1

Penetration Testing Companies Jobs (NOW HIRING)

... top 10 global tech companies, all of the top five global media companies, 10 of the top 20 ... Experience performing manual application security testing beyond automated scanning * Strong ...

Conduct vulnerability assessments, compliance testing, penetration testing, and other technical ... As a trusted partner supporting federal customers, Cherokee Federal companies are focused on ...

... other services companies. Requirements The Contractor shall possess and provide the following ... Demonstrated experience with penetration testing within Sponsor Cloud Services. * Demonstrated ...

... other services companies. Requirements The Contractor shall possess and provide the following ... Demonstrated experience with penetration testing within Sponsor Cloud Services. * Demonstrated ...

... other services companies. Requirements The Contractor shall possess and provide the following ... Demonstrated experience with penetration testing within Sponsor Cloud Services. * Demonstrated ...

We are looking for Intern Hackers to join our Penetration Testing team. In this role, you'll ... valuable companies in the world. Our people are focused on accelerating our clients' businesses ...

Support penetration testing activities across applications, networks, cloud environments, devices ... valuable companies in the world. Our people are focused on accelerating our clients' businesses ...

Support penetration testing activities across applications, networks, cloud environments, devices ... valuable companies in the world. Our people are focused on accelerating our clients' businesses ...

Support penetration testing activities across applications, networks, cloud environments, devices ... valuable companies in the world. Our people are focused on accelerating our clients' businesses ...

Showing results 41-60

Penetration Testing Companies information

See salary details

$22.5K

$119.9K

$168.5K

How much do penetration testing companies jobs pay per year?

As of Sep 6, 2026, the average yearly pay for penetration testing companies in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is a penetration testing company?

Penetration testing companies are specialized organizations that assess the security of computer systems, networks, and applications by simulating cyberattacks. They use ethical hacking techniques to identify vulnerabilities that malicious hackers could exploit. The goal is to help businesses strengthen their security posture by providing detailed reports on weaknesses and recommending solutions. These companies employ skilled security professionals, often called penetration testers or ethical hackers, who follow industry standards and best practices. Their services are essential for organizations seeking to comply with regulations and protect sensitive data.

What are the typical challenges penetration testers face when working with clients at penetration testing companies?

Penetration testers often encounter challenges such as limited access to information, evolving security environments, and varying levels of client preparedness. Navigating organizational resistance or lack of security awareness can make it difficult to conduct thorough tests and communicate findings effectively. Additionally, balancing thoroughness with tight deadlines and ensuring compliance with legal and ethical boundaries are common aspects testers must manage. Collaborating closely with client IT teams and adapting to different technical infrastructures are also key parts of the role.

What are the key skills and qualifications needed to thrive as a penetration tester, and why are they important?

To thrive as a Penetration Tester, you need strong knowledge of network security, operating systems, scripting, and vulnerability assessment, typically supported by a degree in computer science or cybersecurity and relevant certifications like OSCP or CEH. Familiarity with tools such as Metasploit, Burp Suite, Nmap, and Kali Linux is essential for identifying and exploiting vulnerabilities. Analytical thinking, attention to detail, and clear communication skills help you document findings and effectively work with clients or teams. These abilities are crucial to uncover security weaknesses and help organizations proactively defend against cyber threats.

What is the difference between Penetration Testing Companies vs Penetration Testers?

AspectPenetration Testing CompaniesPenetration Testers
CredentialsCompany-wide certifications, industry standardsIndividual certifications like OSCP, CEH
Work EnvironmentMultiple projects, team-based, client sites or remotePerforming security assessments, on client or internal systems
Employer & Industry UsageOrganizations providing security servicesSecurity professionals conducting tests
Search & Comparison IntentFinding service providersUnderstanding roles and qualifications

Penetration Testing Companies are organizations offering security testing services, while Penetration Testers are individual professionals performing these assessments. Companies manage multiple testers and projects, whereas testers focus on executing security tests based on certifications and skills.

More about Penetration Testing Companies jobs

What cities are hiring for Penetration Testing Companies jobs?

Cities with the most Penetration Testing Companies job openings:

What states have the most Penetration Testing Companies jobs?

States with the most job openings for Penetration Testing Companies jobs include:

Infographic showing various Penetration Testing Companies job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 85% Full Time, 10% Part Time, 3% Contract, and 1% Nights. Highlights an 88% Physical, 2% Hybrid, and 10% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.

Senior AI/LLM Penetration Tester

Bishop Fox

OR โ€ข On-site, Remote

Full-time

Re-posted 21 days ago


Key responsibilities

  • Conduct security assessments of AI/LLM-powered applications, including identifying vulnerabilities such as prompt injection, jailbreak techniques, data leakage, insecure tool/function calling, and model misuse.

  • Review AI application architectures and identify security weaknesses across APIs, cloud infrastructure, and application logic through manual testing, source code review, and dynamic testing.

  • Evaluate AI workloads in cloud platforms and contribute to internal research, tooling, and methodology development related to AI security.


Job description

For more than two decades, Bishop Fox has defined the forefront of offensive security. By combining elite humanย expertiseย with the power of its proprietary Cosmos AI engine, the firm delivers industry-leading cloud and application security services, including AI-powered penetration testing and AI/LLM security assessments that reflect real-world attacker behavior. Renowned for its innovation and contributions to the open-source community through flagship tools likeSliverandAIMap, Bishop Fox has released 25+ tools and 75+ advisories in the last 10 years.ย 

As a trusted partner to the world's most recognizable brands, Bishop Fox protects 26 of the Fortune 100, eight of the top 10 global tech companies, all of the top five global media companies, 10 of the top 20 retailers and 7 of the top 10 manufacturers. A consistent market leader, Bishop Fox has been recognized as a Leader and "Fast Mover" in the GigaOm Radar for Attack Surface Management for five consecutive years. With a 70 NPS rating, the firm remains the trusted partner for organizations seeking to stay ahead of the evolving threat landscape. Learn more atbishopfox.com.ย 

We are now hiring a Seniorย AI/LLM Security Consultantย to help clients stay ahead of emerging AI threats by conductingย cutting-edgeย security assessments of large language models, AI agents, and AI-powered applications.ย 

Who You Are and Whatย You'llย Doย 

Our wants are simple: be good at-and most importantly-love what you do.ย Here'sย whatย we'reย looking for:ย 

  • 5+ years of offensive security experience performing penetration tests, red team engagements, or application security assessmentsย ย 
  • Experience assessing AI/LLM-powered applications for vulnerabilities such as:ย ย 
    • Prompt injectionย ย 
    • Jailbreak techniquesย ย 
    • Indirect prompt injectionย ย 
    • Data leakage and sensitive information disclosureย ย 
    • Insecure tool/function callingย ย 
    • Agentic AI abuseย ย 
    • Model misuse and unsafe output generationย ย 
    • Understanding of modern AI architectures,ย including:ย ย 
  • Experience performing manual application security testing beyond automated scanningย ย 
  • Strong understanding of web application security fundamentals, including the OWASP Top 10 Web, Agentic, and LLM Applications.ย ย 
  • Experience reviewing AI application architectures andย identifyingย security weaknesses across APIs, cloud infrastructure, and application logicย ย 
  • Experience performing source code review and dynamic testingย ย 
  • Familiarity with cloud platforms (AWS, Azure, or GCP) and securing AI workloadsย ย 
  • Scripting or programming experience in Python, JavaScript Go, Java, or similar languagesย ย 
  • Familiarity withย LLM application and agent-orchestration frameworks,ย inferenceย provider APIs,ย external capability integrationย for models,ย andย open sourceย tooling across commercial and self-hosted ecosystems.ย 
  • Knowledge of authentication, authorization, networking, APIs, and secure software development practicesย ย 
  • Excellent written and verbal communication skills, including presenting findings to technical and executive audiencesย ย 
  • Ability to mentor teammates and contribute to internal research, tooling, andย methodologyย developmentย ย 
  • OSCP, OSEP, GWAPT, GPEN, GXPN, or other relevant certifications are helpful but notย requiredย ย 
  • Bachelor's degree in Computer Science, Cybersecurity, or a related technical field is a plusย ย 

What Sets You Apartย 

  • Experience conducting AI red team exercises against production or pre-production AI systemsย ย 
  • Research into emerging AI attack techniques or contributions to the offensive security communityย ย 
  • Experience building or securing AI agents and autonomous workflowsย ย 
  • Knowledge of adversarial machine learning concepts and model securityย ย 
  • Experience with cloud-native AI platforms such as Azure OpenAI, Amazon Bedrock, or Google Vertex AIย ย 
  • Familiarity withย AIย softwareย development lifecycle (AI SDLC) and AI governance frameworksย ย 

Why Bishop Foxย 

At Bishop Fox,ย we'reย driven by a simple mission: deliver exceptional quality to our clients, foster a vibrant and fulfilling environment for our team, and champion excellence within our industry. Our core values, which we live by every day, are: ย 

  • Be Excellent to Each Otherย 
  • Do the Right Thingย 
  • Do Whatย You'llย Sayย You'llย Doย 
  • Get Better Togetherย 
  • Give aย Sh*tย 

This position is not eligible for visa sponsorship. Applicants must be authorized to work in the United States of America for the duration of employment without sponsorship. ย 

Bishop Fox has always allowed its employees to work remotely, and this role can be based anywhere in the United States.ย 

Our comprehensive benefits program is tailored to meet your needs at an affordable price.ย We embrace diversity and foster an inclusive culture where employees are empowered to do their best work while advancing the security community through world-class research and consulting.ย 

Bishop Fox is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including sexual orientation and gender identity), national origin, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.ย All new hires must successfully complete a background check as a condition of employment.ย 

Interested? Apply today! ย ย 

ย