Penetration Tester
Casar, NC · On-site
A penetration tester is responsible for assessing the security of web applications and its underlying infrastructure to identify vulnerabilities and weaknesses that could be exploited by attackers.
Casar, NC · On-site
A penetration tester is responsible for assessing the security of web applications and its underlying infrastructure to identify vulnerabilities and weaknesses that could be exploited by attackers.
Casar, NC · On-site
A penetration tester is responsible for assessing the security of web applications and its underlying infrastructure to identify vulnerabilities and weaknesses that could be exploited by attackers.
... web application vulnerabilities to various level of personnel within a large organization ... application penetration testing. Minimum of 5 years of demonstrated experience with automated ...
... web application vulnerabilities to various level of personnel within a large organization ... application penetration testing. Minimum of 5 years of demonstrated experience with automated ...
Charlotte, NC · On-site
... web application vulnerabilities to various level of personnel within a large organization ... with application penetration testing. • Minimum of 5 years of demonstrated experience with ...
Charlotte, NC · On-site
... web application vulnerabilities to various level of personnel within a large organization ... with application penetration testing. • Minimum of 5 years of demonstrated experience with ...
Arlington, VA · On-site
$86K - $138K/yr
Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...
Arlington, VA · On-site
$86K - $138K/yr
Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...
$86K - $138K/yr
Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...
$86K - $138K/yr
Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...
$95K - $112K/yr
SkyePoint Decisions is seeking a Penetration Tester to support the Diplomatic Security Cyber ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...
Quick apply
$95K - $112K/yr
SkyePoint Decisions is seeking a Penetration Tester to support the Diplomatic Security Cyber ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...
Los Angeles, CA · On-site
Position : Penetration Tester Locations: Los Angeles( CA), Dallas (TX), Washington DC ... Perform penetration tests against external networks, internal networks, web applications, mobile ...
Los Angeles, CA · On-site
Position : Penetration Tester Locations: Los Angeles( CA), Dallas (TX), Washington DC ... Perform penetration tests against external networks, internal networks, web applications, mobile ...
Sacramento, CA · On-site
Penetration Tester Sacramento, CA 24+ months Required Skills: Must have performed IT testing and ... Web Expert (OSWE). o CompTIA PenTest+. Regards Naresh Damagalla West Advanced Technologies, Inc E ...
Sacramento, CA · On-site
Penetration Tester Sacramento, CA 24+ months Required Skills: Must have performed IT testing and ... Web Expert (OSWE). o CompTIA PenTest+. Regards Naresh Damagalla West Advanced Technologies, Inc E ...
Chantilly, VA · On-site
$90K - $130K/yr
CDT is looking for a Penetration Tester to This will be supporting a government customer onsite in ... System methodologies including: client/server, web hosting, web content servers, policy servers ...
Chantilly, VA · On-site
$90K - $130K/yr
CDT is looking for a Penetration Tester to This will be supporting a government customer onsite in ... System methodologies including: client/server, web hosting, web content servers, policy servers ...
Quantico, VA · Hybrid
Proven experience conducting penetration tests of web applications, networks, and other systems. * Experience with a variety of penetration testing tools and techniques (e.g., Rapid7 Nexpose ...
Quantico, VA · Hybrid
Proven experience conducting penetration tests of web applications, networks, and other systems. * Experience with a variety of penetration testing tools and techniques (e.g., Rapid7 Nexpose ...
Washington, DC · Hybrid
$130K - $145K/yr
Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API ... Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth ...
Washington, DC · Hybrid
$130K - $145K/yr
Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API ... Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth ...
Washington, DC · On-site
$130K - $145K/yr
Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API ... Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth ...
Washington, DC · On-site
$130K - $145K/yr
Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API ... Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth ...
Hillsboro, OR · On-site
Strong Web Application development, security flaw and remediation technical understanding. * Certifications such as GIAC Web Application Penetration Testing (GWAPT) or Offensive Security Certified ...
Hillsboro, OR · On-site
Strong Web Application development, security flaw and remediation technical understanding. * Certifications such as GIAC Web Application Penetration Testing (GWAPT) or Offensive Security Certified ...
$86K - $138K/yr
Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...
$86K - $138K/yr
Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...
$90K - $130K/yr
CDT is looking for a Penetration Tester to This will be supporting a government customer onsite in ... System methodologies including: client/server, web hosting, web content servers, policy servers ...
Quick apply
$90K - $130K/yr
CDT is looking for a Penetration Tester to This will be supporting a government customer onsite in ... System methodologies including: client/server, web hosting, web content servers, policy servers ...
Herndon, VA · Hybrid
$130K - $145K/yr
Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API ... Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth ...
Quick apply
Herndon, VA · Hybrid
$130K - $145K/yr
Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API ... Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth ...
San Francisco, CA · On-site
Looking for an experienced Penetration Tester with strong skills in VAPT for Web, API, and Thick-Client applications , along with SAST/DAST expertise. The role involves performing manual and ...
Quick apply
San Francisco, CA · On-site
Looking for an experienced Penetration Tester with strong skills in VAPT for Web, API, and Thick-Client applications , along with SAST/DAST expertise. The role involves performing manual and ...
Springfield, VA · On-site
$100K - $140K/yr
GIAC Web Application Penetration Tester (GWAP) Company Description Total Cyber Solutions is a premier provider of Government Contracting, managed IT Services, and Cybersecurity Training. We help ...
Quick apply
Springfield, VA · On-site
$100K - $140K/yr
GIAC Web Application Penetration Tester (GWAP) Company Description Total Cyber Solutions is a premier provider of Government Contracting, managed IT Services, and Cybersecurity Training. We help ...
WV · On-site
Conduct web, mobile, API, and microservices security testing using industrystandard tools and manual exploitation techniques. * Execute AWS cloud penetration testing within approved boundaries (IAM ...
Beltsville, MD · On-site
$60 - $70/hr
Network & Web Application Testing: * Ability to identify and exploit vulnerabilities in networks ... GPEN (GIAC Penetration Tester) * CPT (Certified Penetration Tester) Soft Skills * Strong report ...
Beltsville, MD · On-site
$60 - $70/hr
Network & Web Application Testing: * Ability to identify and exploit vulnerabilities in networks ... GPEN (GIAC Penetration Tester) * CPT (Certified Penetration Tester) Soft Skills * Strong report ...
$22.5K - $35.8K
0% of jobs
$35.8K - $49K
0% of jobs
$49K - $62.3K
2% of jobs
$62.3K - $75.6K
3% of jobs
$75.6K - $88.9K
1% of jobs
$101.1K is the 25th percentile. Wages below this are outliers.
$88.9K - $102.1K
20% of jobs
$102.1K - $115.4K
14% of jobs
The median wage is $120.4K / yr.
$115.4K - $128.7K
26% of jobs
$138.1K is the 75th percentile. Wages above this are outliers.
$128.7K - $142K
13% of jobs
$142K - $155.2K
13% of jobs
$155.2K - $168.5K
9% of jobs
$22.5K
$119.9K
$168.5K
| Aspect | Internship Web Penetration Tester | Web Security Analyst |
|---|---|---|
| Certifications | Basic cybersecurity or penetration testing certifications (e.g., OSCP, CEH) | Security certifications (e.g., CISSP, CompTIA Security+) |
| Work Environment | Hands-on testing in labs or real-world projects, often entry-level | Monitoring, analyzing security systems, and policy development |
| Employer & Industry Usage | Internship roles in cybersecurity firms, tech companies, or IT departments | Full-time roles in organizations focusing on security operations and risk management |
The main difference is that an Internship Web Penetration Tester focuses on learning and performing security testing under supervision, while a Web Security Analyst analyzes security data and develops policies to protect web assets. The internship provides practical experience, whereas the analyst role involves ongoing security management.

8.3
Based on 44 frontline employees who took The Breakroom Quiz
38th of 150 rated financial services
A penetration tester is responsible for assessing the security of web applications and its underlying infrastructure to identify vulnerabilities and weaknesses that could be exploited by attackers. Their role involves conducting thorough assessments and penetration tests to uncover potential security risks and provide recommendations for mitigation.
The role will work closely alongside the rest of the Penetration Testing team, Business units and other Cyber team.
We are looking for a collaborative team player, with a good technical knowledge in web application and infrastructure penetration testing. The successful candidate will contribute to and work as part of a global multi-disciplined security community with clear vision and direction, and top-down support across the business.
The Role
The Requirements
Technical Knowledge: A strong understanding of web technologies, programming languages (e.g., HTML, CSS, JavaScript, PHP, Python), and web application architecture is essential. Knowledge of networking fundamentals, operating systems, and databases is also beneficial.
Skills:
Holds relevant industry certification/s or equivalent like the following:
We're committed to equal employment opportunity and provide application, interview and workplace adjustments and accommodations to all applicants. If you foresee any barriers, from the application process through to joining WTW, please email candidate.helpdesk@willistowerswatson.com.
Get the full story on Breakroom