1

Security Penetration Tester Jobs (NOW HIRING)

Penetration Tester

Herndon, VA · On-site

$100K - $200K/yr

Collaborate closely with clients to develop tailored remediation strategies that drive meaningful security improvements * Push the boundaries of penetration testing innovation through research and ...

Identify security flaws in Java code using automated and manual methods. * Create and use custom ... Experience in Penetration Testing/Ethical Hacking with a focus on Java application security.

Title: Penetration Tester / Security Analyst Location: San Francisco, CA, Onsite- Relocation works Duration: 6 Months (11/24/2025 - 5/27/2026) Video Interview Summary: Looking for an experienced ...

They are seeking a highly skilled Penetration Tester to identify vulnerabilities and test the security of networks, applications, and systems by simulating real-world attacks, while collaborating ...

In this role, you will identify vulnerabilities and test the security of networks, applications ... Required : • Bachelor's Degree • Proficiency in penetration testing tools like Metasploit, Burp ...

In this role, you will identify vulnerabilities and test the security of networks, applications ... Required : • Bachelor's Degree • Proficiency in penetration testing tools like Metasploit, Burp ...

In this role, you will identify vulnerabilities and test the security of networks, applications ... Citizenship) • Bachelor's Degree • Proficiency in penetration testing tools like Metasploit ...

WI · On-site

OT Security Penetration Tester (Texas/Florida) Packetlabs is a cybersecurity consulting firm specializing in advanced Penetration Testing. We exist to eliminate the false sense of security that comes ...

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

This role ensures mission‐critical security assurance across enterprise systems, applications ... The Senior Penetration Tester guides technical direction, ensures rigorous execution, and provides ...

Showing results 41-60

Security Penetration Tester information

See salary details

$22.5K

$119.9K

$168.5K

How much do security penetration tester jobs pay per year?

As of Sep 9, 2026, the average yearly pay for security penetration tester in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is a security penetration tester?

Security Penetration Testers, often called 'pen testers' or ethical hackers, are cybersecurity professionals who simulate cyberattacks on computer systems, networks, and applications. Their goal is to identify vulnerabilities that malicious hackers could exploit. By conducting these controlled tests, they help organizations strengthen their security measures and protect sensitive information. Penetration testers document their findings and provide recommendations to improve defenses. This role requires a deep understanding of security tools, attack methodologies, and current cyber threats.

What are some common challenges security penetration testers face when working with client organizations?

Security Penetration Testers often encounter challenges such as limited access to systems due to strict security policies, incomplete or outdated documentation, and time constraints for testing. Additionally, communicating technical vulnerabilities in a way that is understandable to non-technical stakeholders can be demanding. Building trust with clients and ensuring that findings are addressed rather than overlooked are also important aspects of the role, requiring strong communication and negotiation skills.

What are the key skills and qualifications needed to thrive as a security penetration tester, and why are they important?

To thrive as a Security Penetration Tester, you need a strong understanding of network security, vulnerability assessment, and ethical hacking, often supported by a degree in computer science or cybersecurity and certifications like OSCP or CEH. Familiarity with penetration testing tools such as Metasploit, Burp Suite, and Nmap, as well as knowledge of scripting languages, is typically required. Exceptional analytical thinking, attention to detail, and effective communication skills help you identify vulnerabilities and clearly report findings. These skills are vital to proactively identifying and mitigating security risks, thereby protecting organizational assets from cyber threats.

What is the difference between Security Penetration Tester vs Vulnerability Analyst?

AspectSecurity Penetration TesterVulnerability Analyst
CertificationsOSCP, CEH, GPENCISA, CISSP, GIAC
Work EnvironmentHands-on testing, simulated attacksVulnerability assessment, reporting
Industry UsageCybersecurity firms, IT departmentsSecurity teams, compliance roles

While both roles focus on identifying security weaknesses, a Security Penetration Tester actively exploits vulnerabilities to test defenses, whereas a Vulnerability Analyst primarily assesses and reports on vulnerabilities without exploiting them. Both roles require similar certifications and are integral to cybersecurity teams, but their day-to-day tasks differ significantly.

Is a security penetration tester a good career?

A security penetration tester is a valuable cybersecurity professional who assesses systems for vulnerabilities using tools like Kali Linux and exploits techniques. The role offers high demand, competitive salaries, and opportunities for certification such as OSCP or CEH, making it a strong career choice for those interested in cybersecurity and ethical hacking.
More about Security Penetration Tester jobs

What states have the most Security Penetration Tester jobs?

States with the most job openings for Security Penetration Tester jobs include:

What are popular job titles related to Security Penetration Tester jobs?

For Security Penetration Tester jobs, the most frequently searched job titles are:

Infographic showing various Security Penetration Tester job openings in the United States as of August 2026, with employment types broken down into 88% Full Time, 10% Part Time, and 2% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.

Penetration Tester

Chantilly, VA • On-site

Full-time

Re-posted 5 days ago


Job description

Job Summary:
CACI International Inc is a company focused on Cyber Operations, and they are seeking a Penetration Tester to perform computer network evaluations and penetration security assessments. The role involves working in a cybersecurity red team environment and contributing to national security efforts while being part of a collaborative and engaging team culture.
Responsibilities:
• Perform computer network evaluations to include penetration security assessments in a cybersecurity red team environment.
Qualifications:
Required:
• Experience performing Red Team, Blue Team Operations.
• Certifications such as OSCP, OSCE, GPEN, GWAPT, GPEN, GXPN, CEH, CISSP.
• Malware analysis or digital computer forensics experience.
• Cyber related Law Enforcement or Counterintelligence experience.
• Scripting (Windows/*nix), Bash, Python, Perl or Ruby, Systems Programming is a plus.
• Existing Subject Matter Expert of Advanced Persistent Threats and Emerging Threats.
• Proactive interest in emerging technologies and techniques related to penetration testing.
• Demonstrated real world experience performing grey and black box penetration testing.
• Have an understanding of and interest in common web application vulnerabilities like XSS, CSRF, Command Injection, SQLi, single sign-on limitations, etc.
• Must be proficient in any of the following: PowerShell Empire, Metasploit Framework, Cobalt Strike, Burp Suite, Canvas, Kali Linux, IPTables, Sysinternals, A/V evasion methodologies, Exploit Dev.
• Must have solid working experience and knowledge of Windows operating systems (incl. Active Directory), Linux operating systems; ESXi or similar; mobile platforms are a plus.
• Solid understanding of networking, TCP/IP, virtualization and cloud/data center architecture.
• Strong familiarity with some of the following: OWASP top 10, DoD and NSA Vulnerability and Penetration Testing Standards.
• Knowledge of exploitation concepts including phishing and social engineering tactics, buffer overflows, fuzzing, SQLi, MiTM, covert channels, secure tunneling and open source exfiltration techniques.
• Bachelors degree in related field.
• Active TS/SCI w/polygraph clearance.
Company:
At CACI International Inc (NYSE: CACI), our 27,000 talented and dynamic employees are ever vigilant in delivering distinctive expertise and technology to meet our customers’ greatest challenges in national security. Founded in 1962, the company is headquartered in Arlington, USA, with a team of 10001+ employees. The company is currently Late Stage.