1

Penetration Tester Jobs in Reston, VA (NOW HIRING)

Penetration Tester Location: Reston, VA Work Mode - Hybrid role, 2 days' Work from Office (Wednesday and Thursday) Must have Skill Set - Red team pentester * Network penetration testing and ...

Principal Penetration TesterAltus Consulting seeks a seasoned cybersecurity professional to spearhead our penetration testing initiatives. As a key member of our elite team, you'll play a crucial ...

Principal Penetration Tester Altus Consulting seeks a seasoned cybersecurity professional to spearhead our penetration testing initiatives. As a key member of our elite team, you'll play a crucial ...

They are seeking a Penetration Tester II to work on-site in support of a government contract, requiring an active Secret clearance and expertise in various penetration testing methodologies.

Penetration Tester

Alexandria, VA · On-site

$75 - $85/hr

Coordinate and conduct Agency penetration testing on systems operated by and on behalf of NCUA, ensuring access occurs only through specified authentication methods and is limited to vetted personnel.

Principal Penetration Tester Altus Consulting seeks a seasoned cybersecurity professional to spearhead our penetration testing initiatives. As a key member of our elite team, you'll play a crucial ...

Your expertise in cloud penetration testing (FedRAMP and other compliance frameworks) and security best practices will be essential in helping our customers. Key Responsibilities This role will be ...

Description Penetration Tester Xcelerate Solutions is seeking a Penetration Tester to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support ...

Connsci is seeking a Penetration Tester to join our growing organization. This individual will be directly supporting one of our government programs and will be responsible for penetration testing ...

Penetration Tester

Alexandria, VA · On-site

$75 - $85/hr

Coordinate and conduct Agency penetration testing on systems operated by and on behalf of NCUA, ensuring access occurs only through specified authentication methods and is limited to vetted personnel.

Penetration Tester

Herndon, VA · On-site

$86K - $198K/yr

Penetration Tester The Opportunity: Conduct testing and analysis to identify vulnerabilities and potential threat vectors in systems and networks, develop exploits, and engineer attack methodologies.

Penetration Tester

Gaithersburg, MD · On-site

$100K - $130K/yr

Connsci is seeking a Penetration Tester to join our growing organization. This individual will be directly supporting one of our government programs and will be responsible for penetration testing ...

They are seeking a Penetration Tester II to conduct penetration testing and support government contracts, requiring an active Secret clearance. Responsibilities : • At least three (3) years of pen ...

Penetration Tester

Gaithersburg, MD · On-site

$100K - $130K/yr

Connsci is seeking a Penetration Tester to join our growing organization. This individual will be directly supporting one of our government programs and will be responsible for penetration testing ...

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

The Senior Penetration Tester serves as Key Personnel responsible for leading advanced penetration testing and vulnerability assessment activities within a TS/SCI environment. This role ensures ...

Showing results 21-40

Penetration Tester information

See Reston, VA salary details

$23.4K

$124.7K

$175.3K

How much do penetration tester jobs pay per year?

As of Aug 17, 2026, the average yearly pay for penetration tester in Reston, VA is $124,733.00, according to ZipRecruiter salary data. Most workers in this role earn between $99,900.00 and $146,700.00 per year, depending on experience, location, and employer.

What does a penetration tester do?

As a penetration tester, your job is to test the security of a network by attempting to hack into an application, system, or computer. Penetration testing can occur in a variety of ways, from physical interaction with the machine you’re trying to hack to attacks sent over the web. Aside from helping clients test for vulnerabilities, your job also includes explaining how you got in and providing recommendations for stopping others from repeating your actions. In some cases, you may be asked to help investigate cyber crimes or explain methods and techniques in criminal trials. Success in this job is often measured by how many security holes you find and close.

What are some common challenges penetration testers face during client engagements?

Penetration testers often encounter challenges such as limited access to information, strict time constraints, and navigating complex or legacy systems. Additionally, they must balance thorough testing with minimizing disruptions to client operations. Effective communication is crucial, as testers need to clearly document findings and explain technical vulnerabilities to non-technical stakeholders to ensure remediation efforts are understood and prioritized.

What is a penetration tester?

Penetration Testers, also known as ethical hackers, are cybersecurity professionals who simulate cyberattacks on computer systems, networks, or applications to identify and address security vulnerabilities. Their work helps organizations discover weak points before malicious hackers can exploit them. Penetration testers use a variety of tools and techniques to mimic real-world threats and provide detailed reports with recommendations for improving security. They play a crucial role in maintaining the safety and integrity of an organization’s digital assets.

What is the difference between Penetration Tester vs Vulnerability Analyst?

AspectPenetration TesterVulnerability Analyst
CertificationsOSCP, CEH, GPENCVE, CISSP, GIAC
Work EnvironmentHands-on testing, simulated attacksVulnerability scanning, risk assessment
Employer & IndustryCybersecurity firms, IT departmentsSecurity teams, compliance agencies
Search & Comparison IntentUnderstanding testing roles, skillsIdentifying vulnerabilities, analysis methods

While both roles focus on cybersecurity, a Penetration Tester actively exploits vulnerabilities to test security defenses, whereas a Vulnerability Analyst identifies and assesses weaknesses without exploiting them. Penetration Testers typically perform simulated attacks, requiring hands-on skills and certifications like OSCP or CEH. Vulnerability Analysts focus on scanning and reporting vulnerabilities, often working with tools like Nessus or Qualys. Both roles are essential for a comprehensive security strategy but differ in approach and responsibilities.

What are the key skills and qualifications needed to thrive as a penetration tester, and why are they important?

To thrive as a Penetration Tester, you need a solid understanding of networking, operating systems, cybersecurity principles, and typically hold certifications like OSCP or CEH. Proficiency with tools such as Metasploit, Burp Suite, Nmap, and Wireshark is crucial for identifying and exploiting vulnerabilities. Strong analytical thinking, attention to detail, and clear communication skills help Penetration Testers effectively document findings and convey risks to clients. These skills and qualities are vital for uncovering security weaknesses and helping organizations strengthen their defenses against cyber threats.

What are the most commonly searched types of Penetration Tester jobs in Reston, VA?

The most popular types of Penetration Tester jobs in Reston, VA are:

What are popular job titles related to Penetration Tester jobs in Reston, VA?

For Penetration Tester jobs in Reston, VA, the most frequently searched job titles are:

What job categories do people searching Penetration Tester jobs in Reston, VA look for?

The top searched job categories for Penetration Tester jobs in Reston, VA are:

What cities near Reston, VA are hiring for Penetration Tester jobs?

Cities near Reston, VA with the most Penetration Tester job openings:

Infographic showing various Penetration Tester job openings in Reston, VA as of August 2026, with employment types broken down into 75% Full Time, 15% Part Time, and 10% Contract. Highlights an 85% In-person, and 15% Remote job distribution, with an average salary of $124,733 per year, or $60 per hour.

Full-time

Posted 5 days ago


Job description

About GuidePoint Security

GuidePoint Security is a leading cybersecurity solutions and services firm enabling federal government organizations to make smarter security decisions that minimize risk. With more than 800 vetted technology vendor partnerships and deep practitioner expertise across every major cybersecurity domain, GuidePoint serves more than half of the U.S. Government's cabinet-level agencies across Civilian, DoD, and Intelligence Community segments, as well as Federal System Integrators and major defense prime contractors. We are growing our federal engineering team and looking for technically exceptional engineers who thrive at the intersection of federal mission and cybersecurity technology.

The Pen Tester role will be responsible for performing comprehensive Risk and Vulnerability Analysis (RVA) assessments, functioning as penetration and purple team assessments.  The role will be in response to performing penetration testing engagements using major frameworks like OWASP and NIST, against a range of technologies such as web applications, servers, operating systems, cloud services, AI workflows, and network devices.

Onsite requirement (Candidates must reside within the Washington, D.C. metropolitan area) - This role supports a federal customer in Alexandria, VA. 

What You'll Get To Do:

  • Perform analysis of submitted findings and vulnerabilities and provide a written report covering risk, likelihood of exploitation, and recommendations for remediation.
  • Handle vetting of multiple vulnerabilities simultaneously, demonstrating efficiency and organization, to ensure all vulnerabilities are addressed in a timely manner.
  • Swiftly confirm or deny the legitimacy of submitted vulnerabilities, ensuring rapid response times while maintaining the integrity of the vulnerability disclosure process.
  • Provide insightful guidance and support to system owners regarding the agency's patching processes and timelines, helping them navigate and comply with these procedures.
  • Ensure all findings and analyses are reported in a timely and efficient manner, maintaining a consistent flow of information and updates.
  • Provide comprehensive start-to-finish RVA assessments, encompassing initial customer outreach, meticulous planning, thorough execution, and detailed reporting.
  • Utilize expertise in assessing both current and emerging technology platforms and architectures, ensuring assessments are relevant and comprehensive.
  • Conduct expert-level assessments using major frameworks like OWASP and NIST, covering a range of technologies such as web applications, servers, operating systems, cloud services, AI workflows, and network devices.
  • Perform in-depth insider threat analysis, integrating it as a crucial part of the assessment process to identify potential internal security risks.
  • Research and simulate emerging zero-day threats, creating mock-up scenarios to demonstrate the feasibility of exploitation and assess system vulnerabilities.
  • Develop custom scripts for specialized exploitation scenarios, tailoring attack strategies to effectively test specific system vulnerabilities.
  • Demonstrate hands-on experience with popular penetration testing software such as Meterpreter Pro, Nessus, and Cobalt Strike, using these tools to conduct thorough assessments.
  • Analyze vulnerability scans and perform follow-on testing of systems to verify exploitability, ensuring comprehensive identification of security weaknesses.
  • Conduct trend analysis across assessments to identify common vulnerabilities among disparate systems, aiding in the development of targeted security strategies.
  • Develop SOPs and best practices for penetration testing and vulnerability assessment, documenting these in corporate knowledge repositories for enterprise-wide distribution.
  • Communicate technical issues effectively to non-technical management, translating complex cybersecurity concepts into understandable terms.
  • Work within corporate issue and knowledge tracking systems, providing continuous status updates on projects and ensuring seamless integration with existing workflows.
  • Test and document new tools, techniques, tactics, and scripts for usability security acceptance testing.

Requirements

  • Ability to obtain and maintain a Public Trust clearance.
  • Bachelor's degree in computer science, Cybersecurity, Information Systems, Engineering, or a related technical field, or equivalent experience.
  • 5 years of experience leading penetrating testing
  • OSCP OR CEH Certification
  • Experience developing custom scripts for certain exploit scenarios and tailoring attack scenarios to test specific system vulnerabilities.
  • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes

Preferred Qualifications

  • Experience performing red-team or penetration testing engagements in a federal environment.
  • Penetration testing on HVA assets in a federal environment.
  • Hands-on experience with Meterpreter Pro, Nessus, and Cobalt Strike.
  • US Government Clearance preferred

"Applicants selected will be subject to a security investigation and must meet eligibility requirements for access to classified information."