2

Remote Web App Penetration Testing Jobs (NOW HIRING)

Maryland, Northern Virginia, or Remote Clearance Requirements: Must be able to obtain a Secret ... Conduct penetration testing of web applications, APIs, mobile applications, databases, and client ...

Understanding of Pen Test methods such as Open Source Security Testing Methodology Manual (OSSTMM), Open Web Application Security Project (OWASP), Penetration Testing Execution Standard (PTES ...

Remote Duration: 6-12 months Job Summary: Role Purpose * The Junior Penetration Tester is an ... Web application and API testing * Entry-level cloud security testing (AWS, Azure, GCP) * Perform ...

Execute web application, API and mobile penetration tests with a focus on manual testing beyond ... Flexible work hours with hybrid remote options * Opportunity to work with international ...

Summary: The Senior Penetration Tester will independently perform penetration testing of ... testing standards and projects, including OWASP * Knowledge of databases, applications, and Web ...

next page

Showing results 1-20

Remote Web App Penetration Testing information

See salary details

$11

$59

$86

How much do remote web app penetration testing jobs pay per hour?

As of Jun 28, 2026, the average hourly pay for remote web app penetration testing in the United States is $59.01, according to ZipRecruiter salary data. Most workers in this role earn between $51.20 and $66.83 per hour, depending on experience, location, and employer.

What is the difference between Remote Web App Penetration Testing vs Remote Network Security Analyst?

AspectRemote Web App Penetration TestingRemote Network Security Analyst
CertificationsOSCP, CEH, GPENCompTIA Security+, CISSP, GIAC
Work EnvironmentSecurity consulting firms, tech companies, freelanceCorporate IT teams, government agencies
Primary FocusIdentifying vulnerabilities in web applicationsMonitoring and securing network infrastructure
Tools & TechniquesBurp Suite, OWASP ZAP, SQLmapSIEM, IDS/IPS, network scanners

Remote Web App Penetration Testing focuses on assessing web application security by identifying vulnerabilities, while Remote Network Security Analysts monitor and protect entire network infrastructures. Both roles require cybersecurity certifications and involve security tools, but they target different aspects of an organization's security landscape.

More about Remote Web App Penetration Testing jobs
What cities are hiring for Remote Web App Penetration Testing jobs? Cities with the most Remote Web App Penetration Testing job openings:
What are the most commonly searched types of Web App Penetration Testing jobs? The most popular types of Web App Penetration Testing jobs are:
What states have the most Remote Web App Penetration Testing jobs? States with the most job openings for Remote Web App Penetration Testing jobs include:
What job categories do people searching Remote Web App Penetration Testing jobs look for? The top searched job categories for Remote Web App Penetration Testing jobs are:
Senior Staff IT Developer

Full-time

Posted 2 days ago


Job description

The Staff/Senior Staff IT Developer (Application Security) will design and secure internal applications, conduct security code reviews, perform penetration testing, and collaborate with cross-functional teams in an Agile environment.
Key Responsibilities:
  • Design secure, scalable IT solutions focused on performance.
  • Conduct security code reviews for quality and best practices.
  • Identify and remediate vulnerabilities (e.g., XSS, SQLi, CSRF, SSRF).
  • Perform web app penetration testing (manual/automated).
  • Evaluate SAST/DAST findings and manage issues in Jira.
  • Validate bug bounty vulnerabilities.
  • Translate business requirements into technical specifications.
  • Troubleshoot complex issues and support Engineering teams.
  • Document designs, processes, and configurations.
  • Provide technical guidance as a subject matter expert.
  • Mitigate technical risks and foster innovation in Agile teams.
Qualifications:
  • Bachelor's in Computer Science, Cybersecurity, or equivalent.
  • 5+ years in software development, including hands-on coding in languages like Java, Dart, JavaScript, TypeScript, Python, Go, or Kotlin, with a focus on secure coding practices.
  • 2-3 years in a lead or senior capacity, demonstrating ability to guide technical decisions, mentor teams, or architect complex systems.
  • 3+ years in application security, including professional penetration testing or equivalent Bug Bounty experience, with expertise in identifying and mitigating vulnerabilities (e.g., XSS, SQLi, CSRF).
  • Practical experience with tools like Burp Suite Pro, SAST/DAST, and platforms like AWS/GCP/Azure, Kubernetes, Docker, and GitHub.
  • Experience with AWS/GCP/Azure, SQL databases, RESTful APIs, GitHub.
  • Advanced penetration testing skills; proficient with Burp Suite Pro.
  • Knowledge of cryptographic algorithms (AES, SHA, HMAC, RSA, ECC).
  • Familiarity with OWASP Top 10 and security best practices.
  • Experience with Agile (Scrum, Kanban).
  • Strong problem-solving and communication skills.
  • Professional penetration testing or Bug Bounty experience.
Preferred Certifications:
  • OSCP, OSWA, OSWE, eWPT, BSCP, GPEN, or GWAPT.

Job Type: Remote
Time Zone: CST
Duration: 3M+ Extendible