1

Penetration Testing Crest Jobs (NOW HIRING)

NJ · On-site

$125 - $170/hr

Lead a team of security professionals delivering complex penetration testing assignments ... Relevant certifications (e.g., CREST, OSCP, SANS) and/or Red/Purple team experience are highly ...

Plan, scope, and execute penetration testing engagements across a variety of environments ... Relevant certifications such as OSWE, CREST (CRT, CCT), OSCP, OSCE, GXPN, GWAPT, GPEN, GMOB, or ...

Penetration Testing & Vulnerability Assessments Conduct comprehensive penetration testing of web ... At least one recognized offensive security certification (OSCP, OSCE3, OSEP, GXPN, GPEN, or CREST ...

Penetration Testing & Vulnerability Assessments Conduct comprehensive penetration testing of web ... At least one recognized offensive security certification (OSCP, OSCE3, OSEP, GXPN, GPEN, or CREST ...

Showing results 21-40

Penetration Testing Crest information

See salary details

$22.5K

$119.9K

$168.5K

How much do penetration testing crest jobs pay per year?

As of Sep 4, 2026, the average yearly pay for penetration testing crest in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is the difference between Penetration Testing Crest vs Penetration Tester?

AspectPenetration Testing CrestPenetration Tester
CertificationsCREST certifications (e.g., CRT, CPSA)OSCP, CEH, GPEN often preferred
Work EnvironmentConsulting firms, security service providersIn-house security teams, consulting firms
Industry UsageCommon in UK and global security firmsGlobal, widely used across industries
Search & Comparison IntentFocus on CREST accreditation and standardsFocus on skills, certifications, and experience

While both roles involve identifying security vulnerabilities, Penetration Testing Crest emphasizes CREST certification standards and accreditation, often within UK-based or global security firms. Penetration Tester is a broader role that may or may not require CREST credentials, focusing on hands-on testing skills across various industries worldwide.

More about Penetration Testing Crest jobs

What cities are hiring for Penetration Testing Crest jobs?

Cities with the most Penetration Testing Crest job openings:

What states have the most Penetration Testing Crest jobs?

States with the most job openings for Penetration Testing Crest jobs include:

Infographic showing various Penetration Testing Crest job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 85% Full Time, 10% Part Time, 3% Contract, and 1% Nights. Highlights an 88% Physical, 2% Hybrid, and 10% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.

Senior Specialist, MAST Application Penetration Tester

KPMG US

Columbus, OH • On-site

Full-time

Re-posted 5 days ago


Job description

Job Summary:
KPMG is a leading advisory firm seeking a Senior Specialist, MAST Application Penetration Tester to join their Managed Services practice. The role involves conducting manual application penetration testing and executing threat modeling while working independently in various engagements.
Responsibilities:
• Conduct manual application penetration testing against API's (REST/SOAP), Web Applications, Mobile applications, and thick client applications
• Perform objective based on abstract penetration testing engagements
• Execute threat modeling, evaluate application business logic, and perform application architecture reviews
• Demonstrate application testing experience in real time via demos to both internal and external audiences
• Function independently in penetration testing engagements, with minimal oversight and guidance
• Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment
Qualifications:
Required:
• Minimum three years of recent experience in application penetration testing of Application Programming Interface (API's), web applications, or mobile applications
• Bachelor's degree from an accredited college/university or equivalent industry experience
• Ability to communicate reporting results with technical and non-technical audiences and lead remediation conversations
• Experience with burp suite pro, and other app testing tools such as Netsparker and Checkmarx
• Ability to travel as required
• Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)
Preferred:
• One or more major ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA)
Company:
KPMG is one of the world’s leading professional services firms and the fastest growing Big Four accounting firm in the United States. Founded in 2010, the company is headquartered in New York, USA, with a team of 10001+ employees. The company is currently Late Stage.