2

Remote Penetration Testing Jobs in Washington (NOW HIRING)

Penetration Tester

Herndon, VA · On-site +1

$86K - $198K/yr

Remote Work: No Job Number: R0236401 Location: Herndon,VA,US Share job via: Share Penetration Tester The Opportunity: Conduct testing and analysis to identify vulnerabilities and potential threat ...

Apply penetration testing, network analysis, and adversary emulation techniques to identify ... Flexible and remote work policies for most positions * Flexible PTO and holiday schedule For more ...

This is the emerging class of LLM-driven penetration-testing agents, built for production use by a ... Remote/WAH requirements: * WAH requirements: Must have the ability to provide a high speed DSL or ...

This is the emerging class of LLM-driven penetration-testing agents, built for production use by a ... Remote/WAH requirements: * WAH requirements: Must have the ability to provide a high speed DSL or ...

This is the emerging class of LLM-driven penetration-testing agents, built for production use by a ... Remote/WAH requirements: * WAH requirements: Must have the ability to provide a high speed DSL or ...

NLM Cloud Engineer I

Bethesda, MD · Remote

$59.50 - $79.50/hr

Familiarity with vulnerability scanning and penetration testing tools, including Tenable, Prowler ... Knowledge of FedRAMP requirements and secure remote access administration * Prior experience ...

NLM Cloud Engineer III

Bethesda, MD · Remote

$59.50 - $79.50/hr

Experience with vulnerability scanning and penetration testing tools such as Tenable, Prowler ... Deliver day-to-day cloud operations support, including secure remote access, administration of ...

AI Red Teamer

Washington, DC · On-site +1

$70K - $90K/yr

... penetration testing. Compensation & Benefits * Salary range: $70K-$90K depending on experience. * Opportunity for spot bonuses and annual performance-based bonus. * Fully remote (U.S.-based) with ...

next page

Showing results 1-20

Remote Penetration Testing information

What are the key skills and qualifications needed to thrive as a Remote Penetration Tester, and why are they important?

To thrive as a Remote Penetration Tester, you need a solid understanding of computer networks, cybersecurity principles, and common vulnerabilities, often supported by a degree in computer science or related certifications like OSCP or CEH. Familiarity with penetration testing tools such as Metasploit, Burp Suite, Nmap, and various operating systems is essential. Strong analytical thinking, attention to detail, and clear written communication skills help you effectively discover, document, and explain security findings to clients. These competencies are crucial for accurately identifying risks and helping organizations strengthen their security posture.

Is there a demand for penetration testing?

There is strong demand for penetration testers, including those in remote roles, as organizations prioritize cybersecurity and vulnerability assessments. Skilled professionals with knowledge of tools like Kali Linux, Metasploit, and certifications such as OSCP are especially sought after in the industry.

Will pentesters be replaced by AI?

Remote penetration testers perform manual and creative security assessments that AI currently cannot fully replicate. While AI tools can assist with vulnerability scanning and data analysis, human expertise is essential for identifying complex threats, interpreting results, and developing effective security strategies. The role of pentesters is expected to evolve with technology, but not be entirely replaced by AI.

What is the difference between Remote Penetration Testing vs Vulnerability Assessment Specialist?

AspectRemote Penetration TestingVulnerability Assessment Specialist
CertificationsOSCP, CEH, GPENOSCP, CEH, CISSP
Work EnvironmentHands-on testing, simulated attacksScanning, identifying vulnerabilities
Industry UsageCybersecurity firms, IT departmentsSecurity teams, consulting firms

Remote Penetration Testing involves actively exploiting vulnerabilities to assess security defenses, while Vulnerability Assessment Specialists focus on identifying and prioritizing security weaknesses without exploiting them. Both roles require similar certifications and often work in overlapping environments, but penetration testers perform more in-depth, simulated attack scenarios to evaluate security robustness.

What are some common challenges faced by remote penetration testers, and how can they be addressed?

Remote penetration testers often encounter challenges such as limited access to physical infrastructure, varying levels of client preparedness, and potential communication barriers with on-site teams. To address these issues, it's important to establish clear communication channels, use secure remote access tools, and maintain detailed documentation of testing activities. Building strong relationships with client IT staff and staying up-to-date with remote testing best practices can also help ensure effective and successful engagements.

How much do remote penetration testers make?

Remote penetration testers typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and the complexity of the projects. Senior professionals with advanced skills and certifications like OSCP or CISSP can earn higher salaries, especially when working for specialized firms or as freelancers.

Do penetration testers work remotely?

Many penetration testers work remotely, especially those in freelance or consulting roles, utilizing tools like VPNs, remote access software, and security testing platforms. Remote work allows flexibility, but some employers may require on-site presence for certain assessments or client interactions.

What is remote penetration testing?

Remote penetration testing is a security assessment process where cybersecurity professionals, also known as ethical hackers, attempt to find and exploit vulnerabilities in an organization’s systems, networks, or applications from an offsite location. This simulates a real-world cyberattack to help organizations identify and fix security weaknesses before malicious actors can exploit them. Remote penetration testing is often conducted over the internet, making it a flexible and efficient option for businesses to assess their security posture without requiring onsite visits.
What are the most commonly searched types of Penetration Testing jobs in Washington? The most popular types of Penetration Testing jobs in Washington are:
What are popular job titles related to Remote Penetration Testing jobs in Washington? For Remote Penetration Testing jobs in Washington, the most frequently searched job titles are:
What job categories do people searching Remote Penetration Testing jobs in Washington look for? The top searched job categories for Remote Penetration Testing jobs in Washington are:
What cities in Washington are hiring for Remote Penetration Testing jobs? Cities in Washington with the most Remote Penetration Testing job openings:
Infographic showing various Remote Penetration Testing job openings in Washington as of July 2026, with employment types broken down into 70% Full Time, 23% Part Time, and 7% Contract. Highlights an 100% Remote job distribution.

Lead Penetration Tester

Emerald Technical Solutions

Leesburg, VA • On-site, Remote

Full-time

Posted 6 days ago


Job description

Position Title: Lead Penetration Tester
Position Type: Full Time Employee
Location: Hybrid (Leesburg & Remote)
Clearance Requirement: Secret
Position Overview
The Senior Penetration Tester supports the FAA Office of Information Security & Privacy Service (AIS) Cybersecurity Operations program. This role is responsible for executing authorized penetration testing activities across FAA/DOT systems and networks, documenting processes and procedures, producing required reports and deliverables, and supporting Red/Blue Team and incident response exercises from an offensive perspective.
The position operates within a controlled federal environment requiring strict adherence to Rules of Engagement (RoE), written authorizations, evidence handling requirements, and coordination with system owners, SOC analysts, and government stakeholders.
Key Responsibilities
  • Conduct authorized penetration testing activities against FAA/DOT systems and networks in accordance with approved scope and Rules of Engagement.
  • Perform no-knowledge and/or limited-knowledge assessments under Government supervision.
  • Document, maintain, and update penetration testing processes and procedures.
  • Develop Penetration Testing Project Management Plans outlining targets, schedules, staffing assignments, and status.
  • Produce comprehensive Penetration Testing Reports of Findings including executive summaries, methodologies, vulnerabilities identified, risk impacts, and remediation recommendations.
  • Generate weekly status reports in accordance with government-required format and timelines.
  • Capture, retain, and manage logs and artifacts of all manual and automated testing activities for audit and forensic purposes.
  • Coordinate with system owners and SOC teams to validate findings and support remediation efforts.
  • Support Red/Blue Team exercises and incident response plan (IRP) exercises, including attack scenario development, execution, and post-exercise analysis.
  • Evaluate and support integration or operational use of penetration testing tools as authorized.
Required Qualifications
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience).
  • 5+ years of hands-on penetration testing experience in enterprise environments.
  • Demonstrated experience operating under formal Rules of Engagement and written authorization processes.
  • Experience producing detailed technical assessment reports and executive-level summaries.
  • Strong understanding of network, web application, and system security vulnerabilities and exploitation techniques.
  • Experience supporting federal or regulated environments with strict documentation and compliance requirements.
  • Strong written and verbal communication skills with the ability to brief technical and non-technical stakeholders.
Preferred Qualifications
  • Experience supporting federal cybersecurity programs (FAA, DOT, DoD, or similar).
  • Experience participating in Red/Blue Team exercises and incident response simulations.
  • Familiarity with NIST 800-115 and other federal security testing guidance.
  • Relevant certifications such as OSCP, GPEN, CEH, CISSP, or similar.
  • Experience assessing cloud or hybrid environments.
Benefits
  • Competitive compensation package and benefits.
  • Salary Range 150 - 160K.
  • Professional development and certification opportunities.
  • Collaborative and supportive team environment.