... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
Senior Manual Ethical Hacker
Denver, CO · On-site
$109K - $148K/yr
... will lead ethical hacking assessments to evaluate the security resilience of the bank ... penetration testing tools, triage, and support incidents, and produce high value findings • ...
Senior Manual Ethical Hacker
Denver, CO · On-site
$109K - $148K/yr
... will lead ethical hacking assessments to evaluate the security resilience of the bank ... penetration testing tools, triage, and support incidents, and produce high value findings • ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
... ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert ...
Senior Penetration Tester
$90K - $150K/yr
Certified Ethical Hacker (CEH) * Global Information Assurance Certification Penetration Tester ... UNAVAILABLEEmployment Type: FULL_TIME
Senior Penetration Tester
$90K - $150K/yr
Certified Ethical Hacker (CEH) * Global Information Assurance Certification Penetration Tester ... UNAVAILABLEEmployment Type: FULL_TIME
Penetration Tester
Washington, DC · Hybrid
This role combines hands-on testing with leadership, mentoring, and collaboration across ... CEH (Certified Ethical Hacker) * CISSP (Certified Information Systems Security Professional ...
Penetration Tester
Washington, DC · Hybrid
This role combines hands-on testing with leadership, mentoring, and collaboration across ... CEH (Certified Ethical Hacker) * CISSP (Certified Information Systems Security Professional ...
IT Security Specialist - Penetration Tester
Silver Spring, MD · On-site
$125K - $150K/yr
A minimum of 5 years of proven penetration testing and ethical hacking experience. * Hands-on experience in penetration testing across AWS, Azure, and On-Premise environments. * At least 5 years of ...
IT Security Specialist - Penetration Tester
Silver Spring, MD · On-site
$125K - $150K/yr
A minimum of 5 years of proven penetration testing and ethical hacking experience. * Hands-on experience in penetration testing across AWS, Azure, and On-Premise environments. * At least 5 years of ...
Penetration Tester
Washington, DC · Hybrid
This role combines hands-on testing with leadership, mentoring, and collaboration across ... CEH (Certified Ethical Hacker) * CISSP (Certified Information Systems Security Professional ...
Penetration Tester
Washington, DC · Hybrid
This role combines hands-on testing with leadership, mentoring, and collaboration across ... CEH (Certified Ethical Hacker) * CISSP (Certified Information Systems Security Professional ...
Senior Manual Ethical Hacker
Denver, CO · On-site
$102K - $132K/yr
Manual Ethical Hacking is part of the Application Development Security Framework Program within ... Experience with vulnerability assessment tools and penetration testing techniques. * Solid ...
Senior Manual Ethical Hacker
Denver, CO · On-site
$102K - $132K/yr
Manual Ethical Hacking is part of the Application Development Security Framework Program within ... Experience with vulnerability assessment tools and penetration testing techniques. * Solid ...
Manual Ethical Hacker
Charlotte, NC · On-site
... ethical hacking experience, preferably in a large, complex, enterprise environment • Detailed ... penetration testing tools, triage, and support incidents, and produce high value findings • ...
Manual Ethical Hacker
Charlotte, NC · On-site
... ethical hacking experience, preferably in a large, complex, enterprise environment • Detailed ... penetration testing tools, triage, and support incidents, and produce high value findings • ...
Full Time Penetration Testing Ethical Hacking information
See salary details
$22.5K - $35.8K
0% of jobs
$35.8K - $49K
0% of jobs
$49K - $62.3K
2% of jobs
$62.3K - $75.6K
3% of jobs
$75.6K - $88.9K
1% of jobs
$101.1K is the 25th percentile. Wages below this are outliers.
$88.9K - $102.1K
20% of jobs
$102.1K - $115.4K
14% of jobs
The median wage is $120.4K / yr.
$115.4K - $128.7K
26% of jobs
$138.1K is the 75th percentile. Wages above this are outliers.
$128.7K - $142K
13% of jobs
$142K - $155.2K
13% of jobs
$155.2K - $168.5K
9% of jobs
$22.5K
$119.9K
$168.5K
How much do full time penetration testing ethical hacking jobs pay per year?

Full-time
Re-posted 12 days ago
Job description
KPMG US is a leading advisory firm that offers opportunities for career advancement and expertise development. They are seeking a Senior Specialist, MAST Application Penetration Tester to conduct manual penetration testing and evaluate application security, while fostering a collaborative and professional environment.
Responsibilities:
• Conduct manual application penetration testing against API's (REST/SOAP), Web Applications, Mobile applications, and thick client applications
• Perform objective based on abstract penetration testing engagements
• Execute threat modeling, evaluate application business logic, and perform application architecture reviews
• Demonstrate application testing experience in real time via demos to both internal and external audiences
• Function independently in penetration testing engagements, with minimal oversight and guidance
• Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment
Qualifications:
Required:
• Minimum three years of recent experience in application penetration testing of Application Programming Interface (API's), web applications, or mobile applications
• Bachelor's degree from an accredited college/university or equivalent industry experience
• Ability to communicate reporting results with technical and non-technical audiences and lead remediation conversations
• Experience with burp suite pro, and other app testing tools such as Netsparker and Checkmarx
• Ability to travel as required
• Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)
Preferred:
• One or more major ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA)
Company:
KPMG is one of the world’s leading professional services firms and the fastest growing Big Four accounting firm in the United States. Founded in 2010, the company is headquartered in New York, USA, with a team of 10001+ employees. The company is currently Late Stage.