1

Penetration Tester Contract Jobs in Raleigh, NC (NOW HIRING)

DevSecOps Analyst

Morrisville, NC · On-site

$110 - $150/hr

... contract. The DevSecOps Analyst provides technical expertise in secure software delivery ... Penetration testing findings Compliance and Governance Support compliance with: * FISMA * NIST ...

Present F&I products including service contracts, GAP, and protection plans * Clearly explain ... Achieve product penetration and revenue goals * Maintain strong knowledge of all F&I offerings ...

... Contract Staffing (Staff Augmentation) Permanent Placement (Staff Augmentation) ICAP (Contractor ... Experience in security penetration testing Experience using ticketing systems such as Remedy ...

Penetration Tester Contract information

See Raleigh, NC salary details

$21.9K

$116.5K

$163.8K

How much do penetration tester contract jobs pay per year?

As of Aug 21, 2026, the average yearly pay for penetration tester contract in Raleigh, NC is $116,547.00, according to ZipRecruiter salary data. Most workers in this role earn between $93,300.00 and $137,100.00 per year, depending on experience, location, and employer.

What is a penetration tester contract?

A Penetration Tester Contract is a temporary or project-based agreement where a cybersecurity professional is hired to simulate cyberattacks on an organization’s systems, networks, or applications. The goal is to identify vulnerabilities and security weaknesses before malicious hackers can exploit them. Contractors typically deliver detailed reports on their findings and recommend remediation steps. These contracts can vary in length and scope depending on the organization's needs and the complexity of the systems being tested.

What does a penetration tester contract do?

A contract penetration tester assesses the effectiveness of security for a computer network, website, software, or application. You perform your duties on a contract basis and work with various clients. A penetration tester finds, defines, and tries to exploit a vulnerability in their client’s cybersecurity system. In this career, your responsibilities not only include hacking into your client’s network or system, but also reporting on the potential vulnerability and helping the client improve their practices so that they can protect themselves against such a cyber threat when an actual hacker tries to penetrate their defenses.

What are the key skills and qualifications needed to thrive as a penetration tester contract, and why are they important?

To thrive as a Penetration Tester Contractor, you need a strong understanding of network security, vulnerability assessment, and ethical hacking, typically backed by a degree in computer science or cybersecurity and relevant certifications like OSCP or CEH. Familiarity with penetration testing tools such as Metasploit, Burp Suite, and Nmap, as well as experience with various operating systems, is essential. Strong analytical thinking, attention to detail, and effective client communication are standout soft skills in this role. These competencies ensure accurate identification of security gaps and clear reporting, helping organizations effectively strengthen their cybersecurity posture.

What are some common challenges faced by penetration testers working on a contract basis?

Contract penetration testers often encounter challenges such as limited access to internal information, the need to quickly understand a client's environment, and tight project deadlines. They must adapt rapidly to different security policies and toolsets with each new engagement, while maintaining clear communication with diverse client teams. Building trust and delivering concise, actionable reports within the contract timeframe are essential for success and future opportunities.

What is the difference between Penetration Tester Contract vs Penetration Tester Full-Time?

AspectPenetration Tester ContractPenetration Tester Full-Time
CredentialsCertifications like OSCP, CEH often requiredSame certifications typically required
Work EnvironmentProject-based, temporary assignmentsPermanent employment, ongoing projects
Employer & Industry UsageConsulting firms, cybersecurity agenciesIn-house security teams, corporations
Search & Comparison IntentFreelance opportunities, short-term rolesLong-term career, stability

In summary, Penetration Tester Contract roles are project-based and often involve short-term assignments with consulting firms, while Penetration Tester Full-Time positions offer permanent employment within organizations. Both roles typically require similar certifications and skills, but differ mainly in employment type and work environment.

What are the most commonly searched types of Penetration Tester jobs in Raleigh, NC?

The most popular types of Penetration Tester jobs in Raleigh, NC are:

What are popular job titles related to Penetration Tester Contract jobs in Raleigh, NC?

For Penetration Tester Contract jobs in Raleigh, NC, the most frequently searched job titles are:

What job categories do people searching Penetration Tester Contract jobs in Raleigh, NC look for?

The top searched job categories for Penetration Tester Contract jobs in Raleigh, NC are:

What cities near Raleigh, NC are hiring for Penetration Tester Contract jobs?

Cities near Raleigh, NC with the most Penetration Tester Contract job openings:

Infographic showing various Penetration Tester Contract job openings in Raleigh, NC as of August 2026, with employment types broken down into 67% Full Time, and 33% Contract. Highlights an 100% In-person job distribution, with an average salary of $116,547 per year, or $56 per hour.

IT Security Principal Engineer -NATIONWIDE_

GlobalXperts

Raleigh, NC • On-site

$120 - $140/hr

Other

Re-posted 29 days ago


Job description

IT Security Principal Engineer -NATIONWIDE_

Contract

GlobalXperts is a leading IT Solution Provider whose business focus is to provide Day 2 remote monitoring & co-managed support and professional services for advanced Cisco, Microsoft and Data Center solutions. Our Level 1 through Level 3 networking experts (CCNA through CCIE) are available around-the-clock and have a deep understanding of internetworking technologies (Collaboration, Data Center, Borderless networking, Security) and products from leading equipment manufacturers giving you access to multi-technology support from a single source. Our professional services approach track with Cisco's PPDIOO model which is to prepare, plan, design, implement, operate, and optimize. And, while each phase of the service delivery model is strategically designed to build upon the previous phase, GlobalXperts technical staff has been successfully utilized by our customers for any or all phases.

The IT Security Principal Engineer will deliver security technical consulting to internal organizations and Information Technology Services (ITS). The IT Security Principal Engineer will evaluate needs of key stakeholders to find solutions to challenging situations. Primary areas of expertise are IT infrastructure and information security compliance (HIPAA, SOX, PCI, Penetration Testing, etc.).

Responsibilities
  • Drive SDL across ITS and business segments, for internal and externally facing applications, including Ecommerce sites, Mobility (Android, Apple IOS), and legacy applications
  • Source code analysis and remediation using Fortify; Network security assessments and analysis for corporate and non-corporate network environments
  • Firewall policy evaluation, review, and design
  • Ensure compliance across applications and networks for PCI, HIPAA, and SOX
  • Provide training and guidance for security including Threat Modeling, Penetration Testing, SDL, and Code Security Reviews
Qualifications
  • Bachelor's degree required, preferably in computer science or information systems
  • 5+ years of experience leading penetration testing, application testing, and red team engagements
  • 10+ years of Information Technology, with a background in Security and Compliance experience
Additional Requirements
  • Experience with security tools such as – Nmap, Metasploit, Kali Linux, Burp Suite Pro, etc., as well as other various commercial and self-developed testing tools
  • Experience with scripting languages such as python, ruby, POSIX shell, as well as familiarity with programming languages such as C/C++/ObjC/C#, Java, PHP, or .NET
  • Understanding of:
    • Web protocols (e.g., HTTP, HTTPS, and SOAP)
    • Web technologies (e.g., HTML, JavaScript, XML, AJAX, JSON, and REST)
  • Experience with WLAN security concepts and testing
  • Strong technical communication skills, both written and verbal; ability to explain technical security concepts to executive stakeholders in business language
  • While experience in a number of IT disciplines may provide a solid framework for this position, hands-on results from performing IT risk assessments, information security consulting or IT audits are most beneficial
  • Experience in the following regulations and Frameworks: PCI, ISO 27001/2, HIPAA, GLBA, NIST

All your information will be kept confidential according to EEO guidelines.

#J-18808-Ljbffr