1

Penetration Testing Companies Jobs (NOW HIRING)

Penetration Tester

OR · On-site +1

... penetration testing, we deliver world-class customer experiences. Trusted by over a quarter of the Fortune 100, half of the Fortune 10, and top global media companies, we help safeguard digital ...

Penetration Tester II

Mountain View, CA · On-site

$90K - $105K/yr

... tech companies in the San Francisco Bay Area. These services include mechanical, electrical ... Create new testing methods to identify vulnerabilities * Identify security weaknesses - Pinpoint ...

... companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago ... testing priorities and deliver high-quality work on time · Collaborate with internal teams--PMs ...

Penetration Tester I

Mountain View, CA · On-site

$65K - $80K/yr

... tech companies in the San Francisco Bay Area. These services include mechanical, electrical ... Create new testing methods to identify vulnerabilities * Identify security weaknesses - Pinpoint ...

Penetration Tester I

Mountain View, CA · On-site

$65K - $80K/yr

... tech companies in the San Francisco Bay Area. These services include mechanical, electrical ... Create new testing methods to identify vulnerabilities * Identify security weaknesses - Pinpoint ...

Penetration Tester I

Mountain View, CA · On-site

$65K - $80K/yr

... tech companies in the San Francisco Bay Area. These services include mechanical, electrical ... Create new testing methods to identify vulnerabilities * Identify security weaknesses - Pinpoint ...

Penetration Tester II

Mountain View, CA · On-site

$90K - $105K/yr

... tech companies in the San Francisco Bay Area. These services include mechanical, electrical ... Create new testing methods to identify vulnerabilities * Identify security weaknesses - Pinpoint ...

Position Overview This role is centered on internal security and compliance testing, with emphasis ... Equal Employment Opportunity Citizens, its parent, subsidiaries, and related companies (Citizens ...

Penetration Tester II

Mountain View, CA · On-site

$90K - $105K/yr

... tech companies in the San Francisco Bay Area. These services include mechanical, electrical ... Create new testing methods to identify vulnerabilities * Identify security weaknesses - Pinpoint ...

Senior Penetration Testing (Red Team

Cedar Rapids, IA · On-site

$83K - $104K/yr

More than a century ago, we were among the first financial services companies in America to serve ... This dynamic role requires broad understanding of red team operations and penetration testing ...

Senior Penetration Testing (Red Team

Denver, CO · On-site

$88K - $109K/yr

More than a century ago, we were among the first financial services companies in America to serve ... This dynamic role requires broad understanding of red team operations and penetration testing ...

Senior Penetration Testing (Red Team

Denver, CO · On-site

$88K - $109K/yr

More than a century ago, we were among the first financial services companies in America to serve ... This dynamic role requires broad understanding of red team operations and penetration testing ...

Pen Tester

Chicago, IL · On-site

$140K - $160K/yr

Conduct penetration testing across web applications, APIs, networks, and cloud environments ... companies of all sizes and across all industries.

next page

Showing results 1-20

Penetration Testing Companies information

See salary details

$22.5K

$119.9K

$168.5K

How much do penetration testing companies jobs pay per year?

As of Jun 17, 2026, the average yearly pay for penetration testing companies in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is the difference between Penetration Testing Companies vs Penetration Testers?

AspectPenetration Testing CompaniesPenetration Testers
CredentialsCompany-wide certifications, industry standardsIndividual certifications like OSCP, CEH
Work EnvironmentMultiple projects, team-based, client sites or remotePerforming security assessments, on client or internal systems
Employer & Industry UsageOrganizations providing security servicesSecurity professionals conducting tests
Search & Comparison IntentFinding service providersUnderstanding roles and qualifications

Penetration Testing Companies are organizations offering security testing services, while Penetration Testers are individual professionals performing these assessments. Companies manage multiple testers and projects, whereas testers focus on executing security tests based on certifications and skills.

What are the typical challenges penetration testers face when working with clients at penetration testing companies?

Penetration testers often encounter challenges such as limited access to information, evolving security environments, and varying levels of client preparedness. Navigating organizational resistance or lack of security awareness can make it difficult to conduct thorough tests and communicate findings effectively. Additionally, balancing thoroughness with tight deadlines and ensuring compliance with legal and ethical boundaries are common aspects testers must manage. Collaborating closely with client IT teams and adapting to different technical infrastructures are also key parts of the role.

What are penetration testing companies?

Penetration testing companies are specialized organizations that assess the security of computer systems, networks, and applications by simulating cyberattacks. They use ethical hacking techniques to identify vulnerabilities that malicious hackers could exploit. The goal is to help businesses strengthen their security posture by providing detailed reports on weaknesses and recommending solutions. These companies employ skilled security professionals, often called penetration testers or ethical hackers, who follow industry standards and best practices. Their services are essential for organizations seeking to comply with regulations and protect sensitive data.

What are the key skills and qualifications needed to thrive as a Penetration Tester, and why are they important?

To thrive as a Penetration Tester, you need strong knowledge of network security, operating systems, scripting, and vulnerability assessment, typically supported by a degree in computer science or cybersecurity and relevant certifications like OSCP or CEH. Familiarity with tools such as Metasploit, Burp Suite, Nmap, and Kali Linux is essential for identifying and exploiting vulnerabilities. Analytical thinking, attention to detail, and clear communication skills help you document findings and effectively work with clients or teams. These abilities are crucial to uncover security weaknesses and help organizations proactively defend against cyber threats.
More about Penetration Testing Companies jobs
What cities are hiring for Penetration Testing Companies jobs? Cities with the most Penetration Testing Companies job openings:
What states have the most Penetration Testing Companies jobs? States with the most job openings for Penetration Testing Companies jobs include:
Infographic showing various Penetration Testing Companies job openings in the United States as of June 2026, with employment types broken down into 1% As Needed, 82% Full Time, 11% Part Time, and 6% Contract. Highlights an 80% Physical, 3% Hybrid, and 17% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.
Penetration Tester

Penetration Tester

Bishop Fox

OR • On-site, Remote

Other

Posted 17 days ago


Job description

At Bishop Fox, security isn't just a job-it's our passion. As leaders in continuous offensive security and penetration testing, we deliver world-class customer experiences. Trusted by over a quarter of the Fortune 100, half of the Fortune 10, and top global media companies, we help safeguard digital landscapes. Our Cosmos platform, honored as Best Emerging Technology by SC Media, exemplifies our commitment to innovation. 

Joining Bishop Fox means collaborating with a curious and dedicated team. You'll tackle complex challenges for some of the world's most recognized organizations, securing their networks against real-world threats. With nearly 20 years of industry contributions-including 16 open-source tools and 50 security advisories published in the past five years-we're committed to making the digital world safer. 

We're looking for talented, experienced professional hackers to help us secure some of the world's most complex software and sophisticated technologies. You'll be working alongside our US and internationally-based teams supporting clients across multiple industries.  

Responsibilities 

You're a penetration tester who knows their way around source code. You've plundered apps and pillaged networks (legally, of course). You have a passion for hacking and information security. You may also have written a few blog posts about your favorite hacks or have presented at a handful of conferences - with an eye to doing more. 

With Bishop Fox, your responsibilities would include testing web applications, hacking networks, and reversing software. As a consultant, you'll work on a variety of projects which include short-term engagements and extended program work with well-established clients. You'll solve challenging technical problems and build creative solutions. As a trusted advisor, you'll provide your expert opinion to help our clients navigate difficult business decisions.  

Requirements 

  • 4+ years experience in planning, conducting, and managing web application penetration tests
  • 5+ years of application security experience
  • Deep understanding of security fundamentals (OWASP), common vulnerabilities, and application security best practices
  • Skilled in vulnerability assessment and the development of exploits for diverse targets
  • Background in system and network security, authentication and security protocols, and applied cryptography is helpful
  • Experience with programming and scripting languages such as Python, Ruby, PowerShell, Java, JavaScript, etc.
  • Bonus if you have experience reviewing Golang source code for vulnerabilities
  • Proficiency with operating systems- Linux, Windows, MacOS
  • Experience with network and system exploitation including modern tactics, techniques, and procedures (e.g. c2 frameworks, EDR bypass, privilege escalation, password cracking, lateral movement, etc.)
  • Strong technical reporting and documentation skills
  • Advanced relevant academic training, such as a degree in Computer Science or an OSCP, is a definite bonus
  • Experience with AWS cloud environments preferred with an understanding of its major technologies, such as IAM, EC2, VPC, EBS, S3, CloudWatch, and Lambdas, and how to keep them secure
  • Secondary expertise in one or more of the following areas preferred: Cloud Security Assessments, Mobile Application Security Testing, Hybrid Application Assessments, or AI/LLM Security Assessments. Ability to communicate technical findings clearly to both technical and executive stakeholders, including actionable remediation guidance. 

Bishop Fox has always allowed its employees to work remotely, and this role could work anywhere in the United States. Our comprehensive benefits program is tailored to meet your needs at an affordable price. We embrace diversity and an inclusive culture. We value our employees and who they are, which fosters a powerful and collective talent base to successfully serve our clients and the security community with unparalleled expertise. 

Bishop Fox is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law. All new hires must pass a background check as a condition of employment. 

Interested? Apply today!