... testing and security compliance activities. Responsibilities : • Perform internal and external ... web app pentests. • Perform vulnerability risk assessments. • Perform physical pentests and ...
... testing and security compliance activities. Responsibilities : • Perform internal and external ... web app pentests. • Perform vulnerability risk assessments. • Perform physical pentests and ...
Penetration Tester, Senior
Annapolis, MD · On-site
Perform web app pentests. * Perform vulnerability risk assessments. * Perform physical pentests and ... Must have experience with penetration testing tools. * Must have experience in web development and ...
Penetration Tester, Senior
Annapolis, MD · On-site
Perform web app pentests. * Perform vulnerability risk assessments. * Perform physical pentests and ... Must have experience with penetration testing tools. * Must have experience in web development and ...
Perform web app pentests. * Perform vulnerability risk assessments. * Perform physical pentests and ... Must have experience with penetration testing tools. * Must have experience in web development and ...
Perform web app pentests. * Perform vulnerability risk assessments. * Perform physical pentests and ... Must have experience with penetration testing tools. * Must have experience in web development and ...
Penetration Testing Lead
Warrenton, VA · On-site
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
Penetration Testing Lead
Warrenton, VA · On-site
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
Penetration Testing Lead
Washington, DC · On-site
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
Penetration Testing Lead
Washington, DC · On-site
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
Qualifications Required Skills: 1) Application security testing. 2) Penetration testing (against applications). 3) Experience with application testing tools (examples are Qualys Web App Security ...
Qualifications Required Skills: 1) Application security testing. 2) Penetration testing (against applications). 3) Experience with application testing tools (examples are Qualys Web App Security ...
Penetration Tester
Charlotte, NC · On-site
... penetration testing tools Demonstrated experience with creating and communication of reports regarding web application vulnerabilities to various level of personnel within a large organization.
Penetration Tester
Charlotte, NC · On-site
... penetration testing tools Demonstrated experience with creating and communication of reports regarding web application vulnerabilities to various level of personnel within a large organization.
Penetration Tester
Casar, NC · On-site
Penetration Testing: Performing controlled attacks on web applications. APIs, infrastructure, and simulate real-world hacking attempts and identify potential entry points for attackers. This involves ...
Penetration Tester
Casar, NC · On-site
Penetration Testing: Performing controlled attacks on web applications. APIs, infrastructure, and simulate real-world hacking attempts and identify potential entry points for attackers. This involves ...
Penetration Tester
Charlotte, NC · On-site
... penetration ... testing tools • Demonstrated experience with creating and communication of reports regarding web ...
Penetration Tester
Charlotte, NC · On-site
... penetration ... testing tools • Demonstrated experience with creating and communication of reports regarding web ...
Conduct penetration testing of web applications, APIs, mobile applications, databases, and client-side technologies. * Perform application enumeration, endpoint discovery, vulnerability research, and ...
Conduct penetration testing of web applications, APIs, mobile applications, databases, and client-side technologies. * Perform application enumeration, endpoint discovery, vulnerability research, and ...
Penetration Tester
Arlington, VA · On-site
$86K - $138K/yr
... Web Security Testing Guide (WTG), etc. * Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers. * U.S. citizenship required. * An active Secret security ...
Penetration Tester
Arlington, VA · On-site
$86K - $138K/yr
... Web Security Testing Guide (WTG), etc. * Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers. * U.S. citizenship required. * An active Secret security ...
Penetration Tester
$86K - $138K/yr
... Web Security Testing Guide (WTG), etc. * Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers. * U.S. citizenship required. * An active Secret security ...
Penetration Tester
$86K - $138K/yr
... Web Security Testing Guide (WTG), etc. * Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers. * U.S. citizenship required. * An active Secret security ...
Penetration Tester III
Chandler, AZ · On-site
The role involves conducting penetration testing, managing projects, and leading Red Team ... Company : M9 Solutions is a national staffing firm focused on cloud, cyber security, web ...
Penetration Tester III
Chandler, AZ · On-site
The role involves conducting penetration testing, managing projects, and leading Red Team ... Company : M9 Solutions is a national staffing firm focused on cloud, cyber security, web ...
Penetration Tester
Chantilly, VA · On-site
$90K - $130K/yr
Conduct penetration testing that uses both active and passive capabilities to expose and exploit IA ... System methodologies including: client/server, web hosting, web content servers, policy servers ...
Penetration Tester
Chantilly, VA · On-site
$90K - $130K/yr
Conduct penetration testing that uses both active and passive capabilities to expose and exploit IA ... System methodologies including: client/server, web hosting, web content servers, policy servers ...
Penetration Tester
$95K - $112K/yr
... Web Security Testing Guide (WTG), etc. * Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers. * U.S. citizenship required. * An active Secret security ...
Quick apply
Penetration Tester
$95K - $112K/yr
... Web Security Testing Guide (WTG), etc. * Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers. * U.S. citizenship required. * An active Secret security ...
Senior Penetration Tester - Web & Hardware/IoT
$133K - $225K/yr
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications ...
Senior Penetration Tester - Web & Hardware/IoT
$133K - $225K/yr
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications ...
Penetration Tester II
Washington, DC · On-site
Responsibilities : • Conduct continuous penetration testing methodologies. • Plan and conduct ... Company : M9 Solutions is a national staffing firm focused on cloud, cyber security, web ...
Penetration Tester II
Washington, DC · On-site
Responsibilities : • Conduct continuous penetration testing methodologies. • Plan and conduct ... Company : M9 Solutions is a national staffing firm focused on cloud, cyber security, web ...
Conduct penetration testing of web applications, APIs, mobile applications, databases, and client-side technologies. * Perform application enumeration, endpoint discovery, vulnerability research, and ...
Conduct penetration testing of web applications, APIs, mobile applications, databases, and client-side technologies. * Perform application enumeration, endpoint discovery, vulnerability research, and ...
Penetration Tester
Chantilly, VA · On-site
$90K - $130K/yr
Conduct penetration testing that uses both active and passive capabilities to expose and exploit IA ... System methodologies including: client/server, web hosting, web content servers, policy servers ...
Quick apply
Penetration Tester
Chantilly, VA · On-site
$90K - $130K/yr
Conduct penetration testing that uses both active and passive capabilities to expose and exploit IA ... System methodologies including: client/server, web hosting, web content servers, policy servers ...
Overnight Web App Penetration Testing information
See salary details
$11.54 - $18.36
4% of jobs
$18.36 - $25.17
0% of jobs
$25.17 - $31.99
0% of jobs
$31.99 - $38.81
6% of jobs
$38.81 - $45.63
5% of jobs
$50.89 is the 25th percentile. Wages below this are outliers.
$45.63 - $52.45
12% of jobs
The median wage is $59.11 / hr.
$52.45 - $59.27
23% of jobs
$65.74 is the 75th percentile. Wages above this are outliers.
$59.27 - $66.08
26% of jobs
$66.08 - $72.90
13% of jobs
$72.90 - $79.72
3% of jobs
$79.72 - $86.54
7% of jobs
$11
$59
$86
How much do overnight web app penetration testing jobs pay per hour?
What is the difference between Overnight Web App Penetration Testing vs Web Application Security Analyst?
| Aspect | Overnight Web App Penetration Testing | Web Application Security Analyst |
|---|---|---|
| Primary Focus | Simulating cyberattacks to identify vulnerabilities in web applications | Monitoring, analyzing, and improving overall web security posture |
| Certifications | OSCP, CEH, GPEN | CISSP, GIAC Web Application Security (GWAS) |
| Work Environment | Intensive, project-based, often during off-hours | Ongoing security monitoring and analysis during regular hours |
| Job Duration | Typically short-term, focused on specific testing windows | Long-term, continuous security management |
While both roles involve web security, Overnight Web App Penetration Testing focuses on conducting simulated attacks to find vulnerabilities, often during off-hours. Web Application Security Analysts work on ongoing security monitoring and improving defenses. Both roles require similar certifications and industry knowledge but differ in scope and work style.
Full-time
Re-posted 21 days ago
Job description
Navstar Inc. is an award-winning organization providing IT services and solutions focused on national security. They are seeking a Senior Penetration Tester to join a high-performing agile team, responsible for ensuring the security of enterprise-wide information systems through various penetration testing and security compliance activities.
Responsibilities:
• Perform internal and external pentests against systems to determine vulnerabilities and develop mitigation strategies.
• Perform web app pentests.
• Perform vulnerability risk assessments.
• Perform physical pentests and social engineering analysis.
• Perform cyber incident response as needed.
• Evaluate the impact of new development on the operational security posture of IT systems.
• Evaluate, review, and test critical software.
• Formulate security compliance requirements for new system features.
• Identify and remediate security issues throughout the system.
• Audit and assess system security configuration settings using common methodologies and tools.
• Work with development teams to enrich team-wide understanding of different types of vulnerabilities, attack vectors, and remediation approaches.
• Work closely with System Engineering, Test Engineering, and Integration teams to ensure hardware and software architecture and implementations meet strict security requirements.
• Propose, assess, coordinate, implement, and enforce information systems security policies, standards, and methodologies.
• Serve as a Subject Matter Expert in security architecture, to include providing advice to Program Managers, Customer technical experts, and internal program teams.
Qualifications:
Required:
• To be eligible for this position you must hold an active TS/SCI clearance with Polygraph.
• Must have experience with penetration testing tools.
• Must have experience in web development and programming languages such as Java, XML, Perl and HTML.
• Must have experience with programming/scripting in Python, Powershell, C, JavaScript, etc.
• Must have extensive experience performing IT security risk assessments.
• Must have experience performing web app and physical pentests.
• Must have experience with or strong familiarity of the following Web Application tools; Burp Suite, Web Inspect, Appdetective.
• Must have experience with or strong familiarity of Kali.
• Must have experience with or strong familiarity of IPS/IDS solutions.
• Must have a strong understanding of the Cyber Kill Chain methodology.
• Must have experience applying Risk Management Framework.
• Must have experience with secure configurations of commonly used desktop and server operating systems.
• Must have the ability to effectively collaborate with technical staff and customers to form mitigation strategies and plan for continuous modernization and legacy integration.
• Must have experience managing multiple projects simultaneously and quickly and effectively adjusting to shifting priorities in resolving issues.
Preferred:
• Bachelor's degree in a technical/information assurance field and at least 12 years of relevant experience.
• Certifications in one or more of the following areas strongly preferred: GIAC Web Applications Penetration Tester (GWAPT), GIAC Penetration Tester (GPEN), Certified Ethical Hacker (CEH), Certified Information Security Manager (CISM), Certified Web Application Defender (GWEB), Certified Information System Security Professional (CISSP).
• Extensive experience developing/implementing integrated security services management processes, such as assessing and auditing network penetration testing, anti-virus planning assistance, risk analysis, and incident response.
• Extensive experience providing information assurance support for application development that includes system security certifications and project evaluations for firewalls that encompass development, design, and implementation.
Company:
Who We Are: Since 1999, Navstar has earned a reputation for excellence by listening to our customers, being easy to work with, and delivering on our commitments. Founded in 1999, the company is headquartered in Reston, USA, with a team of 51-200 employees. The company is currently Growth Stage.
About Navstar
Sourced by ZipRecruiter
Industry
It services
Company size
51 - 200 Employees
Headquarters location
Reston, VA, US
Year founded
1999