Expertise in penetration testing tools (e.g., Nessus, Metasploit, Burp Suite) and fuzzing tools (e.g., Peach, AFL). * Familiarity with secure software development lifecycles (SDLC). * Familiarity ...
Expertise in penetration testing tools (e.g., Nessus, Metasploit, Burp Suite) and fuzzing tools (e.g., Peach, AFL). * Familiarity with secure software development lifecycles (SDLC). * Familiarity ...
Expertise in penetration testing tools (e.g., Nessus, Metasploit, Burp Suite) and fuzzing tools (e.g., Peach, AFL). * Familiarity with secure software development lifecycles (SDLC). * Familiarity ...
Expertise in penetration testing tools (e.g., Nessus, Metasploit, Burp Suite) and fuzzing tools (e.g., Peach, AFL). * Familiarity with secure software development lifecycles (SDLC). * Familiarity ...
Expertise in penetration testing tools (e.g., Nessus, Metasploit, Burp Suite) and fuzzing tools (e.g., Peach, AFL). * Familiarity with secure software development lifecycles (SDLC). * Familiarity ...
Expertise in penetration testing tools (e.g., Nessus, Metasploit, Burp Suite) and fuzzing tools (e.g., Peach, AFL). * Familiarity with secure software development lifecycles (SDLC). * Familiarity ...
Expertise in penetration testing tools (e.g., Nessus, Metasploit, Burp Suite) and fuzzing tools (e.g., Peach, AFL). * Familiarity with secure software development lifecycles (SDLC). * Familiarity ...
Expertise in penetration testing tools (e.g., Nessus, Metasploit, Burp Suite) and fuzzing tools (e.g., Peach, AFL). * Familiarity with secure software development lifecycles (SDLC). * Familiarity ...
Cyber Security Specialist
Worcester, MA · On-site
$75 - $100/hr
Conduct vulnerability assessments and penetration testing * Develop and enforce security policies ... Proficiency in security technologies (firewalls, IDS/IPS, antivirus, SIEM) * Knowledge of security ...
New
Cyber Security Specialist
Worcester, MA · On-site
$75 - $100/hr
Conduct vulnerability assessments and penetration testing * Develop and enforce security policies ... Proficiency in security technologies (firewalls, IDS/IPS, antivirus, SIEM) * Knowledge of security ...
New
... penetration testing, and dynamic application security testing (DAST) to proactively identify vulnerabilities in the engineering lifecycle. • Serve as the subject matter expert on Application ...
... penetration testing, and dynamic application security testing (DAST) to proactively identify vulnerabilities in the engineering lifecycle. • Serve as the subject matter expert on Application ...
Sr. Cloud & Mobile Security Engineer
$107K - $152K/yr
Engage third-party and AI services for penetration testing, red team exercises, threat modeling ... in support of those assessments * Preferred: experience at a consumer product company Applicants ...
Sr. Cloud & Mobile Security Engineer
$107K - $152K/yr
Engage third-party and AI services for penetration testing, red team exercises, threat modeling ... in support of those assessments * Preferred: experience at a consumer product company Applicants ...
Sr. Cloud & Mobile Security Engineer
Bedford, MA · On-site
$107K - $152K/yr
Engage third-party and AI services for penetration testing, red team exercises, threat modeling ... in support of those assessments * Preferred: experience at a consumer product company Applicants ...
Sr. Cloud & Mobile Security Engineer
Bedford, MA · On-site
$107K - $152K/yr
Engage third-party and AI services for penetration testing, red team exercises, threat modeling ... in support of those assessments * Preferred: experience at a consumer product company Applicants ...
... leading penetration testing, security audits, and enterprise risk assessments Professional ... in the future.
... leading penetration testing, security audits, and enterprise risk assessments Professional ... in the future.
Inside Solutions Architect
Burlington, MA · On-site
$68.50 - $90.25/hr
Penetration testing, Vulnerability scanning and assessments,Security Architecture,Application ... Must be effective in working both independently and in team settings. * Strong listening and ...
Inside Solutions Architect
Burlington, MA · On-site
$68.50 - $90.25/hr
Penetration testing, Vulnerability scanning and assessments,Security Architecture,Application ... Must be effective in working both independently and in team settings. * Strong listening and ...
IT/Cybersecurity Intern (Co-op/Unpaid)
Worcester, MA · On-site
$15 - $20/hr
Security Assessment & Penetration Testing: Put your knowledge into practice by conducting a (guided ... Participate in regular one-on-one sessions with senior IT staff to explore your career interests ...
Quick apply
IT/Cybersecurity Intern (Co-op/Unpaid)
Worcester, MA · On-site
$15 - $20/hr
Security Assessment & Penetration Testing: Put your knowledge into practice by conducting a (guided ... Participate in regular one-on-one sessions with senior IT staff to explore your career interests ...
Principal Security Engineer
Natick, MA · On-site
$160K - $209K/yr
Proficiency in programming languages such as Python, Rust, or Go * Experience with security threat modeling, penetration testing, and security reviews. * Deep understanding of the software ...
Principal Security Engineer
Natick, MA · On-site
$160K - $209K/yr
Proficiency in programming languages such as Python, Rust, or Go * Experience with security threat modeling, penetration testing, and security reviews. * Deep understanding of the software ...
Head of Information Technology (IT)
Marlborough, MA · On-site
$150 - $200/hr
... penetration testing. * Maintain strict compliance with HIPAA, SOC2, CMS, and other regulatory ... Proven track record in scalable infrastructure and cybersecurity. * Strong leadership and ...
Head of Information Technology (IT)
Marlborough, MA · On-site
$150 - $200/hr
... penetration testing. * Maintain strict compliance with HIPAA, SOC2, CMS, and other regulatory ... Proven track record in scalable infrastructure and cybersecurity. * Strong leadership and ...
Sr. Cloud & Mobile Security Engineer
Bedford, MA · On-site
$107 - $152.50/hr
Salary Range: $107,000.00 - $152,500.00 iRobot is in immediate need of a Senior Engineer on its ... Engage third‑party and AI services for penetration testing, red team exercises, threat modeling ...
Sr. Cloud & Mobile Security Engineer
Bedford, MA · On-site
$107 - $152.50/hr
Salary Range: $107,000.00 - $152,500.00 iRobot is in immediate need of a Senior Engineer on its ... Engage third‑party and AI services for penetration testing, red team exercises, threat modeling ...
... penetration testing, security audits, and enterprise risk assessments · Professional ... in the future.
... penetration testing, security audits, and enterprise risk assessments · Professional ... in the future.
Lead and execute secure code reviews, application penetration testing, and dynamic application security testing (DAST) to proactively identify vulnerabilities in the engineering lifecycle. * Serve as ...
Lead and execute secure code reviews, application penetration testing, and dynamic application security testing (DAST) to proactively identify vulnerabilities in the engineering lifecycle. * Serve as ...
... code auditing, penetration testing, product assessments, vulnerability research, reverse ... S. in Computer Science or equivalent industry experience. * Apply * View All Jobs Careers Veracode ...
... code auditing, penetration testing, product assessments, vulnerability research, reverse ... S. in Computer Science or equivalent industry experience. * Apply * View All Jobs Careers Veracode ...
Lead and execute secure code reviews, application penetration testing, and dynamic application security testing (DAST) to proactively identify vulnerabilities in the engineering lifecycle. * Serve as ...
Lead and execute secure code reviews, application penetration testing, and dynamic application security testing (DAST) to proactively identify vulnerabilities in the engineering lifecycle. * Serve as ...
Lead and execute secure code reviews, application penetration testing, and dynamic application security testing (DAST) to proactively identify vulnerabilities in the engineering lifecycle. * Serve as ...
Lead and execute secure code reviews, application penetration testing, and dynamic application security testing (DAST) to proactively identify vulnerabilities in the engineering lifecycle. * Serve as ...
Lead and execute secure code reviews, application penetration testing, and dynamic application security testing (DAST) to proactively identify vulnerabilities in the engineering lifecycle. * Serve as ...
Lead and execute secure code reviews, application penetration testing, and dynamic application security testing (DAST) to proactively identify vulnerabilities in the engineering lifecycle. * Serve as ...
In Penetration Testing information
See Clinton, MA salary details
$24.7K - $39.2K
0% of jobs
$39.2K - $53.8K
0% of jobs
$53.8K - $68.3K
2% of jobs
$68.3K - $82.9K
3% of jobs
$82.9K - $97.4K
1% of jobs
$110.8K is the 25th percentile. Wages below this are outliers.
$97.4K - $112K
20% of jobs
$112K - $126.5K
14% of jobs
The median wage is $132K / yr.
$126.5K - $141K
26% of jobs
$151.4K is the 75th percentile. Wages above this are outliers.
$141K - $155.6K
13% of jobs
$155.6K - $170.1K
13% of jobs
$170.1K - $184.7K
9% of jobs
$24.7K
$131.4K
$184.7K
How much do in penetration testing jobs pay per year?
What is the difference between In Penetration Testing vs Vulnerability Assessment?
| Aspect | In Penetration Testing | Vulnerability Assessment |
|---|---|---|
| Purpose | Simulates cyberattacks to identify exploitable vulnerabilities | Identifies and reports security weaknesses without exploiting them |
| Depth | In-depth, targeted testing with active exploitation | Broad, automated or manual scanning for vulnerabilities |
| Certifications | OSCP, CEH, GPEN | OSCP, CEH, CISSP (common but less focused) |
| Work Environment | Engages in simulated attacks, often in controlled environments | Uses scanning tools, reports vulnerabilities |
While both roles focus on identifying security issues, In Penetration Testing involves actively exploiting vulnerabilities to assess security defenses, whereas Vulnerability Assessment primarily identifies weaknesses without exploitation. Penetration testers provide deeper insights into potential attack vectors, making their work more targeted and detailed.
Is penetration testing a good career?
Software Engineer III (Cybersecurity Test Engineering, Post-Market Security)
Bedford, MA • On-site
Full-time
Medical, Dental, Vision, Retirement, PTO
Re-posted 12 days ago
Werfen rating
8.7
Based on 27 frontline employees who took The Breakroom Quiz
Job description
Werfen
Werfen is a growing, family-owned, innovative company founded in 1966 in Barcelona, Spain. We are a worldwide leader in specialized diagnostics in the areas of Hemostasis, Acute Care Diagnostics, Transfusion, Autoimmunity, and Transplant. Through our Original Equipment Manufacturing (OEM) business line, we research, develop, and manufacture customized assays and biomaterials. We operate directly in 30 countries, and in more than 100 territories through distributors. Our Headquarters and Technology Centers are located in the US and Europe, and our workforce is more than 7,000 strong.
Our success comes from a specific focus in these rapidly evolving diagnostic areas, our commitment to customers, and our dedication to innovation and quality. We're passionate about providing healthcare professionals the most valuable and complete solutions to improve hospital efficiency and enhance patient care.
OverviewPosition Summary:
Under minimal supervision, as a member of the R&D Software Engineering team at Werfen, this role focuses on both offensive and defensive cybersecurity, as well as operational security. The primary responsibilities include identifying and validating vulnerabilities, mitigating risks, and ensuring compliance with regulatory standards to safeguard critical systems in highly regulated industries using software engineering tools and techniques available.
ResponsibilitiesEssential Functions:
- Participates as active member of the project team focusing on analyzing penetration test results, assessing attack patterns and severity, and collaborating with Red or developers
- Provide actionable remediation guidance to mitigate identified cybersecurity defects and risks.
- Manage and maintain vulnerability scanning tools, and secure test environments.
- Conduct fuzz testing to uncover unknown vulnerabilities and escalate critical findings.
- Reproduce and validate cybersecurity defects in controlled environments.
- Evaluate, Investigate and resolve cybersecurity issues/ fixes reported by customers, ensuring effective and timely solutions.
- Produce high-quality technical documentation to support compliance with regulatory standards such as FDA, HIPAA, and ISO 13485.
- Collaborate with development, IT, and product teams to ensure secure design and implementation of systems and products.
- Creates/Maintains software requirement/functional specifications
- Identifies interfaces between software components and/or hardware
- Creates/Maintains software (component) design documentation
- Creates/Maintains software source code that adheres to design documentation
- Performs unit testing and/or code reviews as per project policy
- Performs integration testing to ensure software functions within application and with devices
- Evaluates, investigates, and implements fixes to assigned software defects
- Evaluates, investigates, and implements assigned software change proposals
Key Relationships:
To be determined based on department needs, to include interactions such as:
- Provides level of effort for assigned software activities
- Tracks personal estimates over time in order to improve accuracy
- Effectively communicates technical information to a multidisciplinary team in the form of documentation, presentations and technical summaries.
- Makes recommendations or suggestions for department improvements
- Ability to work in a team environment of software developers and testers
Skills & Capabilities:
The ideal candidate for this position will exhibit the following skills and capabilities:
- Expertise in penetration testing tools (e.g., Nessus, Metasploit, Burp Suite) and fuzzing tools (e.g., Peach, AFL).
- Familiarity with secure software development lifecycles (SDLC).
- Familiarity with standards such as FDA, HIPAA, and ISO 13485.
- Strong technical writing skills for compliance, reporting, and regulatory submissions.
- Advanced knowledge in exploit chaining and vulnerability analysis.
- Industry-recognized certifications such as OSCP, CEH, GPEN, or equivalent.
- Experience with VMware ESXi and virtualized environments desirable.
- Strong knowledge of Linux systems.
- Experience in cybersecurity for medical devices or other highly regulated industries.
- Strong written and oral communications skills
- Ability to use software engineering tools: configuration, requirements, and defect management
- Ability to operate instrumentation
Minimum Knowledge & Experience Required for the Position:
Education:
- Associates Degree plus typically 4 to 10 years of related experience or Bachelor's Degree plus typically 4 to 8 years of related experience or Master's Degree plus typically 2 to 6 years of related experience or waiver based on experience. Degree should be in a technical discipline such as Chemistry, Math, Physics, Engineering, or Computer Science.
Experience:
- Programming expertise in Python, Bash, C, or C++.Hands-on expertise in offensive and defensive security and penetration testing methodologies.
Additional Skills/Knowledge:
- Proficiency with a personal computer and software packages
- Ability to use software engineering tools: configuration, requirements, and defect management
- Ability to handle many software components
- Language: English
Travel Requirements:
- < 5% of the time
The annual base salary range for this role is currently $110,000 to $140,000. Individual employee compensation will ultimately depend on factors including education, relevant experience, skillset, knowledge, and particular business needs.
This role is eligible for medical, dental, and vision insurance, 401k plan retirement benefits with an employer match, as well as paid vacation and sick leave. Our sales roles are eligible for participation in a commission plan and our management, and select professional roles, are eligible for a performance-based bonus.
ClosingIf you are interested in constantly learning and being challenged on a daily basis we encourage you to submit your resume or CV.
Werfen is an Equal Opportunity employer and is committed to a diverse workplace. Werfen strictly prohibits unlawful discrimination, harassment or retaliation based upon an individual's race, color, religion, gender, sexual orientation, gender identity/expression, national origin/ancestry, age, mental/physical disability, medical condition, marital status, veteran status, or any other protected characteristic as defined by applicable state or federal law. If you have a disability and need an accommodation in relation to the online application process, please contact NAtalentacquisition@werfen.com for assistance.
We operate directly in over 30 countries, and in more than 100 territories through distributors. Annual revenue is approximately $2 billion and more than 7,000 employees around the world comprise our Werfen team.
www.werfen.com
Employment Type: FULL_TIMEAbout Werfen
Sourced by ZipRecruiter
Industry
Health care and social assistance
Company size
1,001 - 5,000 Employees
Headquarters location
L'Hospitalet de Llobregat, Barcelona, ES