1

Pen Testing Jobs (NOW HIRING)

Demonstrated experience doing static code analysis (SAST) and dynamic testing (DAST) and/or pen-testing applications. * Experience with Salesforce and/or Oracle applications/platforms and security ...

Penetration Tester

Washington, DC · On-site

$120 - $180/hr

Cloud pen testing tools (Pacu, AzureHound) for cloud-hosted environments. * SDR/HackRF tools for wireless and RF communications testing. * AI-assisted fuzzing tools for expanding exploit discovery on ...

Engineering Manager, Application Security

Austin, TX · On-site

$58.25 - $77.75/hr

... pen-testing program. Stand up pipelines that run continuous, AI-assisted offensive testing against our services, APIs, and web properties - and turn the output into a triaged, actionable queue • ...

... • Pen Testing • Vulnerability • IT Audit Preferred : • CISSP • SANS Company : As one of the world's most dynamic and highly regarded IT recruitment consultancies. Founded in 1986, the ...

Partner with our Sales Engineering team to lead deep-dive sessions on autonomous pen-testing and offensive AI. * Drive PoCs: Lead the charge in converting interest into Proof of Concepts (PoCs ...

Partner with our Sales Engineering team to lead deep-dive sessions on autonomous pen-testing and offensive AI. * Drive PoCs: Lead the charge in converting interest into Proof of Concepts (PoCs ...

Partner with our Sales Engineering team to lead deep-dive sessions on autonomous pen-testing and offensive AI. * Drive PoCs: Lead the charge in converting interest into Proof of Concepts (PoCs ...

Penetration Tester

Reston, VA · On-site

$110 - $170/hr

If you're the kind of pen tester who enjoys emulating attacks and surfacing vulnerabilities, we want to hear from you! Responsibilities * Perform web application, network, API and AI penetration ...

Sr. Application Security Engineer

Redlands, CA · On-site

$59 - $79/hr

... testing, and false positive analysis of code, pen test, and open-source security findings • Demonstrated experience determining risk based on analysis/findings using a consistent risk management ...

Sr. Application Security Engineer

Redlands, CA · On-site

$59 - $79/hr

Practical experience interpreting findings from application pen testing, code scanning and open-source scanners to determine the risk and collaborate with developers to resolve them * Understanding ...

Showing results 41-60

Pen Testing information

See salary details

$9

$19

$31

How much do pen testing jobs pay per hour?

As of Aug 22, 2026, the average hourly pay for pen testing in the United States is $19.14, according to ZipRecruiter salary data. Most workers in this role earn between $15.38 and $19.23 per hour, depending on experience, location, and employer.

What is pen testing?

Pen testing, short for penetration testing, is a cybersecurity practice where professionals simulate attacks on a computer system, network, or application to identify vulnerabilities that malicious hackers could exploit. The goal is to proactively find and fix security weaknesses before they can be used in real-world attacks. Pen testers use a variety of tools and techniques to mimic the methods of cybercriminals, and then provide detailed reports with recommendations for improving security. Organizations often conduct pen tests regularly as part of their overall security strategy.

What are the key skills and qualifications needed to thrive as a penetration tester, and why are they important?

To thrive as a Penetration Tester, you need a solid understanding of network security, vulnerability assessment, and ethical hacking, often backed by a degree in computer science or cybersecurity and industry certifications like CEH or OSCP. Familiarity with tools such as Metasploit, Burp Suite, and Nmap, as well as various operating systems, is typically required. Strong analytical thinking, problem-solving skills, and effective communication set top performers apart when explaining findings to technical and non-technical stakeholders. These skills ensure that vulnerabilities are thoroughly identified and addressed, helping organizations protect critical data and systems.

What are some common challenges faced by penetration testers when working on client projects?

Penetration testers often encounter challenges such as limited timeframes to conduct thorough assessments, incomplete or outdated documentation from clients, and the need to clearly communicate technical findings to non-technical stakeholders. They may also face restrictions on testing certain systems due to business constraints or potential operational impact. Building trust with clients and ensuring testing activities do not disrupt critical services are also important aspects of the role.

What is the difference between Pen Testing vs Vulnerability Assessment?

AspectPen TestingVulnerability Assessment
PurposeSimulates attacks to identify exploitable vulnerabilitiesIdentifies and prioritizes security weaknesses
DepthIn-depth, targeted testingBroad, overview of vulnerabilities
CertificationsOSCP, CEH, GPENCISA, CISSP, CEH
Work EnvironmentHands-on, technical testingAnalysis and reporting

Pen Testing involves actively exploiting vulnerabilities to assess security defenses, while Vulnerability Assessment focuses on identifying and prioritizing potential weaknesses without exploiting them. Both are essential for a comprehensive security strategy but serve different roles in cybersecurity testing.

How do you become a pen tester?

To become a penetration tester, you typically need a strong foundation in computer networks, operating systems, and security principles, often gained through a degree in cybersecurity, computer science, or related fields. Gaining hands-on experience with tools like Kali Linux, Metasploit, and Wireshark, along with industry certifications such as the Offensive Security Certified Professional (OSCP), can improve job prospects. Continuous learning and staying updated on emerging vulnerabilities are essential in this field.

How hard is it to get into pen testing?

Pen testing is a specialized cybersecurity role that typically requires a strong understanding of networks, operating systems, and security principles, often gained through certifications like OSCP or CEH and hands-on experience. Entry can be competitive, but building skills with practical labs, scripting, and knowledge of tools like Kali Linux can improve chances of breaking into the field.

Is pen testing a good career?

Penetration testing, or pen testing, is a cybersecurity role focused on identifying vulnerabilities in systems and networks. It requires technical skills, knowledge of security tools, and often certifications like OSCP or CEH. The field offers high demand, competitive salaries, and opportunities for continuous learning, making it a strong career choice for those interested in cybersecurity.
More about Pen Testing jobs

What cities are hiring for Pen Testing jobs?

Cities with the most Pen Testing job openings:

What states have the most Pen Testing jobs?

States with the most job openings for Pen Testing jobs include:

What job categories do people searching Pen Testing jobs look for?

The top searched job categories for Pen Testing jobs are:

Infographic showing various Pen Testing job openings in the United States as of August 2026, with employment types broken down into 20% Full Time, 10% Part Time, and 70% Contract. Highlights an 100% In-person job distribution, with an average salary of $39,807 per year, or $19.1 per hour.

URGENT NEED - WAF Engineer - Fort Worth, Texas _ ONISTE

Navtech, Inc.

Fort Worth, TX • On-site

Contractor

Re-posted 2 days ago


Job description

I have an opportunity for "WAF Engineer - Fort Worth, Texas _ ONISTE" and I am looking for a candidate who can join Immediately if you are interested, reply to me with your updated resume or if you could refer someone I would really appreciate it.
Position : WAF Engineer
Location : Fort Worth, Texas (Onsite)
Duration : 6 to 12 Months Contract
General Job Description:
The Web Application Security team collaborates with application owners, architects, and developers to integrate security tools such as web application firewalls and bot mitigation to protect American Airlines websites and mobile apps.
This team also collaborates with corporate security fraud teams, privacy teams, and incident response teams in investigations related to websites. This individual is responsible for the analysis, design, implementation, and maintenance of the automation tasks for our product.
This individual is also responsible for collaborating with application owners and security vendors to update/tune Web Application Firewall (WAF) and bot mitigation security policies.
Minimum Qualifications:
Bachelor's degree in computer science, Computer Engineering, Technology, Information Systems (CIS/MIS), Engineering or related technical discipline, or equivalent experience/training
3 years of technology experience, with a focus on information security technology development and administration, web app development, or web application pen testing
Preferred Qualifications:
Master's degree in computer science, Computer Engineering, Technology, Information Systems (CIS/MIS), Engineering or related technical discipline, or equivalent experience/training
5+ years of technology experience, with a focus on information security technology development and administration, web app development, or web application pen testing.
CISSP, CISM, CISA, GIAC or other security certifications are desired.
Strong technical background with Akamai Web Application Firewall (WAF) and bot mitigation security policies
Experience working with Akamai performance and security tools.
Skills, Licenses & Certifications:
Solid comprehension of HTTP protocol and demonstrated ability to troubleshoot using HTTP logs and Splunk or other analytics tools
Strong technical background in web development and familiarity with potential attack vectors/methods
Strong technical background in scripting languages (Python, PowerShell, or JavaScript)
Basic understanding of DNS, Networks, Firewalls, SSL Certificates
Working understanding of Agile Framework
Self-motivated learning, good attitude
Language & Communication Skills:
Ability to effectively communicate both verbally and written with all levels within the organization.
Ability to explain technical concepts and adjust messaging based on the audience, including non-technical groups.
Ability to influence through outstanding interpersonal skills, collaboration, and negotiation skills.
Ability to work well within a team environment, as well as independently.
Regards
Alex . K
NAVTECH INC
1600 Golf Road. Suite 1200, Rolling Meadows, IL 60008
Ph: (224) 348-1340 || Email: alex@navtechusa.com || www.navtechusa.com E-Verified Company

Navtech logo

About Navtech

Sourced by ZipRecruiter

Industry

Civil engineering construction

Company size

11 - 50 Employees

Headquarters location

New Bloomfield, PA, US

Year founded

1996