Penetration Tester
Augusta, ME · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Augusta, ME · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Augusta, ME · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Merrimack, NH · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Merrimack, NH · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Lansing, MI · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Lansing, MI · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
San Antonio, TX · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
San Antonio, TX · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Richmond, VA · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Richmond, VA · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Clackamas, OR · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Clackamas, OR · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Paradise Valley, AZ · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Paradise Valley, AZ · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Kings Mills, OH · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Kings Mills, OH · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Pensacola, FL · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Pensacola, FL · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Homewood, AL · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Homewood, AL · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Salt Lake City, UT · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Salt Lake City, UT · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Nashville, TN · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Nashville, TN · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Dona Ana, NM · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Dona Ana, NM · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Rex, GA · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Rex, GA · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Atlanta, GA · On-site
We are seeking candidates with a passion for offensive security, deep technical expertise in penetration testing, and a commitment to continuous learning and excellence. Job Responsibilities * Plan ...
Atlanta, GA · On-site
We are seeking candidates with a passion for offensive security, deep technical expertise in penetration testing, and a commitment to continuous learning and excellence. Job Responsibilities * Plan ...
Washington, DC · On-site
We are seeking candidates with a passion for offensive security, deep technical expertise in penetration testing, and a commitment to continuous learning and excellence. Job Responsibilities * Plan ...
Washington, DC · On-site
We are seeking candidates with a passion for offensive security, deep technical expertise in penetration testing, and a commitment to continuous learning and excellence. Job Responsibilities * Plan ...
Elkhart, IN · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Elkhart, IN · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Wilmington, DE · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Wilmington, DE · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Carson City, NV · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
Carson City, NV · On-site
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement. Identify security flaws in computing platforms, applications, and ...
$90K - $150K/yr
Minimum six (6) years proven proficiency in performing extensive vulnerability assessment and penetration testing * Minimum three (3) years of experience with testing tools, including NESSUS ...
$90K - $150K/yr
Minimum six (6) years proven proficiency in performing extensive vulnerability assessment and penetration testing * Minimum three (3) years of experience with testing tools, including NESSUS ...
$22.5K - $35.8K
0% of jobs
$35.8K - $49K
0% of jobs
$49K - $62.3K
2% of jobs
$62.3K - $75.6K
3% of jobs
$75.6K - $88.9K
1% of jobs
$101.1K is the 25th percentile. Wages below this are outliers.
$88.9K - $102.1K
20% of jobs
$102.1K - $115.4K
14% of jobs
The median wage is $120.4K / yr.
$115.4K - $128.7K
26% of jobs
$138.1K is the 75th percentile. Wages above this are outliers.
$128.7K - $142K
13% of jobs
$142K - $155.2K
13% of jobs
$155.2K - $168.5K
9% of jobs
$22.5K
$119.9K
$168.5K
| Aspect | In Penetration Testing | Vulnerability Assessment |
|---|---|---|
| Purpose | Simulates cyberattacks to identify exploitable vulnerabilities | Identifies and reports security weaknesses without exploiting them |
| Depth | In-depth, targeted testing with active exploitation | Broad, automated or manual scanning for vulnerabilities |
| Certifications | OSCP, CEH, GPEN | OSCP, CEH, CISSP (common but less focused) |
| Work Environment | Engages in simulated attacks, often in controlled environments | Uses scanning tools, reports vulnerabilities |
While both roles focus on identifying security issues, In Penetration Testing involves actively exploiting vulnerabilities to assess security defenses, whereas Vulnerability Assessment primarily identifies weaknesses without exploitation. Penetration testers provide deeper insights into potential attack vectors, making their work more targeted and detailed.

Perform penetration testing of applications, systems, and network enclaves to identify security weaknesses and vulnerabilities.
Analyze test results and document findings, including severity, impact, and recommended remediation actions.
Prepare and deliver technical assessment reports and briefings to leadership and technical teams.
8.1
Based on 5 frontline employees who took The Breakroom Quiz
53rd of 207 rated it services
Under general supervision, perform penetration testing of applications, systems, and network enclaves to identify security weaknesses and vulnerabilities. Assess enterprise systems using offensive cybersecurity techniques and provide actionable recommendations to reduce risk and improve the organization's overall cybersecurity posture.
Conduct application, network, and wireless penetration testing in accordance with approved methodologies and rules of engagement.
Identify security flaws in computing platforms, applications, and network architectures and develop mitigation strategies to address identified risks.
Apply offensive cybersecurity testing techniques, including manual and automated testing methods.
Coordinate penetration testing activities and schedules with internal stakeholders, system owners, and external partners as required.
Perform network vulnerability assessments and exploitation testing across on-premises and enclave-based environments.
Execute wireless security assessments, including identification of rogue access points and insecure configurations.
Analyze test results and document findings, including severity, impact, and recommended remediation actions.
Prepare and deliver technical assessment reports and briefings to leadership and technical teams.
Support compliance-driven testing efforts, including PCI DSS and other applicable security standards.
Contribute to continuous improvement of enterprise cybersecurity posture through lessons learned and testing feedback.
Secret – IT-II (Tier 3) Non-Critical Sensitive Clearance
Possess a certification in penetration testing, such as:
Minimum of 3 years of demonstrated experience performing vulnerability assessments and penetration testing.
Minimum of 2 years of experience conducting network vulnerability assessments and penetration testing methodologies.
Two Years experience with testing tools including NESSUS, METASPLOIT, CANVAS, NMAP, Burp Suite and Kismet.
Minimum of 1 year of experience authoring formal penetration testing or security assessment reports.
Minimum of 2 years of experience using, administering, and troubleshooting Linux operating systems.
Minimum of 2 years of experience using, administering, and troubleshooting Windows Server or Linux servers, including IIS or Apache.
Proficiency with penetration testing and assessment tools, including Nessus, Metasploit, CANVAS, Nmap, Burp Suite, and Kismet.
Strong understanding of TCP/IP protocols, networking concepts, and network architectures.
Knowledge of open security testing standards and projects, including OWASP.
Understanding of PCI DSS testing requirements.
Knowledge of database, application, and web server design and implementation.
Experience with wireless LAN security testing methodologies and tools.
Experience scripting in one or more of the following languages: Perl, Python, Ruby, Bash, or Java.
Demonstrated written documentation and oral presentation skills.
Ability to clearly communicate technical findings to both technical and non-technical audiences.
Sourced by ZipRecruiter
201 - 500 Employees
Reston, VA, US
2008