GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
Web Developer Security Engineer
Washington, DC · On-site
$90 - $120/hr
OSWE / OSCP; Foundational: Security+ / GSEC. #J-18808-Ljbffr
Web Developer Security Engineer
Washington, DC · On-site
$90 - $120/hr
OSWE / OSCP; Foundational: Security+ / GSEC. #J-18808-Ljbffr
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
OSCP, OSWE, GXPN, GPEN, or equivalent. • Familiarity with commonly used large-scale service components (webservers, databases, load balancers, caching servers, storage cluster, etc.). • General ...
OSCP, OSWE, GXPN, GPEN, or equivalent. • Familiarity with commonly used large-scale service components (webservers, databases, load balancers, caching servers, storage cluster, etc.). • General ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
Cyber Network Operator
Chantilly, VA · On-site
$176K - $282K/yr
OSCP, OSWE, GXPN, GPEN, or equivalent * Familiarity with commonly used large-scale service components (webservers, databases, load balancers, caching servers, storage cluster, etc.) Peraton Overview ...
Cyber Network Operator
Chantilly, VA · On-site
$176K - $282K/yr
OSCP, OSWE, GXPN, GPEN, or equivalent * Familiarity with commonly used large-scale service components (webservers, databases, load balancers, caching servers, storage cluster, etc.) Peraton Overview ...
Industry certifications such as OSCP, OSWE, OSEP, CRTO, GPEN, or equivalent.
Industry certifications such as OSCP, OSWE, OSEP, CRTO, GPEN, or equivalent.
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
Offensive Security OSCP, OSWE, OSCE, OSEE; Cisco CyberOps, CCNA, CCNP; CompTIA CySA+, CASP, Security+, Network+; EC-CEH. * Knowledge of basic dynamic malware analysis/triage. * Knowledge of cyber ...
New
Offensive Security OSCP, OSWE, OSCE, OSEE; Cisco CyberOps, CCNA, CCNP; CompTIA CySA+, CASP, Security+, Network+; EC-CEH. * Knowledge of basic dynamic malware analysis/triage. * Knowledge of cyber ...
New
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
Offensive Security Web Expert (OSWE) * Hack The Box Certified Penetration Testing Specialist (HTB CPTS) * Hack The Box Certified Bug Bounty Hunter (HTB CBBH) * Certified Red Team Operator (CRTO) from ...
Offensive Security Web Expert (OSWE) * Hack The Box Certified Penetration Testing Specialist (HTB CPTS) * Hack The Box Certified Bug Bounty Hunter (HTB CBBH) * Certified Red Team Operator (CRTO) from ...
Offensive Security OSCP, OSWE, OSCE, OSEE; Cisco CyberOps, CCNA, CCNP; CompTIA CySA+, CASP, Security+, Network+; EC-CEH. * Knowledge of basic dynamic malware analysis/triage. * Knowledge of cyber ...
New
Offensive Security OSCP, OSWE, OSCE, OSEE; Cisco CyberOps, CCNA, CCNP; CompTIA CySA+, CASP, Security+, Network+; EC-CEH. * Knowledge of basic dynamic malware analysis/triage. * Knowledge of cyber ...
New
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Company : KPMG ...
OSWE information
See salary details
$73.5K - $83.8K
1% of jobs
$83.8K - $94K
4% of jobs
$94K - $104.3K
8% of jobs
$114.6K is the 25th percentile. Wages below this are outliers.
$104.3K - $114.6K
11% of jobs
$114.6K - $124.9K
13% of jobs
The median wage is $132.6K / yr.
$124.9K - $135.1K
17% of jobs
$135.1K - $145.4K
11% of jobs
$153.8K is the 75th percentile. Wages above this are outliers.
$145.4K - $155.7K
11% of jobs
$155.7K - $166K
9% of jobs
$166K - $176.2K
7% of jobs
$176.2K - $186.5K
6% of jobs
$73.5K
$137.1K
$186.5K
How much do oswe jobs pay per year?
What are the key skills and qualifications needed to thrive as an OSWE?
To thrive as an OSWE (Offensive Security Web Expert), you need strong expertise in web application security, penetration testing, and vulnerability assessment, usually supported by advanced technical training or industry certifications such as the OSWE. Familiarity with tools like Burp Suite, various proxy tools, scripting languages (such as Python and JavaScript), and security testing platforms is essential. Persistence, analytical thinking, and clear communication skills make a candidate stand out in this security-focused role. These abilities are critical to effectively identifying, reporting, and helping mitigate security weaknesses in web applications, ensuring organizations’ digital safety.
What is an OSWE?
An OSWE (Offensive Security Web Expert) job involves conducting advanced web application penetration testing to identify security vulnerabilities. Professionals with this certification specialize in exploiting complex web applications, analyzing security risks, and providing remediation guidance. OSWE-certified individuals typically work as penetration testers, security consultants, or ethical hackers, ensuring web applications are secure against real-world attacks.
What types of projects or assessments does an OSWE typically work on?
An OSWE (Offensive Security Web Expert) is primarily engaged in hands-on security assessments of web applications, focusing on identifying and exploiting vulnerabilities through advanced penetration testing techniques. Daily tasks often include reviewing source code, conducting manual and automated testing, and producing detailed vulnerability reports for development teams. OSWE professionals commonly collaborate with software developers, security engineers, and IT managers to remediate discovered issues and improve application security. This role is both challenging and rewarding, offering opportunities to tackle complex security problems and continuously expand technical skillsets through real-world scenario testing.
What are the most commonly searched types of Oswe jobs?
The most popular types of Oswe jobs are:
What states have the most Oswe jobs?
States with the most job openings for Oswe jobs include:
What job categories do people searching Oswe jobs look for?
The top searched job categories for Oswe jobs are:

Full-time
Re-posted 16 days ago
Job description
KPMG is a leading firm in the Advisory practice, offering opportunities for career advancement and professional development. They are seeking a Senior Specialist, MAST Application Penetration Tester to conduct application penetration testing and work independently on engagements.
Responsibilities:
• Conduct manual application penetration testing against API's (REST/SOAP), Web Applications, Mobile applications, and thick client applications
• Perform objective based on abstract penetration testing engagements
• Execute threat modeling, evaluate application business logic, and perform application architecture reviews
• Demonstrate application testing experience in real time via demos to both internal and external audiences
• Function independently in penetration testing engagements, with minimal oversight and guidance
• Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment
Qualifications:
Required:
• Minimum three years of recent experience in application penetration testing of Application Programming Interface (API's), web applications, or mobile applications
• Bachelor's degree from an accredited college/university or equivalent industry experience
• Ability to communicate reporting results with technical and non-technical audiences and lead remediation conversations
• Experience with burp suite pro, and other app testing tools such as Netsparker and Checkmarx
• Ability to travel as required
• Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)
Preferred:
• One or more major ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA)
Company:
KPMG is one of the world’s leading professional services firms and the fastest growing Big Four accounting firm in the United States. Founded in 2010, the company is headquartered in New York, USA, with a team of 10001+ employees. The company is currently Late Stage.