2

Remote Web Penetration Tester Jobs (NOW HIRING)

Jr Cyber Penetration Tester

Arlington, VA · On-site +1

$66K - $106K/yr

Understand common Web Application vulnerabilities like SQLi, XSS, CSRF, and HTTP Flooding. * Experience with penetration testing tools such as Metasploit, Burp Suite, Nmap, etc. * Fundamentals of ...

Understand common Web Application vulnerabilities like SQLi, XSS, CSRF, and HTTP Flooding. * Experience with penetration testing tools such as Metasploit, Burp Suite, Nmap, etc. * Fundamentals of ...

Lead Penetration Test Engineer

New York, NY · On-site +1

$135K - $200K/yr

Penetration Testing & Vulnerability Assessments Conduct comprehensive penetration testing of web applications, infrastructure, and cloud environments using both manual and automated techniques.

Lead Penetration Test Engineer

New York, NY · On-site +1

$135K - $200K/yr

Penetration Testing & Vulnerability Assessments Conduct comprehensive penetration testing of web applications, infrastructure, and cloud environments using both manual and automated techniques.

Proven proficiency performing CCRI/ vulnerability assessment/ penetration testing on networks ... Web Services (IIS, Apache, Proxy) * Database (SQL Server, Oracle) * Email Services (Exchange)

Perform security assessments on web, mobile, thick client applications, and browser extensions ... LI-Remote #blockchain #startups #hiring CertiK is proud to offer medical, vision, and dental ...

Showing results 41-60

Remote Web Penetration Tester information

See salary details

$22.5K

$119.9K

$168.5K

How much do remote web penetration tester jobs pay per year?

As of Sep 13, 2026, the average yearly pay for remote web penetration tester in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is a remote web penetration tester?

A remote web penetration tester is a cybersecurity professional who evaluates the security of web applications and websites from a remote location. Their primary role is to identify vulnerabilities, such as coding errors or misconfigurations, that could be exploited by malicious hackers. They use a variety of tools and techniques to simulate attacks, report findings, and recommend solutions, all without being physically present at the client's site. This position often requires strong technical skills, analytical thinking, and up-to-date knowledge of the latest web threats and defenses.

What are the key skills and qualifications needed to thrive as a remote web penetration tester?

To thrive as a Remote Web Penetration Tester, you need a deep understanding of web application security, networking protocols, and vulnerability assessment, often supported by certifications like OSCP or CEH. Familiarity with tools such as Burp Suite, Metasploit, and automated scanners is essential for performing thorough security evaluations. Strong analytical thinking, attention to detail, and clear written communication are critical soft skills for effectively identifying vulnerabilities and reporting findings to clients. These skills ensure comprehensive assessments, actionable reporting, and contribute to the overall security posture of organizations.

How does a remote web penetration tester typically coordinate with development and security teams during an assessment?

As a Remote Web Penetration Tester, you will regularly collaborate with development and security teams through virtual meetings, secure communication channels, and detailed reporting. You'll often present your findings in real time or via structured reports, clarifying vulnerabilities and recommending mitigation steps. Strong communication skills are key, as you may need to explain complex technical issues to non-technical stakeholders and sometimes assist in prioritizing remediation efforts. This collaborative approach ensures that security improvements are effectively understood and implemented, even when working remotely.

What is the difference between Remote Web Penetration Tester vs Remote Network Security Analyst?

AspectRemote Web Penetration TesterRemote Network Security Analyst
CertificationsOSCP, CEH, GPENCompTIA Security+, CISSP, CEH
Work EnvironmentConducts simulated attacks on web applications remotelyMonitors and analyzes network security remotely
Industry UsageCybersecurity firms, tech companies, consultingFinancial institutions, government agencies, enterprises

The Remote Web Penetration Tester focuses on identifying vulnerabilities in web applications through simulated attacks, requiring certifications like OSCP or CEH. In contrast, the Remote Network Security Analyst monitors and analyzes network traffic to detect threats, often holding certifications like Security+ or CISSP. Both roles are essential in cybersecurity but differ in their focus areas and daily tasks.

More about Remote Web Penetration Tester jobs

What cities are hiring for Remote Web Penetration Tester jobs?

Cities with the most Remote Web Penetration Tester job openings:

What are the most commonly searched types of Web Penetration Tester jobs?

The most popular types of Web Penetration Tester jobs are:

What states have the most Remote Web Penetration Tester jobs?

States with the most job openings for Remote Web Penetration Tester jobs include:

What are popular job titles related to Remote Web Penetration Tester jobs?

For Remote Web Penetration Tester jobs, the most frequently searched job titles are:

Infographic showing various Remote Web Penetration Tester job openings in the United States as of August 2026, with employment types broken down into 82% Full Time, 10% Part Time, 1% Temporary, and 7% Contract. Highlights an 82% Physical, 4% Hybrid, and 14% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.

Senior Security Consultant (Mainframe Penetration Tester)

Minneapolis, MN • On-site, Remote

NetSPI
Network Security • 11 - 50 employees

Full-time

Re-posted 3 days ago


Job description

NetSPI® pioneered Penetration Testing as a Service (PTaaS) and leads the industry in modern pentesting. Combining world-class security professionals with AI and automation, NetSPI delivers clarity, speed, and scale across 50+ pentest types, attack surface management, and vulnerability prioritization. The NetSPI platform streamlines workflows and accelerates remediation, enabling our experts to focus on deep dive testing that uncovers vulnerabilities others miss. Trusted by the top 10 U.S. banks and Fortune 500 companies worldwide, NetSPI has been driving security innovation since
NetSPI is on an exciting growth journey as we disrupt and improve the proactive security market. We are looking for individuals with a collaborative, innovative, and customer-first mindset to join our team. Learn more about our award-winning workplace culture and get to know our A-Team at www.netspi.com/careers.
Join the mission as a Senior Security Consultant. We are seeking a skilled and detail-oriented Penetration Tester to conduct thorough security assessments, identify vulnerabilities, and provide expert recommendations to strengthen our clients' security posture. As a Penetration Tester supporting Mainframe testing, you will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.
Responsibilities:
  • Perform network, app, platform, CICS, IMS, Db2 and other z/OS-based penetration tests.
  • Create and deliver penetration test reports to clients
  • Collaborate with clients to create remediation strategies that will help improve their security posture
  • Research and develop innovative techniques, tools, and methodologies for penetration testing services
  • Participate in the ongoing development/enhancement of NetSPI services and processes, in addition to thought leadership (via blogs, presentations, white papers, webinars, podcast, vlogs and tweets)
  • Provide pre-sales support by assisting with scoping prospective engagements
  • Act as a resource for internal team members as it relates to in-depth technical questions or best practices
  • Responsible for QA activities in assigned service lines
  • Other duties as assigned

Minimum Requirements:
  • Bachelor's degree or higher, with a focus on IT, Computer Science, Engineering or Math or equivalent experience
  • 3-5 years of experience in penetration testing, including network, web or thick client application, and operating system testing
  • Experience with offensive toolkits used for network and application penetration testing
  • Strong communication skills, both verbal and written
  • Knowledge of z/OS fundamentals including, but not limited to: TSO, JCL, JES2, USS, Networking and at least one ESM (RACF, ACF2, Top Secret).

Preferred Qualifications:
  • Programming experience in one or more of the following languages: Assembler, C, C++, REXX, Python
  • Experience security or managing z/OS-based systems.
  • Experience with pentesting (PTAS), PTES, OSCP or other offensive security certifications.

We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.
Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.