2

Remote Application Penetration Tester Jobs (NOW HIRING)

Offensive Security Web Expert (OSWE) * eLearnSecurity Web Application Penetration Tester (eWPT ... Primarily Remote * Occasional Travel May Be Required * Engagements may range from several days to ...

We are seeking an experienced and results-driven Penetration Tester to perform comprehensive web application security assessments. The role involves conducting penetration tests, evaluating security ...

Be Seen First

Penetration Tester

Knoxville, TN · Remote

$120K - $145K/yr

This role requires proven hands-on capability in both network and web application/API penetration ... What We Offer · Remote work environment · Unlimited paid time off (Policy Guided) · Continuing ...

Be Seen First

Penetration Tester

Knoxville, TN · Remote

$120K - $145K/yr

This role requires proven hands-on capability in both network and web application/API penetration ... What We Offer · Remote work environment · Unlimited paid time off (Policy Guided) · Continuing ...

As leaders in continuous offensive security and penetration testing, we deliver world-class ... Requirements * 4+ years experience in planning, conducting, and managing web application ...

Penetration Tester

OR · On-site +1

As leaders in continuous offensive security and penetration testing, we deliver world-class ... Requirements * 4+ years experience in planning, conducting, and managing web application ...

Contract Penetration Tester At Bishop Fox, security isn't just a job-it's our passion. As leaders ... Deep understanding of application security fundamentals, OWASP Top 10, common vulnerabilities, and ...

Penetration Tester

Herndon, VA · On-site +1

$86K - $198K/yr

Remote Work: No Job Number: R0247922 Location: Herndon,VA,US Share job via: Share Penetration Tester The Opportunity: Conduct testing and analysis to identify vulnerabilities and potential threat ...

Responsibilities Bishop Fox is looking for experienced contract penetration testers with a primary focus in web application security and strong secondary expertise in cloud, mobile, source code ...

Execute web application, API and mobile penetration tests with a focus on manual testing beyond ... Flexible work hours with hybrid remote options * Opportunity to work with international ...

Performs application and network penetration testing and wireless security assessments. * Applies offensive cybersecurity testing techniques, coordinate testing projects with internal and external ...

Performs application and network penetration testing and wireless security assessments. * Applies offensive cybersecurity testing techniques, coordinate testing projects with internal and external ...

next page

Showing results 1-20

Remote Application Penetration Tester information

See salary details

$96.5K

$132.3K

$159.5K

How much do remote application penetration tester jobs pay per year?

As of Sep 5, 2026, the average yearly pay for remote application penetration tester in the United States is $132,307.00, according to ZipRecruiter salary data. Most workers in this role earn between $121,500.00 and $146,500.00 per year, depending on experience, location, and employer.

What is a remote application penetration tester?

A Remote Application Penetration Tester is a cybersecurity professional who evaluates the security of software applications from a remote location. They simulate cyberattacks on web, mobile, or cloud applications to identify vulnerabilities that could be exploited by malicious actors. Their work involves using specialized tools and techniques to test the application's defenses, report findings, and recommend solutions to improve security. By working remotely, they can assess applications from anywhere, providing flexibility and broad coverage for organizations.

What are the key skills and qualifications needed to thrive as a remote application penetration tester, and why are they important?

To thrive as a Remote Application Penetration Tester, you need in-depth knowledge of web and mobile application security, strong understanding of networking, and experience with common programming languages and security frameworks, often backed by certifications like OSCP or CEH. Familiarity with tools such as Burp Suite, Metasploit, Nmap, and vulnerability scanners is expected. Outstanding analytical thinking, attention to detail, and clear written communication set top performers apart. These skills are essential to identify vulnerabilities, provide actionable recommendations, and ensure robust application security in diverse, remote environments.

How does a remote application penetration tester typically collaborate with development teams to address identified vulnerabilities?

Remote application penetration testers often work closely with development teams by providing detailed reports on vulnerabilities discovered during assessments, including risk ratings and remediation recommendations. Communication usually takes place via secure collaboration tools, video calls, and ticketing systems to track progress on fixing issues. Testers may also participate in follow-up meetings or retesting efforts to verify that vulnerabilities have been properly addressed. Building effective working relationships and clear communication are key to ensuring that security improvements are implemented efficiently in distributed, remote environments.

What is the difference between Remote Application Penetration Tester vs Remote Security Analyst?

AspectRemote Application Penetration TesterRemote Security Analyst
CertificationsOSCP, CEH, GPENCISSP, Security+
Work EnvironmentHands-on testing, vulnerability assessmentsMonitoring, incident response, policy development
Industry UsageCybersecurity firms, tech companies, consultingFinancial, healthcare, government sectors

The Remote Application Penetration Tester focuses on identifying vulnerabilities in applications through active testing, while the Remote Security Analyst monitors security systems and responds to threats. Both roles require cybersecurity certifications and are vital in protecting organizational assets, but they differ in daily tasks and focus areas.

More about Remote Application Penetration Tester jobs

What cities are hiring for Remote Application Penetration Tester jobs?

Cities with the most Remote Application Penetration Tester job openings:

What are the most commonly searched types of Application Penetration Tester jobs?

The most popular types of Application Penetration Tester jobs are:

What states have the most Remote Application Penetration Tester jobs?

States with the most job openings for Remote Application Penetration Tester jobs include:

Infographic showing various Remote Application Penetration Tester job openings in the United States as of August 2026, with employment types broken down into 67% Full Time, and 33% Part Time. Highlights an 100% Remote job distribution, with an average salary of $132,307 per year, or $63.6 per hour.

Contractor

Posted 25 days ago


Job description

We are seeking experienced penetration testing professionals to join our network of trusted consultants and support client engagements on an as-needed basis. Consultants will perform security assessments for organizations across a variety of industries, including commercial enterprises, healthcare organizations, financial institutions, government contractors, and regulated environments.
Engagements may include internal and external network penetration testing, web application testing, mobile application testing, wireless security assessments, social engineering exercises, and adversary simulation activities.
This opportunity is ideal for experienced cybersecurity professionals seeking flexible, project-based consulting work while maintaining independence and control of their schedule.
Requirements
  • Conduct authorized penetration testing activities against client environments.
  • Perform internal and external network penetration tests.
  • Execute web application, mobile application, wireless, and social engineering assessments as applicable.
  • Validate vulnerabilities and document security findings.
  • Prepare clear, professional reports with supporting evidence and remediation recommendations.
  • Participate in project kickoff, status, and findings review meetings as needed.
  • Adhere to established testing methodologies, quality standards, and project timelines.
  • Maintain strict confidentiality of client information and assessment results.

Preferred Areas of Expertise
Candidates may possess expertise in one or more of the following areas:
  • Internal Network Penetration Testing
  • External Network Penetration Testing
  • Active Directory Security Assessments
  • Web Application Penetration Testing
  • Mobile Application Penetration Testing
  • Wireless Security Testing
  • Social Engineering Assessments
  • Red Team / Adversary Simulation Exercises
  • Cloud Security Assessments

Required Qualifications
  • Minimum three years of hands-on penetration testing experience.
  • Experience performing client-facing security assessments.
  • Strong understanding of attack methodologies, exploitation techniques, and common security weaknesses.
  • Experience with industry-standard penetration testing tools and methodologies.
  • Excellent written and verbal communication skills.
  • Ability to work independently and manage assignments with minimal supervision.
  • Ability to execute confidentiality and independent contractor agreements.

Preferred Certifications
One or more of the following certifications is required:
  • Offensive Security Certified Professional (OSCP) / preferred
  • Practical Network Penetration Tester (PNPT)
  • GIAC Penetration Tester (GPEN)
  • Offensive Security Web Expert (OSWE)
  • eLearnSecurity Web Application Penetration Tester (eWPT)
  • Certified Red Team Operator (CRTO)
  • Other relevant offensive security certifications

Engagement Model
  • Independent Contractor (1099)
  • Project-Based Assignments
  • Flexible Schedule
  • Primarily Remote
  • Occasional Travel May Be Required
  • Engagements may range from several days to multiple weeks depending on project scope

Desired Attributes
  • Professionalism and integrity
  • Strong attention to detail
  • Reliable project execution
  • Excellent client communication skills
  • Ability to translate technical findings into business-focused recommendations
  • Commitment to producing high-quality deliverables

Interested Consultants
We are continuously building a network of qualified penetration testing professionals for future project opportunities. Interested consultants are encouraged to submit the following information for consideration:
  • Current resume
  • Relevant certifications
  • Areas of specialization
  • Typical availability for project work
  • Desired hourly rate or project-based pricing information