2

Remote Penetration Testing Jobs in Seattle, WA (NOW HIRING)

Offensive Security Engineer

Seattle, WA · Remote

$150K - $200K/yr

This role goes beyond conventional application security and penetration testing; you'll be ... Competitive base, meaningful equity, full benefits, and a remote-first culture.

... Remote Connection, Network Protection, Data Loss Prevention, File Integrity Monitoring, Security ... Encryption, Tokenization, Forensics/eDiscovery, Penetration Testing, Firewalls (OS, WAF), Proxies ...

Conduct application security assessments, code reviews, API testing, threat modeling, and penetration testing to identify vulnerabilities. Define, maintain, and enforce secure coding standards ...

WAF Adversarial Engineer

Seattle, WA · On-site +1

$56.34 - $70.42/hr

This role is hybrid/remote with Seattle preferred and open to remote candidates. Here's How You'll ... Proven web application penetration testing track record with WAF-specific scope; tool-running alone ...

Sales Engineer

Seattle, WA · Remote

$120K - $150K/yr

... penetration testing that continuously validates and remediates real attack paths in running ... remote-first culture.

Be Seen First

Seattle, WA(Remote) Duration: 6 Months Pay rate: $67/Hr on W2 Key Responsibilities: * Work with ... Experience with penetration testing * Knowledge of automated attack tools and developing mitigation ...

Sr. Business Analyst (Customer Success)

Redmond, WA · Remote

$103K - $133K/yr

Develop forecasting models for subscriber growth, revenue projections, and market penetration ... testing support and scenario planning * Identify data gaps and work with engineering teams to ...

Develop forecasting models for subscriber growth, revenue projections, and market penetration ... testing support and scenario planning * Identify data gaps and work with engineering teams to ...

Develop forecasting models for subscriber growth, revenue projections, and market penetration ... testing support and scenario planning * Identify data gaps and work with engineering teams to ...

Develop forecasting models for subscriber growth, revenue projections, and market penetration ... testing support and scenario planning * Identify data gaps and work with engineering teams to ...

Remote Penetration Testing information

See Seattle, WA salary details

$25.6K

$136.4K

$191.8K

How much do remote penetration testing jobs pay per year?

As of Jul 26, 2026, the average yearly pay for remote penetration testing in Seattle, WA is $136,444.00, according to ZipRecruiter salary data. Most workers in this role earn between $109,200.00 and $160,500.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Remote Penetration Tester, and why are they important?

To thrive as a Remote Penetration Tester, you need a solid understanding of computer networks, cybersecurity principles, and common vulnerabilities, often supported by a degree in computer science or related certifications like OSCP or CEH. Familiarity with penetration testing tools such as Metasploit, Burp Suite, Nmap, and various operating systems is essential. Strong analytical thinking, attention to detail, and clear written communication skills help you effectively discover, document, and explain security findings to clients. These competencies are crucial for accurately identifying risks and helping organizations strengthen their security posture.

Is there a demand for penetration testing?

There is strong demand for penetration testers, including those in remote roles, as organizations prioritize cybersecurity and vulnerability assessments. Skilled professionals with knowledge of tools like Kali Linux, Metasploit, and certifications such as OSCP are especially sought after in the industry.

Will pentesters be replaced by AI?

Remote penetration testers perform manual and creative security assessments that AI currently cannot fully replicate. While AI tools can assist with vulnerability scanning and data analysis, human expertise is essential for identifying complex threats, interpreting results, and developing effective security strategies. The role of pentesters is expected to evolve with technology, but not be entirely replaced by AI.

What is the difference between Remote Penetration Testing vs Vulnerability Assessment Specialist?

AspectRemote Penetration TestingVulnerability Assessment Specialist
CertificationsOSCP, CEH, GPENOSCP, CEH, CISSP
Work EnvironmentHands-on testing, simulated attacksScanning, identifying vulnerabilities
Industry UsageCybersecurity firms, IT departmentsSecurity teams, consulting firms

Remote Penetration Testing involves actively exploiting vulnerabilities to assess security defenses, while Vulnerability Assessment Specialists focus on identifying and prioritizing security weaknesses without exploiting them. Both roles require similar certifications and often work in overlapping environments, but penetration testers perform more in-depth, simulated attack scenarios to evaluate security robustness.

What are some common challenges faced by remote penetration testers, and how can they be addressed?

Remote penetration testers often encounter challenges such as limited access to physical infrastructure, varying levels of client preparedness, and potential communication barriers with on-site teams. To address these issues, it's important to establish clear communication channels, use secure remote access tools, and maintain detailed documentation of testing activities. Building strong relationships with client IT staff and staying up-to-date with remote testing best practices can also help ensure effective and successful engagements.

How much do remote penetration testers make?

Remote penetration testers typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and the complexity of the projects. Senior professionals with advanced skills and certifications like OSCP or CISSP can earn higher salaries, especially when working for specialized firms or as freelancers.

Do penetration testers work remotely?

Many penetration testers work remotely, especially those in freelance or consulting roles, utilizing tools like VPNs, remote access software, and security testing platforms. Remote work allows flexibility, but some employers may require on-site presence for certain assessments or client interactions.

What is remote penetration testing?

Remote penetration testing is a security assessment process where cybersecurity professionals, also known as ethical hackers, attempt to find and exploit vulnerabilities in an organization’s systems, networks, or applications from an offsite location. This simulates a real-world cyberattack to help organizations identify and fix security weaknesses before malicious actors can exploit them. Remote penetration testing is often conducted over the internet, making it a flexible and efficient option for businesses to assess their security posture without requiring onsite visits.
What are the most commonly searched types of Penetration Testing jobs in Seattle, WA? The most popular types of Penetration Testing jobs in Seattle, WA are:
What are popular job titles related to Remote Penetration Testing jobs in Seattle, WA? For Remote Penetration Testing jobs in Seattle, WA, the most frequently searched job titles are:
What job categories do people searching Remote Penetration Testing jobs in Seattle, WA look for? The top searched job categories for Remote Penetration Testing jobs in Seattle, WA are:
Infographic showing various Remote Penetration Testing job openings in Seattle, WA as of July 2026, with employment types broken down into 72% Full Time, 20% Part Time, and 8% Contract. Highlights an 100% Remote job distribution, with an average salary of $136,444 per year, or $65.6 per hour.

Offensive Security Engineer

Staris AI

Seattle, WA • Remote

$150K - $200K/yr

Full-time

Posted 20 days ago


Job description

Description
At Staris AI we believe human-based cyber defense is dead and the dream of security automation is finally within reach. Staris AI is a Series A ventured-backed firm that is reinventing application security with its innovative AI-powered penetration testing that continuously validates and remediates real attack paths in running applications. The Staris Total Context Security platform proves exploitable vulnerabilities in hours, not weeks, with zero false positives and 40:1 efficiency gains over traditional methods.
We're on a mission to transform the indefensible into the impenetrable, advancing applications into a new era of security.
As an Offensive Security Engineer at Staris AI, you'll be at the vanguard of the application security profession. This role goes beyond conventional application security and penetration testing; you'll be instrumental in advancing the field of automated software attack and simulation with your expertise in threat simulation and attack automation.

What You'll Do
  • Own the execution and quality of autonomous security assessments, ensuring results are accurate, validated, and actionable for customers.
  • Drive the continuous improvement of AI-driven attack simulations and automated exploitation workflows to expand coverage, reliability, and assessment depth.
  • Apply offensive security expertise to identify realistic attack paths, validate findings, and reduce false positives across modern application and cloud environments.
  • Partner with engineering and research teams to operationalize new attack techniques and strengthen the platform’s autonomous testing capabilities.
  • Use insights from diverse target environments and customer feedback to improve assessment logic, remediation quality, and overall platform effectiveness.

What You Bring
  • Minimum of 5 years of experience in application security assessment, source code auditing, bug hunting or similar areas
  • Knowledge of offensive application security fundamentals
  • Knowledge of relevant open-source technologies for attack automation (e.g. Tools, Libraries, Frameworks, etc.)
  • Experience working with relevant software assessment technologies (e.g. SAST, DAST, Fuzzing, etc.).
  • Prior emphasis on distributed systems and micro-service architectures
  • Familiarity with prompt engineering, generative AI models, and their APIs
  • Bachelor's degree in a related field (e.g. Computer Science, Information Technology, Cybersecurity, etc.) 
  • Strong English language communication skills

Why Staris
  • Backed by a founding team with deep pedigree, including alumni of Amazon, Accenture, and Palo Alto Networks, who have solved this problem operationally before.
  • A genuine category-defining product. Most AppSec tools create noise while Staris eliminates it with AI-driven proof of exploitability and automated, code-level remediation.
  • Supporting a massive, underserved market. Enterprises invest heavily in AppSec but deeply test only a fraction of their software portfolio.
  • Competitive base, meaningful equity, full benefits, and a remote-first culture.