2

Remote Penetration Testing Jobs in Ohio (NOW HIRING)

Manager, Cybersecurity

Nova, OH · On-site +1

$93K - $126K/yr

Maintain and advance vulnerability management, penetration testing, and remediation processes ... Ability to be on call if/when required for onsite and/or remote work after hours or on weekends ...

Remote Penetration Testing information

See Ohio salary details

$21.4K

$114K

$160.2K

How much do remote penetration testing jobs pay per year?

As of Jul 25, 2026, the average yearly pay for remote penetration testing in Ohio is $113,984.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,300.00 and $134,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Remote Penetration Tester, and why are they important?

To thrive as a Remote Penetration Tester, you need a solid understanding of computer networks, cybersecurity principles, and common vulnerabilities, often supported by a degree in computer science or related certifications like OSCP or CEH. Familiarity with penetration testing tools such as Metasploit, Burp Suite, Nmap, and various operating systems is essential. Strong analytical thinking, attention to detail, and clear written communication skills help you effectively discover, document, and explain security findings to clients. These competencies are crucial for accurately identifying risks and helping organizations strengthen their security posture.

Is there a demand for penetration testing?

There is strong demand for penetration testers, including those in remote roles, as organizations prioritize cybersecurity and vulnerability assessments. Skilled professionals with knowledge of tools like Kali Linux, Metasploit, and certifications such as OSCP are especially sought after in the industry.

Will pentesters be replaced by AI?

Remote penetration testers perform manual and creative security assessments that AI currently cannot fully replicate. While AI tools can assist with vulnerability scanning and data analysis, human expertise is essential for identifying complex threats, interpreting results, and developing effective security strategies. The role of pentesters is expected to evolve with technology, but not be entirely replaced by AI.

What is the difference between Remote Penetration Testing vs Vulnerability Assessment Specialist?

AspectRemote Penetration TestingVulnerability Assessment Specialist
CertificationsOSCP, CEH, GPENOSCP, CEH, CISSP
Work EnvironmentHands-on testing, simulated attacksScanning, identifying vulnerabilities
Industry UsageCybersecurity firms, IT departmentsSecurity teams, consulting firms

Remote Penetration Testing involves actively exploiting vulnerabilities to assess security defenses, while Vulnerability Assessment Specialists focus on identifying and prioritizing security weaknesses without exploiting them. Both roles require similar certifications and often work in overlapping environments, but penetration testers perform more in-depth, simulated attack scenarios to evaluate security robustness.

What are some common challenges faced by remote penetration testers, and how can they be addressed?

Remote penetration testers often encounter challenges such as limited access to physical infrastructure, varying levels of client preparedness, and potential communication barriers with on-site teams. To address these issues, it's important to establish clear communication channels, use secure remote access tools, and maintain detailed documentation of testing activities. Building strong relationships with client IT staff and staying up-to-date with remote testing best practices can also help ensure effective and successful engagements.

How much do remote penetration testers make?

Remote penetration testers typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and the complexity of the projects. Senior professionals with advanced skills and certifications like OSCP or CISSP can earn higher salaries, especially when working for specialized firms or as freelancers.

Do penetration testers work remotely?

Many penetration testers work remotely, especially those in freelance or consulting roles, utilizing tools like VPNs, remote access software, and security testing platforms. Remote work allows flexibility, but some employers may require on-site presence for certain assessments or client interactions.

What is remote penetration testing?

Remote penetration testing is a security assessment process where cybersecurity professionals, also known as ethical hackers, attempt to find and exploit vulnerabilities in an organization’s systems, networks, or applications from an offsite location. This simulates a real-world cyberattack to help organizations identify and fix security weaknesses before malicious actors can exploit them. Remote penetration testing is often conducted over the internet, making it a flexible and efficient option for businesses to assess their security posture without requiring onsite visits.
What are the most commonly searched types of Penetration Testing jobs in Ohio? The most popular types of Penetration Testing jobs in Ohio are:
What are popular job titles related to Remote Penetration Testing jobs in Ohio? For Remote Penetration Testing jobs in Ohio, the most frequently searched job titles are:
What cities in Ohio are hiring for Remote Penetration Testing jobs? Cities in Ohio with the most Remote Penetration Testing job openings:
Infographic showing various Remote Penetration Testing job openings in Ohio as of July 2026, with employment types broken down into 77% Full Time, 16% Part Time, and 7% Contract. Highlights an 100% Remote job distribution, with an average salary of $113,984 per year, or $54.8 per hour.
Application & Cloud Security Specialist

Application & Cloud Security Specialist

Keybank

Brooklyn, OH • Remote

$69K - $105K/yr

Full-time

Posted 7 days ago


KeyBank rating

8.4

Company rating: 8.4 out of 10

Based on 97 frontline employees who took The Breakroom Quiz

36th of 150 rated banks


Job description

Location:

4910 Tiedeman Road, Brooklyn Ohio

Our Cyber Application & Cloud Defense team operates within Key's broader Cyber Defense function in Corporate Information Security. Our mission is to enable secure software delivery and resilient cloud environments by proactively identifying, assessing, and reducing application and cloud security risks.

The Application & Cloud Security Specialist is responsible for performing application security assessments and cloud security reviews across modern development and cloud-native environments. This role combines hands-on manual penetration testing with the use of SAST, SCA, and DAST tools, as well as cloud security posture evaluation through CSPM capabilities.

You will work closely with development, DevOps, and cloud engineering teams to integrate security into CI/CD pipelines and improve secure coding practices. This role requires strong technical depth, development experience, and proficiency with command-line tools.

The ideal candidate is hands-on, execution-focused, and comfortable leveraging modern tooling-including AI-powered development and security assistants-to improve productivity, testing depth, and vulnerability detection.

Key Responsibilities
  • Perform manual application security testing and penetration testing of web applications, APIs, and services.
  • Review and validate findings from SAST, SCA, and DAST tools, including triage and false positive reduction.
  • Conduct API security and dynamic testing to identify vulnerabilities and misconfigurations.
  • Assess open-source dependencies and third-party libraries for vulnerabilities and supply chain risk.
  • Evaluate cloud environments (GCP, Azure, AWS) for misconfigurations, excessive permissions, and exposure risks in support of the CSPM program.
  • Implement and maintain CI/CD security integrations, including scanning tools and automation workflows.
  • Develop scripts and CLI-based tooling to support scalable security testing and validation activities.
  • Partner with development teams to remediate vulnerabilities and improve secure coding practices.
  • Participate in architecture and design reviews, providing actionable security recommendations.
  • Utilize AI tools and coding assistants to enhance productivity, automate analysis, and improve testing efficiency while maintaining secure and responsible usage practices.
  • Track and report vulnerabilities, remediation progress, and security metrics.
Required Qualifications
  • Bachelor of Computer Science, Cybersecurity, or related field-or equivalent experience.
  • 4+ years of experience in application security, penetration testing, or secure software development.
  • Hands-on experience with:
    • Manual application security testing (web/API)
    • SAST, SCA, DAST tools
    • Common vulnerabilities (OWASP Top 10, API risks)
  • Experience with at least one cloud platform (Google Cloud, Microsoft Azure, or AWS).
  • Strong programming/scripting experience (Python, Java, JavaScript, Bash, PowerShell, or similar).
  • Proficiency working in command-line environments (Linux/Unix).
  • Familiarity with CI/CD pipelines and DevSecOps practices.
  • Experience or comfort using AI-enabled tools and coding assistants (e.g., for code analysis, automation, or testing support).
Preferred Qualifications / Certifications
  • Experience with AppSec tools (e.g., Snyk, Burp Suite, API security tools).
  • Familiarity with containers, Kubernetes, and cloud-native architectures.
  • Exposure to IaC security practices.
  • Certifications such as:
    • GIAC Web Application Penetration Tester (GWAPT)
    • Offensive Security Web Expert (OSWE)
    • Cloud security certifications (AWS/Azure/GCP)

COMPENSATION AND BENEFITS

This position is eligible to earn a base salary in the range of $69,000.00 - $105,000.00 annually. Placement within the pay range may differ based upon various factors, including but not limited to skills, experience and geographic location. Compensation for this role also includes eligibility for incentive compensation which may include production, commission, and/or discretionary incentives.

Please click here for a list of benefits for which this position is eligible.

Key has implemented an approach to employee workspaces which prioritizes in-office presence, while providing flexible options in circumstances where roles can be performed effectively in a mobile environment.

Job Posting Expiration Date: 08/21/2026 KeyCorp is an Equal Opportunity Employer committed to sustaining an inclusive culture. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other characteristic protected by law.

Qualified individuals with disabilities or disabled veterans who are unable or limited in their ability to apply on this site may request reasonable accommodations by emailing HR_Compliance@keybank.com.

#LI-Remote

What KeyBank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


KeyBank logo

About KeyBank

Sourced by ZipRecruiter

Key is one of the nation's largest bank-based financial services companies. Key provides deposit, lending, cash management, insurance, and investment services to individuals and businesses in 15 states under the name KeyBank National Association through a network of more than 1,200 branches and more than 1,500 ATMs. Key also provides a broad range of sophisticated corporate and investment banking products, such as merger and acquisition advice, public and private debt and equity, syndications, and derivatives to middle market companies in selected industries throughout the United States under the KeyBanc Capital Markets trade name.

Industry

Banking and credit intermediation

Company size

10,000+ Employees

Headquarters location

Cleveland, OH, US

Year founded

1849