2

Remote Web App Penetration Testing Jobs (NOW HIRING)

Remote / Hybrid / Travel as Required Security Requirement: Must be eligible to obtain and maintain ... Web application assessments * Social engineering assessments * Container security testing

Execute web application, API and mobile penetration tests with a focus on manual testing beyond ... Flexible work hours with hybrid remote options * Opportunity to work with international ...

Summary: The Senior Penetration Tester will independently perform penetration testing of ... testing standards and projects, including OWASP * Knowledge of databases, applications, and Web ...

Summary: The Senior Penetration Tester will independently perform penetration testing of ... testing standards and projects, including OWASP * Knowledge of databases, applications, and Web ...

Summary: The Senior Penetration Tester will independently perform penetration testing of ... testing standards and projects, including OWASP * Knowledge of databases, applications, and Web ...

next page

Showing results 1-20

Remote Web App Penetration Testing information

See salary details

$11

$59

$86

How much do remote web app penetration testing jobs pay per hour?

As of Jul 21, 2026, the average hourly pay for remote web app penetration testing in the United States is $59.01, according to ZipRecruiter salary data. Most workers in this role earn between $51.20 and $66.83 per hour, depending on experience, location, and employer.

What is the difference between Remote Web App Penetration Testing vs Remote Network Security Analyst?

AspectRemote Web App Penetration TestingRemote Network Security Analyst
CertificationsOSCP, CEH, GPENCompTIA Security+, CISSP, GIAC
Work EnvironmentSecurity consulting firms, tech companies, freelanceCorporate IT teams, government agencies
Primary FocusIdentifying vulnerabilities in web applicationsMonitoring and securing network infrastructure
Tools & TechniquesBurp Suite, OWASP ZAP, SQLmapSIEM, IDS/IPS, network scanners

Remote Web App Penetration Testing focuses on assessing web application security by identifying vulnerabilities, while Remote Network Security Analysts monitor and protect entire network infrastructures. Both roles require cybersecurity certifications and involve security tools, but they target different aspects of an organization's security landscape.

More about Remote Web App Penetration Testing jobs
What cities are hiring for Remote Web App Penetration Testing jobs? Cities with the most Remote Web App Penetration Testing job openings:
What are the most commonly searched types of Web App Penetration Testing jobs? The most popular types of Web App Penetration Testing jobs are:
What states have the most Remote Web App Penetration Testing jobs? States with the most job openings for Remote Web App Penetration Testing jobs include:
Infographic showing various Remote Web App Penetration Testing job openings in the United States as of July 2026, with employment types broken down into 42% Full Time, 29% Part Time, and 29% Contract. Highlights an 100% Remote job distribution, with an average salary of $122,736 per year, or $59 per hour.
Penetration Testing - SME

Penetration Testing - SME

Endyna

Mclean, VA • Remote

Contractor

Posted 20 days ago


Job description

Location: Remote / Hybrid / Travel as Required

Security Requirement:
Must be eligible to obtain and maintain an HHS Tier 4 High Risk Public Trust.

Position Summary

EnDyna is seeking a highly experienced Penetration Testing Subject Matter Expert (SME) to provide technical leadership supporting the HHS Office of Inspector General Cyber Assessment Team.

The SME will lead complex penetration testing engagements, provide technical consulting to Federal auditors, develop testing methodologies, mentor penetration testers, deliver cybersecurity training, and serve as a trusted advisor to Government leadership.

Primary Responsibilities

Technical Leadership

  • Lead penetration testing engagements
  • Develop attack strategies
  • Review Rules of Engagement
  • Provide technical oversight
  • Review testing methodologies
  • Ensure technical quality
  • Mentor penetration testers
  • Validate technical findings

Advanced Penetration Testing

Lead and perform:

  • Red Team operations
  • Advanced exploitation
  • Cloud security testing
  • AI security testing
  • Active Directory attacks
  • Wireless testing
  • Mobile security
  • Web application assessments
  • Social engineering assessments
  • Container security testing
  • Internal network assessments
  • External network assessments

Technical Consulting

Serve as cybersecurity advisor to OIG auditors by:

  • Providing technical guidance
  • Supporting complex audits
  • Evaluating security architectures
  • Reviewing vulnerability data
  • Advising on remediation strategies
  • Supporting Cyber Range activities

Reporting

Lead development of:

  • Executive briefings
  • OARS findings
  • Penetration test reports
  • Conclusions memoranda
  • Attack confirmation lists
  • Risk analyses
  • Technical recommendations

Training

Develop and deliver:

  • 4-5 day penetration testing courses
  • Hands-on laboratories
  • Live exploit demonstrations
  • Capstone exercises
  • Instructor coaching
  • Training materials
  • Student guides
  • Presentation slides

Technical Expertise

Demonstrated expertise in:

  • Offensive Security
  • Threat emulation
  • Adversary tactics
  • Cloud security
  • Active Directory
  • Application security
  • Network security
  • Secure development
  • Risk management
  • Federal cybersecurity

Minimum Qualifications

  • Bachelor's degree
  • Master's preferred
  • 10+ years of penetration testing experience
  • 5+ years leading technical teams
  • Experience supporting Federal agencies
  • Extensive report writing experience
  • Strong presentation skills

Highly Desired Certifications

One or more advanced certifications:

  • OSCE3
  • OSEP
  • OSEE
  • GXPN
  • GPEN
  • CISSP
  • GREM
  • CRTO
  • CARTP
  • CARTC

Preferred Experience

Experience with:

  • HHS
  • OIG
  • DHS
  • Federal Inspector General organizations
  • NIST SP 800-115
  • Federal auditing
  • Cyber Range environments
  • Offensive security consulting