1

Dod Penetration Testing Jobs (NOW HIRING)

Penetration Tester

Chantilly, VA · Hybrid

$113K - $237K/yr

OWASP top 10, DoD and NSA Vulnerability and Penetration Testing Standards. Knowledge of exploitation concepts including phishing and social engineering tactics, buffer overflows, fuzzing, SQLi, MiTM ...

... testing methodologies; identifies common vulnerabilities that can be potentially exploited ... DoD 8140 - CSSP Incident Responder certification: * CyberSec First Responder (CFR) * Cisco Cert. ...

Penetration Tester

Chantilly, VA · On-site

$150K - $195K/yr

... testing methodologies; identifies common vulnerabilities that can be potentially exploited ... DoD 8140 - CSSP Incident Responder certification: • CyberSec First Responder (CFR) • Cisco ...

... testing methodologies; identifies common vulnerabilities that can be potentially exploited ... DoD 8140 - CSSP Incident Responder certification: • CyberSec First Responder (CFR) • Cisco ...

... testing methodologies; identifies common vulnerabilities that can be potentially exploited ... DoD 8140 - CSSP Incident Responder certification: • CyberSec First Responder (CFR) • Cisco ...

... federal DoD space as a leading FedRAMP 3PAO and the first assessment firm authorized as a CMMC ... This is a rare opportunity to transition to a focused penetration testing position to build on your ...

next page

Showing results 1-20

Dod Penetration Testing information

See salary details

$22.5K

$119.9K

$168.5K

How much do dod penetration testing jobs pay per year?

As of Jun 14, 2026, the average yearly pay for dod penetration testing in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is the difference between Dod Penetration Testing vs Cybersecurity Analyst?

AspectDod Penetration TestingCybersecurity Analyst
CertificationsOSCP, CEH, CISSPCISSP, Security+, CEH
Work EnvironmentConducts simulated attacks on systems to identify vulnerabilitiesMonitors security systems, analyzes threats, and implements defenses
Employer & Industry UsagePrimarily in defense, government, and security firmsAcross various industries including finance, healthcare, and tech

While both roles focus on cybersecurity, Dod Penetration Testing specializes in offensive security by simulating attacks to find vulnerabilities, often within government or defense sectors. Cybersecurity Analysts focus on defending systems through monitoring and threat analysis across diverse industries. Understanding these differences helps organizations assign the right security roles based on their needs.

What are the key skills and qualifications needed to thrive as a DoD Penetration Tester, and why are they important?

To thrive as a DoD Penetration Tester, you need a deep understanding of cybersecurity concepts, network protocols, and ethical hacking, often supported by a bachelor’s degree in computer science or related field and relevant security clearances. Familiarity with tools like Metasploit, Burp Suite, Nessus, and certifications such as CEH, OSCP, or CISSP are typically required. Strong analytical thinking, attention to detail, and effective communication skills help you identify vulnerabilities and clearly report findings to technical and non-technical stakeholders. These skills are crucial for protecting sensitive military systems and ensuring compliance with federal cybersecurity standards.

What are some common challenges faced by DoD Penetration Testers when working on classified networks?

DoD Penetration Testers often encounter challenges such as navigating strict security protocols, obtaining necessary clearances, and adhering to rigorous documentation requirements. Working on classified networks means testers must follow specific guidelines for handling sensitive information, which can limit the use of certain tools or techniques. Collaboration with other security professionals and stakeholders is essential, but communication must always comply with operational security standards. These factors make thorough preparation and adaptability key to success in the role.

What is DoD penetration testing?

DoD penetration testing refers to security assessments conducted for the United States Department of Defense (DoD) to identify and address vulnerabilities in their systems, networks, or applications. These tests simulate real-world cyberattacks to evaluate the effectiveness of security controls and ensure compliance with DoD cybersecurity standards, such as those outlined in the Risk Management Framework (RMF). The goal is to proactively discover and remediate weaknesses before they can be exploited by adversaries, helping to protect sensitive military information and maintain operational readiness.
Infographic showing various Dod Penetration Testing job openings in the United States as of June 2026, with employment types broken down into 67% Full Time, and 33% Contract. Highlights an 100% In-person job distribution, with an average salary of $119,895 per year, or $57.6 per hour.
Penetration Tester

Penetration Tester

CACI International

Chantilly, VA • Hybrid

$113K - $237K/yr

Other

Medical, Retirement, PTO

Posted 7 days ago


Job description

Job Title: Penetration Tester

Job Category: Engineering

Time Type: Full time

Minimum Clearance Required to Start: TS/SCI with Polygraph

Employee Type: Regular

Percentage of Travel Required: None

Type of Travel: None

The Opportunity:

Perform computer network evaluations to include penetration security assessments in a cybersecurity red team environment.

Be part of a department with an expanding range of programs focusing on Cyber Operations, where you get to grow on and between programs with peers who are dedicated to advancing national security. Participate in fun team outings and team building events where you get to engage with your co-workers and expand your career network. We are a fun, engaging environment with a management team focused on growing your career and making you a part of our future. We offer bonus compensation plans that demonstrate you being appreciated for working on the program and being a part of our team. You'll get paid for cyber events and training, such as our Capture the Flag Events, Internal Research and Development opportunities as well as prepaid courses to nationally recognized certification courses to grow your career. You can visit our landing page by accessing this site: VORPAL Jobs (https://careers.caci.com/vorpal) .

Qualifications :

Required:

Experience performing Red Team, Blue Team Operations.

Certifications such as OSCP, OSCE, GPEN, GWAPT, GPEN, GXPN, CEH, CISSP.

Malware analysis or digital computer forensics experience.

Cyber related Law Enforcement or Counterintelligence experience.

*Scripting (Windows/nix), Bash, Python, Perl or Ruby, Systems Programming is a plus.

Existing Subject Matter Expert of Advanced Persistent Threats and Emerging Threats.

Proactive interest in emerging technologies and techniques related to penetration testing.

Demonstrated real world experience performing grey and black box penetration testing.

Have an understanding of and interest in common web application vulnerabilities like XSS, CSRF, Command Injection, SQLi, single sign-on limitations, etc.

Must be proficient in any of the following: PowerShell Empire, Metasploit Framework, Cobalt Strike, Burp Suite, Canvas, Kali Linux, IPTables, Sysinternals, A/V evasion methodologies, Exploit Dev.

Must have solid working experience and knowledge of Windows operating systems (incl. Active Directory), Linux operating systems; ESXi or similar; mobile platforms are a plus.

Solid understanding of networking, TCP/IP, virtualization and cloud/data center architecture.

Strong familiarity with some of the following: OWASP top 10, DoD and NSA Vulnerability and Penetration Testing Standards.

Knowledge of exploitation concepts including phishing and social engineering tactics, buffer overflows, fuzzing, SQLi, MiTM, covert channels, secure tunneling and open source exfiltration techniques.

Bachelors degree in related field.

Active TS/SCI w/polygraph clearance.

This position is contingent on funding and may not be filled immediately. However, this position is representative of positions within CACI that are consistently available. Individuals who apply may also be considered for other positions at CACI.

What You Can Expect:

A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.

Pay Range :

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is:

$113,200 - $237,800

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.