1

Penetration Testing Jobs (NOW HIRING)

Occasional off-hours testing and periodic travel required. Duties include the following: * Conducts penetration testing activities on TSA network. * Engages with TSA stakeholders to tailor the Rules ...

Perform web application, infrastructure, and application-level penetration testing. Conduct security design reviews to ensure compliance with NATO security policies and directives. Provide ...

Description Tharros is seeking a Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer to support a DHS Intelligence and Analysis cybersecurity program in the National ...

Performs application and network penetration testing and wireless security assessments. * Applies offensive cybersecurity testing techniques, coordinate testing projects with internal and external ...

Network penetration testing and experience working with network infrastructure * An understanding of network protocols and their use for command-and-control channels * Experience carrying out social ...

Penetration Tester

Herndon, VA · On-site

$100K - $200K/yr

Principal Penetration TesterAltus Consulting seeks a seasoned cybersecurity professional to spearhead our penetration testing initiatives. As a key member of our elite team, you'll play a crucial ...

Penetration Tester

Rensselaer, NY · On-site

$90 - $105/hr

Key Responsibilities Penetration Testing and Vulnerability Assessment * Conduct penetration tests and vulnerability assessments for Java applications and infrastructure. * Identify security flaws in ...

Penetration Tester

Alexandria, VA · On-site

$75 - $85/hr

Perform testing and detection activities including red teaming, blue teaming, penetration testing, adversary emulation, purple teaming, and breach and attack simulation to improve SOC operations and ...

Conduct Government-selected penetration-testing assessments and threat-hunting exercises in accordance with CSD-SOP-054 and NIST SP 800-115. * Develop test plans and methodologies, execute ...

Push the boundaries of penetration testing innovation through research and development of novel TTPs * Contribute to Altus Consulting's thought leadership efforts via publications, presentations, and ...

Independently performs penetration testing of applications, systems and enclaves Identifies security flaws in computing platforms and applications and devise strategies and techniques to mitigate ...

$90 - $105/hr

Key Responsibilities Penetration Testing and Vulnerability Assessment * Conduct penetration tests and vulnerability assessments for Java applications and infrastructure. * Identify security flaws in ...

Showing results 41-60

Penetration Testing information

See salary details

$22.5K

$119.9K

$168.5K

How much do penetration testing jobs pay per year?

As of Sep 6, 2026, the average yearly pay for penetration testing in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is penetration testing?

Penetration testing, also known as ethical hacking, is a security practice where professionals simulate cyberattacks on a computer system, network, or application to identify vulnerabilities before malicious hackers can exploit them. The goal is to find and safely exploit weaknesses, assess the impact of potential attacks, and provide recommendations to improve security. Penetration testers use a variety of tools and techniques, often mirroring real-world attack methods, to thoroughly evaluate an organization’s defenses. It is a proactive approach to improving an organization's cybersecurity posture.

What are some common challenges faced by penetration testers during client engagements?

Penetration testers often encounter challenges such as limited access to information, time constraints, and complex network environments that can hinder thorough assessments. Additionally, balancing the need to simulate real-world attacks while ensuring no disruption to client operations requires careful planning and communication. Collaborating effectively with IT teams and clearly documenting findings are crucial for ensuring that vulnerabilities are properly understood and addressed.

What is the difference between Penetration Testing vs Vulnerability Assessment?

AspectPenetration TestingVulnerability Assessment
PurposeSimulate cyberattacks to identify exploitable vulnerabilitiesIdentify and prioritize security weaknesses
DepthIn-depth, targeted testingBroad, comprehensive scanning
CertificationsOSCP, CEH, GPENOSCP, CEH, Security+
Work EnvironmentHands-on testing, simulated attacksAutomated scans, reports

While both roles focus on security weaknesses, Penetration Testing involves actively exploiting vulnerabilities to assess real-world impact, whereas Vulnerability Assessment identifies potential issues for prioritization. Penetration Testing provides a deeper, more targeted security evaluation, making it essential for comprehensive security testing.

Are penetration testers high in demand?

Penetration testers are in high demand due to increasing cybersecurity threats and the need for organizations to identify vulnerabilities. The role often requires skills in tools like Kali Linux and certifications such as OSCP, with job growth expected to remain strong in the cybersecurity field.

Is penetration testing a good career?

Penetration testing is a growing cybersecurity field that involves identifying vulnerabilities in computer systems and networks. It requires technical skills, knowledge of security tools, and often certifications like OSCP or CEH. The role offers high demand, competitive salaries, and opportunities for continuous learning, making it a viable career choice for those interested in cybersecurity.

What cities are hiring for Penetration Testing jobs?

Cities with the most Penetration Testing job openings:

What are the most commonly searched types of Penetration Testing jobs?

The most popular types of Penetration Testing jobs are:

What states have the most Penetration Testing jobs?

States with the most job openings for Penetration Testing jobs include:

Infographic showing various Penetration Testing job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 11% Part Time, 3% Contract, and 1% Nights. Highlights an 88% Physical, 2% Hybrid, and 10% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.

Penetration Tester

gTANGIBLE

Arlington, VA • On-site

Full-time

Re-posted 5 days ago


Key responsibilities

  • Perform security attacks against IT assets to identify vulnerabilities and exploit them.

  • Analyze, validate, and generate reports on penetration testing findings and present them to TSA IT management.

  • Coordinate with TSA stakeholders and Security Operations Center to support security testing, improve detection capabilities, and provide recommendations.


Job description

gTANGIBLE Corporation (gTC), www.gtangible.com, is a C corporation and a registered Government contractor that provides services and solutions in:

  • National Security Programs
  • Professional, Administrative, and Management Support
  • Mission and Warfighter Support

We are a Service-Disabled Veteran-Owned Small Business (SDVOSB) and the founder has years of successful experience in the Government contracting arena. Our leadership team is an exceptional group of Government contracting professionals. gTANGIBLE is in the process of identifying candidates for the following position.

Requisition Type: Full Time

Position Status: Contingent

Position Title: Penetration Tester

Location: Arlington, VA

Security Clearance:Secret

Duties and Responsibilities

The Penetration Tester supports this Transportation Security Administration Information Technology (TSA IT) Task Order (TO) by performing security attacks against all types of IT assets, and exploiting vulnerabilities found to determine if further reach within the engagement scope can be obtained. Provide final reports and presentations of the findings identified to personnel with a variety of technical knowledge to enable TSA IT management to make informed decisions about how to address the identified findings. Occasional off-hours testing and periodic travel required. Duties include the following:

  • Conducts penetration testing activities on TSA network.
  • Engages with TSA stakeholders to tailor the Rules of Engagement and create test plans.
  • Penetration testing will use both automated tools and manual techniques in order to identify vulnerabilities and exploit vulnerabilities.
  • Analyzes and validates test results and generates final reports and presents findings to the TSA IT management to make informed decisions on how to address the identified findings.
  • Provides support, review, and recommendations of system security design, configuration, security findings, and data flow.
  • Conducts Participates with stakeholders regarding findings meetings and responses.
  • Coordinates with the TSA Security Operations Center (SOC) to provide assistance with Security Information and Event Management (SIEM) detection content to improve the TSA SOC's ability to detect activities performed during testing engagements.
  • Provides Product and Technology Evaluations (NPTE) on technologies that are used for screening operations at the airports. Evaluation of technologies proposed by the Innovation Task Force's Advancing the Checkpoint Environment (ACE), with Requirements and Capability Analysis (RCA) features, in support of the Acquisitions and Program Management (APM) teams in the Transportations Security Integration Facility (TSIF).
  • The overall functions include, Cybersecurity Requirements Determination, Scoping and Security Testing Strategy, Security Test Documentation, Security Testing, Analysis, and Final Reporting with Findings Meetings.

Knowledge and Qualifications

  • At least (12) years of technical IT security experience.
  • At least (8) years of experience performing Penetration Testing.
  • At least (5) years of experience performing Penetration Testing for Federal IT systems.
  • Ability to work independently/minimal oversight.
  • Experience using automated tools: Kali Linux, AppScan, BurpSuite, SOAPUI, AppDetective, Cobalt Strike, RedSeal, and Nessus.
  • Experience with penetration testing methodologies including Open Source Intelligence, Discovery, Enumeration, Vulnerability Identification, Exploitation, and Post Exploitation techniques and tools.
  • Experience with manual testing techniques.
  • Required Certifications: OSCP, CEH, GWAPT, CISSP or other equivalent.
  • Experience with custom programming languages: Python, Perl, Powershell, etc.
  • Fluent knowledge of NIST and FIPS security controls, DISA STIGs, and CIS standards.
  • Fluent in the OWASP Top 10 weaknesses.
  • Experience with switches, routers, firewalls, VPN, ISE; Palo Alto firewalls;, VPN; Load Balancers, AV, Host and Network based devices, and Enterprise Security Tools.
  • Fluent TCP/IP, SMB, SSH, NetBios, SOAP, REST, LDAP, SAML, SSO.

gTANGIBLE Corporation is an equal opportunity employer and does not discriminate against any employee or applicant because of race, age, sex, color, physical or mental disability, religion, sexual orientation, marital status, national origin, or political affiliation.

Employment Type: Full-Time