Oversee the deployment, tuning, and management of application security testing tools, including ... Maintain strong communication channels with remote team members, ensuring alignment and fostering a ...
Oversee the deployment, tuning, and management of application security testing tools, including ... Maintain strong communication channels with remote team members, ensuring alignment and fostering a ...
... remote access, single sign on, firewalls, vulnerability assessments, and penetration testing. Experience with security metrics, development of incident response procedures, and risk management.
... remote access, single sign on, firewalls, vulnerability assessments, and penetration testing. Experience with security metrics, development of incident response procedures, and risk management.
Senior Application Security Engineer - DevSecOps & AI Security
Atlanta, GA · On-site +1
$89/hr
Position will be hybrid (4 days in office and 1 day remote (remote day can be flexible). 10+ years ... Deep understanding of application security testing approaches (SAST for code analysis, DAST for ...
Quick apply
Senior Application Security Engineer - DevSecOps & AI Security
Atlanta, GA · On-site +1
$89/hr
Position will be hybrid (4 days in office and 1 day remote (remote day can be flexible). 10+ years ... Deep understanding of application security testing approaches (SAST for code analysis, DAST for ...
Product Security Leader (REMOTE)
Downers Grove, IL · On-site +1
Champion the Secure SDLC, including security requirements, threat modeling, security testing ... Remote Pay Range: $150,000.00 - $175,000.00 annually This position is eligible to earn a ...
Product Security Leader (REMOTE)
Downers Grove, IL · On-site +1
Champion the Secure SDLC, including security requirements, threat modeling, security testing ... Remote Pay Range: $150,000.00 - $175,000.00 annually This position is eligible to earn a ...
IAM Developer SailPoint - Secret Clearance Required - Remote
OR · Remote
$95K - $105K/yr
Security and Compliance: Ensure the IAM solutions adhere to security best practices and comply with ... Strong Analytical and Testing Skills: A methodical approach to testing, with experience executing ...
Quick apply
IAM Developer SailPoint - Secret Clearance Required - Remote
OR · Remote
$95K - $105K/yr
Security and Compliance: Ensure the IAM solutions adhere to security best practices and comply with ... Strong Analytical and Testing Skills: A methodical approach to testing, with experience executing ...
Support security testing, hardening, and assessments to meet strict compliance and operational security requirements Quality Assurance Software Tester requirements are: * 5+ years of software testing ...
Quick apply
Support security testing, hardening, and assessments to meet strict compliance and operational security requirements Quality Assurance Software Tester requirements are: * 5+ years of software testing ...
Application Security Engineer - Mid-Atlantic region (Remote in VA, MD, PA, NC, DE, NJ, or DC)
Reston, VA · Remote
$61 - $81.75/hr
Proficiency with the implementation, operationalization, and troubleshooting of other Static Application Security Testing (SAST) tools such as Semgrep, CodeQL, Veracode, etc. * Experience writing or ...
Application Security Engineer - Mid-Atlantic region (Remote in VA, MD, PA, NC, DE, NJ, or DC)
Reston, VA · Remote
$61 - $81.75/hr
Proficiency with the implementation, operationalization, and troubleshooting of other Static Application Security Testing (SAST) tools such as Semgrep, CodeQL, Veracode, etc. * Experience writing or ...
Security Engineer
King Of Prussia, PA · Remote
Cybersecurity Engineer (Partially Remote) We are in search of our next (two)great hires, as a ... Experience in Penetration Testing or other security related testing such as, software composition ...
Quick apply
Security Engineer
King Of Prussia, PA · Remote
Cybersecurity Engineer (Partially Remote) We are in search of our next (two)great hires, as a ... Experience in Penetration Testing or other security related testing such as, software composition ...
Application Security Engineer
Salt Lake City, UT · On-site +1
$56.75 - $76/hr
Perform regular security testing, such as SAST, DAST, and penetration testing, to validate the ... Periodic remote work; comfortable with a hybrid office setting. * Ability to travel up to 15 ...
Application Security Engineer
Salt Lake City, UT · On-site +1
$56.75 - $76/hr
Perform regular security testing, such as SAST, DAST, and penetration testing, to validate the ... Periodic remote work; comfortable with a hybrid office setting. * Ability to travel up to 15 ...
Security Engineer
$228K/yr
Have extensive experience in security testing in various environments, including assessing the ... The work style of each role, Hybrid, Remote, or In-Person is indicated in the /posting. Benefits As ...
Security Engineer
$228K/yr
Have extensive experience in security testing in various environments, including assessing the ... The work style of each role, Hybrid, Remote, or In-Person is indicated in the /posting. Benefits As ...
Sr Application Security Engineer-Remote
Providence, RI · On-site +1
$59.25 - $79.25/hr
Conduct security-focused code reviews, static application security testing (SAST), dynamic ... Remote Role: * This position is classified as remote where the associate will perform remote work ...
Sr Application Security Engineer-Remote
Providence, RI · On-site +1
$59.25 - $79.25/hr
Conduct security-focused code reviews, static application security testing (SAST), dynamic ... Remote Role: * This position is classified as remote where the associate will perform remote work ...
Remote Software QA
Columbus, OH · Remote
Mostly remote, Occasional Travel is required to attend meetings. Shift: EST * Minimum of a bachelor ... Security Testing * Experience in Mobile Emulator Testing * Soft Skills: Has the ability to work ...
Quick apply
Remote Software QA
Columbus, OH · Remote
Mostly remote, Occasional Travel is required to attend meetings. Shift: EST * Minimum of a bachelor ... Security Testing * Experience in Mobile Emulator Testing * Soft Skills: Has the ability to work ...
Performance Tester - Remote
Kansas City, MO · Remote
$65 - $75/hr
Genesis10 is currently seeking a Performance Tester - Remote position with a Major Financial ... Work with security teams and test engineers to integrate security requirements into the overall ...
Performance Tester - Remote
Kansas City, MO · Remote
$65 - $75/hr
Genesis10 is currently seeking a Performance Tester - Remote position with a Major Financial ... Work with security teams and test engineers to integrate security requirements into the overall ...
Cyber Command Software Security Assurance Project Manager
New York, NY · Remote
$113K - $153K/yr
Remote Location: Remote Duration: 12+ months (35 hrs/week) Seek a Software Security Assurance ... Familiarity with tools used in code analysis, vulnerability scanning, and security testing
Quick apply
Cyber Command Software Security Assurance Project Manager
New York, NY · Remote
$113K - $153K/yr
Remote Location: Remote Duration: 12+ months (35 hrs/week) Seek a Software Security Assurance ... Familiarity with tools used in code analysis, vulnerability scanning, and security testing
Software Security Engineer
Southlake, TX · Remote
$70 - $75/hr
Southlake, TX (On-site with 1 day remote). Alternative options: Omaha, NE, or Orlando, FL Duration ... Promote a culture of security by educating and mentoring developers and testers on secure coding ...
Software Security Engineer
Southlake, TX · Remote
$70 - $75/hr
Southlake, TX (On-site with 1 day remote). Alternative options: Omaha, NE, or Orlando, FL Duration ... Promote a culture of security by educating and mentoring developers and testers on secure coding ...
Senior Security Engineer
$117K - $160K/yr
... testing, including threat research and analysis, penetration testing, code audits, security ... This is an all-remote team and we are looking for someone located in the U.S. We do not offer visa ...
Senior Security Engineer
$117K - $160K/yr
... testing, including threat research and analysis, penetration testing, code audits, security ... This is an all-remote team and we are looking for someone located in the U.S. We do not offer visa ...
Senior Security Engineer
Santa Barbara, CA · Remote
$127K - $174K/yr
... testing, including threat research and analysis, penetration testing, code audits, security ... This is an all-remote team and we are looking for someone located in the U.S. We do not offer visa ...
Quick apply
Senior Security Engineer
Santa Barbara, CA · Remote
$127K - $174K/yr
... testing, including threat research and analysis, penetration testing, code audits, security ... This is an all-remote team and we are looking for someone located in the U.S. We do not offer visa ...
Staff Application Security Engineer
Fremont, CA · On-site +1
$161K - $251K/yr
Application Security Testing: Perform offensive penetration testing and defensive (Blue Team ... This is a fully remote role with the option to work hybrid if a commutable distance from our Salem ...
Quick apply
Staff Application Security Engineer
Fremont, CA · On-site +1
$161K - $251K/yr
Application Security Testing: Perform offensive penetration testing and defensive (Blue Team ... This is a fully remote role with the option to work hybrid if a commutable distance from our Salem ...
Penetration Tester, Lead with Security Clearance
Annapolis Junction, MD · On-site +1
$180K - $210K/yr
... penetration testing strategies, guide remediation, and influence enterprise‑level security ... Flexible work schedules and remote work options. Wellness Programs: Employee assistance programs ...
Penetration Tester, Lead with Security Clearance
Annapolis Junction, MD · On-site +1
$180K - $210K/yr
... penetration testing strategies, guide remediation, and influence enterprise‑level security ... Flexible work schedules and remote work options. Wellness Programs: Employee assistance programs ...
Integrate security practices into CI/CD pipelines, including static analysis, dynamic testing ... Fully remote-first work environment with the flexibility to work from anywhere within eligible ...
Integrate security practices into CI/CD pipelines, including static analysis, dynamic testing ... Fully remote-first work environment with the flexibility to work from anywhere within eligible ...
Remote Security Tester information
See salary details
$17.31 - $23.34
8% of jobs
$23.34 - $29.37
7% of jobs
$29.37 - $35.40
8% of jobs
$35.40 - $41.43
0% of jobs
$41.89 is the 25th percentile. Wages below this are outliers.
$41.43 - $47.47
11% of jobs
The median wage is $51.44 / hr.
$47.47 - $53.50
23% of jobs
$58.65 is the 75th percentile. Wages above this are outliers.
$53.50 - $59.53
20% of jobs
$59.53 - $65.56
5% of jobs
$65.56 - $71.59
12% of jobs
$71.59 - $77.62
2% of jobs
$77.62 - $83.65
3% of jobs
$17
$51
$83
How much do remote security tester jobs pay per hour?
What is the difference between Remote Security Tester vs Penetration Tester?
| Aspect | Remote Security Tester | Penetration Tester |
|---|---|---|
| Certifications | CompTIA Security+, CEH, OSCP | CEH, OSCP, GPEN |
| Work Environment | Remote or on-site, corporate or consulting firms | Primarily on-site or remote, specialized security firms |
| Industry Usage | Used across various industries for security assessments | Focused on identifying vulnerabilities through simulated attacks |
Remote Security Testers and Penetration Testers share similar certifications and often work in similar environments. However, Penetration Testers typically perform more in-depth, simulated cyberattacks to identify vulnerabilities, while Remote Security Testers may focus on broader security assessments and compliance checks. Both roles are essential in cybersecurity, with overlapping skills but different primary focuses.

Other
Posted 6 days ago
Job description
Who we are looking for:
The Director of Product Security is a critical leadership role responsible for the overall security posture of ACV’s software applications and platforms. Reporting directly to the CISO, this individual will own and mature the entire Product and Application Security program, integrating security practices throughout the Secure Software Development Lifecycle (SSDLC). This position requires a self-motivated and highly organized leader with excellent communication and technical skills. The Director will ensure the confidentiality, integrity, and availability of ACV’s product-related data and systems by mitigating code-based risks within a fast-paced, technology-driven environment. You will build and lead a high-performing team, driving continuous improvement and ensuring ACV remains a secure and trusted platform for dealers and buyers nationwide.
What you will do:
- Design, implement, and manage the end-to-end Product Security program, focusing on securing ACV's proprietary applications and code base.
- Lead the adoption of DevSecOps practices, automating security tools and gates within the Continuous Integration/Continuous Deployment (CI/CD) pipelines to prevent security defects from reaching production.
- Establish and enforce Secure Software Development Lifecycle (SSDLC) requirements, including security training for engineering teams and defining secure coding standards.
- Build, mentor, and manage a team of Product Security Engineers responsible for application vulnerability management, security testing, and architectural review.
- Understand and protect against the risks that AI brings without becoming the team that puts the No in Innovation. Proactively identify and establish security guardrails for AM/ML model development and usage to ensure safe innovation and high engineering velocity.
- Oversee the deployment, tuning, and management of application security testing tools, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA) to identify and remediate code-based vulnerabilities.
- Lead vulnerability remediation efforts for all ACV products, working closely with engineering and product teams to prioritize and track fixes based on risk.
- Perform and oversee deep-dive security architecture and design reviews for all new products, features, and core application services, ensuring security is "baked in" from conception.
- Define and manage secure configuration standards for containerized applications, microservices, APIs, and their supporting cloud infrastructure (AWS and GCP).
- Manage and coordinate external penetration testing and bug bounty programs focused on ACV’s applications and APIs.
- Design, maintain, and measure processes to prevent vulnerabilities from reaching production in a true Shift Left fashion.
- Work with Technical Program Management to create appropriate key performance indicators to show success and improvement points in the program.
- Contribute to ACV’s overall Governance, Risk, and Compliance (GRC) program by ensuring applications meet required internal security policies and external regulatory standards (e.g., SOC2, GDPR, CCPA).
- Lead security risk assessments, threat modeling, and tabletop exercises specific to product features and application architecture, identifying and prioritizing technical vulnerabilities and developing mitigation strategies.
- Ensure protection of sensitive data, including PII and financial information, within the application environment in compliance with relevant regulations. Validate that products conform to ACV’s data classification policies and other relevant documents and oversee processes to measure and enforce this before deployment.
- Serve as the primary security advisor to Product and Engineering leadership and stakeholders on all matters related to application and product security.
- Collaborate effectively with IT, Engineering, and Product teams to integrate security into their processes, fostering a strong security-conscious culture across development teams.
- Maintain strong communication channels with remote team members, ensuring alignment and fostering a cohesive team environment.
- Create a culture of communication, where collaboration and a sense of partnership with the remainder of the organization is evident and valued.
- Create and maintain executive dashboards to increase security visibility throughout the organization and identify opportunities for improvement.
- Perform additional duties as assigned.
What you will need:
- 10+ years experience in Information Security, with at least 5+ years directly focused on Product Security or Application Security in a leadership role.
- Proven experience building and leading a centralized Product Security/AppSec program within a technology-driven, cloud-based SaaS company.
- Deep, hands-on knowledge of the Secure Software Development Lifecycle (SSDLC), CI/CD, and DevSecOps principles, including automating security tooling.
- Strong understanding of security frameworks and best practices (NIST CSF, ISO 27001, CIS Controls).
- Extensive experience with cloud security, with a strong focus on securing applications deployed in AWS and/or GCP environments. Experience with Fintech companies is desirable.
- Experience with modern software development including Agentic and Generative AI techniques.
- Expertise with multiple application security tools, including SAST, DAST, MAST, SCA, API security platforms, and Web Application Firewalls (WAF).
- Excellent communication, interpersonal, and leadership skills, with an ability to translate complex technical risks into business context for executive leadership and stakeholders.
- Ability to work effectively in a remote environment and manage geographically dispersed teams.
#LI-AM3
About ACV
Sourced by ZipRecruiter