1

Pen Testing Jobs (NOW HIRING)

We are seeking a Penetration Testing Associate. Under general direction, this role acts as an ethical hacker who tests the security of clients' computer systems, networks, and applications. They ...

We are seeking a Penetration Testing Associate. Under general direction, this role acts as an ethical hacker who tests the security of clients' computer systems, networks, and applications. They ...

Pen Tester

Chicago, IL · On-site

$140K - $160K/yr

Pen Tester Overview A growing organization is seeking a Pen Tester to identify vulnerabilities and ... Conduct penetration testing across web applications, APIs, networks, and cloud environments

Heavy Penetration Testing Experience Needed -Manual AND automated testing -Manual pen testing experience Need to be able to actually execute and understand tools/how to use. -If they have an ethical ...

Preferred At least 2 years of experience in Security Testing (Web & Network Pen testing and Secure code analysis).. Hands on security tester with proficiency in tools like HP Fortify, Web Inspect ...

Preferred At least 2 years of experience in Security Testing (Web & Network Pen testing and Secure code analysis) Hands on security tester with proficiency in tools like HP Fortify, Web Inspect ...

Pen Testers are also responsible for performing security focused services to improve the security posture of NRO ISs. Travel: 25% estimate for pen testers (OCONUS travel 2x per year). What will you ...

Penetration Tester

Chantilly, VA · On-site

$150K - $195K/yr

Pen Testers are also responsible for performing security focused services to improve the security posture of NRO ISs. Travel: 25% estimate for pen testers (OCONUS travel 2x per year). What will you ...

Penetration Tester

Chantilly, VA · On-site

$150K - $195K/yr

Pen Testers are also responsible for performing security focused services to improve the security posture of NRO ISs. Travel: 25% estimate for pen testers (OCONUS travel 2x per year). What will you ...

... testing approved by the Government and write a report with all applicable findings. The report shall follow a template that shall be created, maintained, and updated by the Pen Tester with Government ...

Responsibilities Conduct black box ,white box security and penetration testing to assess and validate application security Perform manual pen-tests, ability to setup threat models and fuzzers. Be ...

... testing approved by the Government and write a report with all applicable findings. The report shall follow a template that shall be created, maintained, and updated by the Pen Tester with Government ...

Senior Penetration Tester

Leesburg, VA · On-site

$140K - $160K/yr

Previous pen testing experience Desired: Security+ Certification At Foxhole Technology, we are committed to pay transparency in accordance with applicable laws for both applicants and our employee ...

next page

Showing results 1-20

Pen Testing information

See salary details

$9

$19

$31

How much do pen testing jobs pay per hour?

As of Aug 1, 2026, the average hourly pay for pen testing in the United States is $19.14, according to ZipRecruiter salary data. Most workers in this role earn between $15.38 and $19.23 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Penetration Tester, and why are they important?

To thrive as a Penetration Tester, you need a solid understanding of network security, vulnerability assessment, and ethical hacking, often backed by a degree in computer science or cybersecurity and industry certifications like CEH or OSCP. Familiarity with tools such as Metasploit, Burp Suite, and Nmap, as well as various operating systems, is typically required. Strong analytical thinking, problem-solving skills, and effective communication set top performers apart when explaining findings to technical and non-technical stakeholders. These skills ensure that vulnerabilities are thoroughly identified and addressed, helping organizations protect critical data and systems.

What are some common challenges faced by penetration testers when working on client projects?

Penetration testers often encounter challenges such as limited timeframes to conduct thorough assessments, incomplete or outdated documentation from clients, and the need to clearly communicate technical findings to non-technical stakeholders. They may also face restrictions on testing certain systems due to business constraints or potential operational impact. Building trust with clients and ensuring testing activities do not disrupt critical services are also important aspects of the role.

What is the difference between Pen Testing vs Vulnerability Assessment?

AspectPen TestingVulnerability Assessment
PurposeSimulates attacks to identify exploitable vulnerabilitiesIdentifies and prioritizes security weaknesses
DepthIn-depth, targeted testingBroad, overview of vulnerabilities
CertificationsOSCP, CEH, GPENCISA, CISSP, CEH
Work EnvironmentHands-on, technical testingAnalysis and reporting

Pen Testing involves actively exploiting vulnerabilities to assess security defenses, while Vulnerability Assessment focuses on identifying and prioritizing potential weaknesses without exploiting them. Both are essential for a comprehensive security strategy but serve different roles in cybersecurity testing.

Is pen testing a good career?

Penetration testing, or pen testing, is a cybersecurity role focused on identifying vulnerabilities in systems and networks. It requires technical skills, knowledge of security tools, and often certifications like OSCP or CEH. The field offers high demand, competitive salaries, and opportunities for continuous learning, making it a strong career choice for those interested in cybersecurity.

What is pen testing?

Pen testing, short for penetration testing, is a cybersecurity practice where professionals simulate attacks on a computer system, network, or application to identify vulnerabilities that malicious hackers could exploit. The goal is to proactively find and fix security weaknesses before they can be used in real-world attacks. Pen testers use a variety of tools and techniques to mimic the methods of cybercriminals, and then provide detailed reports with recommendations for improving security. Organizations often conduct pen tests regularly as part of their overall security strategy.

How do I become a pen tester?

To become a penetration tester, you should gain a strong understanding of computer networks, operating systems, and security principles, often through a degree in cybersecurity, computer science, or related fields. Earning industry-recognized certifications such as Offensive Security Certified Professional (OSCP) or Certified Ethical Hacker (CEH) can improve job prospects, and practical experience with tools like Kali Linux, Metasploit, and Wireshark is essential.

What qualifications do you need to be a pen tester?

To become a penetration tester, candidates typically need a strong understanding of networking, operating systems, and security principles, along with proficiency in scripting and using security tools. Relevant certifications such as Certified Ethical Hacker (CEH) or Offensive Security Certified Professional (OSCP) are highly valued. Practical experience through labs, internships, or hands-on projects is also important for demonstrating skills in identifying vulnerabilities and exploiting security flaws.

How much can you make pen testing?

Penetration testers typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Senior roles or those with specialized skills in tools like Kali Linux or Metasploit can earn higher salaries, especially in high-demand industries or regions with a strong cybersecurity market.
More about Pen Testing jobs
What cities are hiring for Pen Testing jobs? Cities with the most Pen Testing job openings:
What states have the most Pen Testing jobs? States with the most job openings for Pen Testing jobs include:
Infographic showing various Pen Testing job openings in the United States as of July 2026, with employment types broken down into 1% As Needed, 75% Full Time, 17% Part Time, 2% Contract, and 5% Summer. Highlights an 86% Physical, and 14% Remote job distribution, with an average salary of $39,807 per year, or $19.1 per hour.

Pen Testing Associate

CliftonLarsonAllen

Tampa, FL • On-site

Full-time

Medical, Dental, Vision, Retirement

This job post has expired today. Applications are no longer accepted.


CliftonLarsonAllen rating

7.3

Company rating: 7.3 out of 10

Based on 27 frontline employees who took The Breakroom Quiz

20th of 22 rated bookkeepers and accountants


Job description

CLA is a top 10 national professional services firm where our purpose is to create opportunities every day, for our clients, our people, and our communities through industry-focused wealth advisory, digital, audit, tax, consulting, and outsourcing services. Even with more than 8,500 people, 130 U.S. locations, and a global reach, we promise to know you and help you.
We are seeking a Penetration Testing Associate. Under general direction, this role acts as an ethical hacker who tests the security of clients' computer systems, networks, and applications. They support efforts to simulate attacks that may identify vulnerabilities and weaknesses in clients' systems that could be exploited by malicious hackers. Assist in making recommendations on how to improve client's systems security.
Essential Job Functions
• Assists with the evaluation, testing, and scanning of client networks to help determine weaknesses in client IT operations, processes, systems, and related controls.
• Support efforts to identify unique issues specific to the client's environment and assist in presenting solutions to the engagement teams based on findings.
• Perform penetration testing such as EPT, phishing & calls, and wireless.
• Assist with internal and external technical security assessments.
• Aid in review of tactics and processes to protect organizations from threats.
• Assists in the interpretation of findings to determine if systems and processes can appropriately react to threats.
• Support efforts to identify security settings that may need to be enhanced.
• Participate in tabletop tests to help clients prepare for disaster events.
• Provide direction, train, and delegate work to interns as needed.
• Assist Seniors, Managers, and Directors with client relationships, practice management, and business development activities.
Requirements
Experience
• None required.
• 1 year of relevant experience preferred.
Education
• Bachelor's degree is required. (Combination of relevant experience, education, and training may be accepted in lieu of degree.)
• Degree in Computer Science, Information Technology or related field preferred.
Certifications / Licenses
• None required.
• The following certifications are preferred:
  • OSCP
  • OSWP
  • CEH
  • PNPT
  • Sec+
  • Net+

Technical Competencies
  • Knowledge of penetration testing frameworks such as OSSTMM, OWASP, and PTES required
  • Ability to perform testing such as EPT, phishing & calls, and/or wireless.
  • Proficiency in Microsoft Outlook and Office products (Word, Excel, PowerPoint, etc) required

Travel Requirements
This position requires frequent local travel to/from client sites and may require occasional non-local or overnight travel for client visits, training, meetings and/or other business-related purposes.
#LI-RC1
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
Click here to learn about your hiring rights.
Wellness at CLA
To support our CLA family members, we focus on their physical, financial, social, and emotional well-being and offer comprehensive benefit options that include health, dental, vision, 401k and much more.
To view a complete list of benefits, click here.

What CliftonLarsonAllen employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


CliftonLarsonAllen logo

About CliftonLarsonAllen

Sourced by ZipRecruiter

CliftonLarsonAllen (CLA) is a leading professional services company based in Minneapolis, MN, US. CLA operates in the accounting industry and offers a broad range of products and services such as wealth advisory, outsourcing, audit, tax, and consulting services. The company was founded in 1953 with a merger between two firms, Clifton Gunderson and LarsonAllen, in 2012. Working in accordance with their mission to create opportunities for clients, people, and communities, they have established a presence across the US, serving privately held businesses, non-profits, and governmental entities. Recognized for their contributions, CLA has received accolades such as the Innovative Firm of the Year award.

Industry

Accounting services

Company size

5,001 - 10,000 Employees

Headquarters location

Minneapolis, MN, US

Year founded

2012