1

Cybersecurity Penetration Tester Jobs (NOW HIRING)

Apply offensive cybersecurity testing techniques, including manual and automated testing methods. * Coordinate penetration testing activities and schedules with internal stakeholders, system owners ...

Penetration Tester Locations: Los Angeles (CA), Dallas (TX), Washington DC. Responsibilities ... Thorough understanding of network protocols and cyber-security fundamentals is required * Bachelor ...

Holds or is working toward penetration testing and offensive security certifications appropriate ... cybersecurity certifications. Required Education: BS/BA degree Required Experience: 5 years ...

Possess extensive knowledge of cybersecurity frameworks, industry standards, and advanced security ... TS/SCI with Poly Level 2 Penetration Tester: Education: Bachelor's Degree or Higher, AND Pen Tester ...

Holds or is working toward penetration testing and offensive security certifications appropriate ... cybersecurity certifications. Required Education: BS/BA degree Required Experience: 5 years ...

Assists with planning, scoping, and execution of penetration tests in coordination with Government stakeholders and senior cybersecurity personnel. Conducts technical testing activities, including ...

Penetration Tester

Chantilly, VA · On-site

$150K - $195K/yr

Possess extensive knowledge of cybersecurity frameworks, industry standards, and advanced security ... TS/SCI with Poly Level 2 Penetration Tester: Education: Bachelor's Degree or Higher, AND Pen Tester ...

Penetration Tester

Chantilly, VA · On-site

$150K - $195K/yr

Possess extensive knowledge of cybersecurity frameworks, industry standards, and advanced security ... TS/SCI with Poly Level 2 Penetration Tester: Education: Bachelor's Degree or Higher, AND Pen Tester ...

Penetration Tester

Washington, DC · Hybrid

$130K - $145K/yr

Performing a cybersecurity evaluation of the product under test to identify vulnerabilities that would negatively impact the confidentiality, integrity, or availability of system data or ...

next page

Showing results 1-20

Cybersecurity Penetration Tester information

See salary details

$22.5K

$119.9K

$168.5K

How much do cybersecurity penetration tester jobs pay per year?

As of Jun 12, 2026, the average yearly pay for cybersecurity penetration tester in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What do penetration testers do in cyber security?

Penetration testers, also known as ethical hackers, evaluate the security of computer systems and networks by simulating cyberattacks to identify vulnerabilities. They use tools like vulnerability scanners and follow industry standards such as the OSCP or CEH certifications to assess security defenses and recommend improvements.

What are the key skills and qualifications needed to thrive in the Cybersecurity Penetration Tester position, and why are they important?

To thrive as a Cybersecurity Penetration Tester, you need strong knowledge of network security, vulnerability assessment methodologies, and experience with operating systems and programming, often supported by a degree in computer science or related certifications. Familiarity with tools like Metasploit, Burp Suite, Nmap, and certifications such as OSCP or CEH is highly valued. Excellent analytical thinking, attention to detail, and clear communication set top performers apart in this role. These skills and qualities are essential to effectively identify security gaps, deliver actionable insights, and collaborate with teams to enhance organizational defenses.

What is a Cybersecurity Penetration Tester job?

A Cybersecurity Penetration Tester, or ethical hacker, is responsible for assessing an organization's security by simulating cyberattacks to identify vulnerabilities. They use various tools and techniques to exploit weaknesses in networks, applications, and systems before malicious hackers can. Their findings help improve security defenses by recommending remediation measures. Penetration testers often work with security teams to ensure compliance with industry standards and best practices.

Will pentesters be replaced by AI?

Cybersecurity penetration testers use manual testing, creativity, and critical thinking to identify vulnerabilities that AI tools alone cannot fully replicate. While AI can assist in automating certain tasks and analyzing large data sets, human expertise remains essential for complex assessments, interpreting results, and adapting to new threats. Continuous learning and certification in tools like Kali Linux or Burp Suite help pentesters stay effective alongside evolving AI technologies.

How much does a cyber security penetration tester make?

A cybersecurity penetration tester typically earns between $70,000 and $130,000 annually, depending on experience, certifications, and location. Senior testers with advanced skills and certifications like OSCP or CISSP can earn higher salaries, especially in high-demand environments.

What does a typical workday look like for a Cybersecurity Penetration Tester?

A typical day for a Cybersecurity Penetration Tester involves planning and executing simulated cyberattacks on applications, networks, and systems to identify vulnerabilities. You will document findings, create detailed reports for technical and non-technical stakeholders, and often collaborate with IT, security, and development teams to consult on mitigation strategies. While the job can involve independent testing, it frequently requires teamwork during project scoping and debrief sessions. Expect a mix of structured tasks and dynamic problem-solving, as new security threats and client needs often shift priorities. This variety makes the role both challenging and rewarding for those who enjoy solving complex security puzzles.

Can you make $500,000 a year in cyber security?

Cybersecurity penetration testers can potentially earn $500,000 annually with extensive experience, advanced certifications like OSCP or CISSP, and specialization in high-demand areas such as red teaming or threat hunting. Achieving this level often requires senior roles, leadership positions, or consulting work in large organizations or as independent contractors.
What cities are hiring for Cybersecurity Penetration Tester jobs? Cities with the most Cybersecurity Penetration Tester job openings:
What are the most commonly searched types of Cybersecurity Penetration Tester jobs? The most popular types of Cybersecurity Penetration Tester jobs are:
What states have the most Cybersecurity Penetration Tester jobs? States with the most job openings for Cybersecurity Penetration Tester jobs include:
Infographic showing various Cybersecurity Penetration Tester job openings in the United States as of June 2026, with employment types broken down into 2% Internship, 90% Full Time, 3% Part Time, 2% Temporary, and 3% Contract. Highlights an 59% Physical, 1% Hybrid, and 40% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.
Cybersecurity Penetration Tester

Cybersecurity Penetration Tester

Idaho National Laboratory

Idaho Falls, ID • On-site

$95K - $195K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 13 days ago


Idaho National Laboratory rating

8.8

Company rating: 8.8 out of 10

Based on 16 frontline employees who took The Breakroom Quiz

12th of 103 rated laboratories


Job description

Job Description
Idaho National Laboratory needs Cybersecurity Penetration Tester to protect cutting-edge nuclear and critical infrastructure systems by identifying specific vulnerabilities and recommending expeditious remediation. You'll correlate incident data to pinpoint weaknesses, develop reverse engineering tools to detect vulnerabilities, recommend cost-effective security controls to mitigate risk, and analyze organizational cyber defense policies for compliance. Your responsibilities include conducting or supporting authorized penetration testing on enterprise network assets, maintaining deployable cyber defense audit toolkits, preparing audit reports with technical and procedural findings and recommended remediation strategies, conducting technical and nontechnical risk and vulnerability assessments of technology environments, and implementing Risk Management Framework and Security Assessment and Authorization requirements for cyber defense systems. Your expertise will protect the infrastructure supporting naval propulsion systems, electric grid modernization, and breakthrough research that secures the nation's energy independence and technological advancement.
Essential Job Functions:
  • Correlate incident data to identify specific vulnerabilities and recommend expeditious remediation.
  • Develop reverse engineering tools to detect vulnerabilities.
  • Recommend cost-effective security controls to mitigate risk.
  • Analyze and evaluate organizational cyber defense policies for compliance.
  • Conduct or support authorized penetration testing on enterprise network assets.
  • Maintain deployable cyber defense audit toolkit.
  • Prepare audit reports with technical and procedural findings and recommended remediation strategies.
  • Conduct technical and nontechnical risk and vulnerability assessments.
  • Proactively identify, exploit and help remediate security vulnerabilities across our infrastructure, applications and cloud environments.
  • In addition to independent offensive operations, you will work closely with our defensive teams in Purple team exercises to stress our detection and response capabilities.

Required:
  • Level 3: Bachelor's degree in a related technical field such as computer science or computer engineering and 5 years of relevant experience; or a Master's degree in a related technical field such as computer science or computer engineering and 2 years or relevant experience; or in lieu of a degree, 11 years of relevant experience.
  • Level 4: Bachelor's degree in a related technical field such as computer science or computer engineering and 9 years of relevant experience; or a Master's degree in a related technical field such as computer science or computer engineering and 6 years or relevant experience; or in lieu of a degree, 15 years of relevant experience.
  • Must be a US Citizen and able to obtain and maintain a DOE "L" clearance.

The ideal candidate will possess:
  • CISSP certification.
  • Experience with ICS/SCADA/PIT Systems, Security+, and Splunk.
  • Direct technical experience in Enhanced Security Environments.

Physical Requirements:
While performing the duties of this classification, the employee is frequently required to stand, walk, sit, stoop, kneel, bend, and work in an office and laboratory environment. The job requires hand/finger dexterity to keyboard or type, handle materials, manipulate tools, and reach with hands and arms. The job requires operation of job-related equipment and driving a vehicle. The employee must occasionally lift and/or move up to 30 pounds without assistance. Sufficient visual acuity and hearing capacity to perform the essential functions and interact with the public is required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Job Information:
Idaho National Laboratory is hiring a Cybersecurity PenTester to work on our Architecture, Engineering, and Operations team. Our team works a 9x80 schedule located out of our REC facility with every other Friday off.
  • The pay range for this position is: Level 3 ($79,344 - $162,732) / Level 4 ($95,256 - $195,288). At Idaho National Laboratory compensation decisions are determined using factors such as education, relevant experience, and other credentials.
  • Multi-Level: This is a multi-level posting and you will be placed at the appropriate level dependent on depth and breadth of proven experience and skills.
  • TDP: This is a testing designated position; you will be required to submit to a pre-employment drug screen and periodic drug testing throughout the term of your employment.

About Us
Benefits and Relocation
  • Medical, Dental, Vision, and Flexible Spending Accounts
  • 401(k) with a 4.2% employer contribution and up to 4.8% match (regular positions) or self-contribute access (postdoctoral positions)
  • Paid time off (personal leave)
  • Employee Education Program (tuition assistance for eligible positions)
  • Comprehensive Relocation Package
  • Benefit eligibility subject to multiple factors, including employment status and position classification.

At this time, BEA will not sponsor any H1-B visas obtained outside of the United States of America (U.S.A.), including consular visas.
INL is a science-based, applied engineering national laboratory dedicated to supporting the U.S. Department of Energy's mission in nuclear energy research, science, and national defense. With more than 6,300 scientists, researchers, and support staff, the laboratory works with national and international governments, universities and industry partners to change the world's energy future and secure our nation's critical infrastructure.
INL Mission:
Our mission is to discover, demonstrate and secure innovative nuclear energy solutions, other clean energy options and critical infrastructure.
INL Vision:
Our vision is to change the world's energy future and secure our nation's critical infrastructure.
Selective Service Requirements:
To be eligible for employment at INL males born after December 31, 1959 must have registered with the Selective Service System (SSS). For more information see www.sss.gov.
Equal Employment Opportunity:
Idaho National Laboratory (INL) is an Equal Employment Opportunity (EEO) employer. It is the policy of INL to provide equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information.
Reasonable Accommodation:
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
Other Information:
When applying to positions please provide a resume and answer all questions on the following screens. Applicants, who fail to provide a resume or answer the questions, may be deemed ineligible for consideration.
INL does not accept resumes from third party vendors unsolicited.

What Idaho National Laboratory employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom


Idaho National Laboratory logo

About Idaho National Laboratory

Sourced by ZipRecruiter

Idaho National Laboratory is a leading multi-disciplinary national laboratory dedicated to supporting the U.S. Department of Energy's missions in nuclear and energy research, science, and national defence. Located in Idaho Falls, ID, US, it operates under the management of Battelle Energy Alliance. Since its inception in 1949, the lab has remained at the forefront of nuclear energy innovations and advancements, providing critical scientific and technological inputs to support national priorities. Guided by its commitment to excellence, innovative research, collaborative partnerships, and integrity, the lab continues to play a vital role in driving America's nuclear and energy future.

Industry

Scientific research and development services

Company size

5,001 - 10,000 Employees

Headquarters location

Idaho Falls, ID, US

Year founded

1949

Social media