2

Entry Level Offensive Security Engineer Jobs in Washington, DC

In addition, desired skills/certifications are: o Offensive Security Experienced Pentester (OSEP ... Reverse Engineering Malware (GREM) Minimum Clearance Required to Start: Top Secret SCI This ...

In addition, desired skills/certifications are: o Offensive Security Experienced Pentester (OSEP ... Reverse Engineering Malware (GREM) Minimum Clearance Required to Start: Top Secret SCI This ...

Experience carrying out social-engineering assessments * Development/modification of exploits ... Offensive Security Certified Professional (OSCP) * Certified Red Team Professional (CRTP) * GIAC ...

Antivirus evasion, EDR evasion, offensive infrastructure, phishing and social engineering ... Security, Rogue Ops- Red Team 1 (ROPS), Certified Professional (OSCP), Global Information Assurance ...

Antivirus evasion, EDR evasion, offensive infrastructure, phishing and social engineering ... Security, Rogue Ops- Red Team 1 (ROPS), Certified Professional (OSCP), Global Information Assurance ...

next page

Showing results 1-20

Entry Level Offensive Security Engineer information

See Washington, DC salary details

$69.7K

$173K

$232.7K

How much do entry level offensive security engineer jobs pay per year?

As of Jul 31, 2026, the average yearly pay for entry level offensive security engineer in Washington, DC is $173,030.00, according to ZipRecruiter salary data. Most workers in this role earn between $162,000.00 and $179,500.00 per year, depending on experience, location, and employer.

What is the difference between Entry Level Offensive Security Engineer vs Penetration Tester?

AspectEntry Level Offensive Security EngineerPenetration Tester
CertificationsCompTIA Security+, CEH (Certified Ethical Hacker)CEH, OSCP (Offensive Security Certified Professional)
Work EnvironmentSecurity teams, cybersecurity firms, internal security departmentsConsulting firms, security companies, freelance engagements
Job FocusIdentify vulnerabilities, develop attack simulations, improve security posturePerform targeted security assessments, exploit vulnerabilities, report findings

Both roles involve assessing security weaknesses, often requiring similar certifications like CEH. An Entry Level Offensive Security Engineer typically works within organizations to strengthen defenses, while a Penetration Tester often conducts external assessments for clients. The main difference lies in their scope: engineers focus on proactive security development, whereas testers focus on identifying vulnerabilities through simulated attacks.

What are the key skills and qualifications needed to thrive as an Entry Level Offensive Security Engineer, and why are they important?

To thrive as an Entry Level Offensive Security Engineer, you need a solid understanding of network protocols, cybersecurity fundamentals, and common vulnerabilities, often supported by a bachelor's degree in computer science or a related field. Familiarity with penetration testing tools like Metasploit, Burp Suite, and knowledge of operating systems such as Linux is essential, and entry-level certifications like CompTIA Security+ or CEH are commonly valued. Strong analytical thinking, attention to detail, and effective communication skills help you identify security issues and clearly report findings. These competencies are crucial for assessing organizational security, executing ethical hacking tasks, and helping teams proactively defend against cyber threats.

What types of projects or tasks can an Entry Level Offensive Security Engineer expect to work on during their first year?

As an Entry Level Offensive Security Engineer, you will typically assist with vulnerability assessments, penetration testing, and security audits under the guidance of more experienced team members. Your daily tasks might include running automated scans, analyzing results, writing reports, and helping to develop and validate security tools. Collaboration with IT, development, and incident response teams is also common, as you work together to identify and remediate vulnerabilities. These experiences provide a strong foundation for professional growth and may lead to more advanced responsibilities over time.

What is an Entry Level Offensive Security Engineer?

An Entry Level Offensive Security Engineer is a cybersecurity professional who specializes in testing and assessing the security of computer systems, networks, and applications by simulating real-world attacks. Their primary responsibility is to identify vulnerabilities and weaknesses that malicious hackers could exploit. They use tools and techniques such as penetration testing, vulnerability scanning, and social engineering to find and report security issues. These engineers typically work under the guidance of more experienced team members and help organizations strengthen their security posture.
What are the most commonly searched types of Offensive Security Engineer jobs in Washington, DC? The most popular types of Offensive Security Engineer jobs in Washington, DC are:
What are popular job titles related to Entry Level Offensive Security Engineer jobs in Washington, DC? For Entry Level Offensive Security Engineer jobs in Washington, DC, the most frequently searched job titles are:
What job categories do people searching Entry Level Offensive Security Engineer jobs in Washington, DC look for? The top searched job categories for Entry Level Offensive Security Engineer jobs in Washington, DC are:
Infographic showing various Entry Level Offensive Security Engineer job openings in Washington, DC as of July 2026, with employment types broken down into 1% Locum Tenens, 93% Full Time, 3% Part Time, and 3% Contract. Highlights an 88% Physical, 5% Hybrid, and 7% Remote job distribution, with an average salary of $173,030 per year, or $83.2 per hour.

Web Developer Security Engineer with Security Clearance

Nationwide IT Service, Inc.

Washington, DC โ€ข On-site

Other

Re-posted 7 days ago


Job description

Web Developer Security Engineer Clearance Requirement: Public Trust (Tier 2) Location: Remote/Hybrid (as approved by customer) Position Overview: Nationwide IT Services (NIS) is seeking a Web Developer Security Engineer to support application security initiatives across web applications, APIs, and the software development lifecycle (SDLC). The selected candidate will be responsible for secure application design, vulnerability management, DevSecOps integration, security monitoring, WAF administration, File Integrity Monitoring (FIM), and Tier II security operations support. Required Experience: * Minimum 3 years of experience in Application Security and Secure Software Development Lifecycle (SSDLC). * Strong knowledge of web application security principles and OWASP Top 10 vulnerabilities. * Experience managing the full vulnerability lifecycle, including threat modeling, security assessments, remediation, and validation. * Experience with secure application design, architecture reviews, data protection, and secure communications. * Hands-on experience with Web Application Firewall (WAF) deployment, configuration, and tuning. * Experience with File Integrity Monitoring (FIM), log analysis, Indicators of Compromise (IOC) detection, and threat intelligence automation. * Experience supporting Tier II Security Operations. * Experience implementing DevSecOps practices and automated security controls within CI/CD pipelines. Technical Skills: * .NET Technologies: C#, ASP.NET MVC, WCF * Front-End: HTML5, CSS3, JavaScript, React, TypeScript * APIs & Databases: REST APIs, SQL * Programming/Scripting: Python, Node.js, Java * AI-Assisted Development Tools (e.g., GitHub Copilot) * Security Tools: SIEM, IDS/IPS, NDR, EDR * Cloud & Container Security: AWS, Docker, Kubernetes Compliance & Governance: * Experience supporting environments governed by NIST SP 800-53, FISMA, and FedRAMP. * Experience participating in audits, security assessments, and authorization activities. Education: * Bachelor's degree or higher in Computer Science, Cybersecurity, Information Systems, Engineering, or a related field. * Required Certifications: Application Security (One Required): * CSSLP, OR * GIAC Web Application Penetration Tester (GWEB), OR * CASE Offensive Security (One Required): * OSWE, OR * OSCP Foundational Security (One Required): * Security+, OR * GSEC Preferred Qualifications: * Experience securing federal government applications and systems. * Experience integrating security controls into modern CI/CD pipelines. * Strong understanding of cloud-native and containerized application security. Key Responsibilities: * Perform application security reviews and threat modeling. * Conduct vulnerability assessments and oversee remediation efforts. * Implement and maintain security controls within CI/CD pipelines. * Configure and tune WAF and File Integrity Monitoring solutions. * Analyze logs, investigate security events, and support incident response activities. * Collaborate with development teams to ensure secure coding practices. * Support compliance, audit, and security authorization requirements. Working at NIS means being part of a company grounded in purpose, resilience, and a genuine commitment to people. Since its founding in 2006, NIS has focused not only on delivering exceptional services to our government customers, but also supporting our nation, taxpayers, and citizens-while consistently prioritizing the well-being and growth of its employees. Today, NIS continues to evolve by embracing remote work, enhancing wellness initiatives, and investing in modern technology, all while staying true to its mission.