1

Pentest Jobs (NOW HIRING)

Use red team and pentest tradecraft knowledge to identify how threat actors stand up, configure, and hide infrastructure -- and encode that knowledge into repeatable detection logic. * Mentor and ...

Security Research Engineer

New York, NY · On-site

$120K - $175K/yr

Run end-to-end pentest engagements for customers using Apex, our open source offensive security tool * Curate, triage, and contextualize findings for customer audiences ranging from engineers to ...

Run end-to-end pentest engagements for customers using Apex, our open source offensive security tool * Curate, triage, and contextualize findings for customer audiences ranging from engineers to ...

CEH(P), RCCE Level 1, Cloud+, CPTE, FITSP-A, GCED, GCIH, GCSA, GICSP, GSEC, PenTest+, or Security+ Required Education: • DoD 8140 Interim Education Options Desired Education: • Bachelor's degree ...

CEH or Cloud+ or CySA+ or PenTest+ or SSCP or Legacy Elastic Certified Engineer or Splunk Core Certified Power User, or LINUX+, LPIC1 or RHCA * TS/SCI Clearance What We Offer: SGS offers a ...

New

CySA+, CEH, CISA, GSNA, CFR, PenTest+ • One of the following certifications to meet DoD 8140 certification requirements: CySA+, SecurityX (CASP+), CISM, CISA, CISSO, CISSP, CPTE, CFR, FITSP-A, GPEN ...

You set the methods, playbooks, and quality standards the pentest team follows across web, API, thick-client, cloud, mobile, Active Directory / Entra ID, and AI/LLM-powered applications, and you keep ...

CySA+, CEH, CISA, GSNA, CFR, PenTest+ • One of the following certifications to meet DoD 8140 certification requirements: CySA+, SecurityX (CASP+), CISM, CISA, CISSO, CISSP, CPTE, CFR, FITSP-A, GPEN ...

Showing results 41-60

Pentest information

See salary details

$11

$23

$32

How much do pentest jobs pay per hour?

As of Aug 16, 2026, the average hourly pay for pentest in the United States is $23.10, according to ZipRecruiter salary data. Most workers in this role earn between $19.23 and $26.44 per hour, depending on experience, location, and employer.

What are some common challenges pentesters face when conducting security assessments in large organizations?

Pentesters in large organizations often encounter challenges such as navigating complex network architectures, obtaining appropriate permissions, and coordinating with multiple departments to minimize disruption. They must also balance thoroughness with tight deadlines and ensure clear communication of findings to both technical and non-technical stakeholders. Adaptability and strong collaboration skills are crucial for overcoming these obstacles and ensuring a successful assessment.

Is pentesting a good career?

Pentesting, or penetration testing, is a growing cybersecurity field that involves identifying vulnerabilities in computer systems and networks. It offers high demand for skilled professionals, competitive salaries, and opportunities for certification such as OSCP or CEH. Success in this career requires strong technical skills, knowledge of security tools, and continuous learning to keep up with evolving threats.

Can you work remotely as a pentest?

Many penetration testers (pentesters) can work remotely, especially if they have access to the target systems and use secure communication tools. Remote work is common in the cybersecurity industry, but some roles may require on-site presence for physical security assessments or client interactions. Strong technical skills, certifications, and reliable internet are essential for remote pentesting jobs.

What are the key skills and qualifications needed to thrive as a penetration tester, and why are they important?

To thrive as a Penetration Tester, you need strong knowledge of computer networks, operating systems, cybersecurity principles, and typically a degree in computer science or a related field. Familiarity with tools such as Metasploit, Burp Suite, Nmap, and certifications like CEH or OSCP are commonly required. Analytical thinking, attention to detail, and effective communication are crucial soft skills for accurately identifying vulnerabilities and reporting findings to clients or teams. These skills and qualifications are vital for uncovering security weaknesses and helping organizations strengthen their defenses against cyber threats.

What is the difference between Pentest vs Vulnerability Analyst?

AspectPentestVulnerability Analyst
CertificationsOSCP, CEH, GPENOSCP, CEH, CISSP
Work EnvironmentHands-on testing, simulated attacksVulnerability scanning, risk assessment
Employer & Industry UsageCybersecurity firms, IT departmentsSecurity teams, consulting firms

While both roles focus on cybersecurity, a Pentest involves actively exploiting vulnerabilities to identify security gaps, whereas a Vulnerability Analyst primarily assesses and reports on vulnerabilities without exploiting them. Both roles require similar certifications and often work in the same environments, but their core activities differ in approach and scope.

What is a pentest?

Pentesters, also known as penetration testers, are cybersecurity professionals who simulate cyberattacks on computer systems, networks, or applications. Their goal is to identify vulnerabilities that malicious hackers could exploit. Pentesters use a variety of tools and techniques to assess security controls and provide recommendations for improving an organization's defenses. The results of their tests help organizations understand and mitigate potential risks. Pentesting is an essential part of maintaining robust cybersecurity.
More about Pentest jobs

What cities are hiring for Pentest jobs?

Cities with the most Pentest job openings:

What are the most commonly searched types of Pentest jobs?

The most popular types of Pentest jobs are:

What states have the most Pentest jobs?

States with the most job openings for Pentest jobs include:

Infographic showing various Pentest job openings in the United States as of August 2026, with employment types broken down into 80% Full Time, and 20% Part Time. Highlights an 100% In-person job distribution, with an average salary of $48,054 per year, or $23.1 per hour.

Associate Product Manager

CrackaJack Digital Solutions LLC

Portland, OR • On-site, Remote

Full-time

Posted 27 days ago


Job description

About CrackaJack Digital Solutions: Since 2016, CrackaJack Digital Solutions has empowered small to mid-sized businesses to thrive through digital transformation. We provide the global expertise needed to navigate today's complex technology landscape. We've evolved beyond traditional IT to become a specialized partner in high-impact security and compliance, with core expertise spanning:
• GRC (Governance, Risk & Compliance): Strategic alignment and regulatory mastery
• Identity & Access Management (IAM): Precision control over resource access
• Cybersecurity & Penetration Testing: Proactive defense and vulnerability neutralization
• Data Privacy: Global protection for your most sensitive assets
• Managed IT & Infrastructure: Scalable solutions and technical staffing talent
From cloud infrastructure to web development, we deliver practical, data-driven technology tailored to our clients' growth.
Mission: To inspire and transform businesses through digital innovations that accelerate long-term, sustainable revenue growth.
Vision: To be a global leader in impactful digital IT transformation and cybersecurity excellence.
Purpose: Listen & Understand • Lead with Data • Leverage Expertise
About the Role: CrackaJack is looking for an Associate Product Manager to support the planning, coordination, and continuous improvement of client digital transformation and security engagements, spanning cloud infrastructure, application development, and GRC/IAM/cybersecurity workstreams.
What You'll Do:
Delivery & Execution
• Support senior PMs and delivery leads in planning, scoping, and executing client digital transformation projects.
• Translate client requirements into user stories, epics, and technical specifications for engineering teams.
• Maintain and track roadmaps, backlogs, sprints, and delivery timelines across distributed teams.
• Facilitate stand-ups, sprint planning, retrospectives, and status updates.
• Identify risks, blockers, and scope changes early, and escalate appropriately.
• Prepare client-facing status reports, project documentation, and presentations. Product Input & Offering Improvement
• Gather and synthesize feedback from clients and delivery teams after engagements, and turn it into concrete recommendations for improving how our GRC, IAM, PenTest, Cybersecurity, and Managed IT offerings are scoped and packaged.
• Contribute to defining offering documentation scope, deliverables, target client profile, and delivery timelines - for at least one or two practice areas.
• Conduct light competitive and market research on how comparable IT/security consultancies package similar services, and bring back actionable input for practice leads.
• Help prioritize a simple backlog of offering and process improvements, working with practice leads across GRC, IAM, PenTest, Cybersecurity, and Managed IT.
What We're Looking For:
• 1-3 years of experience in a product management, project coordination, business analyst, or related delivery role (internships and equivalent experience considered).
• Basic understanding of software development lifecycles (Agile/Scrum preferred).
• Strong organizational skills and comfort managing multiple workstreams simultaneously.
• Clear written and verbal communication skills, with comfort presenting to clients and stakeholders.
• Analytical mindset comfortable doing light market/competitive research and turning client feedback into clear recommendations.
• Ability to work effectively across time zones with distributed, global teams.
• Bachelor's degree in Business, Computer Science, Information Systems, or a related field, or equivalent practical experience.
Nice to have:
• Exposure to GRC, IAM, cybersecurity, or data privacy concepts, or compliance frameworks (SOC 2, ISO 27001, NIST, HIPAA, GDPR).
• Experience working with or supporting cloud infrastructure or web/mobile development projects.
• Prior experience in an IT consulting or professional services environment.
• Familiarity with tools such as Jira, Confluence, Asana, Notion, or similar. Why CrackaJack
• Build core PM fundamentals (backlog management, sprint execution, stakeholder communication) while also getting real input into product/offering decisions not just coordination work.
• Direct visibility into and mentorship from company leadership, including our Co-Founder & Managing Director and VP of Global Talent Services.
• Exposure to a broad range of cutting-edge domains: GRC, IAM, penetration testing, data privacy, cloud infrastructure, and AI consulting.
CrackaJack Digital Solutions LLC is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.