1

Penetration Testing Contract Jobs in California (NOW HIRING)

Sunnyvale CA 94085 Contract duration : 6 Months Implementation Partner: Infosys Must Have Skills ... Good knowledge of Secure code Analysis and Web penetration testing. Good experience in HP Fortify ...

Security Engineer - Application Security

Ontario, CA · On-site

$59.75 - $79.75/hr

Triage programmatic source code findings and automate penetration testing to decrease potential ... contracts are contingent upon the successful completion of the Firm's pre-employment screening ...

Cyber Security Subject Matter Expert

Santa Clara, CA · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

... agroscience Contract Research Organisation services. Eurofins is one of the market leaders in ... GIAC Penetration Tester (GPEN) * Certified Ethical Hacker (CEH) * Certified Information Security ...

Contract Compensation: $48-$62/hour Location: Remote Role Responsibilities * Red team ... Background in Cybersecurity , such as penetration testing and exploit development. * Expertise in ...

Contract Compensation: $29-$45/hour Location: Remote Role Responsibilities * Red team ... Cybersecurity skills: penetration testing, exploit development, reverse engineering. * Socio ...

Staff Application Security Engineer

San Francisco, CA · On-site

$170K - $190K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Contracts move faster, insights surface instantly, and agents push work forward, all with you in ... AI penetration testing. * Experience with git and software branching and workflow strategies.

next page

Showing results 1-20

Penetration Testing Contract information

What is the difference between Penetration Testing Contract vs Penetration Tester?

AspectPenetration Testing ContractPenetration Tester
DefinitionA legal agreement outlining scope, deliverables, and terms for penetration testing services.A cybersecurity professional who performs security assessments to identify vulnerabilities.
CredentialsTypically no specific credentials; contractual terms are emphasized.Certifications like OSCP, CEH, or CISSP are common.
Work EnvironmentEngages with clients, often remotely or on-site, based on contract terms.Works within organizations or as a consultant, performing testing tasks.
PurposeDefines legal and operational scope for penetration testing projects.Conducts actual security assessments to find vulnerabilities.

In summary, a Penetration Testing Contract is a legal agreement that sets the scope and terms for testing, while a Penetration Tester is the professional executing the security assessments. Both are essential in cybersecurity engagements but serve different roles.

What are the most commonly searched types of Penetration Testing jobs in California?

The most popular types of Penetration Testing jobs in California are:

What are popular job titles related to Penetration Testing Contract jobs in California?

For Penetration Testing Contract jobs in California, the most frequently searched job titles are:

What job categories do people searching Penetration Testing Contract jobs in California look for?

The top searched job categories for Penetration Testing Contract jobs in California are:

Infographic showing various Penetration Testing Contract job openings in California as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 10% Part Time, 2% Temporary, 3% Contract, and 1% Nights. Highlights an 88% Physical, 3% Hybrid, and 9% Remote job distribution.

External Network Penetration Tester

Xtreme Solutions, Inc

San Bernardino, CA • On-site

Contractor

Posted 15 days ago


Job description

Job Type
Contract
Description
Position Summary
Performs blind and intelligent penetration testing against internet-facing assets - web applications, firewalls, remote access (VPN/RDP), and internet postings - for all 47 County departments, attempting to obtain confidential/sensitive data using real-world threat intelligence-based techniques while evading detection.
Key Responsibilities
• Conduct external network and web application penetration testing and vulnerability assessments per NIST SP 800-115 methodology.
• Attempt to obtain ePHI, PII, financial data, and privileged communications from external sources without causing service disruption.
• Document all findings with risk ratings, evidence, and remediation recommendations for the Assessment report.
• Attempt to avoid detection and evade department response efforts during testing windows, as scoped.
Requirements
Required Qualifications
• 4+ years of hands-on external network / web application penetration testing experience.
• Proficiency with industry-standard tools (Burp Suite, Nmap, Metasploit, or equivalent).
• Strong understanding of OWASP Top 10 and common network attack vectors.
Preferred Qualifications
• OSCP, GPEN, GWAPT, or CEH certification.
• Experience testing government or healthcare-sector environments.
Travel
Fully remote; must remain within the continental United States.