1

Gwapt Jobs in Virginia (NOW HIRING)

OSCP, CEH, GWAPT, CISSP or other equivalent. * Experience with custom programming languages: Python, Perl, Powershell, etc. * Fluent knowledge of NIST and FIPS security controls, DISA STIGs, and CIS ...

Offensive Security Engineer

Mclean, VA · On-site

$120 - $160/hr

Relevant certifications such as OSWE, CREST (CRT, CCT), OSCP, OSCE, GXPN, GWAPT, GPEN, GMOB, or BSCP. Chase is a leading financial services firm, helping nearly half of America's households and small ...

GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:

OSCP, OSCE, OSWP, OSWE, CEH, ECSA, CEH Practical, ECSA Practical, LPT Master, GCIH, GPEN, GWAPT, GXPN, or GAWN. * Blue Teaming certifications are also accepted: CND, CNDA, GCIH, GCIA, GDAT, GDSA ...

Industry certifications such as OSCP, OSCE, GPEN, GWAPT, CISSP, or equivalent would be an advantage. Benefits that support every part of your life: At TransUnion, we design benefits to help you feel ...

Red Team Penetration Tester

King George, VA · On-site +1

$110K - $150K/yr

SEC542 - Web App Penetration Testing and Ethical Hacking (GWAPT Certification) * SEC660 - Advance Penetration Testing. Exploit Writing, and Ethical Hacking (GXPN Certification) * SEC642 - Advanced ...

OSCP, OSCE, OSWE, GWAPT, or GPEN certifications (or other relevant certifications) * Ability to quickly assess new and leading-edge technologies and concepts * Ability to manage multiple priorities ...

Penetration Tester

Alexandria, VA · On-site

$75 - $85/hr

OSCP, CEH, GPEN, GWAPT, PenTest+, or eCPPT. Recruitment Transparency Notice Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial ...

Industry certifications such as OSCP, OSCE, GPEN, GWAPT, CISSP, or equivalent would be an advantage. Benefits that support every part of your life: At TransUnion, we design benefits to help youfeel ...

Industry certifications such as OSCP, OSCE, GPEN, GWAPT, CISSP, or equivalent would be an advantage. Benefits that support every part of your life: At TransUnion, we design benefits to help youfeel ...

Penetration Tester

Alexandria, VA · On-site

$75 - $85/hr

OSCP, CEH, GPEN, GWAPT, PenTest+, or eCPPT. Recruitment Transparency Notice Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial ...

Industry certifications such as OSCP, OSCE, GPEN, GWAPT, CISSP, or equivalent would be an advantage. Benefits that support every part of your life: At TransUnion, we design benefits to help youfeel ...

Penetration Tester

Chantilly, VA · On-site

$113K - $237K/yr

Certifications such as OSCP, OSCE, GPEN, GWAPT, GPEN, GXPN, CEH, CISSP. * Malware analysis or digital computer forensics experience. * Cyber related Law Enforcement or Counterintelligence experience.

Showing results 21-40

Gwapt information

See Virginia salary details

$87

$93

$95

How much do gwapt jobs pay per hour?

As of Aug 26, 2026, the average hourly pay for gwapt in Virginia is $93.33, according to ZipRecruiter salary data. Most workers in this role earn between $92.81 and $94.21 per hour, depending on experience, location, and employer.

What is a GWAPT?

A GWAPT (GIAC Web Application Penetration Tester) job involves assessing the security of web applications by identifying vulnerabilities and potential exploits. Professionals in this role use penetration testing techniques, ethical hacking tools, and security methodologies to evaluate application security risks. They often work in cybersecurity teams to enhance web application defenses and ensure compliance with industry security standards.

What is a GWAPT certification?

GWAPT stands for GIAC Web Application Penetration Tester. It is a certification that validates a professional’s ability to assess web applications for vulnerabilities and security flaws using both manual and automated techniques. The certification is offered by the Global Information Assurance Certification (GIAC) and is commonly pursued by cybersecurity professionals specializing in web application security testing. GWAPT holders have demonstrated knowledge in areas such as authentication bypass, session management, and exploiting web application vulnerabilities.

What are the key skills and qualifications needed to thrive as a GWAPT?

To thrive as a GWAPT, you need a solid understanding of web application security, vulnerability assessment, and penetration testing methodologies, typically supported by the GIAC GWAPT certification or equivalent experience. Familiarity with technical tools like Burp Suite, OWASP ZAP, and knowledge of the OWASP Top Ten are commonly required. Strong analytical thinking, attention to detail, and clear communication skills help professionals identify, explain, and remediate security issues effectively. These competencies are critical for safeguarding web applications against evolving threats and ensuring robust security postures.

What are the common challenges faced by professionals in GWAPT roles, and how can they be addressed?

Professionals in GWAPT roles often encounter challenges such as staying up-to-date with rapidly evolving web technologies and attack techniques, as well as managing complex testing environments with multiple stakeholders. To address these, it's helpful to allocate regular time for continuous learning, participate in industry forums, and leverage automated tools to streamline repetitive tasks. Collaboration with development and IT teams is also crucial to ensure clear communication about vulnerabilities and remediation strategies. Building strong documentation skills can further help in delivering actionable and understandable reports to clients or internal teams.

What is the difference between Gwapt vs Physical Therapist Assistant?

AspectGwaptPhysical Therapist Assistant
CredentialsTypically requires certification or licensing specific to the roleRequires an associate degree and licensure in most states
Work EnvironmentOften works under supervision in clinics, hospitals, or rehab centersWorks closely with physical therapists in similar settings
Industry UsageCommonly used in healthcare and rehabilitation industriesStandard role in physical therapy practices
Job ResponsibilitiesAssists with patient care, exercises, and therapy plansSupports physical therapists with patient treatment and exercises

While both Gwapt and Physical Therapist Assistants work in healthcare settings assisting with patient rehabilitation, Gwapt may have a broader or different certification pathway. Physical Therapist Assistants are specifically licensed and focus on supporting physical therapy treatments under supervision.

What cities in Virginia are hiring for Gwapt jobs?

Cities in Virginia with the most Gwapt job openings:

Infographic showing various Gwapt job openings in Virginia as of August 2026, with employment types broken down into 96% Full Time, and 4% Contract. Highlights an 67% Physical, 7% Hybrid, and 26% Remote job distribution, with an average salary of $194,131 per year, or $93.3 per hour.

Penetration Tester

Arlington, VA

gTANGIBLE
Business Consulting Services • 11 - 50 employees

Full-time

Re-posted 25 days ago


Job description

gTANGIBLE Corporation (gTC), www.gtangible.com, is a C corporation and a registered Government contractor that provides services and solutions in:

  • National Security Programs
  • Professional, Administrative, and Management Support
  • Mission and Warfighter Support

We are a Service-Disabled Veteran-Owned Small Business (SDVOSB) and the founder has years of successful experience in the Government contracting arena. Our leadership team is an exceptional group of Government contracting professionals. gTANGIBLE is in the process of identifying candidates for the following position.

Requisition Type: Full Time

Position Status: Contingent

Position Title: Penetration Tester

Location: Arlington, VA

Security Clearance:Secret

Duties and Responsibilities

The Penetration Tester supports this Transportation Security Administration Information Technology (TSA IT) Task Order (TO) by performing security attacks against all types of IT assets, and exploiting vulnerabilities found to determine if further reach within the engagement scope can be obtained. Provide final reports and presentations of the findings identified to personnel with a variety of technical knowledge to enable TSA IT management to make informed decisions about how to address the identified findings. Occasional off-hours testing and periodic travel required. Duties include the following:

  • Conducts penetration testing activities on TSA network.
  • Engages with TSA stakeholders to tailor the Rules of Engagement and create test plans.
  • Penetration testing will use both automated tools and manual techniques in order to identify vulnerabilities and exploit vulnerabilities.
  • Analyzes and validates test results and generates final reports and presents findings to the TSA IT management to make informed decisions on how to address the identified findings.
  • Provides support, review, and recommendations of system security design, configuration, security findings, and data flow.
  • Conducts Participates with stakeholders regarding findings meetings and responses.
  • Coordinates with the TSA Security Operations Center (SOC) to provide assistance with Security Information and Event Management (SIEM) detection content to improve the TSA SOC's ability to detect activities performed during testing engagements.
  • Provides Product and Technology Evaluations (NPTE) on technologies that are used for screening operations at the airports. Evaluation of technologies proposed by the Innovation Task Force's Advancing the Checkpoint Environment (ACE), with Requirements and Capability Analysis (RCA) features, in support of the Acquisitions and Program Management (APM) teams in the Transportations Security Integration Facility (TSIF).
  • The overall functions include, Cybersecurity Requirements Determination, Scoping and Security Testing Strategy, Security Test Documentation, Security Testing, Analysis, and Final Reporting with Findings Meetings.

Knowledge and Qualifications

  • At least (12) years of technical IT security experience.
  • At least (8) years of experience performing Penetration Testing.
  • At least (5) years of experience performing Penetration Testing for Federal IT systems.
  • Ability to work independently/minimal oversight.
  • Experience using automated tools: Kali Linux, AppScan, BurpSuite, SOAPUI, AppDetective, Cobalt Strike, RedSeal, and Nessus.
  • Experience with penetration testing methodologies including Open Source Intelligence, Discovery, Enumeration, Vulnerability Identification, Exploitation, and Post Exploitation techniques and tools.
  • Experience with manual testing techniques.
  • Required Certifications: OSCP, CEH, GWAPT, CISSP or other equivalent.
  • Experience with custom programming languages: Python, Perl, Powershell, etc.
  • Fluent knowledge of NIST and FIPS security controls, DISA STIGs, and CIS standards.
  • Fluent in the OWASP Top 10 weaknesses.
  • Experience with switches, routers, firewalls, VPN, ISE; Palo Alto firewalls;, VPN; Load Balancers, AV, Host and Network based devices, and Enterprise Security Tools.
  • Fluent TCP/IP, SMB, SSH, NetBios, SOAP, REST, LDAP, SAML, SSO.

gTANGIBLE Corporation is an equal opportunity employer and does not discriminate against any employee or applicant because of race, age, sex, color, physical or mental disability, religion, sexual orientation, marital status, national origin, or political affiliation.

Employment Type: Full-Time