1

Penetration Testing Jobs (NOW HIRING)

This role is responsible for conducting penetration testing and red team activities, assessing security posture across enterprise environments, and supporting identification, validation, and ...

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

Lead, plan, and oversee penetration testing operations for systems, networks, cloud resources, and web‑based applications in a TS/SCI environment * Execute comprehensive vulnerability assessments ...

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

Lead, plan, and oversee penetration testing operations for systems, networks, cloud resources, and web-based applications in a TS/SCI environment * Execute comprehensive vulnerability assessments and ...

Penetration Tester

Portland, OR · On-site

$90 - $130/hr

Penetration Testing & Security AssessmentsConduct Open-Source Intelligence (OSINT) gathering and reconnaissance activities against target organizations.Independently perform standard external and ...

Penetration Tester

Arlington, VA · On-site

$86K - $138K/yr

Minimum of 2 years with penetration testing experience. * Possess one of the following certifications, OR be able to obtain before start date: * CCNA Cyber Ops, CCNA-Security, CEH, CFR, Cloud+, CySA ...

Experience with a variety of penetration testing tools and techniques (e.g., Rapid7 Nexpose, Appspider Pro, Metasploit, Cobalt Strike and/or Burp Suite). * Active Top-Secret Clearance REQUIRED ...

Penetration Tester

Quantico, VA · On-site

$130K - $147K/yr

Experience with a variety of penetration testing tools and techniques (e.g., Rapid7 Nexpose, Appspider Pro, Metasploit, Cobalt Strike and/or Burp Suite). * Active Top-Secret Clearance REQUIRED ...

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

Lead, plan, and oversee penetration testing operations for systems, networks, cloud resources, and web‑based applications in a TS/SCI environment * Execute comprehensive vulnerability assessments ...

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

Lead, plan, and oversee penetration testing operations for systems, networks, cloud resources, and web‑based applications in a TS/SCI environment * Execute comprehensive vulnerability assessments ...

Penetration Tester

Rensselaer, NY · On-site

$90K - $105K/yr

Key Responsibilities Penetration Testing and Vulnerability Assessment * Conduct penetration tests and vulnerability assessments for Java applications and infrastructure. * Identify security flaws in ...

Senior Penetration Tester

Washington, DC · On-site

$145K - $180K/yr

Conduct penetration testing and vulnerability assessments on Azure cloud infrastructure and applications * Lead and mentor a team of penetration testers, providing guidance and sharing expertise

Performs application and network penetration testing and wireless security assessments. * Applies offensive cybersecurity testing techniques, coordinate testing projects with internal and external ...

Penetration Tester

Herndon, VA · On-site

$86.80 - $198/hr

Find possible vulnerabilities while using penetration testing tools and techniques to ensure security of computer systems, applications, servers, and networks. Apply advanced consult ing skills or ...

Penetration Tester

Arlington, VA · On-site

$86K - $138K/yr

Minimum of 2 years with penetration testing experience. * Possess one of the following certifications, OR be able to obtain before start date: * CCNA Cyber Ops, CCNA-Security, CEH, CFR, Cloud+, CySA ...

Tharros is seeking a Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer to support a DHS Intelligence and Analysis cybersecurity program in the National Capital ...

Document all testing activities, findings, and exploitation paths in Penetration Test Reports (PTRs). * Perform regression penetration tests to validate remediation of previously identified ...

This role is responsible for conducting penetration testing and red team activities, assessing security posture across enterprise environments, and supporting identification, validation, and ...

Showing results 21-40

Penetration Testing information

See salary details

$22.5K

$119.9K

$168.5K

How much do penetration testing jobs pay per year?

As of Sep 6, 2026, the average yearly pay for penetration testing in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is penetration testing?

Penetration testing, also known as ethical hacking, is a security practice where professionals simulate cyberattacks on a computer system, network, or application to identify vulnerabilities before malicious hackers can exploit them. The goal is to find and safely exploit weaknesses, assess the impact of potential attacks, and provide recommendations to improve security. Penetration testers use a variety of tools and techniques, often mirroring real-world attack methods, to thoroughly evaluate an organization’s defenses. It is a proactive approach to improving an organization's cybersecurity posture.

What are some common challenges faced by penetration testers during client engagements?

Penetration testers often encounter challenges such as limited access to information, time constraints, and complex network environments that can hinder thorough assessments. Additionally, balancing the need to simulate real-world attacks while ensuring no disruption to client operations requires careful planning and communication. Collaborating effectively with IT teams and clearly documenting findings are crucial for ensuring that vulnerabilities are properly understood and addressed.

What is the difference between Penetration Testing vs Vulnerability Assessment?

AspectPenetration TestingVulnerability Assessment
PurposeSimulate cyberattacks to identify exploitable vulnerabilitiesIdentify and prioritize security weaknesses
DepthIn-depth, targeted testingBroad, comprehensive scanning
CertificationsOSCP, CEH, GPENOSCP, CEH, Security+
Work EnvironmentHands-on testing, simulated attacksAutomated scans, reports

While both roles focus on security weaknesses, Penetration Testing involves actively exploiting vulnerabilities to assess real-world impact, whereas Vulnerability Assessment identifies potential issues for prioritization. Penetration Testing provides a deeper, more targeted security evaluation, making it essential for comprehensive security testing.

Are penetration testers high in demand?

Penetration testers are in high demand due to increasing cybersecurity threats and the need for organizations to identify vulnerabilities. The role often requires skills in tools like Kali Linux and certifications such as OSCP, with job growth expected to remain strong in the cybersecurity field.

Is penetration testing a good career?

Penetration testing is a growing cybersecurity field that involves identifying vulnerabilities in computer systems and networks. It requires technical skills, knowledge of security tools, and often certifications like OSCP or CEH. The role offers high demand, competitive salaries, and opportunities for continuous learning, making it a viable career choice for those interested in cybersecurity.

What cities are hiring for Penetration Testing jobs?

Cities with the most Penetration Testing job openings:

What are the most commonly searched types of Penetration Testing jobs?

The most popular types of Penetration Testing jobs are:

What states have the most Penetration Testing jobs?

States with the most job openings for Penetration Testing jobs include:

Infographic showing various Penetration Testing job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 11% Part Time, 3% Contract, and 1% Nights. Highlights an 88% Physical, 2% Hybrid, and 10% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.

Penetration Tester III

SOSi

Washington, DC • On-site

Full-time

Re-posted 17 days ago


Job description

Company Description

Founded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions, tested leadership, and trusted results to enable national security missions worldwide.

Job Description

Overview

SOSi is seeking a Penetration Tester III to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting penetration testing and red team activities, assessing security posture across enterprise environments, and supporting identification, validation, and reporting of vulnerabilities to improve cyber defense resilience.

Responsibilities

  Conduct penetration testing across enterprise systems, applications, and network environments

  Perform red team activities to evaluate security controls and identify exploitable weaknesses

  Support continuous penetration testing activities to assess evolving threats and vulnerabilities

  Conduct testing of IoT, mobile, and cloud environments

  Support High Value Asset (HVA) security assessments

  Apply testing methodologies and frameworks including MITRE ATT&CK, OSSTMM, OWASP, NIST, PTES, and ISSAF

  Identify, document, validate, and report vulnerabilities and recommended remediation actions

  Support cyber defense operations through coordination with security engineering, vulnerability management, and incident response teams

Qualifications
  • Experience:
    • Five (5) to seven (7) years of penetration testing experience
    • Management or team lead experience
    • Experience performing continuous penetration testing
    • Experience conducting red team operations
    • Experience performing IoT, mobile, and cloud penetration testing
    • Experience supporting High Value Asset (HVA) assessments
    • Experience applying MITRE ATT&CK, OSSTMM, OWASP, NIST, PTES, and ISSAF methodologies
  • Education:
    • Bachelor's Degree
  • Certifications:
    Required:
    • GPEN or GXPN
    • CISA AES HVA Lead or Technical Lead, or ability to obtain
      • Plus one of the following:
      • GRTP
      • CRTL
      • OSCP
      • CRTP
      • CMWAPT
      • CEPT
      • CPT
      • LPT
         
  • Clearance/Suitability: Secret (active)
Additional Information

Work Environment

  • Normal office conditions with potential to perform duties in deployed locations.
  • Core hours of operation are Monday through Friday, 0600 - 1700.
  • May be requested to work evenings and weekends to meet program and contract needs.

Working at SOSi

All interested individuals will receive consideration and will not be discriminated against for any reason.