1

In Penetration Testing Jobs in Kentucky (NOW HIRING)

$101 - $152/hr

... experience in cybersecurity, application security, offensive security, penetration testing, product security, cloud security, IoT security, software engineering, or related technical field.

New

$120 - $180/hr

Advanced knowledge and hands‑on experience in full lifecycle of Red Team engagement and advanced penetration testing methodologies. Expertise with common red team toolsets (e.g., Cobalt Strike ...

$120 - $160/hr

Practical experience in Penetration testing and/or red team/blue team activities (network, infrastructure, and/or web applications) and tools used in these activities. * Knowledge of OWASP Top 10 and ...

$75 - $160/hr

Experience in remediating vulnerabilities identified in penetration testing. * Ability to articulate and document a detailed technical design. * Analyze and revises existing system logic and provides ...

$106 - $185/hr

Ferguson, a Fortune 500 company, is proud to provide best-in-class products, service and ... Run penetration testing, AI‑enabled security testing, purple team support, and continuous ...

$120 - $170/hr

Utilized integration tools, network vulnerabilities and penetration testing tools * Ensure that the ... Participate in architecture and design reviews of complex solutions in cross-team engineering ...

$120 - $180/hr

In this role, you'll combine technical expertise with strategic thinking to address complex ... Perform penetration testing and vulnerability assessments across networks, applications, and cloud ...

$155 - $165/hr

Deep RMF/NIST 800-53A experience; advanced penetration testing/vulnerability analysis; customer ... Produce complete, accurate, evidence-traceable assessment products in accordance with the SOW ...

$140 - $170/hr

... penetration testing to identify potential issues * Provide application security guidance and mentorship to development teams as needed Requirements * 5+ years of experience in application security ...

New

$190 - $270/hr

Use and extend AI-assisted tooling for continuous code review, finding triage, and automated penetration testing, and step in where human judgment is required.* Secure Unity's AI and agentic systems.

$70 - $110/hr

Youwon'tbe doing hands-on penetration testing yourself, butyou'llmanage the vendor relationship ... Location:Virtual, home office in the USAorCanada Work Authorization: Citizens or Permanent ...

New

$140 - $180/hr

In July 2024, Iru raised $100 million from General Catalyst, valuing the company at $850 million ... Security Testing * Perform manual web, API, thick‑client, and mobile application penetration ...

Offensive Security Manager

Louisville, KY · On-site

$106K - $144K/yr

In this role, you will continuously learn, collaborate across teams, and explore how tools ... Wireless penetration testing * Social engineering (phishing, telephone, onsite) * Red teaming ...

Offensive Security Manager

Louisville, KY · On-site

$106K - $144K/yr

In this role, you will continuously learn, collaborate across teams, and explore how tools ... Wireless penetration testing * Social engineering (phishing, telephone, onsite) * Red teaming ...

New

Offensive Security Manager

Lexington, KY · On-site

$110K - $149K/yr

In this role, you will continuously learn, collaborate across teams, and explore how tools ... Wireless penetration testing * Social engineering (phishing, telephone, onsite) * Red teaming ...

$100 - $160/hr

Our platform combines human expertise with innovative technology across Penetration Testing ... Present and demonstrate BreachLock's cybersecurity solutions in partnership with our technical ...

$110 - $185/hr

Background in penetration testing, threat intelligence, or attack surface management. Experience establishing or maturing a vulnerability management program from the ground up.* Professional ...

$150 - $190/hr

Design and guide static and dynamic application security testing, penetration testing, vulnerability analysis, and remediation in collaboration with development teams. * Communicate security ...

Showing results 21-40

In Penetration Testing information

What is the difference between In Penetration Testing vs Vulnerability Assessment?

AspectIn Penetration TestingVulnerability Assessment
PurposeSimulates cyberattacks to identify exploitable vulnerabilitiesIdentifies and reports security weaknesses without exploiting them
DepthIn-depth, targeted testing with active exploitationBroad, automated or manual scanning for vulnerabilities
CertificationsOSCP, CEH, GPENOSCP, CEH, CISSP (common but less focused)
Work EnvironmentEngages in simulated attacks, often in controlled environmentsUses scanning tools, reports vulnerabilities

While both roles focus on identifying security issues, In Penetration Testing involves actively exploiting vulnerabilities to assess security defenses, whereas Vulnerability Assessment primarily identifies weaknesses without exploitation. Penetration testers provide deeper insights into potential attack vectors, making their work more targeted and detailed.

Is penetration testing a good career?

Penetration testing is a valuable cybersecurity role focused on identifying vulnerabilities in systems and networks. It requires technical skills, knowledge of security tools, and often certifications like OSCP or CEH. The field offers strong job growth, competitive salaries, and opportunities for continuous learning.

What are popular job titles related to In Penetration Testing jobs in Kentucky?

For In Penetration Testing jobs in Kentucky, the most frequently searched job titles are:

What job categories do people searching In Penetration Testing jobs in Kentucky look for?

The top searched job categories for In Penetration Testing jobs in Kentucky are:

What cities in Kentucky are hiring for In Penetration Testing jobs?

Cities in Kentucky with the most In Penetration Testing job openings:

Infographic showing various In Penetration Testing job openings in Kentucky as of August 2026, with employment types broken down into 1% As Needed, 86% Full Time, 10% Part Time, 2% Contract, and 1% Nights. Highlights an 87% Physical, 3% Hybrid, and 10% Remote job distribution.

Senior Offensive Security Engineer

RXinsider LTD.

On-site

$101 - $152/hr

Other

Posted 2 days ago

New


Job description

What You Will Do
  • Perform hands-on offensive security testing across Ecolab commercial products, including web applications, mobile applications, APIs, cloud services, IoT platforms, PLC/IPC-connected equipment, embedded devices, and product integrations.
  • Plan, scope, and execute technical security assessments focused on identifying exploitable vulnerabilities, attack paths, insecure configurations, weak access controls, exposed secrets, insecure APIs, cloud misconfigurations, and product-specific security gaps.
  • Support offensive security engagements and mentor engineers as needed while remaining highly hands-on in day-to-day testing, analysis, documentation, and remediation validation activities.
  • Contribute to repeatable red team and offensive testing methods, engagement rules, reporting standards, evidence expectations, and risk-rating approaches appropriate for commercial digital products.
  • Partner with product security, application engineering, cloud engineering, IoT engineering, architecture, and business teams to translate testing results into clear remediation actions and risk-based priorities.
  • Conduct safe and authorized technical testing of IoT and industrially connected equipment, including physical access testing of product hardware, field devices, PLC/IPC interfaces, device communications, and related technology components where appropriate.
  • Use commercial and enterprise-approved security tools such as Snyk, Wiz, Burp Suite, OWASP ZAP, GitHub Advanced Security, Nmap, Horizon3 NodeZero, DAST tooling, and related technologies to identify, validate, and document security issues.
  • Validate vulnerabilities discovered through internal testing, automated scanning, third-party penetration testing, customer inquiries, bug reports, and product security reviews.
  • Prepare clear, actionable reports that explain vulnerability impact, exploitability, business context, affected assets, remediation guidance, compensating controls, and validation results.
  • Present technical findings to engineering teams and non-technical stakeholders at all levels of the organization, communicating risk, business impact, and practical remediation paths.
  • Support product threat modeling, secure architecture reviews, application security reviews, cloud security assessments, and security design discussions based on offensive testing insights.
  • Support improvements to Ecolab’s vulnerability management, secure SDLC, DevSecOps, and product security governance practices by identifying recurring weakness patterns and practical control improvements.
  • Support coordination with third-party penetration testing providers when appropriate, including scope development, test readiness, evidence review, finding validation, and remediation tracking.
  • Maintain awareness of emerging offensive security techniques, AI-enabled attack methods, application security risks, cloud security trends, IoT attack vectors, and relevant industry standards.
  • Act as an advocate and champion for practical, risk-based product security across Ecolab’s commercial digital product teams.
Minimum Qualifications
  • Bachelor’s Degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related technology-driven field.
  • 5+ years of hands-on experience in cybersecurity, application security, offensive security, penetration testing, product security, cloud security, IoT security, software engineering, or related technical field.
  • Demonstrated hands-on experience performing authorized technical security testing of web applications, mobile applications, APIs, cloud services, and/or IoT-connected products.
  • Experience supporting offensive security engagements, vulnerability assessments, penetration tests, remediation validation, and technical security reporting.
  • Experience supporting technical workstreams, mentoring engineers, or coordinating testing activities while remaining directly involved in hands-on testing and analysis.
  • Experience with Microsoft Azure; familiarity with AWS and/or GCP cloud security concepts, services, and common misconfiguration risks.
  • Experience with application security testing tools and practices, including SAST, SCA, DAST, API testing, cloud security posture assessment, vulnerability validation, and secure code review concepts.
  • Familiarity with tools such as Snyk, Wiz, Burp Suite, OWASP ZAP, GitHub Advanced Security, Nmap, Horizon3 NodeZero, DAST tooling, and related offensive or product security testing technologies.
  • Knowledge of secure software development, DevSecOps, CI/CD pipelines, identity and access management, encryption, secrets management, secure API design, and secure cloud architecture principles.
  • Understanding of IoT, embedded, industrial, or field-deployed technology security considerations, including device communications, network segmentation, authentication, update mechanisms, and physical access risks.
  • Familiarity with industry frameworks and standards such as OWASP, CIS, NIST, ISO 27001, SOC 2, and secure SDLC practices.
  • Strong interpersonal, analytical, problem-solving, organizational, and written/verbal communication skills.
  • Ability to communicate technical findings clearly to software engineers, architects, cybersecurity leaders, product owners, and non-technical business stakeholders.
  • Ability to accommodate a flexible work schedule for supporting global activities.
Preferred Qualifications
  • One practical offensive security certification such as OSCP, GPEN, GWAPT, GWEB, PNPT, or similar hands-on application, web, cloud, or penetration testing certification.
  • Experience testing commercial software products, SaaS platforms, customer-facing applications, cloud-hosted services, mobile applications, APIs, IoT platforms, or connected equipment.
  • Experience with hardware, embedded systems, PLC/IPC-connected devices, industrial communications, device provisioning, secure firmware/update processes, or field-deployed technology.
  • Experience with Azure security services, cloud-native application security, container security, Kubernetes security, and identity-based cloud controls.
  • Experience integrating offensive security findings into vulnerability management, secure architecture, threat modeling, product risk governance, and engineering remediation workflows.
  • Experience contributing to testing playbooks, reporting templates, engagement standards, risk-rating models, and remediation validation procedures.
  • Experience with AI-enabled products, AI integrations, or the security implications of AI/ML capabilities in commercial software environments.
  • Ability to influence without authority and drive security improvements across globally distributed engineering, product, and technology teams.
Annual Or Hourly Compensation Range

The pay range for this position is $101,400.00 - $152,100.00. Many factors are taken into consideration when determining compensation, such as experience, education, training, geography, etc. We comply with all minimum wage and overtime laws.

Benefits

Ecolab strives to provide comprehensive and market-competitive benefits to meet the needs of our associates and their families. Click here to see our benefits.

If you are viewing this posting on a site other than our Ecolab Career website, view our benefits at jobs.ecolab.com/working-here.

Potential Customer Requirements Notice
  • Undergo additional background screens and/or drug/alcohol testing for customer credentialing.
Americans With Disabilities Act (ADA)

Ecolab will provide reasonable accommodation (such as a qualified sign language interpreter or other personal assistance) with our application process upon request as required to comply with applicable laws. If you have a disability and require accommodation assistance in this application process, please visit the Recruiting Support link in the footer of each page of our career website.

Our Commitment to a Culture of Inclusion & Belonging

At Ecolab, we believe the best teams are inclusive. We are on a journey to create a workplace where every associate can grow and achieve their best.

We are committed to fair and equal treatment of associates and applicants and recruit, hire, promote, transfer and provide opportunities for advancement based on individual qualifications and job performance.

In all matters affecting employment, compensation, benefits, working conditions, and opportunities for advancement, we will not discriminate against any associate or applicant for employment because of race, religion, color, creed, national origin, citizenship status, sex, sexual orientation, gender identity and expressions, genetic information, marital status, age, disability, or status as a covered veteran.

In addition, we are committed to furthering the principles of Equal Employment Opportunity (EEO) through affirmative action (AA).

We will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws, including the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, the San Francisco Fair Chance Ordinance, and the New York City Fair Chance Act.

#J-18808-Ljbffr