1

Penetration Tester Jobs in Reston, VA (NOW HIRING)

Overview SOSi is seeking a Penetration Tester III to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting penetration testing and red ...

Penetration Tester

Herndon, VA · On-site +1

$86K - $198K/yr

Share Penetration Tester The Opportunity: Conduct testing and analysis to identify vulnerabilities and potential threat vectors in systems and networks, develop exploits, and engineer attack ...

Penetration Tester LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a highly skilled and proactive ...

They are seeking a Penetration Tester III to conduct penetration testing and security assessments for government clients, requiring an active Secret clearance and a Bachelor's degree.

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

The Senior Penetration Tester serves as Key Personnel responsible for leading advanced penetration testing and vulnerability assessment activities within a TS/SCI environment. This role ensures ...

Penetration Tester LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a highly skilled and proactive ...

The role of Penetration Tester (Pen Tester)* is a security professional who reviews and evaluates Information Systems (ISs) and recommends changes to the Government that can improve information ...

Penetration Tester The Opportunity: Conduct testing and analysis to identify vulnerabilities and potential threat vectors in systems and networks, develop exploits, and engineer attack methodologies.

The role of Penetration Tester (Pen Tester)* is a security professional who reviews and evaluates Information Systems (ISs) and recommends changes to the Government that can improve information ...

Senior Penetration Tester

Herndon, VA · On-site

$120 - $150/hr

* Perform penetration testing on networks, applications (including APIs, mobile apps, and web apps) * Utilize social engineering techniques * Provide mentoring to junior staff * Support Red Team ...

Tharros is seeking a Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer to support a DHS Intelligence and Analysis cybersecurity program in the National Capital ...

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

The Senior Penetration Tester serves as Key Personnel responsible for leading advanced penetration testing and vulnerability assessment activities within a TS/SCI environment. This role ensures ...

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

Responsibilities The Senior Penetration Tester serves as Key Personnel responsible for leading advanced penetration testing and vulnerability assessment activities within a TS/SCI environment. This ...

Overview SOSi is seeking a Penetration Tester III to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting penetration testing and red ...

Penetration Tester LOCATION Tysons, VA 22182 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a highly skilled and proactive ...

Showing results 41-60

Penetration Tester information

See Reston, VA salary details

$23.4K

$124.7K

$175.3K

How much do penetration tester jobs pay per year?

As of Aug 17, 2026, the average yearly pay for penetration tester in Reston, VA is $124,733.00, according to ZipRecruiter salary data. Most workers in this role earn between $99,900.00 and $146,700.00 per year, depending on experience, location, and employer.

What is a penetration tester?

Penetration Testers, also known as ethical hackers, are cybersecurity professionals who simulate cyberattacks on computer systems, networks, or applications to identify and address security vulnerabilities. Their work helps organizations discover weak points before malicious hackers can exploit them. Penetration testers use a variety of tools and techniques to mimic real-world threats and provide detailed reports with recommendations for improving security. They play a crucial role in maintaining the safety and integrity of an organization’s digital assets.

What does a penetration tester do?

As a penetration tester, your job is to test the security of a network by attempting to hack into an application, system, or computer. Penetration testing can occur in a variety of ways, from physical interaction with the machine you’re trying to hack to attacks sent over the web. Aside from helping clients test for vulnerabilities, your job also includes explaining how you got in and providing recommendations for stopping others from repeating your actions. In some cases, you may be asked to help investigate cyber crimes or explain methods and techniques in criminal trials. Success in this job is often measured by how many security holes you find and close.

What are the key skills and qualifications needed to thrive as a penetration tester, and why are they important?

To thrive as a Penetration Tester, you need a solid understanding of networking, operating systems, cybersecurity principles, and typically hold certifications like OSCP or CEH. Proficiency with tools such as Metasploit, Burp Suite, Nmap, and Wireshark is crucial for identifying and exploiting vulnerabilities. Strong analytical thinking, attention to detail, and clear communication skills help Penetration Testers effectively document findings and convey risks to clients. These skills and qualities are vital for uncovering security weaknesses and helping organizations strengthen their defenses against cyber threats.

What are some common challenges penetration testers face during client engagements?

Penetration testers often encounter challenges such as limited access to information, strict time constraints, and navigating complex or legacy systems. Additionally, they must balance thorough testing with minimizing disruptions to client operations. Effective communication is crucial, as testers need to clearly document findings and explain technical vulnerabilities to non-technical stakeholders to ensure remediation efforts are understood and prioritized.

What is the difference between Penetration Tester vs Vulnerability Analyst?

AspectPenetration TesterVulnerability Analyst
CertificationsOSCP, CEH, GPENCVE, CISSP, GIAC
Work EnvironmentHands-on testing, simulated attacksVulnerability scanning, risk assessment
Employer & IndustryCybersecurity firms, IT departmentsSecurity teams, compliance agencies
Search & Comparison IntentUnderstanding testing roles, skillsIdentifying vulnerabilities, analysis methods

While both roles focus on cybersecurity, a Penetration Tester actively exploits vulnerabilities to test security defenses, whereas a Vulnerability Analyst identifies and assesses weaknesses without exploiting them. Penetration Testers typically perform simulated attacks, requiring hands-on skills and certifications like OSCP or CEH. Vulnerability Analysts focus on scanning and reporting vulnerabilities, often working with tools like Nessus or Qualys. Both roles are essential for a comprehensive security strategy but differ in approach and responsibilities.

How much do penetration testers make?

Penetration testers typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Senior professionals with advanced skills and certifications like OSCP or CISSP can earn higher salaries, especially in high-demand markets.

Is penetration testing a hard job?

Penetration testing can be challenging as it requires strong technical skills, problem-solving abilities, and knowledge of security vulnerabilities. The job often involves staying updated on new threats and using tools like Kali Linux and Metasploit, which can be complex for beginners. Success in this role depends on continuous learning and practical experience.

What are the most commonly searched types of Penetration Tester jobs in Reston, VA?

The most popular types of Penetration Tester jobs in Reston, VA are:

What are popular job titles related to Penetration Tester jobs in Reston, VA?

For Penetration Tester jobs in Reston, VA, the most frequently searched job titles are:

What cities near Reston, VA are hiring for Penetration Tester jobs?

Cities near Reston, VA with the most Penetration Tester job openings:

Infographic showing various Penetration Tester job openings in Reston, VA as of August 2026, with employment types broken down into 76% Full Time, 16% Part Time, and 8% Contract. Highlights an 81% In-person, and 19% Remote job distribution, with an average salary of $124,733 per year, or $60 per hour.

Penetration Tester III

SOSi

Washington, DC

Full-time

Re-posted 28 days ago


Job description

Company Description

Founded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions, tested leadership, and trusted results to enable national security missions worldwide.

Job Description

Overview

SOSi is seeking a Penetration Tester III to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting penetration testing and red team activities, assessing security posture across enterprise environments, and supporting identification, validation, and reporting of vulnerabilities to improve cyber defense resilience.

Responsibilities

  Conduct penetration testing across enterprise systems, applications, and network environments

  Perform red team activities to evaluate security controls and identify exploitable weaknesses

  Support continuous penetration testing activities to assess evolving threats and vulnerabilities

  Conduct testing of IoT, mobile, and cloud environments

  Support High Value Asset (HVA) security assessments

  Apply testing methodologies and frameworks including MITRE ATT&CK, OSSTMM, OWASP, NIST, PTES, and ISSAF

  Identify, document, validate, and report vulnerabilities and recommended remediation actions

  Support cyber defense operations through coordination with security engineering, vulnerability management, and incident response teams

Qualifications
  • Experience:
    • Five (5) to seven (7) years of penetration testing experience
    • Management or team lead experience
    • Experience performing continuous penetration testing
    • Experience conducting red team operations
    • Experience performing IoT, mobile, and cloud penetration testing
    • Experience supporting High Value Asset (HVA) assessments
    • Experience applying MITRE ATT&CK, OSSTMM, OWASP, NIST, PTES, and ISSAF methodologies
  • Education:
    • Bachelor's Degree
  • Certifications:
    Required:
    • GPEN or GXPN
    • CISA AES HVA Lead or Technical Lead, or ability to obtain
      • Plus one of the following:
      • GRTP
      • CRTL
      • OSCP
      • CRTP
      • CMWAPT
      • CEPT
      • CPT
      • LPT
         
  • Clearance/Suitability: Secret (active)
Additional Information

Work Environment

  • Normal office conditions with potential to perform duties in deployed locations.
  • Core hours of operation are Monday through Friday, 0600 - 1700.
  • May be requested to work evenings and weekends to meet program and contract needs.

Working at SOSi

All interested individuals will receive consideration and will not be discriminated against for any reason.