1

Penetration Tester Jobs in Silver Spring, MD (NOW HIRING)

Penetration Tester

Arlington, VA · On-site

$86K - $138K/yr

Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of Peratons' Federal Strategic Cyber programs. Location: Northern VA; Hybrid - flex as long as person can ...

ASRC Federal Technology Solutions is seeking an experienced Penetration Tester to lead advanced security assessments and contribute to the development and execution of penetration testing strategies.

Penetration Tester

Herndon, VA · On-site

$86.80 - $198/hr

Find possible vulnerabilities while using penetration testing tools and techniques to ensure security of computer systems, applications, servers, and networks. Apply advanced consult ing skills or ...

New

Penetration Tester

Arlington, VA · On-site

$95K - $112K/yr

SkyePoint Decisions is seeking a Penetration Tester to support the Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative ...

Penetration Tester

Chantilly, VA · On-site

$150K - $195K/yr

Overview VTG is looking for multiple levels (Level 2, 3 & 4) of a Penetration Tester in Chantilly VA and Aurora CO. (Note: position is contingent upon program award and the postions are located in ...

Overview VTG is looking for multiple levels (Level 2, 3 & 4) of a Penetration Tester in Chantilly VA and Aurora CO. (Note: position is contingent upon program award and the postions are located in ...

Penetration Tester

Reston, VA · On-site

$110 - $170/hr

Overview We are frequently looking for skilled penetration testers and red teamers. Our Cyber team identifies weaknesses in our clients' systems and provides actionable recommendations to strengthen ...

New

Penetration Tester

Arlington, VA · On-site

$86K - $138K/yr

Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of Peratons' Federal Strategic Cyber programs. Location: Northern VA; Hybrid - flex as long as person can ...

Penetration Tester

Washington, DC · On-site

$120 - $180/hr

Document all testing activities, findings, and exploitation paths in Penetration Test Reports (PTRs). * Perform regression penetration tests to validate remediation of previously identified ...

New

Penetration Tester

Alexandria, VA · On-site

$125K - $145K/yr

Coordinate and conduct all Agency penetration testing on systems operated by and on behalf of NCUA, ensuring access to NCUA applications and infrastructure occurs only through NCUA-specified ...

New

ASRC Federal Technology Solutions is seeking an experienced Penetration Tester to lead advanced security assessments and contribute to the development and execution of penetration testing strategies.

Penetration Tester

Leesburg, VA · On-site

$125 - $155/hr

We're seeking a seasoned Penetration Tester to join our team. Your expertise in cloud penetration testing (FedRAMP and other compliance frameworks) and security best practices will be essential in ...

next page

Showing results 1-20

Penetration Tester information

See Silver Spring, MD salary details

$23.3K

$123.9K

$174.2K

How much do penetration tester jobs pay per year?

As of Aug 20, 2026, the average yearly pay for penetration tester in Silver Spring, MD is $123,945.00, according to ZipRecruiter salary data. Most workers in this role earn between $99,200.00 and $145,800.00 per year, depending on experience, location, and employer.

What is a penetration tester?

Penetration Testers, also known as ethical hackers, are cybersecurity professionals who simulate cyberattacks on computer systems, networks, or applications to identify and address security vulnerabilities. Their work helps organizations discover weak points before malicious hackers can exploit them. Penetration testers use a variety of tools and techniques to mimic real-world threats and provide detailed reports with recommendations for improving security. They play a crucial role in maintaining the safety and integrity of an organization’s digital assets.

What does a penetration tester do?

As a penetration tester, your job is to test the security of a network by attempting to hack into an application, system, or computer. Penetration testing can occur in a variety of ways, from physical interaction with the machine you’re trying to hack to attacks sent over the web. Aside from helping clients test for vulnerabilities, your job also includes explaining how you got in and providing recommendations for stopping others from repeating your actions. In some cases, you may be asked to help investigate cyber crimes or explain methods and techniques in criminal trials. Success in this job is often measured by how many security holes you find and close.

What are the key skills and qualifications needed to thrive as a penetration tester, and why are they important?

To thrive as a Penetration Tester, you need a solid understanding of networking, operating systems, cybersecurity principles, and typically hold certifications like OSCP or CEH. Proficiency with tools such as Metasploit, Burp Suite, Nmap, and Wireshark is crucial for identifying and exploiting vulnerabilities. Strong analytical thinking, attention to detail, and clear communication skills help Penetration Testers effectively document findings and convey risks to clients. These skills and qualities are vital for uncovering security weaknesses and helping organizations strengthen their defenses against cyber threats.

What are some common challenges penetration testers face during client engagements?

Penetration testers often encounter challenges such as limited access to information, strict time constraints, and navigating complex or legacy systems. Additionally, they must balance thorough testing with minimizing disruptions to client operations. Effective communication is crucial, as testers need to clearly document findings and explain technical vulnerabilities to non-technical stakeholders to ensure remediation efforts are understood and prioritized.

What is the difference between Penetration Tester vs Vulnerability Analyst?

AspectPenetration TesterVulnerability Analyst
CertificationsOSCP, CEH, GPENCVE, CISSP, GIAC
Work EnvironmentHands-on testing, simulated attacksVulnerability scanning, risk assessment
Employer & IndustryCybersecurity firms, IT departmentsSecurity teams, compliance agencies
Search & Comparison IntentUnderstanding testing roles, skillsIdentifying vulnerabilities, analysis methods

While both roles focus on cybersecurity, a Penetration Tester actively exploits vulnerabilities to test security defenses, whereas a Vulnerability Analyst identifies and assesses weaknesses without exploiting them. Penetration Testers typically perform simulated attacks, requiring hands-on skills and certifications like OSCP or CEH. Vulnerability Analysts focus on scanning and reporting vulnerabilities, often working with tools like Nessus or Qualys. Both roles are essential for a comprehensive security strategy but differ in approach and responsibilities.

How much do penetration testers make?

Penetration testers typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Senior professionals with advanced skills and certifications like OSCP or CISSP can earn higher salaries, especially in high-demand markets.

Is penetration testing a hard job?

Penetration testing can be challenging as it requires strong technical skills, problem-solving abilities, and knowledge of security vulnerabilities. The job often involves staying updated on new threats and using tools like Kali Linux and Metasploit, which can be complex for beginners. Success in this role depends on continuous learning and practical experience.

What are the most commonly searched types of Penetration Tester jobs in Silver Spring, MD?

The most popular types of Penetration Tester jobs in Silver Spring, MD are:

What are popular job titles related to Penetration Tester jobs in Silver Spring, MD?

For Penetration Tester jobs in Silver Spring, MD, the most frequently searched job titles are:

What job categories do people searching Penetration Tester jobs in Silver Spring, MD look for?

The top searched job categories for Penetration Tester jobs in Silver Spring, MD are:

What cities near Silver Spring, MD are hiring for Penetration Tester jobs?

Cities near Silver Spring, MD with the most Penetration Tester job openings:

Infographic showing various Penetration Tester job openings in Silver Spring, MD as of August 2026, with employment types broken down into 80% Full Time, 14% Part Time, and 6% Contract. Highlights an 86% In-person, and 14% Remote job distribution, with an average salary of $123,945 per year, or $59.6 per hour.

Penetration Tester

Peraton

Arlington, VA • On-site

$86K - $138K/yr

Full-time

Re-posted 15 days ago


Peraton rating

8.3

Company rating: 8.3 out of 10

Based on 56 frontline employees who took The Breakroom Quiz

51st of 224 rated it services


Job description

Responsibilities
Peraton is seeking an experienced Cyber Penetration Tester to become part of Peratons' Federal Strategic Cyber programs.
Location: Northern VA; Hybrid - flex as long as person can come on-site as/when needed.
In this role, you will:
  • Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems.
  • Identify vulnerabilities and develop recommended remediations to satisfy mandated NIST 800-53 security controls.
  • Report and demonstrate findings to system owners and engineers.
  • Maintain Red Cell infrastructure.
  • Develop or modify tools to automate discovery or exploitation.

Qualifications
Basic Qualifications:
  • Bachelor of Science and 5 years of relevant experience in Cyber/IT, or a Master's of Science and 3 years of relevant experience in Cyber/IT. In lieu of a degree, 4 years of additional IT security or penetration testing experience may be considered.
  • Minimum of 2 years with penetration testing experience.
  • Possess one of the following certifications, OR be able to obtain before start date:
    • CCNA Cyber Ops, CCNA-Security, CEH, CFR, Cloud+, CySA+, GCIA, GCIH, GICSP, SCYBER, Security+ CE, SSCP
  • Demonstrated experience with Kali Linux.
  • Demonstrated penetration testing tools experience with Nmap, Burp Suite, Metasploit, etc.
  • Demonstrated ability in evaluating vulnerabilities, performing root cause analysis, and reporting findings utilizing assessment methodologies such as NIST SP 800-115, Penetration Testing Execution Standard (PTES), Information Systems Security Assessment Framework (ISSAF), OWASP Web Security Testing Guide (WTG), etc.
  • Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers.
  • U.S. citizenship required.
  • An active Secret security clearance.
    • Must have the ability to obtain a final Top Secret security clearance.

Preferred:
  • Active Top Secret or TS/SCI clearance.
  • One of the following certifications or an alternate, verifiable certification demonstrating IT security competence:
    • CompTIA CASP+
    • ISC2 Certified Information Security Professional (CISSP)
    • ISC2 Certified Cloud Security Professional (CCSP)
    • ISC2 Information Systems Security Engineering Professional (ISSEP)
  • One of the following certifications or an alternate, verifiable certification demonstrating practical penetration testing competence:
    • Offensive Security Certified Professional (OSCP)
    • Offensive Security Certified Professional (OSCP)
    • Hack the Box Certified Penetration Testing Specialist (CPTS)
    • TCM Security Practical Network Penetration Tester (PNPT)
    • GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)
    • Zero Point Security Red Team Ops II
  • Advanced understanding of the following:
    • NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process.
    • Security principles such as CIA, IAAAA, access control models, risk management, etc.
    • Networking principles and technologies such as IP routing, TCP/UDP, VPNs, firewalls, NAT, etc.
    • Common network protocols such as SSH, FTP, SMTP, SMB, HTTP, etc.
    • Operating system principles such as process management, device management, user management, file systems, etc.
    • Data processing principles such as encoding, hashing, encryption, etc.
    • Scripting and programming languages such as Bash, Python, PowerShell, JavaScript, etc.
    • Common application vulnerabilities and exploits such as outdated components,
    • permissions mis-configurations, lack of input validation, logging/monitoring failures, etc.
    • Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken authentication mechanisms, etc.
    • Active Directory (AD) enumeration and attacks such as kerberoasting, AS-REP roasting, abusing mis-configured privileges, crafting golden tickets, etc.
    • Public Key Infrastructure (PKI) and navigating IT environments implementing multifactor authentication.
    • Cloud technologies and platforms such as Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (GCP), etc.

#DSCM
Peraton Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Target Salary Range
$86,000 - $138,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.
EEO
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

What Peraton employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Peraton logo

About Peraton

Sourced by ZipRecruiter

At Peraton, we re at the forefront of delivering the next big thing every day. We re the partner of choice to help solve some of the world s most daunting challenges, delivering bold, new solutions to keep people around the world safer and more secure.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Herndon, VA, US

Year founded

2017