VA

$155K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Fortreum is a trusted leader in cloud and cybersecurity services, ranked among the Top 5 FedRAMP ... We\'re seeking a seasoned Penetration Tester to join our team. Your expertise in cloud penetration ...

Penetration Tester

Leesburg, VA ยท On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Experience with cloud penetration testing (AWS, Azure). * Familiarity with aircraft systems, avionics, or aviation communication protocols. * Prior red team experience in a government or military ...

The Senior Lead Penetration Tester will serve as the primary technical lead for all penetration ... Perform cloud penetration testing and security configuration assessments across AWS, Azure, and/or ...

Penetration Tester

Fort George G Meade, MD ยท On-site

$86K - $198K/yr

  • Medical

  • Life

  • Retirement

  • PTO

... GIAC Cloud Penetration Tester Certification Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified ...

The Senior Lead Penetration Tester will serve as the primary technical lead for all penetration ... Perform cloud penetration testing and security configuration assessments across AWS, Azure, and/or ...

Penetration Testers - Senior (Lead)

Washington, DC ยท On-site

$139K - $169K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

The Senior Lead Penetration Tester will serve as the primary technical lead for all penetration ... Perform cloud penetration testing and security configuration assessments across AWS, Azure, and/or ...

Penetration Tester

Herndon, VA ยท On-site

$86K - $198K/yr

  • Medical

  • Life

  • Retirement

  • PTO

... GIAC Cloud Penetration Tester Certification Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified ...

Penetration Tester

Herndon, VA ยท On-site +1

$86K - $198K/yr

  • Medical

  • Life

  • Retirement

  • PTO

... GIAC Cloud Penetration Tester Certification Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified ...

next page

Showing results 1-20

Cloud Penetration Tester information

See salary details

$22.5K

$119.9K

$168.5K

How much do cloud penetration tester jobs pay per year?

As of Aug 17, 2026, the average yearly pay for cloud penetration tester in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is a cloud penetration tester?

A Cloud Penetration Tester is a cybersecurity professional who assesses cloud environments for vulnerabilities by simulating real-world attacks. They identify security weaknesses in cloud infrastructure, applications, and services to help organizations strengthen their defenses. This role requires expertise in cloud platforms like AWS, Azure, and GCP, as well as penetration testing tools and methodologies. Cloud Penetration Testers also provide detailed reports with remediation recommendations to mitigate risks effectively.

What are the key skills and qualifications needed to thrive as a cloud penetration tester?

To thrive as a Cloud Penetration Tester, you need in-depth knowledge of cloud platforms (such as AWS, Azure, and Google Cloud), vulnerability assessment, security best practices, and strong programming or scripting skills, often backed by a degree in computer science or information security. Familiarity with tools like Kali Linux, Burp Suite, Metasploit, and certifications such as OSCP or AWS Certified Security are highly valued. Strong analytical thinking, attention to detail, clear communication, and a collaborative attitude help set you apart in this role. These skills ensure you can identify and address cloud security vulnerabilities effectively while working across technical and business teams.

What are some common challenges faced by cloud penetration testers on the job?

Cloud Penetration Testers often encounter challenges like staying current with constantly evolving cloud security threats, navigating complex or hybrid cloud environments, and understanding the unique configurations and security controls of various cloud service providers. They may also face the task of coordinating with multiple internal teams and ensuring that testing activities do not disrupt ongoing cloud services. This role often requires balancing technical security testing with clear, accessible communication of findings to both technical and non-technical stakeholders. Overcoming these challenges helps testers provide valuable insights that strengthen an organization's cloud security posture.

How do you become a cloud penetration tester?

To become a cloud penetration tester, you should gain a strong understanding of cloud platforms like AWS, Azure, or Google Cloud, and develop skills in cybersecurity, networking, and scripting. Earning relevant certifications such as Certified Cloud Security Professional (CCSP) or Offensive Security Certified Professional (OSCP) can also improve your qualifications. Practical experience with penetration testing tools and methodologies is essential for this role.

How much do cloud penetration testers make?

Cloud penetration testers typically earn between $80,000 and $150,000 annually, depending on experience, certifications, and location. Senior roles or those with specialized skills in cloud security tools may earn higher salaries, often exceeding $150,000.

Is cloud penetration testing in demand?

Cloud penetration testers are in high demand due to the increasing adoption of cloud services and the need to identify security vulnerabilities in cloud environments. Employers seek professionals with skills in cloud platforms, security tools, and certifications like OSCP or CISSP to ensure cloud infrastructure security.
More about Cloud Penetration Tester jobs

What cities are hiring for Cloud Penetration Tester jobs?

Cities with the most Cloud Penetration Tester job openings:

What are the most commonly searched types of Cloud Penetration Tester jobs?

The most popular types of Cloud Penetration Tester jobs are:

What states have the most Cloud Penetration Tester jobs?

States with the most job openings for Cloud Penetration Tester jobs include:

Infographic showing various Cloud Penetration Tester job openings in the United States as of August 2026, with employment types broken down into 67% Full Time, and 33% Contract. Highlights an 67% In-person, and 33% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.

Red Team Operator/ Cloud Penetration Tester

Cyber Defense Technologies

Chantilly, VA โ€ข On-site

Full-time

Medical, Dental, Retirement

Re-posted 2 days ago


Job description

Overview: CDT is looking for a Red Team Operator/ Cloud Penetration Tester to support a government customer onsite in Chantilly, VA. The ideal candidate possesses a deep understanding for information security, computer network operations, and cloud infrastructure, particularly with major cloud service providers including Amazon Web Services (AWS), IBM, Google Cloud, Microsoft Azure and Oracle Cloud. They should understand cloud specific concepts such as networking, identity and access management, console applications, and functions. A strong Penetration Testing and/or Red Team (Offensive Cybersecurity) background with the ability to apply tradecraft for application manipulation, exploit development, and real-world assessments aimed at identifying and exploiting misconfigurations and/or vulnerabilities in cloud infrastructure. Our mission is to help our client protect their most sensitive and valuable data through comprehensive adversary emulation testing. We strive to enable vulnerability remediation and mitigation in advance of adversary activity to enhance the security posture and safeguard data. Candidates with OSCP certification are highly recommended to apply.
Clearance: An active Top Secret/SCI with CI poly is required.Candidates who do not meet these requirements will not be considered.
Responsibilities:
  • Perform threat-driven cloud penetration testing, red teaming, remediation activities, and effective enhancement of cyber defense
  • Support joint-team operations with internal and external partners to evaluate new cloud services
  • Assist full project lifecycle scoping, planning, execution, monitoring, and closing activities to include: scoping engagements, preparing documentation, building/enhancing operational infrastructure, testing and validating capabilities, leading assessments from kick-off through remediation, and completing after-action reports/lessons learned
  • Adhering to established policies and rules of engagement (ROE), safely utilize offensive tools, tactics, and procedures in mission critical environments
  • Develop scripts, tools, and/or methodologies to enhance assessment processes
  • Communicate complex, technical challenges and findings to client stakeholders, management, and executive leaders
  • Develop comprehensive, actionable, and accurate reports & accompanying presentations for both executive leaders and technical audiences
Qualifications:
  • Two plus (2+) years' experience working in cloud environments (e.g., penetration testing, red team, assessment, engineering, & administration) with a strong understanding of cloud architecture and design
  • Five plus (5+) years' experience and possesses strong knowledge of Offensive Cyber Security and Penetration Testing methodologies
  • Proven experience using and testing automation tools (Terraform, Docker, Ansible, shell scripting, etc.)
  • Thorough understanding of network protocols, data transmission, and covert channels
  • Strong knowledge of Unix/Linux/Mac/Windows operating systems, inclusive of command-line interface (CLI) usage through Bash and PowerShell
  • Experience working as a member of a multi-disciplinary team, promoting a collaborative culture to achieve success
  • Ability to interface with customer stakeholders to clearly and concisely communicate the purpose and benefits of an assessment
  • Ability to effectively document and communicate technical details to executive leaders and principal stakeholders regarding kill chains, stages, dependencies, and impacts
  • Excellent verbal and written communication skills to effectively convey complex technical information to non-technical customers and stakeholders
  • Major cloud platforms, including AWS, Azure, Google, IBM, and/or Oracle Cloud
  • Container orchestration tools, particularly Kubernetes, for managing and deploying containerized applications in cloud environments
  • Strong knowledge of cloud architecture, including IAM, VPC, Storage Containers, and Databases
  • Cloud Services, including functions, logging, APIs, and native services
  • Bachelor's Degree (Engineering, Computer Science, Cyber Security, or related field) +8 years; or relevant education/experience (High School +12 years; Associates +10 years; Masters/PhD +4 years)
  • DoD 8140/8570 Professional Certification (required certification must be completed within six (6) months of start in the position)
  • Cloud relevant certifications (Preferred)
Desired Qualifications:
  • Incident Response, Incident Remediation, and Security Architecture experience
  • Knowledge of cloud-based CI/CD products, such as AWS Code Pipeline, Azure DevOps, and GCP Cloud Build
  • Knowledge of tools such as Terraform integrated with cloud-based CI/CD products
  • Strong understanding of Offense Security principles and methodologies, with a focus on proactively identifying, testing, and addressing vulnerabilities in cloud environments to strengthen overall security posture
Why Join Cyber Defense Technologies?
At CDT, we offer a collaborative and inclusive work environment where your expertise in Cloud Red Teaming/ Penetration Testing will help shape the future of cybersecurity and engineering solutions.
Compensation and Benefits:
  • Competitive salary based on experience.
  • Comprehensive benefits package, including health, dental, and retirement plans.
  • Opportunities for professional development and career advancement.
CDT is committed to hiring and retaining a diverse workforce. We are an Equal Opportunity employer making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class.
Apply Now:
If you are a proactive Red Team Operator/CloudPenetration Tester and thrive in dynamic environments, we encourage you to apply and join the CDT team!
Salary: $150,000 - $190,000