1

Penetration Testing Intern Jobs (NOW HIRING)

Developer Intern

Manhattan, NY · On-site

$21 - $27.75/hr

FRSH is looking for a bright and capable Developer intern with high energy who is an extremely ... Git, automated testing, and test penetration tools. You will work cohesively with other the ...

Developer Intern

Manhattan, NY · Hybrid

$21 - $27.75/hr

FRSH is looking for a bright and capable Developer intern with high energy who is an extremely ... Git, automated testing, and test penetration tools. You will work cohesively with other the ...

... automated testing * Develop front-end solutions supporting EV drivers and/or utilities in React ... penetration of solar and wind power. To learn more, visit energyhub.com. EnergyHub is an Equal ...

... automated testing * Develop front-end solutions supporting EV drivers and/or utilities in React ... penetration of solar and wind power. To learn more, visit energyhub.com. EnergyHub is an Equal ...

Aftermarket Services Intern

Houston, TX

$13.75 - $18.50/hr

Support Factory Acceptance Team performing Factory Testing. * Tracking procurement items against ... penetration and financial goals. More information is available on the company website at: www.tas ...

Aftermarket Services Intern

Houston, TX

$13.75 - $18.50/hr

Support Factory Acceptance Team performing Factory Testing. * Tracking procurement items against ... penetration and financial goals. More information is available on the company website at: www.tas ...

next page

Showing results 1-20

Penetration Testing Intern information

See salary details

$11

$20

$26

How much do penetration testing intern jobs pay per hour?

As of May 30, 2026, the average hourly pay for penetration testing intern in the United States is $20.34, according to ZipRecruiter salary data. Most workers in this role earn between $16.11 and $22.36 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Penetration Testing Intern, and why are they important?

To thrive as a Penetration Testing Intern, you need a solid understanding of networking fundamentals, cybersecurity principles, and basic programming or scripting skills, often supported by relevant coursework or certifications like CompTIA Security+. Familiarity with tools such as Kali Linux, Metasploit, Burp Suite, and vulnerability scanners is typically expected. Strong analytical thinking, attention to detail, and effective communication help interns document findings and collaborate with security teams. These skills ensure interns can identify, analyze, and report vulnerabilities responsibly, contributing to the organization’s overall security posture.

What types of projects and responsibilities can I expect as a Penetration Testing Intern?

As a Penetration Testing Intern, you can expect to assist with vulnerability assessments, help conduct penetration tests on web applications, networks, and systems, and support the documentation of findings. Your daily tasks may include researching exploits, running automated tools, analyzing security reports, and collaborating with senior testers to learn best practices. Interns often participate in team meetings, contribute to debriefings, and may even help develop proof-of-concept attacks under supervision, giving you hands-on experience in real-world security scenarios.

What does a Penetration Testing Intern do?

A Penetration Testing Intern assists cybersecurity teams by helping to identify and exploit vulnerabilities in computer systems, networks, and applications. Their main goal is to simulate cyberattacks in a controlled environment to help organizations improve their security. Interns often work under the guidance of experienced professionals, learning how to use various tools and techniques to conduct tests, document findings, and suggest remediation. This role provides hands-on experience in ethical hacking and cybersecurity best practices.

What is the difference between Penetration Testing Intern vs Penetration Tester?

AspectPenetration Testing InternPenetration Tester
CredentialsTypically pursuing or holds a related degree; may have basic certifications like CompTIA Security+Professional certifications like OSCP, CEH, or CISSP often required
Work EnvironmentEntry-level, supervised, often part-time or internship programsFull-time, independent or team-based security assessments
ResponsibilitiesAssisting in testing, learning tools, supporting senior testersConducting security assessments, identifying vulnerabilities, reporting findings

In summary, a Penetration Testing Intern is an entry-level role focused on learning and supporting security testing activities, while a Penetration Tester is a professional responsible for executing comprehensive security assessments independently.

More about Penetration Testing Intern jobs
What cities are hiring for Penetration Testing Intern jobs? Cities with the most Penetration Testing Intern job openings:
What are the most commonly searched types of Penetration Testing jobs? The most popular types of Penetration Testing jobs are:
What states have the most Penetration Testing Intern jobs? States with the most job openings for Penetration Testing Intern jobs include:

Senior Purple Team Engineer / Lead (Blue Focused)

Praktikant / Werkstudent (w/m/d) Baumanagement

Alcolu, SC

$96.50K - $132.50K/yr

Full-time

Medical

Posted 19 days ago


Job description

Company Description

Creating a future worth living for future generations gets us out of bed every morning. Depending on the project, we are consultants, implementers, or both for sustainable, innovative and economical solutions for real estate, industry, energy and infrastructure. Our more than 6,500 employees at over 80 locations worldwide support our customers in interdisciplinary teams. Our thinking is both visionary and realistic. We work independently and as part of a team. With passion and the latest technologies. We unite. Join us at Dreso and let's create a world we want to live in. 

Job Description

We are seeking a Senior Purple Team Engineer to design, execute, and continuously improve adversaryfocused security validation across our enterprise environment. This role sits at the intersection of Red Team and Blue Team, with a strong defensive (Blue Team) bias, ensuring that offensive findings are systematically translated into measurable detection, response, and prevention improvements. Opportunities for external consulting are included.

The successful candidate will lead purple team activities endtoend-from threat modeling and attack simulation to detection engineering, incident response tuning, and executivelevel reporting-while working closely with SOC, IT Operations, and GRC stakeholders.

This role is handson, technically deep, and outcomedriven, with a strong expectation of realworld attack execution and productiongrade defensive improvement.

Key Responsibilities

Purple Team & Adversary Simulation

  • Plan and execute purple team exercises aligned to realworld threat actors (e.g., ransomware groups, APT tradecraft, insider threat).
  • Design attack scenarios mapped to MITRE ATT&CK, covering initial access, persistence, lateral movement, privilege escalation, commandandcontrol, and exfiltration.
  • Coordinate with Red Team and external penetration testing vendors to ensure tests are safe, controlled, and detectionfocused.
  • Translate offensive findings into clear, prioritized defensive improvements with measurable outcomes.

Blue Team / Defensive Engineering (Primary Focus)

  • Develop and tune SIEM detections, analytics rules, and alerts based on attack simulations and real incidents.
  • Build and optimize Microsoft Sentinel analytics, KQL queries, workbooks, and automation rules.
  • Improve Defender XDR detections across:
    • Microsoft Defender for Endpoint
    • Microsoft Defender for Identity
    • Microsoft Defender for Office 365
    • Microsoft Defender for Cloud Apps
  • Validate alert quality, reduce false positives, and improve signaltonoise ratio.
  • Support and enhance incident response playbooks, escalation paths, and response automation.

Incident Response & DFIR Integration

  • Act as a senior escalation point during security incidents, especially those involving active attacker behavior.
  • Support digital forensics and incident response (DFIR) investigations on Windows and Linux endpoints.
  • Use DFIR tools and platforms (e.g., Velociraptor) for threat hunting, artifact collection, and timeline analysis.
  • Feed incident lessons learned back into detection engineering and preventive controls.

Threat Hunting & Detection Validation

  • Conduct hypothesisdriven threat hunts based on attacker tradecraft and threat intelligence.
  • Validate coverage of detections against known TTPs and identify detection gaps.
  • Continuously assess control effectiveness across endpoint, identity, cloud, and SaaS environments.

Vulnerability, Exposure & Control Validation

  • Correlate vulnerability data with attacker exploitation paths and real exposure.
  • Support and validate remediation prioritization based on exploitability and business impact, not CVSS alone.
  • Partner with IT and Cloud teams to validate hardening, logging, and telemetry requirements.

Governance, Reporting & Stakeholder Communication

  • Produce clear, executivelevel reporting from purple team exercises (findings, detection gaps, trends, maturity).
  • Align purple team outcomes with ISO/IEC 27001, NIS2, and internal ISMS requirements.
  • Contribute to security strategy, roadmap planning, and continuous improvement initiatives.
  • Mentor junior analysts and engineers across Blue and Red Team disciplines.

Technical Environment & Stack (Required Experience)

Core Platforms

  • Microsoft Sentinel (SIEM) - advanced KQL, analytics rules, workbooks, automation
  • Microsoft Defender XDR (Endpoint, Identity, Office 365, Cloud Apps)
  • Microsoft Entra ID (Azure AD) - identity attacks, logs, conditional access abuse
  • Microsoft Purview - audit logs, investigations (desirable)
  • Azure - logging, resource telemetry, cloud attack paths

DFIR & Threat Hunting

  • Endpoint forensics (Windows & Linux)
  • Velociraptor or equivalent DFIR tooling
  • Memory, disk, and logbased investigations
  • Threat intelligence integration and ATT&CK mapping

Offensive Tooling & Techniques

  • Adversary emulation frameworks (e.g., Atomic Red Team, CALDERA)
  • Penetration testing and red team tooling (e.g., C2 frameworks, credential abuse, livingofftheland techniques)
  • Social engineering awareness (technical validation focus; not marketingstyle phishing)

Scripting & Automation

  • PowerShell (advanced)
  • Python (working knowledge)
  • Automation of testing, detection validation, and response workflows
Qualifications

Required Experience

  • 7-10+ years in cybersecurity with proven experience across both Blue Team and Red Team roles
  • Demonstrated handson detection engineering and incident response experience
  • Experience running or leading purple team exercises in enterprise environments
  • Strong understanding of realworld attacker behavior, not just theoretical frameworks
  • Experience operating in regulated or compliancedriven environments (ISO 27001, GDPR, NIS2)

Certifications (Strongly Preferred / Required)

Offensive / Red Team

  • OSCP / OSEP / OSCE / OSWE
  • CRTO / CRTO II
  • Equivalent advanced red team certifications

Defensive / Blue Team

  • GCED / GCIA / GCIR or equivalent
  • Microsoft Security certifications (Sentinel, Defender, XDR)
  • Advanced SIEM / SOC certifications

Governance / Architecture (Valuable)

  • CISSP (or ISSAP concentration)
  • CISM / CRISC
  • ISO/IEC 27001 Lead Implementer or Lead Auditor
Additional Information
  • To ensure your work-life balance, we offer the option of mobile working
  • We promote your professional and personal development through individual training and further education at the Drees & Sommer Academy
  • We support your health with a bonus for sports enthusiasts. We offer the possibility of subscribing to a private health insurance policy
  • Employees benefit from tax advantages related to their commuting expenses for the office
  • Fiscal advantages for employees expenses in meal costs during the worktime. Employee referral program with attractive bonus scheme
  • Supporting career and familiy by receiving tax benefits for kindergarten expenses