2

Remote Penetration Testing Jobs in Raleigh, NC (NOW HIRING)

Application Security Engineer (REMOTE)

Raleigh, NC · Remote

$117K - $146K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Conduct application security assessments, code reviews, API testing, threat modeling, and penetration testing to identify vulnerabilities. Define, maintain, and enforce secure coding standards ...

Remote Penetration Testing information

See Raleigh, NC salary details

$21.9K

$116.5K

$163.8K

How much do remote penetration testing jobs pay per year?

As of Aug 17, 2026, the average yearly pay for remote penetration testing in Raleigh, NC is $116,547.00, according to ZipRecruiter salary data. Most workers in this role earn between $93,300.00 and $137,100.00 per year, depending on experience, location, and employer.

What is remote penetration testing?

Remote penetration testing is a security assessment process where cybersecurity professionals, also known as ethical hackers, attempt to find and exploit vulnerabilities in an organization’s systems, networks, or applications from an offsite location. This simulates a real-world cyberattack to help organizations identify and fix security weaknesses before malicious actors can exploit them. Remote penetration testing is often conducted over the internet, making it a flexible and efficient option for businesses to assess their security posture without requiring onsite visits.

What are the key skills and qualifications needed to thrive as a remote penetration tester?

To thrive as a Remote Penetration Tester, you need a solid understanding of computer networks, cybersecurity principles, and common vulnerabilities, often supported by a degree in computer science or related certifications like OSCP or CEH. Familiarity with penetration testing tools such as Metasploit, Burp Suite, Nmap, and various operating systems is essential. Strong analytical thinking, attention to detail, and clear written communication skills help you effectively discover, document, and explain security findings to clients. These competencies are crucial for accurately identifying risks and helping organizations strengthen their security posture.

What are some common challenges faced by remote penetration testers, and how can they be addressed?

Remote penetration testers often encounter challenges such as limited access to physical infrastructure, varying levels of client preparedness, and potential communication barriers with on-site teams. To address these issues, it's important to establish clear communication channels, use secure remote access tools, and maintain detailed documentation of testing activities. Building strong relationships with client IT staff and staying up-to-date with remote testing best practices can also help ensure effective and successful engagements.

What is the difference between Remote Penetration Testing vs Vulnerability Assessment Specialist?

AspectRemote Penetration TestingVulnerability Assessment Specialist
CertificationsOSCP, CEH, GPENOSCP, CEH, CISSP
Work EnvironmentHands-on testing, simulated attacksScanning, identifying vulnerabilities
Industry UsageCybersecurity firms, IT departmentsSecurity teams, consulting firms

Remote Penetration Testing involves actively exploiting vulnerabilities to assess security defenses, while Vulnerability Assessment Specialists focus on identifying and prioritizing security weaknesses without exploiting them. Both roles require similar certifications and often work in overlapping environments, but penetration testers perform more in-depth, simulated attack scenarios to evaluate security robustness.

Can remote penetration testers work remotely?

Yes, remote penetration testers can work remotely, as the role primarily involves using specialized tools and techniques to assess cybersecurity defenses from any location. Many companies hire remote testers to perform assessments, provided they have the necessary skills, secure access, and appropriate certifications such as OSCP or CEH. Effective communication and familiarity with remote collaboration tools are also important for success in remote roles.

Is there a demand for remote penetration testing?

Remote penetration testing is in high demand as organizations seek cybersecurity professionals to identify vulnerabilities remotely. Skills in network security, ethical hacking, and familiarity with tools like Kali Linux and Metasploit are essential, and many companies prefer candidates with industry certifications such as OSCP or CEH.

What are the most commonly searched types of Penetration Testing jobs in Raleigh, NC?

The most popular types of Penetration Testing jobs in Raleigh, NC are:

What are popular job titles related to Remote Penetration Testing jobs in Raleigh, NC?

For Remote Penetration Testing jobs in Raleigh, NC, the most frequently searched job titles are:

What job categories do people searching Remote Penetration Testing jobs in Raleigh, NC look for?

The top searched job categories for Remote Penetration Testing jobs in Raleigh, NC are:

Infographic showing various Remote Penetration Testing job openings in Raleigh, NC as of August 2026, with employment types broken down into 76% Full Time, and 24% Part Time. Highlights an 100% Remote job distribution, with an average salary of $116,547 per year, or $56 per hour.

Application Penetration Testing Specialist (Remote)

First Citizens Bank

Raleigh, NC • On-site, Remote

$114K - $150K/yr

Full-time

Re-posted 29 days ago


First Citizens Bank rating

7.4

Company rating: 7.4 out of 10

Based on 106 frontline employees who took The Breakroom Quiz

106th of 171 rated banks


Job description

Overview

This position ensures the technological and digital security of the Bank. The tester will identify exposure to cyber threats, security risks, and unauthorized access and assist with mitigation guidance. The tester will assess organizational networks, applications, or systems for potential vulnerabilities. The tester will maintain knowledge of industry practices, technology, and evolving threats to enhance defenses for the Bank's information systems and resources.

The Pentester must be able to plan, coordinate, communicate, track, and conduct penetration testing assessments on the organization’s applications, aid in the coordination of additional testing through third-party vendors, and may lead other associates in the work group acting as lead tester. The selected candidate is welcome to work remotely and/or from a corporate office location.

Remote eligible.


Responsibilities
  • Plan and conduct application penetration tests of complex computer systems from a remote testing location
  • Coordinate third-party vendor testing
  • Analyze and document test results in the format and level of detail dictated by current procedures
  • Can convey highly technical information in a manner that can be understood and appreciated by Application Owners and other stakeholders
  • Track vulnerabilities and metrics
  • Coordinate multiple projects/assignments simultaneously and accurately, and deliver results in a timely manner
  • Stay current on new tools, TTPs, vulnerabilities, and emerging threats
  • Aid in defining and documenting Pentest Processes

#LI-IK1 


Qualifications

Bachelor's Degree and 4 years of experience in Systems Engineering, Network, or Information Security OR High School Diploma or GED and 8 years of experience in Systems Engineering, Network, or Information Security

Preferred Qualifications:

  • Bachelor's Degree and 4 or more years of experience in systems engineering, network security, or information security OR High School Diploma or GED and 6 years of experience in application penetration testing, systems engineering, network security, or information security
  • Expertise in application penetration testing techniques with and without scanners
  • Demonstrated expertise in:
    • Testing web applications and databases
    • System development life cycle
    • Network administration
    • Cloud penetration testing
    • Linux and Windows
    • Kali Linux tools, Burp Suite, and other pentest tools
    • Experience with pentesting frameworks such as OWASP and PTES
    • Jira and Confluence
    • Analysis and development of professional reports
    • Knowledge of the Secure System Development Lifecycle
  • Demonstrated ability to effectively balance and manage multiple priorities
  • Proficiency in Microsoft Word, Excel, PowerPoint and Outlook
  • Preferred but not required: OSWE, GPEN, GWAPT, or other equal certifications

This job posting is expected to remain active for 30 days from the initial posting date listed above. If it is necessary to extend this deadline, the posting will remain active as appropriate. Job postings may come down early due to business need or a high volume of applicants.

The base pay for this position is generally between $114,000 and $150,000. Actual starting base pay will be determined based on skills, experience, location, and other non-discriminatory factors permitted by law. For some roles, total compensation may also include variable incentives, bonuses, benefits, and/or other awards as outlined in the offer of employment.

Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully designed and quality benefits program to meet the needs of our associates. More information can be found at https://jobs.firstcitizens.com/benefits.

Qualifications:

Bachelor's Degree and 4 years of experience in Systems Engineering, Network, or Information Security OR High School Diploma or GED and 8 years of experience in Systems Engineering, Network, or Information Security

Preferred Qualifications:

  • Bachelor's Degree and 4 or more years of experience in systems engineering, network security, or information security OR High School Diploma or GED and 6 years of experience in application penetration testing, systems engineering, network security, or information security
  • Expertise in application penetration testing techniques with and without scanners
  • Demonstrated expertise in:
    • Testing web applications and databases
    • System development life cycle
    • Network administration
    • Cloud penetration testing
    • Linux and Windows
    • Kali Linux tools, Burp Suite, and other pentest tools
    • Experience with pentesting frameworks such as OWASP and PTES
    • Jira and Confluence
    • Analysis and development of professional reports
    • Knowledge of the Secure System Development Lifecycle
  • Demonstrated ability to effectively balance and manage multiple priorities
  • Proficiency in Microsoft Word, Excel, PowerPoint and Outlook
  • Preferred but not required: OSWE, GPEN, GWAPT, or other equal certifications

This job posting is expected to remain active for 30 days from the initial posting date listed above. If it is necessary to extend this deadline, the posting will remain active as appropriate. Job postings may come down early due to business need or a high volume of applicants.

The base pay for this position is generally between $114,000 and $150,000. Actual starting base pay will be determined based on skills, experience, location, and other non-discriminatory factors permitted by law. For some roles, total compensation may also include variable incentives, bonuses, benefits, and/or other awards as outlined in the offer of employment.

Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully designed and quality benefits program to meet the needs of our associates. More information can be found at https://jobs.firstcitizens.com/benefits.

Education:UNAVAILABLEEmployment Type: FULL_TIME

What First Citizens Bank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom