1

Penetration Test Jobs (NOW HIRING)

Execute penetration tests against NAS and Mission Support systems, networks, and applications following approved Rules of Engagement and test plans. * Identify and exploit vulnerabilities in network ...

We are seeking a Lead Penetration Test Engineer with extensive experience in penetration testing and offensive security.The ideal candidate will conduct penetration tests, re-testing, vulnerability ...

We are seeking a Lead Penetration Test Engineer with extensive experience in penetration testing and offensive security.The ideal candidate will conduct penetration tests, re-testing, vulnerability ...

Senior Penetration Tester

Tampa, FL ยท On-site

$120 - $150/hr

Your primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and services. Leveraging industry-standard methodologies and ...

Your primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and services. Leveraging industry-standard methodologies and ...

Your primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and services. Leveraging industry-standard methodologies and ...

Your primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and services. Leveraging industry-standard methodologies and ...

WV ยท On-site

Perform application, API, and cloud penetration tests on CMM systems prior to ATO submission. * Conduct web, mobile, API, and microservices security testing using industrystandard tools and manual ...

Senior Penetration Tester

Tampa, FL ยท On-site

$156K - $260K/yr

Your primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and services. Leveraging industry-standard methodologies and ...

Senior Penetration Tester

Manhattan, NY ยท On-site

$156K - $260K/yr

Your primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and services. Leveraging industry-standard methodologies and ...

Your primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and services. Leveraging industry-standard methodologies and ...

Penetration Tester

Arlington, VA ยท On-site

$86K - $138K/yr

Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems. * Identify vulnerabilities and develop recommended remediations to satisfy mandated ...

Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems. * Identify vulnerabilities and develop recommended remediations to satisfy mandated ...

NJ ยท Hybrid

$170K/yr

Scope and execute penetration tests and code review against a variety of technologies including web application, mobile, infrastructure, and cloud. * Work collaboratively with a variety of internal ...

Showing results 21-40

Penetration Test information

See salary details

$22.5K

$119.9K

$168.5K

How much do penetration test jobs pay per year?

As of Aug 16, 2026, the average yearly pay for penetration test in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is a penetration tester?

A penetration tester, often called a 'pen tester' or ethical hacker, is a cybersecurity professional who simulates cyberattacks on computer systems, networks, or applications to identify vulnerabilities that malicious hackers could exploit. Their goal is to uncover weaknesses before real attackers can find and exploit them, helping organizations strengthen their security. Penetration testers use a variety of tools and techniques, document their findings, and often provide recommendations for mitigation. This role requires knowledge of security protocols, programming, and the latest hacking methods.

What are the key skills and qualifications needed to thrive as a penetration tester, and why are they important?

To thrive as a Penetration Tester, you need a solid understanding of network security, operating systems, and vulnerability assessment, often backed by a degree in computer science or cybersecurity and relevant certifications like OSCP or CEH. Familiarity with tools such as Metasploit, Burp Suite, and Nmap is typically required to identify and exploit system weaknesses. Strong analytical thinking, attention to detail, and effective communication skills help convey technical findings to both technical and non-technical stakeholders. These skills are crucial for identifying security risks, mitigating vulnerabilities, and ensuring the overall protection of organizational assets.

What are the typical challenges faced by penetration testers when working with clients?

Penetration testers often encounter challenges such as limited access to information, time constraints, and varying levels of security awareness among client staff. Navigating these obstacles requires strong communication skills to clarify the scope of work, as well as adaptability to different environments and technologies. Building trust with clients and providing actionable, clear reports are also essential, as they help ensure that identified vulnerabilities are understood and addressed effectively.

What is the difference between Penetration Test vs Vulnerability Analyst?

AspectPenetration TestVulnerability Analyst
CertificationsOSCP, CEH, GPENCVE, CISSP, GIAC
Work EnvironmentSimulated attacks on systems to identify security gapsScanning and analyzing vulnerabilities in networks and applications
Employer & Industry UsageCybersecurity firms, IT departments, consultingSecurity teams, risk management, compliance

While both roles focus on cybersecurity, Penetration Testers actively exploit vulnerabilities to assess security defenses, whereas Vulnerability Analysts identify and prioritize vulnerabilities without exploiting them. Both roles are essential for a comprehensive security strategy and often collaborate within security teams.

How much do penetration testers make?

Penetration testers typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Senior professionals with advanced skills and certifications like OSCP or CISSP can earn higher salaries, especially in high-demand markets or specialized environments.

Is penetration testing a good career?

Penetration testing is a growing cybersecurity field that involves identifying vulnerabilities in computer systems and networks. It requires technical skills, knowledge of security tools, and often certifications like OSCP or CEH. The role offers high demand, competitive salaries, and opportunities for continuous learning, making it a viable career choice for those interested in cybersecurity.

What is the average pay for penetration testing?

The average salary for penetration testers typically ranges from $70,000 to $130,000 annually, depending on experience, certifications, and location. Entry-level roles may start around $60,000, while experienced professionals with advanced skills and certifications like OSCP or CISSP can earn over $150,000. Many penetration testers work in cybersecurity environments that value technical expertise and problem-solving skills.

What qualifications do you need to be a penetration test?

A penetration tester typically needs a strong understanding of computer networks, operating systems, and security principles, along with proficiency in scripting and using tools like Kali Linux or Metasploit. Relevant certifications such as Certified Ethical Hacker (CEH) or Offensive Security Certified Professional (OSCP) are highly valued. Practical experience through labs, internships, or hands-on projects is also important for this role.
More about Penetration Test jobs

What cities are hiring for Penetration Test jobs?

Cities with the most Penetration Test job openings:

What are the most commonly searched types of Penetration Test jobs?

The most popular types of Penetration Test jobs are:

What states have the most Penetration Test jobs?

States with the most job openings for Penetration Test jobs include:

Infographic showing various Penetration Test job openings in the United States as of August 2026, with employment types broken down into 50% Full Time, 10% Part Time, 10% Temporary, 20% Contract, and 10% Nights. Highlights an 90% In-person, and 10% Hybrid job distribution, with an average salary of $119,895 per year, or $57.6 per hour.

Penetration Tester

OCH Technologies LLC

Leesburg, VA โ€ข On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 19 days ago


Job description

Description:

OCH Technologies is seeking a Penetration Tester to execute network, system, application, and specialized penetration tests against FAA infrastructure under the direction of the Penetration Testing Lead. The candidate will work within formal Rules of Engagement, operate FAA-approved tools, and produce technically detailed test reports. You will also participate in red team and blue team exercises in simulated environments.


This position supports a proposal effort and is contingent upon award, customer approval, and successful onboarding requirements.


Location

Hybrid- FAA Air Traffic Control System Command Center (ATCSCC)- Washington, DC


This position has the potential to travel up to 40% to other FAA facilities nationwide


Core Responsibilities & Duties

  • Execute penetration tests against NAS and Mission Support systems, networks, and applications following approved Rules of Engagement and test plans.
  • Identify and exploit vulnerabilities in network infrastructure, operating systems, web applications, and databases.
  • Participate in red team and blue team exercises in simulated environments. Execute attack scenarios and document findings.
  • Document all testing activities, findings, and exploitation paths in Penetration Test Reports (PTRs).
  • Perform regression penetration tests to validate remediation of previously identified vulnerabilities.
  • Support aircraft cyber testing activities including avionics and flight system security assessments when directed.
  • Support specialized assessments of edge devices, firewalls, load balancers, and other network infrastructure components.
  • Assess and document the potential for lateral movement when access is gained during testing. Report high-risk findings immediately.
  • Maintain and update penetration testing tools and lab environments. All tools must be FAA-approved prior to use.
  • Support the Penetration Testing Lead in developing Rules of Engagement and test plans for upcoming engagements.

Responsibilities may evolve over time to support team and organizational goals but will remain consistent with the overall scope of the role.

Requirements:

Minimum Qualifications


Education

Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Mathematics, or Physics from an accredited institution


Experience

  • A minimum of five (5)+ years of hands-on penetration testing experience, including network, system, and web application testing. At least 2 years of relevant experience must be recent (performed within the last 3 years).
  • Proficiency with Metasploit, Burp Suite, nMap, and related penetration testing frameworks.
  • Experience working within formal Rules of Engagement and producing structured penetration test reports.
  • Understanding of network protocols, routing, switching, firewall configurations, and common misconfigurations.
  • Experience with web application testing following OWASP methodology.

Security Clearance Requirement

Candidate must have the ability to obtain and maintain a Public Trust

Certifications

  • At least one Red Teaming certification: OSCP, OSCE, OSWP, OSWE, CEH, ECSA, CEH Practical, ECSA Practical, LPT Master, GCIH, GPEN, GWAPT, GXPN, or GAWN.
  • Blue Teaming certifications are also accepted: CND, CNDA, GCIH, GCIA, GDAT, GDSA, GCED, or GCFA.
  • OSCP or GPEN preferred.

Preferred Qualifications

  • Experience testing ICS/OT environments or critical infrastructure systems.
  • Experience with wireless security testing or satellite communication systems.
  • Experience with cloud penetration testing (AWS, Azure).
  • Familiarity with aircraft systems, avionics, or aviation communication protocols.
  • Prior red team experience in a government or military context.
  • C2 frameworks (Cobalt Strike, Sliver, Mythic) for adversary simulation beyond Metasploit.
  • BloodHound and Impacket for Active Directory attack path analysis and lateral movement.
  • Nuclei for automated vulnerability detection at scale.
  • Cloud pen testing tools (Pacu, AzureHound) for cloud-hosted environments.
  • SDR/HackRF tools for wireless and RF communications testing.
  • AI-assisted fuzzing tools for expanding exploit discovery on complex systems.

Other Required Skills and Abilities

  • Willingness to travel to FAA facilities and WJHTC for on-site testing engagements.
  • Discipline to operate within strict testing constraints in safety-critical environments.
  • Ability to conduct manual testing beyond automated tool output. Ability to develop custom scripts and payloads as needed.






About Us: At OCH, we are more than just a government contracting firm; we are innovators and leaders in providing cutting-edge IT services and cybersecurity solutions. Driven by a set of fundamental values, we excel in creating secure, efficient, and forward-thinking solutions that empower the government agencies we work with. Our commitment to maintaining the highest standards of integrity, adapting swiftly to new challenges, and focusing on the people we serve ensures that we consistently exceed expectations and lead the industry in innovation and reliability.


What Defines Us:

  • Integrity - We act with unwavering honesty, ensuring every decision is rooted ethically.
  • Adaptable - We swiftly adapt to changes, seizing opportunities to innovate and lead.
  • People-Focused - We prioritize relationships, championing growth and mutual success.
  • Accountable - We own our outcomes, striving for excellence through continuous improvement.
  • Collaborative - We cultivate teamwork, harnessing diverse talents to forge groundbreaking solutions.

Why Join Us?

Step into a role at OCH where your contributions make a tangible impact. Join a team that values creativity and initiative, offering a platform to transform the landscape of government IT services. Here, your work is not just a career—it's a mission. Embrace the opportunity to grow, innovate, and excel alongside industry leaders who are as passionate about technology as they are about making a difference. Plus, we offer a comprehensive benefits package designed to support your wellbeing and work-life balance, including:

  • Paid time off and Holidays
  • Medical, Dental, and Vision Insurance
  • Paid Parental Leave
  • Short-term disability, long-term disability, and life insurance - Employer Paid!
  • 401(k)
  • Additional Voluntary Life Insurance
  • Tuition Reimbursement

& More!


E-Verify Participation: OCH Technologies, LLC is a participant of E-Verify to verify the identity and employment eligibility of newly hired employees.


Veteran’s Preference and Accessibility Statement: At OCH Technologies, we deeply respect and appreciate the unique skills and experiences that veterans bring to our team. As a federal contractor, we encourage qualified veterans to apply and provide preference where permitted by law. Your service and dedication are valued here.


We are committed to creating a workplace that is open, welcoming, and accessible to everyone. In accordance with the Americans with Disabilities Act (ADA) and Section 503 of the Rehabilitation Act, we provide reasonable accommodations throughout the hiring process to ensure individuals with disabilities can apply without barriers. If you need assistance or an accommodation, please contact us at hiring@ochtec.com.


OCH Technologies, LLC is proud to be an equal opportunity employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, disability, gender identity, or any other protected characteristic as outlined by federal, state, or local laws.