As leaders in continuous offensive security and penetration testing, we deliver world-class ... Experience * 5+ years of experience planning, conducting, and managing web application penetration ...
As leaders in continuous offensive security and penetration testing, we deliver world-class ... Experience * 5+ years of experience planning, conducting, and managing web application penetration ...
The Penetration Tester is responsible for working as part of the Assessment Team to conduct and ... Conduct security audits, network penetration tests, and web application, API and cloud assessments.
Quick apply
The Penetration Tester is responsible for working as part of the Assessment Team to conduct and ... Conduct security audits, network penetration tests, and web application, API and cloud assessments.
Security Assurance Penetration Tester
Philadelphia, PA · On-site +1
$85K - $143K/yr
Conducting penetration testing of web applications, APIs, cloud environments, and internal systems, escalating complex testing scenarios as needed. * Performing peer review of penetration testing ...
Security Assurance Penetration Tester
Philadelphia, PA · On-site +1
$85K - $143K/yr
Conducting penetration testing of web applications, APIs, cloud environments, and internal systems, escalating complex testing scenarios as needed. * Performing peer review of penetration testing ...
With Bishop Fox, your responsibilities would include testing web applications, hacking networks ... web application penetration tests * 5+ years of application security experience * Deep ...
With Bishop Fox, your responsibilities would include testing web applications, hacking networks ... web application penetration tests * 5+ years of application security experience * Deep ...
Security Assurance Penetration Tester
Philadelphia, PA · On-site +1
$85K - $143K/yr
Conducting penetration testing of web applications, APIs, cloud environments, and internal systems, escalating complex testing scenarios as needed. * Performing peer review of penetration testing ...
Security Assurance Penetration Tester
Philadelphia, PA · On-site +1
$85K - $143K/yr
Conducting penetration testing of web applications, APIs, cloud environments, and internal systems, escalating complex testing scenarios as needed. * Performing peer review of penetration testing ...
Penetration Tester
OR · On-site +1
With Bishop Fox, your responsibilities would include testing web applications, hacking networks ... web application penetration tests * 5+ years of application security experience * Deep ...
Penetration Tester
OR · On-site +1
With Bishop Fox, your responsibilities would include testing web applications, hacking networks ... web application penetration tests * 5+ years of application security experience * Deep ...
Senior Product Security Engineer
$168K - $210K/yr
Application Penetration Testing (Web-app, API,Thick Client) * Network Penetration Testing (Internal, External) * Cloud Service penetration testing tradecraft and methodologies across multiple service ...
Senior Product Security Engineer
$168K - $210K/yr
Application Penetration Testing (Web-app, API,Thick Client) * Network Penetration Testing (Internal, External) * Cloud Service penetration testing tradecraft and methodologies across multiple service ...
Penetration Tester | Upto $2150 Part-time
New York, NY · Remote
$1.7K - $2.1K/wk
Remote Role Responsibilities * Review and evaluate AI-generated outputs related to threat analysis ... Background in areas such as SOC analysis, incident response (DFIR), penetration testing, threat ...
Quick apply
Penetration Tester | Upto $2150 Part-time
New York, NY · Remote
$1.7K - $2.1K/wk
Remote Role Responsibilities * Review and evaluate AI-generated outputs related to threat analysis ... Background in areas such as SOC analysis, incident response (DFIR), penetration testing, threat ...
Remote Penetration Tester
Atlanta, GA · Remote
A minimum of 2 years of penetration testing or ethical hacking either for a consultancy or a large enterprise. Ability to synthesize and abstract complex data/information, and lead complex decision ...
Remote Penetration Tester
Atlanta, GA · Remote
A minimum of 2 years of penetration testing or ethical hacking either for a consultancy or a large enterprise. Ability to synthesize and abstract complex data/information, and lead complex decision ...
Remote Penetration Tester
Atlanta, GA · On-site +1
Prefer consulting background. • A minimum of 2 years of penetration testing or ethical hacking either for a consultancy or a large enterprise. • Ability to synthesize and abstract complex data ...
Remote Penetration Tester
Atlanta, GA · On-site +1
Prefer consulting background. • A minimum of 2 years of penetration testing or ethical hacking either for a consultancy or a large enterprise. • Ability to synthesize and abstract complex data ...
Our team is remote yet extremely collaborative and works together to utilize their different ... testing * 1+ year experience in web application penetration testing * Ability to work well ...
Our team is remote yet extremely collaborative and works together to utilize their different ... testing * 1+ year experience in web application penetration testing * Ability to work well ...
Our team is remote yet extremely collaborative and works together to utilize their different ... testing * 1+ year experience in web application penetration testing * Ability to work well ...
Our team is remote yet extremely collaborative and works together to utilize their different ... testing * 1+ year experience in web application penetration testing * Ability to work well ...
In this role, you will be responsible for the execution of comprehensive security testing across a ... Execute internal, external, wireless, and web application pen tests * Execute social engineering ...
In this role, you will be responsible for the execution of comprehensive security testing across a ... Execute internal, external, wireless, and web application pen tests * Execute social engineering ...
Penetration Testing Team Lead
Washington, DC · On-site +1
$130K - $160K/yr
This is a remote position. Responsibilities: * Plans, coordinates and leads red team and penetration testing engagements across FSA systems. * Oversees test planning, execution, and reporting.
Quick apply
Penetration Testing Team Lead
Washington, DC · On-site +1
$130K - $160K/yr
This is a remote position. Responsibilities: * Plans, coordinates and leads red team and penetration testing engagements across FSA systems. * Oversees test planning, execution, and reporting.
Penetration Tester
New York, NY · On-site +1
The Penetration Tester is responsible for working as part of the Assessment Team to conduct and ... Conduct security audits, network penetration tests, and web application, API and cloud assessments.
Penetration Tester
New York, NY · On-site +1
The Penetration Tester is responsible for working as part of the Assessment Team to conduct and ... Conduct security audits, network penetration tests, and web application, API and cloud assessments.
Our team is remote yet extremely collaborative and works together to utilize their different ... testing * 1+ year experience in web application penetration testing * Ability to work well ...
Our team is remote yet extremely collaborative and works together to utilize their different ... testing * 1+ year experience in web application penetration testing * Ability to work well ...
Senior Product Security Engineer II
$230K - $242K/yr
Experience in mobile app penetration testing, AI security testing or cloud penetration testing ... This role is remote and the base pay range for a successful candidate is dependent on their ...
Senior Product Security Engineer II
$230K - $242K/yr
Experience in mobile app penetration testing, AI security testing or cloud penetration testing ... This role is remote and the base pay range for a successful candidate is dependent on their ...
Remote (Live Online or In-Person Training) Contract Type: Part-time / Per-Course About Educate 360 ... Web Penetration Testing * Security Operations Center (SOC) Level 1 * Security Operations Center ...
Remote (Live Online or In-Person Training) Contract Type: Part-time / Per-Course About Educate 360 ... Web Penetration Testing * Security Operations Center (SOC) Level 1 * Security Operations Center ...
Jr Cyber Penetration Tester
Arlington, VA · On-site +1
$66K - $106K/yr
Understand common Web Application vulnerabilities like SQLi, XSS, CSRF, and HTTP Flooding. * Experience with penetration testing tools such as Metasploit, Burp Suite, Nmap, etc. * Fundamentals of ...
Jr Cyber Penetration Tester
Arlington, VA · On-site +1
$66K - $106K/yr
Understand common Web Application vulnerabilities like SQLi, XSS, CSRF, and HTTP Flooding. * Experience with penetration testing tools such as Metasploit, Burp Suite, Nmap, etc. * Fundamentals of ...
Jr Cyber Penetration Tester / Secret
Arlington, VA · On-site +1
$66K - $106K/yr
Understand common Web Application vulnerabilities like SQLi, XSS, CSRF, and HTTP Flooding. * Experience with penetration testing tools such as Metasploit, Burp Suite, Nmap, etc. * Fundamentals of ...
Jr Cyber Penetration Tester / Secret
Arlington, VA · On-site +1
$66K - $106K/yr
Understand common Web Application vulnerabilities like SQLi, XSS, CSRF, and HTTP Flooding. * Experience with penetration testing tools such as Metasploit, Burp Suite, Nmap, etc. * Fundamentals of ...
Remote Web App Penetration Testing information
See salary details
$11.54 - $18.36
4% of jobs
$18.36 - $25.17
0% of jobs
$25.17 - $31.99
0% of jobs
$31.99 - $38.81
6% of jobs
$38.81 - $45.63
5% of jobs
$50.89 is the 25th percentile. Wages below this are outliers.
$45.63 - $52.45
12% of jobs
The median wage is $59.11 / hr.
$52.45 - $59.27
23% of jobs
$65.74 is the 75th percentile. Wages above this are outliers.
$59.27 - $66.08
26% of jobs
$66.08 - $72.90
13% of jobs
$72.90 - $79.72
3% of jobs
$79.72 - $86.54
7% of jobs
$11
$59
$86
How much do remote web app penetration testing jobs pay per hour?
What is the difference between Remote Web App Penetration Testing vs Remote Network Security Analyst?
| Aspect | Remote Web App Penetration Testing | Remote Network Security Analyst |
|---|---|---|
| Certifications | OSCP, CEH, GPEN | CompTIA Security+, CISSP, GIAC |
| Work Environment | Security consulting firms, tech companies, freelance | Corporate IT teams, government agencies |
| Primary Focus | Identifying vulnerabilities in web applications | Monitoring and securing network infrastructure |
| Tools & Techniques | Burp Suite, OWASP ZAP, SQLmap | SIEM, IDS/IPS, network scanners |
Remote Web App Penetration Testing focuses on assessing web application security by identifying vulnerabilities, while Remote Network Security Analysts monitor and protect entire network infrastructures. Both roles require cybersecurity certifications and involve security tools, but they target different aspects of an organization's security landscape.

Job description
At Bishop Fox, security isn't just a job-it's our passion. As leaders in continuous offensive security and penetration testing, we deliver world-class customer experiences. Trusted by over a quarter of the Fortune 100, half of the Fortune 10, and top global media companies, we help safeguard digital landscapes. Our Cosmos platform, honored as Best Emerging Technology by SC Media, exemplifies our commitment to innovation.
Joining Bishop Fox means collaborating with a curious and dedicated team. You'll tackle complex challenges for some of the world's most recognized organizations, securing their networks against real-world threats. With nearly 20 years of industry contributions-including 16 open-source tools and 50 security advisories published in the past five years-we're committed to making the digital world safer.
We're looking for talented, experienced professional hackers to help us secure some of the world's most complex software and sophisticated technologies. You'll be working alongside our US and internationally-based teams supporting clients across multiple industries.
Responsibilities
Bishop Fox is looking for experienced contract penetration testers with a primary focus in web application security and strong secondary expertise in cloud, mobile, source code, network, or AI/LLM security.
You'll work on a range of projects, from short-term assessments to longer-term program engagements with well-established clients. In this role, you'll identify vulnerabilities, validate risk, develop creative solutions, and clearly communicate findings and remediation guidance to both technical and executive stakeholders. As a trusted advisor, you'll help clients understand risk and make informed security decisions.
Experience
- 5+ years of experience planning, conducting, and managing web application penetration tests
- Deep understanding of application security fundamentals, OWASP Top 10, common vulnerabilities, and secure development best practices
- Experience assessing vulnerabilities and developing exploits across diverse targets
- Strong understanding of system and network security, authentication protocols, security protocols, and applied cryptography
- Ability to communicate complex technical findings clearly and provide practical remediation guidance to technical and executive audiences
Preferred Experience
Deep experience in at least one of the following:
- Cloud Security - Experience assessing AWS cloud environments, including technologies such as IAM, EC2, VPC, EBS, S3, CloudWatch, and Lambda.
- Mobile Application Security - Experience testing iOS and/or Android applications, including mobile application architecture, API communication, data storage, authentication flows, and common mobile security vulnerabilities.
- Source Assisted Application Assessments: Experience evaluating applications across multiple layers, including source code, APIs, infrastructure, and integrations. Strong proficiency in Golang is highly preferred, along with familiarity in languages such as Python, Ruby, PowerShell, Java, and JavaScript.
- Network Security - Experience with network and system exploitation, including modern tactics, techniques, and procedures such as C2 frameworks, EDR bypass, privilege escalation, password cracking, and lateral movement.
- AI/LLM Security -Experience assessing non-deterministic security controls.
Employment Sponsorship
This engagement is for independent contractors (1099) and is not eligible for any form of employment sponsorship. Applicants must be legally authorized to work in the United States without requiring visa sponsorship now or in the future. Applicants must be located in the United States.
All new hires must pass a background check as a condition of employment.
Bishop Fox is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.
About Bishop Fox
Sourced by ZipRecruiter
Industry
Network security
Company size
201 - 500 Employees
Headquarters location
Tempe, AZ, US
Year founded
2005