1

Penetration Testing Consultant Jobs (NOW HIRING)

REQUIRED QUALIFICATIONS 5+ years of experience in security applications and systems Minimum of 5 years of Information Security Engineer/Consultant experience with application penetration testing.

Qualifications • Minimum of 5 years of Information Security Engineer/Consultant experience with application penetration testing. • Minimum of 5 years of demonstrated experience with automated ...

Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are seeking an experienced and results-driven Penetration Tester to perform ...

Principal Penetration TesterAltus Consulting seeks a seasoned cybersecurity professional to spearhead our penetration testing initiatives. As a key member of our elite team, you'll play a crucial ...

Push the boundaries of penetration testing innovation through research and development of novel TTPs * Contribute to Altus Consulting's thought leadership efforts via publications, presentations, and ...

Senior Penetration Tester

Herndon, VA · On-site

$120 - $150/hr

... testing * 4+ years of professional services experience (consulting) * 5+ years of web application and network penetration testing experience * Proficient in at least one or more scripting languages ...

Push the boundaries of penetration testing innovation through research and development of novel TTPs * Contribute to Altus Consulting's thought leadership efforts via publications, presentations, and ...

Penetration Tester

Portland, OR · On-site

$90 - $130/hr

Penetration Testing & Security AssessmentsConduct Open-Source Intelligence (OSINT) gathering and ... Security Consulting & Client EngagementProvide security consulting and technical guidance to ...

This position performs advanced penetration testing, vulnerability assessments, security research, exploitation activities, and technical consulting across federal systems, applications, cloud ...

Compu-Vision Consulting Inc. is seeking a Junior Penetration Tester responsible for performing authorized security testing activities under defined methodologies. This role focuses on technical ...

next page

Showing results 1-20

Penetration Testing Consultant information

See salary details

$22K

$118.6K

$165K

How much do penetration testing consultant jobs pay per year?

As of Aug 28, 2026, the average yearly pay for penetration testing consultant in the United States is $118,642.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $153,000.00 per year, depending on experience, location, and employer.

What is a penetration testing consultant?

A Penetration Testing Consultant is a cybersecurity professional who evaluates an organization's security by simulating real-world cyberattacks. They identify vulnerabilities in networks, applications, and systems, providing recommendations to strengthen defenses. Their role involves ethical hacking, security assessments, and compliance audits. They often work with clients to improve security posture and mitigate risks before malicious attackers can exploit them.

What does a penetration testing consultant do?

A typical day for a Penetration Testing Consultant involves planning and executing security assessments of client networks, applications, or systems to identify vulnerabilities. Consultants spend time analyzing findings, documenting risks, and preparing detailed reports with remediation guidance. Collaboration is also a key part of the role, as consultants often communicate with IT teams, clients, and other security professionals to ensure thorough understanding of findings and best practices. The work environment tends to be dynamic and project-based, with opportunities to learn about new technologies and face new security challenges regularly.

What are the key skills and qualifications needed to thrive as a penetration testing consultant?

To thrive as a Penetration Testing Consultant, you need expertise in cybersecurity principles, vulnerability assessment, and ethical hacking, often supported by a degree in information security or computer science. Familiarity with tools such as Kali Linux, Metasploit, Burp Suite, and certifications like OSCP or CEH is highly beneficial. Strong analytical thinking, effective communication, and the ability to explain complex technical findings to non-technical stakeholders are standout soft skills. These competencies ensure accurate risk assessments, clear client communication, and actionable security recommendations.

More about Penetration Testing Consultant jobs

What cities are hiring for Penetration Testing Consultant jobs?

Cities with the most Penetration Testing Consultant job openings:

What are the most commonly searched types of Penetration Testing Consultant jobs?

The most popular types of Penetration Testing Consultant jobs are:

What states have the most Penetration Testing Consultant jobs?

States with the most job openings for Penetration Testing Consultant jobs include:

Infographic showing various Penetration Testing Consultant job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 11% Part Time, 3% Contract, and 1% Nights. Highlights an 88% Physical, 2% Hybrid, and 10% Remote job distribution, with an average salary of $118,642 per year, or $57 per hour.

Contractor

Posted 16 days ago


Job description

We are seeking experienced penetration testing professionals to join our network of trusted consultants and support client engagements on an as-needed basis. Consultants will perform security assessments for organizations across a variety of industries, including commercial enterprises, healthcare organizations, financial institutions, government contractors, and regulated environments.
Engagements may include internal and external network penetration testing, web application testing, mobile application testing, wireless security assessments, social engineering exercises, and adversary simulation activities.
This opportunity is ideal for experienced cybersecurity professionals seeking flexible, project-based consulting work while maintaining independence and control of their schedule.
Requirements
  • Conduct authorized penetration testing activities against client environments.
  • Perform internal and external network penetration tests.
  • Execute web application, mobile application, wireless, and social engineering assessments as applicable.
  • Validate vulnerabilities and document security findings.
  • Prepare clear, professional reports with supporting evidence and remediation recommendations.
  • Participate in project kickoff, status, and findings review meetings as needed.
  • Adhere to established testing methodologies, quality standards, and project timelines.
  • Maintain strict confidentiality of client information and assessment results.

Preferred Areas of Expertise
Candidates may possess expertise in one or more of the following areas:
  • Internal Network Penetration Testing
  • External Network Penetration Testing
  • Active Directory Security Assessments
  • Web Application Penetration Testing
  • Mobile Application Penetration Testing
  • Wireless Security Testing
  • Social Engineering Assessments
  • Red Team / Adversary Simulation Exercises
  • Cloud Security Assessments

Required Qualifications
  • Minimum three years of hands-on penetration testing experience.
  • Experience performing client-facing security assessments.
  • Strong understanding of attack methodologies, exploitation techniques, and common security weaknesses.
  • Experience with industry-standard penetration testing tools and methodologies.
  • Excellent written and verbal communication skills.
  • Ability to work independently and manage assignments with minimal supervision.
  • Ability to execute confidentiality and independent contractor agreements.

Preferred Certifications
One or more of the following certifications is required:
  • Offensive Security Certified Professional (OSCP) / preferred
  • Practical Network Penetration Tester (PNPT)
  • GIAC Penetration Tester (GPEN)
  • Offensive Security Web Expert (OSWE)
  • eLearnSecurity Web Application Penetration Tester (eWPT)
  • Certified Red Team Operator (CRTO)
  • Other relevant offensive security certifications

Engagement Model
  • Independent Contractor (1099)
  • Project-Based Assignments
  • Flexible Schedule
  • Primarily Remote
  • Occasional Travel May Be Required
  • Engagements may range from several days to multiple weeks depending on project scope

Desired Attributes
  • Professionalism and integrity
  • Strong attention to detail
  • Reliable project execution
  • Excellent client communication skills
  • Ability to translate technical findings into business-focused recommendations
  • Commitment to producing high-quality deliverables

Interested Consultants
We are continuously building a network of qualified penetration testing professionals for future project opportunities. Interested consultants are encouraged to submit the following information for consideration:
  • Current resume
  • Relevant certifications
  • Areas of specialization
  • Typical availability for project work
  • Desired hourly rate or project-based pricing information