1

Contract Penetration Test Jobs (NOW HIRING)

Penetration Test Lead

Falls Church, VA · On-site

$180K - $210K/yr

This position is contingent upon contract award. Summary: Penetration Test Leads plan and execute complex offensive security assessments identifying exploitable vulnerabilities before adversaries can.

Penetration Test Lead

Falls Church, VA · On-site

$180K - $210K/yr

This position is contingent upon contract award. Summary: Penetration Test Leads plan and execute complex offensive security assessments identifying exploitable vulnerabilities before adversaries can.

OR · On-site

Contract Penetration Tester At Bishop Fox, securityisn'tjust a job-it'sour passion. As leaders in ... tests * Deep understanding of application security fundamentals, OWASP Top 10, common ...

Contract Penetration Tester At Bishop Fox, security isn't just a job-it's our passion. As leaders ... tests * Deep understanding of application security fundamentals, OWASP Top 10, common ...

They are seeking a Penetration Tester II to support a government contract and conduct various types of penetration tests, including Red Team engagements and IoT device testing. Responsibilities : • ...

They are seeking a Penetration Tester II to work on-site in support of a government contract ... Required : • Bachelor's degree. • At least three (3) years of pen test experience. • ...

Senior Penetration Testing Lead

Falls Church, VA · On-site

$122K - $167K/yr

This position is contingent upon contract award. The War Data Platform (WDP) is a key initiative ... detected. • Produces comprehensive penetration test reports detailing attack vectors ...

M9 Solutions is seeking a Penetration Tester II to work on-site in support of a government contract ... At least three (3) years of pen test experience. * Experience with continuous penetration testing ...

... contract for a client located in Chandler, AZ or Washington, DC. An active Secret clearance is ... At least five (5) years of pen test experience, preferably seven (7) years. * Experience in ...

Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit. POSITION RESPONSIBILITIES * Conduct vulnerability assessments and penetration tests

Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit. POSITION RESPONSIBILITIES * Conduct vulnerability assessments and penetration tests

Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit. POSITION RESPONSIBILITIES * Conduct vulnerability assessments and penetration tests

Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit. POSITION RESPONSIBILITIES * Conduct vulnerability assessments and penetration tests

Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit. POSITION RESPONSIBILITIES * Conduct vulnerability assessments and penetration tests

Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit. POSITION RESPONSIBILITIES * Conduct vulnerability assessments and penetration tests

Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit. POSITION RESPONSIBILITIES * Conduct vulnerability assessments and penetration tests

Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit. POSITION RESPONSIBILITIES * Conduct vulnerability assessments and penetration tests

next page

Showing results 1-20

Contract Penetration Test information

See salary details

$22.5K

$119.9K

$168.5K

How much do contract penetration test jobs pay per year?

As of Jun 12, 2026, the average yearly pay for contract penetration test in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is the difference between Contract Penetration Test vs Vulnerability Analyst?

AspectContract Penetration TestVulnerability Analyst
CertificationsOSCP, CEH, GPENOSCP, CISSP, CEH
Work EnvironmentProject-based, on-site or remoteContinuous monitoring, office or remote
Industry UsageCybersecurity firms, consultingIn-house security teams, IT departments

Contract Penetration Testers focus on simulating attacks to identify security weaknesses during specific projects, often working with external clients. Vulnerability Analysts continuously monitor and analyze security vulnerabilities within an organization’s systems. While both roles require similar certifications and work in cybersecurity, their focus and work style differ significantly.

More about Contract Penetration Test jobs
What cities are hiring for Contract Penetration Test jobs? Cities with the most Contract Penetration Test job openings:
What are the most commonly searched types of Penetration Test jobs? The most popular types of Penetration Test jobs are:
What states have the most Contract Penetration Test jobs? States with the most job openings for Contract Penetration Test jobs include:
Infographic showing various Contract Penetration Test job openings in the United States as of June 2026, with employment types broken down into 5% Full Time, 48% Part Time, and 47% Contract. Highlights an 92% Physical, 1% Hybrid, and 7% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.
Penetration Test Lead

Penetration Test Lead

ZTI Solutions, LLC

Falls Church, VA • On-site

$180K - $210K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 23 days ago


Job description

Penetration Testing Lead
Falls Church, Virginia.
Full-time.
Important Notice: This position is contingent upon contract award.
Summary:
Penetration Test Leads plan and execute complex offensive security assessments identifying exploitable vulnerabilities before adversaries can. This role leads penetration testing engagements, develops testing methodologies, coordinates with system owners, and produces comprehensive penetration testing reports. Pen Test Leads possess advanced offensive security skills and ensure testing is conducted safely without impacting production operations.
Key Responsibilities:
  • Plan and scope 15-30 penetration testing engagements annually.
  • Execute network penetration tests identifying exploitable vulnerabilities.
  • Conduct web application security assessments (OWASP Top 10).
  • Perform social engineering tests (phishing, vishing, physical security)
  • Lead 2-4 major red team exercises annually.
  • Identify 100-300 exploitable vulnerabilities annually.
  • Document 10-40 critical/high severity findings requiring immediate remediation.
  • Produce 15-30 comprehensive penetration test reports annually.
  • Conduct 50-150 vulnerability revalidation tests verifying fixes.

Performance Metrics:
  • Annual Assessments: 15-30 penetration tests.
  • Systems Tested: 30-80 systems assessed annually.
  • Vulnerabilities Found: 100-300 exploitable issues identified.
  • Critical Findings: 10-40 requiring immediate action.
  • Assessment Reports: 15-30 comprehensive deliverables.
  • Red Team Exercises: 2-4 major exercises annually.
  • Remediation Validation: 50-150 retests annually.

Requirements:
  • Clearance: Secret (NIPR), Top Secret (SIPR), or TS/SCI Eligible (JWICS) based on network assignment.
  • Education: Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, or related field.
  • Experience: 10+ years information security; 5+ years penetration testing experience
  • Certifications: OSCP or GPEN required; OSCE, GXPN, GWAPT, or other offensive security certifications highly desired
  • Technical Knowledge: Expert knowledge of penetration testing methodologies (PTES, OWASP, NIST 800-115), network protocols, web applications, exploitation techniques, security controls

About Advana:
Advana is the Department of Defense Chief Digital and Artificial Intelligence Office's (CDAO) enterprise-wide data, analytics, and AI platform. Advana provides DoD military and civilian decision makers with unprecedented access to enterprise data, tools, and capabilities in a secure environment. The platform hosts hundreds of curated applications across logistics, financial management, personnel, health, and other domains, accelerating decision advantage through accessible, actionable data and AI capabilities.
This position supports comprehensive cybersecurity operations for the Advana platform across three classified networks (NIPR, SIPR, JWICS).
Important Notes:

Position Status:
  • This position is contingent upon contract award.
  • Start date will be determined upon contract award.
  • We will maintain contact with selected candidates throughout the award process.

Work Requirements:
  • U.S. Citizen required.
  • Clearance varies by network: Secret (NIPR), Top Secret (SIPR), or TS/SCI Eligible (JWICS).
  • On-premises work required at Suffolk Building, Falls Church, VA.
  • No remote work options available.
  • Standard business hours with operational flexibility.

Benefits:
  • 4 Weeks Paid Time Off.
  • All Federal Holiday’s Paid Vacation.
  • Four Percent Matching 401K.
  • Full health/vision/dental benefits for the employee and family paid 100% by ZTI Solutions, LLC.

We thank all applicants for their interest. Only candidates selected for interviews will be contacted.