1

Penetration Test Jobs (NOW HIRING)

Penetration Test Lead

Falls Church, VA ยท On-site

$180K - $210K/yr

Penetration Test Leads plan and execute complex offensive security assessments identifying exploitable vulnerabilities before adversaries can. This role leads penetration testing engagements ...

Penetration Test Lead

Falls Church, VA ยท On-site

$180K - $210K/yr

Penetration Test Leads plan and execute complex offensive security assessments identifying exploitable vulnerabilities before adversaries can. This role leads penetration testing engagements ...

Penetration Test Engineer

Aberdeen, MD ยท On-site

$165K - $195K/yr

Penetration Test Engineer Overview Tech(x) is an energized company with experienced, specialized and progressive thought leaders progressing talented professionals in areas of technology, security ...

Plan, coordinate, and oversee individual penetration test events. * Collaborate with DoD and Government penetration testing organizations to plan, scope, and prepare for penetration test events.

Plan, coordinate, and oversee individual penetration test events. * Collaborate with DoD and Government penetration testing organizations to plan, scope, and prepare for penetration test events.

Director, Penetration Testing

Iselin, NJ ยท Hybrid

$170K - $210K/yr

You will also oversee the Penetration Test Coordinator to ensure effective planning, tracking and governance of all testing activities. In parallel, you will establish and build an internal ...

Your Role as a Cloud Security Engineer : We are seeking a highly skilled Cloud Security Engineer to join our dynamic team. This is a crucial customer-facing role where you will be instrumental in ...

Director, Penetration Testing

Iselin, NJ ยท On-site

$170K - $210K/yr

You will also oversee the Penetration Test Coordinator to ensure effective planning, tracking and governance of all testing activities. In parallel, you will establish and build an internal ...

Penetration Tester

Arlington, VA ยท On-site

$86K - $138K/yr

Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems. * Identify vulnerabilities and develop recommended remediations to satisfy mandated ...

Penetration Tester

Arlington, VA ยท On-site

$86K - $138K/yr

Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems. * Identify vulnerabilities and develop recommended remediations to satisfy mandated ...

Penetration Tester

Arlington, VA ยท On-site

$86K - $138K/yr

Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems. * Identify vulnerabilities and develop recommended remediations to satisfy mandated ...

Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems. * Identify vulnerabilities and develop recommended remediations to satisfy mandated ...

Penetration Tester

Arlington, VA ยท On-site

$86K - $138K/yr

Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems. * Identify vulnerabilities and develop recommended remediations to satisfy mandated ...

Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems. * Identify vulnerabilities and develop recommended remediations to satisfy mandated ...

Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems. * Identify vulnerabilities and develop recommended remediations to satisfy mandated ...

next page

Showing results 1-20

Penetration Test information

See salary details

$22.5K

$119.9K

$168.5K

How much do penetration test jobs pay per year?

As of May 29, 2026, the average yearly pay for penetration test in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Penetration Tester, and why are they important?

To thrive as a Penetration Tester, you need a solid understanding of network security, operating systems, and vulnerability assessment, often backed by a degree in computer science or cybersecurity and relevant certifications like OSCP or CEH. Familiarity with tools such as Metasploit, Burp Suite, and Nmap is typically required to identify and exploit system weaknesses. Strong analytical thinking, attention to detail, and effective communication skills help convey technical findings to both technical and non-technical stakeholders. These skills are crucial for identifying security risks, mitigating vulnerabilities, and ensuring the overall protection of organizational assets.

What are the typical challenges faced by penetration testers when working with clients?

Penetration testers often encounter challenges such as limited access to information, time constraints, and varying levels of security awareness among client staff. Navigating these obstacles requires strong communication skills to clarify the scope of work, as well as adaptability to different environments and technologies. Building trust with clients and providing actionable, clear reports are also essential, as they help ensure that identified vulnerabilities are understood and addressed effectively.

What is a penetration tester?

A penetration tester, often called a 'pen tester' or ethical hacker, is a cybersecurity professional who simulates cyberattacks on computer systems, networks, or applications to identify vulnerabilities that malicious hackers could exploit. Their goal is to uncover weaknesses before real attackers can find and exploit them, helping organizations strengthen their security. Penetration testers use a variety of tools and techniques, document their findings, and often provide recommendations for mitigation. This role requires knowledge of security protocols, programming, and the latest hacking methods.

What is the difference between Penetration Test vs Vulnerability Analyst?

AspectPenetration TestVulnerability Analyst
CertificationsOSCP, CEH, GPENCVE, CISSP, GIAC
Work EnvironmentSimulated attacks on systems to identify security gapsScanning and analyzing vulnerabilities in networks and applications
Employer & Industry UsageCybersecurity firms, IT departments, consultingSecurity teams, risk management, compliance

While both roles focus on cybersecurity, Penetration Testers actively exploit vulnerabilities to assess security defenses, whereas Vulnerability Analysts identify and prioritize vulnerabilities without exploiting them. Both roles are essential for a comprehensive security strategy and often collaborate within security teams.

More about Penetration Test jobs
What cities are hiring for Penetration Test jobs? Cities with the most Penetration Test job openings:
What are the most commonly searched types of Penetration Test jobs? The most popular types of Penetration Test jobs are:
What states have the most Penetration Test jobs? States with the most job openings for Penetration Test jobs include:
Infographic showing various Penetration Test job openings in the United States as of May 2026, with employment types broken down into 96% Full Time, and 4% Contract. Highlights an 20% Physical, 13% Hybrid, and 67% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.
Penetration Test Lead

Penetration Test Lead

ZTI Solutions, LLC

Falls Church, VA โ€ข On-site

$180K - $210K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 10 days ago


Job description

Penetration Testing Lead
Falls Church, Virginia.
Full-time.
Important Notice: This position is contingent upon contract award.
Summary:
Penetration Test Leads plan and execute complex offensive security assessments identifying exploitable vulnerabilities before adversaries can. This role leads penetration testing engagements, develops testing methodologies, coordinates with system owners, and produces comprehensive penetration testing reports. Pen Test Leads possess advanced offensive security skills and ensure testing is conducted safely without impacting production operations.
Key Responsibilities:
  • Plan and scope 15-30 penetration testing engagements annually.
  • Execute network penetration tests identifying exploitable vulnerabilities.
  • Conduct web application security assessments (OWASP Top 10).
  • Perform social engineering tests (phishing, vishing, physical security)
  • Lead 2-4 major red team exercises annually.
  • Identify 100-300 exploitable vulnerabilities annually.
  • Document 10-40 critical/high severity findings requiring immediate remediation.
  • Produce 15-30 comprehensive penetration test reports annually.
  • Conduct 50-150 vulnerability revalidation tests verifying fixes.

Performance Metrics:
  • Annual Assessments: 15-30 penetration tests.
  • Systems Tested: 30-80 systems assessed annually.
  • Vulnerabilities Found: 100-300 exploitable issues identified.
  • Critical Findings: 10-40 requiring immediate action.
  • Assessment Reports: 15-30 comprehensive deliverables.
  • Red Team Exercises: 2-4 major exercises annually.
  • Remediation Validation: 50-150 retests annually.

Requirements:
  • Clearance: Secret (NIPR), Top Secret (SIPR), or TS/SCI Eligible (JWICS) based on network assignment.
  • Education: Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, or related field.
  • Experience: 10+ years information security; 5+ years penetration testing experience
  • Certifications: OSCP or GPEN required; OSCE, GXPN, GWAPT, or other offensive security certifications highly desired
  • Technical Knowledge: Expert knowledge of penetration testing methodologies (PTES, OWASP, NIST 800-115), network protocols, web applications, exploitation techniques, security controls

About Advana:
Advana is the Department of Defense Chief Digital and Artificial Intelligence Office's (CDAO) enterprise-wide data, analytics, and AI platform. Advana provides DoD military and civilian decision makers with unprecedented access to enterprise data, tools, and capabilities in a secure environment. The platform hosts hundreds of curated applications across logistics, financial management, personnel, health, and other domains, accelerating decision advantage through accessible, actionable data and AI capabilities.
This position supports comprehensive cybersecurity operations for the Advana platform across three classified networks (NIPR, SIPR, JWICS).
Important Notes:

Position Status:
  • This position is contingent upon contract award.
  • Start date will be determined upon contract award.
  • We will maintain contact with selected candidates throughout the award process.

Work Requirements:
  • U.S. Citizen required.
  • Clearance varies by network: Secret (NIPR), Top Secret (SIPR), or TS/SCI Eligible (JWICS).
  • On-premises work required at Suffolk Building, Falls Church, VA.
  • No remote work options available.
  • Standard business hours with operational flexibility.

Benefits:
  • 4 Weeks Paid Time Off.
  • All Federal Holidayโ€™s Paid Vacation.
  • Four Percent Matching 401K.
  • Full health/vision/dental benefits for the employee and family paid 100% by ZTI Solutions, LLC.

We thank all applicants for their interest. Only candidates selected for interviews will be contacted.