1

Metasploit Jobs in Houston, TX (NOW HIRING)

... Nmap, Metasploit, etc.). * Strong understanding of security assessment methodologies such as OWASP Top Ten, NIST Cybersecurity Framework, and other relevant standards. * Ability to identify and ...

Experience with Kali Linux, Metasploit, Wireshark, and other similar security tools * Familiarity with NPR 7150.2D and CLD-REQ-1130 especially as it relates to cybersecurity for software.

Experience with Kali Linux, Metasploit, Wireshark, and other similar security tools * Familiarity with NPR 7150.2D and CLD-REQ-1130 especially as it relates to cybersecurity for software.

Experience with Kali Linux, Metasploit, Wireshark, and other similar security tools * Familiarity with NPR 7150.2D and CLD-REQ-1130 especially as it relates to cybersecurity for software.

Experience with Kali Linux, Metasploit, Wireshark, and other similar security tools * Familiarity with NPR 7150.2D and CLD-REQ-1130 especially as it relates to cybersecurity for software.

Metasploit information

See Houston, TX salary details

$12

$20

$39

How much do metasploit jobs pay per hour?

As of Jun 27, 2026, the average hourly pay for metasploit in Houston, TX is $20.28, according to ZipRecruiter salary data. Most workers in this role earn between $13.99 and $23.89 per hour, depending on experience, location, and employer.

What does a typical day look like for someone using Metasploit in a cybersecurity role?

A typical day involves planning and conducting penetration tests, leveraging Metasploit to simulate real-world attack scenarios, and analyzing security vulnerabilities within networks or applications. Professionals document findings, create detailed reports, and collaborate closely with IT teams or clients to explain risks and recommend solutions. They may also spend time updating their knowledge of the latest exploits and security patches to ensure their assessments remain relevant. Teamwork and communication are key, as these roles often require coordination with other security professionals and stakeholders across the organization. This dynamic environment offers continuous opportunities to learn and advance in the ever-evolving field of cybersecurity.

What is Metasploit mainly used for?

Metasploit is a penetration testing framework used by cybersecurity professionals and ethical hackers to identify and exploit security vulnerabilities in computer systems and networks. It provides a collection of tools and exploits to simulate cyberattacks, helping organizations improve their security defenses. Knowledge of scripting and network protocols enhances its effective use in security assessments.

What is a Metasploit job?

A Metasploit job typically involves using the Metasploit Framework for penetration testing, security assessments, and vulnerability exploitation. Professionals in this role may work as ethical hackers, security consultants, or vulnerability analysts to identify and exploit weaknesses in networks, systems, and applications. They use Metasploit to simulate real-world attacks, test defenses, and help organizations improve their cybersecurity posture. Strong knowledge of cybersecurity principles, networking, and scripting is often required for this job.

Is Metasploit paid?

Metasploit is available in both free and paid versions. The free Community Edition provides basic features, while the commercial Pro version offers advanced tools and support for professional penetration testers and security analysts.

What are the key skills and qualifications needed to thrive in the Metasploit position, and why are they important?

To excel in roles focused on Metasploit, candidates should possess in-depth knowledge of penetration testing, vulnerability assessment, and network security. Experience with the Metasploit Framework, as well as relevant certifications like OSCP (Offensive Security Certified Professional) or CEH (Certified Ethical Hacker), are highly valued. Strong analytical thinking, problem-solving abilities, and effective written and verbal communication are crucial soft skills. Mastery of both technical and interpersonal competencies enables professionals to identify security weaknesses and clearly communicate remediation steps to both technical teams and non-technical stakeholders.

What jobs can I get with Pentest+?

Pentest+ certification prepares individuals for roles such as penetration tester, security analyst, vulnerability assessor, or cybersecurity consultant. These positions involve identifying security weaknesses, conducting penetration tests, and improving organizational security posture, often requiring knowledge of tools like Metasploit and network security principles.

Which company owns Metasploit?

Metasploit is owned by Rapid7, a cybersecurity company that acquired the Metasploit Framework in 2017. As a security professional using Metasploit, understanding its ownership helps in assessing support and updates for the tool.
Infographic showing various Metasploit job openings in Houston, TX as of June 2026, with employment types broken down into 92% Full Time, 5% Part Time, and 3% Contract. Highlights an 90% Physical, 2% Hybrid, and 8% Remote job distribution, with an average salary of $42,177 per year, or $20.3 per hour.
Senior Penetration Tester

Senior Penetration Tester

Chase

Houston, TX • On-site

Other

Posted 9 days ago


JPMorgan Chase & Co. rating

8.1

Company rating: 8.1 out of 10

Based on 470 frontline employees who took The Breakroom Quiz

46th of 142 rated banks


Job description

Cybersecurity And Technology Controls Vice President

Drive the security of critical banking applications and platforms through hands-on offensive testing.

As an Assessments & Exercises Vice President in the Cybersecurity and Technology Controls organization, you will play a key role in safeguarding the firm's most vital assets. Your primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and services. Leveraging industry-standard methodologies and advanced techniques, you will proactively identify vulnerabilities, collaborate with application owners to understand root causes, and guide effective remediation to strengthen the firm's security posture.

We are seeking candidates with a passion for offensive security, deep technical expertise in penetration testing, and a commitment to continuous learning and excellence.

Job Responsibilities

  • Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications.
  • Collect and validate pre-requisites for each engagement, ensuring all necessary access, documentation, and approvals are in place.
  • Perform manual and automated testing to identify vulnerabilities, misconfigurations, and security weaknesses, leveraging industry-standard tools and custom scripts.
  • Document and communicate findings through comprehensive reports that include technical details, risk assessments, and actionable remediation recommendations.
  • Conduct peer reviews of penetration test reports to ensure accuracy, consistency, and quality of deliverables.
  • Collaborate with development, infrastructure, and security teams to clarify findings, support remediation efforts, and provide subject matter expertise on offensive security.
  • Stay current with emerging threats, vulnerabilities, and attack techniques by leveraging threat intelligence, security research, and participation in relevant industry groups.
  • Contribute to the continuous improvement of penetration testing methodologies, tools, and frameworks to enhance effectiveness and alignment with firm strategy and regulatory requirements.

Required Qualifications, Capabilities, and Skills

  • 5+ years of hands-on penetration testing experience in offensive security, with a proven track record of scoping, executing, and reporting on complex engagements.
  • Expertise in manual penetration testing of web, API, cloud (AWS/Azure/GCP), infrastructure, thick-client, and/or mobile applications (android/iOS), including the use of industry-standard tools (e.g., Burp Suite, Nmap, Metasploit, etc.).
  • Strong understanding of security assessment methodologies such as OWASP Top Ten, NIST Cybersecurity Framework, and other relevant standards.
  • Ability to identify and articulate systemic security issues related to threats, vulnerabilities, and risks, and provide clear, actionable recommendations for remediation.
  • Exceptional organizational and communication skills, including the ability to write detailed technical reports and present findings to both technical and non-technical stakeholders.
  • Experience conducting peer reviews of penetration test reports and mentoring junior testers.
  • Continuous learner who keeps up with the latest offensive security trends, tools, and techniques.

Preferred Qualifications, Capabilities, and Skills

  • Knowledge of cybersecurity practices, operational risk management, and incident response methodologies within the US financial services sector, including relevant regulations, threats, and risks.
  • Proficiency in penetration testing and security concepts for both Windows and Unix-like operating systems.
  • Experience conducting security-focused source code reviews (e.g., Python, Java, Rust).
  • Experience in reverse engineering thick-client and mobile applications to identify vulnerabilities.
  • Relevant certifications such as OSWE, CREST (CRT, CCT), OSCP, OSCE, GXPN, GWAPT, GPEN, GMOB, or BSCP. GXPN, GWAPT, GPEN, GMOB, or BSCP

What JPMorgan Chase & Co. employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom