Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications.
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications.
The Penetration Tester is responsible for working as part of the Assessment Team to conduct and participate in offensive and defensive security projects for OccamSec and its clients. This individual ...
The Penetration Tester is responsible for working as part of the Assessment Team to conduct and participate in offensive and defensive security projects for OccamSec and its clients. This individual ...
Senior Penetration Tester
$152K - $260K/yr
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications.
Senior Penetration Tester
$152K - $260K/yr
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications.
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications.
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications.
Lead Penetration Tester - Remote
Manhattan, NY · On-site +1
Lead Penetration Tester Location: Remote project Duration: 12 months We are currently seeking an experienced Senior Network Penetration Tester to join our dynamic cybersecurity team. This crucial ...
Lead Penetration Tester - Remote
Manhattan, NY · On-site +1
Lead Penetration Tester Location: Remote project Duration: 12 months We are currently seeking an experienced Senior Network Penetration Tester to join our dynamic cybersecurity team. This crucial ...
Senior Penetration Tester
Manhattan, NY · On-site
$152K - $260K/yr
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications.
Senior Penetration Tester
Manhattan, NY · On-site
$152K - $260K/yr
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications.
Penetration Tester
New York, NY · On-site +1
The Penetration Tester is responsible for working as part of the Assessment Team to conduct and participate in offensive and defensive security projects for OccamSec and its clients. This individual ...
Penetration Tester
New York, NY · On-site +1
The Penetration Tester is responsible for working as part of the Assessment Team to conduct and participate in offensive and defensive security projects for OccamSec and its clients. This individual ...
Purpose of the role To identify potential vulnerabilities within the banks IT systems using penetration testing tools and techniques to ensure security of computer systems, applications, servers, and ...
Purpose of the role To identify potential vulnerabilities within the banks IT systems using penetration testing tools and techniques to ensure security of computer systems, applications, servers, and ...
The Penetration Testing Lead (Vice President) serves as the senior handson leader and standard bearer for the internal penetration testing function. This role combines deep technical expertise with ...
The Penetration Testing Lead (Vice President) serves as the senior handson leader and standard bearer for the internal penetration testing function. This role combines deep technical expertise with ...
The Penetration Testing Lead (Vice President) serves as the senior hands-on leader and standard bearer for the internal penetration testing function. This role combines deep technical expertise with ...
The Penetration Testing Lead (Vice President) serves as the senior hands-on leader and standard bearer for the internal penetration testing function. This role combines deep technical expertise with ...
The Penetration Tester is responsible for working as part of the Assessment Team to conduct and participate in offensive and defensive security projects for OccamSec and its clients. This individual ...
Quick apply
The Penetration Tester is responsible for working as part of the Assessment Team to conduct and participate in offensive and defensive security projects for OccamSec and its clients. This individual ...
We are seeking a Senior AI Penetration Tester to join our Information Security department. The ideal candidate will bring 2-4 years of hands-on penetration testing experience, deep technical ...
We are seeking a Senior AI Penetration Tester to join our Information Security department. The ideal candidate will bring 2-4 years of hands-on penetration testing experience, deep technical ...
We are seeking a Senior AI Penetration Tester to join our Information Security department. The ideal candidate will bring 2-4 years of hands-on penetration testing experience, deep technical ...
We are seeking a Senior AI Penetration Tester to join our Information Security department. The ideal candidate will bring 2-4 years of hands-on penetration testing experience, deep technical ...
Penetration Tester | Upto $2150 Part-time
New York, NY · Remote
$1.7K - $2.1K/wk
Create realistic scenarios based on cybersecurity workflows such as incident response runbooks, threat hunting queries, and penetration testing reports. * Annotate, label, and validate data across ...
Quick apply
Penetration Tester | Upto $2150 Part-time
New York, NY · Remote
$1.7K - $2.1K/wk
Create realistic scenarios based on cybersecurity workflows such as incident response runbooks, threat hunting queries, and penetration testing reports. * Annotate, label, and validate data across ...
Conduct manual application penetration testing against API's (REST/SOAP), Web Applications, Mobile applications, and thick client applications * Perform objective based on abstract penetration ...
Conduct manual application penetration testing against API's (REST/SOAP), Web Applications, Mobile applications, and thick client applications * Perform objective based on abstract penetration ...
Penetration Testing Manager
Clifton, NJ · On-site
$140K - $222K/yr
Own and evolve the penetration testing program, including methodologies, tooling, quality assurance practices, reporting standards, and risk-based prioritization of testing activities * Drive ...
Penetration Testing Manager
Clifton, NJ · On-site
$140K - $222K/yr
Own and evolve the penetration testing program, including methodologies, tooling, quality assurance practices, reporting standards, and risk-based prioritization of testing activities * Drive ...
Penetration Testing Engineer- VP
$120K - $202K/yr
Who We Are Looking For We are seeking a Senior Penetration Testing Engineer to join State Street's Penetration Testing Team, reporting to the Penetration Testing Team Manager. This role sits within ...
Penetration Testing Engineer- VP
$120K - $202K/yr
Who We Are Looking For We are seeking a Senior Penetration Testing Engineer to join State Street's Penetration Testing Team, reporting to the Penetration Testing Team Manager. This role sits within ...
Lead Penetration Test Engineer
New York, NY · Hybrid
$135K/yr
Penetration Testing & Vulnerability Assessments Conduct comprehensive penetration testing of web applications, infrastructure, and cloud environments using both manual and automated techniques.
Lead Penetration Test Engineer
New York, NY · Hybrid
$135K/yr
Penetration Testing & Vulnerability Assessments Conduct comprehensive penetration testing of web applications, infrastructure, and cloud environments using both manual and automated techniques.
Lead Penetration Test Engineer
New York, NY · Hybrid
$135K/yr
Penetration Testing & Vulnerability Assessments Conduct comprehensive penetration testing of web applications, infrastructure, and cloud environments using both manual and automated techniques.
Lead Penetration Test Engineer
New York, NY · Hybrid
$135K/yr
Penetration Testing & Vulnerability Assessments Conduct comprehensive penetration testing of web applications, infrastructure, and cloud environments using both manual and automated techniques.
GST is seeking an Adjunct Faculty member for Cybersecurity (Scripting, Penetration Testing & Web Security) to teach graduate-level cybersecurity courses in scripting, penetration testing, and web ...
GST is seeking an Adjunct Faculty member for Cybersecurity (Scripting, Penetration Testing & Web Security) to teach graduate-level cybersecurity courses in scripting, penetration testing, and web ...
Penetration Tester information
See Rutherford, NJ salary details
$22.9K - $36.5K
0% of jobs
$36.5K - $50K
0% of jobs
$50K - $63.5K
2% of jobs
$63.5K - $77.1K
3% of jobs
$77.1K - $90.6K
1% of jobs
$103.1K is the 25th percentile. Wages below this are outliers.
$90.6K - $104.1K
20% of jobs
$104.1K - $117.7K
14% of jobs
The median wage is $122.7K / yr.
$117.7K - $131.2K
26% of jobs
$140.8K is the 75th percentile. Wages above this are outliers.
$131.2K - $144.7K
13% of jobs
$144.7K - $158.2K
13% of jobs
$158.2K - $171.8K
9% of jobs
$22.9K
$122.2K
$171.8K
How much do penetration tester jobs pay per year?
What Does a Penetration Tester Do?
As a penetration tester, your job is to test the security of a network by attempting to hack into an application, system, or computer. Penetration testing can occur in a variety of ways, from physical interaction with the machine you’re trying to hack to attacks sent over the web. Aside from helping clients test for vulnerabilities, your job also includes explaining how you got in and providing recommendations for stopping others from repeating your actions. In some cases, you may be asked to help investigate cyber crimes or explain methods and techniques in criminal trials. Success in this job is often measured by how many security holes you find and close.
What are some common challenges penetration testers face during client engagements?
What are Penetration Testers?
What is the difference between Penetration Tester vs Vulnerability Analyst?
| Aspect | Penetration Tester | Vulnerability Analyst |
|---|---|---|
| Certifications | OSCP, CEH, GPEN | CVE, CISSP, GIAC |
| Work Environment | Hands-on testing, simulated attacks | Vulnerability scanning, risk assessment |
| Employer & Industry | Cybersecurity firms, IT departments | Security teams, compliance agencies |
| Search & Comparison Intent | Understanding testing roles, skills | Identifying vulnerabilities, analysis methods |
While both roles focus on cybersecurity, a Penetration Tester actively exploits vulnerabilities to test security defenses, whereas a Vulnerability Analyst identifies and assesses weaknesses without exploiting them. Penetration Testers typically perform simulated attacks, requiring hands-on skills and certifications like OSCP or CEH. Vulnerability Analysts focus on scanning and reporting vulnerabilities, often working with tools like Nessus or Qualys. Both roles are essential for a comprehensive security strategy but differ in approach and responsibilities.
What are the key skills and qualifications needed to thrive as a Penetration Tester, and why are they important?

JPMorgan Chase & Co. rating
8.0
Based on 492 frontline employees who took The Breakroom Quiz
71st of 170 rated banks
Job description
This position is also open in the following locations: Tampa, FL / Atlanta, FL / Plano, TX / Columbus, OH / McLean, VA / Wilmington, DE / Jersey City, NJ / Chicago, IL / Brooklyn, NY / Houston, TX
Drive the security of critical banking applications and platforms through hands-on offensive testing.
As an Assessments & Exercises Vice President in the Cybersecurity and Technology Controls organization, you will play a key role in safeguarding the firm's most vital assets. Your primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and services. Leveraging industry-standard methodologies and advanced techniques, you will proactively identify vulnerabilities, collaborate with application owners to understand root causes, and guide effective remediation to strengthen the firm's security posture.
We are seeking candidates with a passion for offensive security, deep technical expertise in penetration testing, and a commitment to continuous learning and excellence.
Job responsibilities
- Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications.
- Collect and validate pre-requisites for each engagement, ensuring all necessary access, documentation, and approvals are in place.
- Perform manual and automated testing to identify vulnerabilities, misconfigurations, and security weaknesses, leveraging industry-standard tools and custom scripts.
- Document and communicate findings through comprehensive reports that include technical details, risk assessments, and actionable remediation recommendations.
- Conduct peer reviews of penetration test reports to ensure accuracy, consistency, and quality of deliverables.
- Collaborate with development, infrastructure, and security teams to clarify findings, support remediation efforts, and provide subject matter expertise on offensive security.
- Stay current with emerging threats, vulnerabilities, and attack techniques by leveraging threat intelligence, security research, and participation in relevant industry groups.
- Contribute to the continuous improvement of penetration testing methodologies, tools, and frameworks to enhance effectiveness and alignment with firm strategy and regulatory requirements.
Required qualifications, capabilities, and skills
- 5+ years of hands-on penetration testing experience in offensive security, with a proven track record of scoping, executing, and reporting on complex engagements.
- Expertise in manual penetration testing of web, API, cloud (AWS/Azure/GCP), infrastructure, thick-client, and/or mobile applications (android/iOS), including the use of industry-standard tools (e.g., Burp Suite, Nmap, Metasploit, etc.).
- Strong understanding of security assessment methodologies such as OWASP Top Ten, NIST Cybersecurity Framework, and other relevant standards.
- Ability to identify and articulate systemic security issues related to threats, vulnerabilities, and risks, and provide clear, actionable recommendations for remediation.
- Exceptional organizational and communication skills, including the ability to write detailed technical reports and present findings to both technical and non-technical stakeholders.
- Experience conducting peer reviews of penetration test reports and mentoring junior testers.
- Continuous learner who keeps up with the latest offensive security trends, tools, and techniques.
Preferred qualifications, capabilities, and skills
- Knowledge of cybersecurity practices, operational risk management, and incident response methodologies within the US financial services sector, including relevant regulations, threats, and risks.
- Proficiency in penetration testing and security concepts for both Windows and Unix-like operating systems.
- Experience conducting security-focused source code reviews (e.g., Python, Java, Rust).
- Experience in reverse engineering thick-client and mobile applications to identify vulnerabilities.
- Relevant certifications such as OSWE, CREST (CRT, CCT), OSCP, OSCE, GXPN, GWAPT, GPEN, GMOB, or BSCP. GXPN, GWAPT, GPEN, GMOB, or BSCP
#CTC
Chase is a leading financial services firm, helping nearly half of America's households and small businesses achieve their financial goals through a broad range of financial products. Our mission is to create engaged, lifelong relationships and put our customers at the heart of everything we do. We also help small businesses, nonprofits and cities grow, delivering solutions to solve all their financial needs.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
Equal Opportunity Employer/Disability/Veterans
Our Consumer & Community Banking division serves our Chase customers through a range of financial services, including personal banking, credit cards, mortgages, auto financing, investment advice, small business loans and payment processing. We're proud to lead the U.S. in credit card sales and deposit growth and have the most-used digital solutions - all while ranking first in customer satisfaction.What JPMorgan Chase & Co. employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About JPMorgan Chase & Co
Sourced by ZipRecruiter
Industry
Finance and insurance and banking and credit intermediation
Company size
10,000+ Employees
Headquarters location
New York, NY, US