1

Security Penetration Testing Jobs in Washington (NOW HIRING)

Penetration Tester

Washington, DC · On-site

$130K - $145K/yr

Dark Wolf is actively seeking an experienced Penetration Tester to join our innovative team. This ... Testing and assessing the security of secure boot processes and Trusted Execution Environments (TEE)

Penetration Tester

Washington, DC · Hybrid

$130K - $145K/yr

Dark Wolf is actively seeking an experienced Penetration Tester to join our innovative team. This ... Testing and assessing the security of secure boot processes and Trusted Execution Environments (TEE)

Penetration Tester

Herndon, VA · Hybrid

$130K - $145K/yr

Dark Wolf is actively seeking an experienced Penetration Tester to join our innovative team. This ... Testing and assessing the security of secure boot processes and Trusted Execution Environments (TEE)

The Penetration Testing Lead will analyze vulnerabilities, identify gaps in IT security policies and configurations, and deliver actionable recommendations to reduce organizational cyber risk. This ...

Penetration Tester

Arlington, VA · On-site

$86K - $138K/yr

In lieu of a degree, 4 years of additional IT security or penetration testing experience may be considered. * Minimum of 2 years with penetration testing experience. * Possess one of the following ...

In lieu of a degree, 4 years of additional IT security or penetration testing experience may be considered. * Minimum of 2 years with penetration testing experience. * Possess one of the following ...

In lieu of a degree, 4 years of additional IT security or penetration testing experience may be considered. * Minimum of 2 years with penetration testing experience. * Possess one of the following ...

Responsibilities : • Supports execution of authorized penetration testing activities against MODES III systems, applications, and cloud environments to identify security weaknesses. (PenTest). • ...

Stay up-to-date on the latest security threats, vulnerabilities, and attack techniques. * Research and evaluate new penetration testing tools and methodologies. * Develop custom tools and scripts to ...

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

... penetration testing and vulnerability assessment activities within a TS/SCI environment. This role ensures mission-critical security assurance across enterprise systems, applications, and cloud ...

Stay up-to-date on the latest security threats, vulnerabilities, and attack techniques. * Research and evaluate new penetration testing tools and methodologies. * Develop custom tools and scripts to ...

next page

Showing results 1-20

Security Penetration Testing information

See Washington salary details

$69.7K

$173K

$232.7K

How much do security penetration testing jobs pay per year?

As of Jul 27, 2026, the average yearly pay for security penetration testing in Washington is $173,030.00, according to ZipRecruiter salary data. Most workers in this role earn between $162,000.00 and $179,500.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Security Penetration Tester, and why are they important?

To thrive as a Security Penetration Tester, you need a solid understanding of network security, operating systems, and ethical hacking, usually supported by a degree in computer science or a related field. Familiarity with tools like Metasploit, Burp Suite, and certifications such as OSCP or CEH are commonly required. Strong analytical thinking, attention to detail, and effective communication skills set standout professionals apart in this role. These skills and qualifications are vital for identifying vulnerabilities, communicating risks, and helping organizations strengthen their security posture.

What is security penetration testing?

Security penetration testing, also known as pen testing, is a simulated cyberattack conducted on a computer system, network, or web application to identify vulnerabilities that could be exploited by hackers. The goal is to proactively find security weaknesses before malicious actors do, helping organizations strengthen their defenses. Penetration testers use a combination of automated tools and manual techniques to mimic real-world attack scenarios. The results are documented in a report, which includes recommendations for improving security.

What is the difference between Security Penetration Testing vs Security Analyst?

AspectSecurity Penetration TestingSecurity Analyst
CertificationsOSCP, CEH, GPENCISSP, Security+
Work EnvironmentProject-based, technical testingMonitoring, incident response
Primary FocusIdentifying vulnerabilities through simulated attacksMonitoring security systems and analyzing threats
Employer & Industry UsageCybersecurity firms, IT departmentsCorporate, government, finance sectors

While both roles focus on cybersecurity, Security Penetration Testing involves actively probing systems for vulnerabilities through simulated attacks, whereas Security Analysts monitor and analyze security threats to protect organizational assets. Both roles require relevant certifications and are essential for comprehensive cybersecurity defense.

What is a penetration tester in security?

A penetration tester, also known as an ethical hacker, is a cybersecurity professional who simulates cyberattacks to identify vulnerabilities in computer systems, networks, and applications. They use tools like vulnerability scanners and follow structured testing methodologies, often holding certifications such as OSCP or CEH, to help organizations improve their security defenses.

Is penetration testing a good career?

Penetration testing is a valuable cybersecurity role that involves identifying vulnerabilities in systems and networks. It offers high demand, competitive salaries, and opportunities for certification such as OSCP or CEH, making it a strong career choice for those interested in cybersecurity and ethical hacking.

Can you make $500,000 a year in cyber security?

Security penetration testers with extensive experience, advanced certifications, and specialized skills can potentially earn $500,000 or more annually, especially in senior or consulting roles. Achieving this level often requires a combination of technical expertise, leadership, and working in high-demand environments or for large organizations. Most professionals in the field earn lower salaries, but top-tier experts can reach or exceed this income level.

What jobs can I get with a security+ certification?

A Security+ certification qualifies you for roles such as security analyst, cybersecurity technician, or network security administrator. These positions involve assessing vulnerabilities, implementing security measures, and monitoring networks using tools like firewalls and intrusion detection systems. The certification demonstrates foundational knowledge in cybersecurity principles and best practices.

What are some common challenges Security Penetration Testers face when conducting assessments in large organizations?

Security Penetration Testers often encounter challenges such as navigating complex network environments, obtaining the necessary permissions to test sensitive systems, and coordinating with multiple stakeholders to minimize business disruptions. Additionally, they must stay updated with evolving security threats and technologies to ensure their testing methods remain effective. Effective communication and clear reporting are also crucial, as conveying findings to both technical and non-technical audiences can directly impact remediation efforts and overall security posture.
What are popular job titles related to Security Penetration Testing jobs in Washington? For Security Penetration Testing jobs in Washington, the most frequently searched job titles are:
What job categories do people searching Security Penetration Testing jobs in Washington look for? The top searched job categories for Security Penetration Testing jobs in Washington are:
What cities in Washington are hiring for Security Penetration Testing jobs? Cities in Washington with the most Security Penetration Testing job openings:
Infographic showing various Security Penetration Testing job openings in Washington as of July 2026, with employment types broken down into 89% Full Time, 10% Part Time, and 1% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $173,030 per year, or $83.2 per hour.
Penetration Tester

Penetration Tester

Dark Wolf Solutions

Washington, DC • On-site

$130K - $145K/yr

Full-time

Posted 29 days ago


Job description

Dark Wolf is actively seeking an experienced Penetration Tester to join our innovative team. This individual will play a critical role in assessing and enhancing the security of various products, including hardware, software, and embedded systems. This role demands a deep understanding of penetration testing methodologies and advanced exploit development, focusing on identifying and mitigating vulnerabilities across a wide range of technologies. As a Junior Product and Hardware Security Penetration Tester, you will have the chance to work on cutting-edge technologies and contribute to the enhancement of security across a wide range of products. If you possess a strong background in penetration testing and a passion for cybersecurity, we encourage you to apply for this pivotal role. This position is set to be supported in a hybrid work environment out of the DC Metro area. Key responsibilities include, but are not limited to:
  • Conducting comprehensive penetration testing on hardware, software, and network components.
  • Performing advanced vulnerability scanning and assessments on all components.
  • Performing a Cybersecurity evaluation of the product under test to identify vulnerabilities that would negatively impact the Confidentiality, Integrity, or Availability of system data or functionality.
  • Analyzing software, firmware, hardware, and/or RF components within the system.
  • Opining on the impact and level of effort required to exploit the identified vulnerabilities as well as providing information on a high-level remediation strategy.
  • Developing and executing exploits and proof-of-concept (PoC) attacks to demonstrate the impact of identified vulnerabilities.
  • Analyzing and reverse engineering firmware and embedded systems to identify security weaknesses.
  • Testing and assessing the security of secure boot processes and Trusted Execution Environments (TEE).
  • Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API security testing.
  • Performing manual verification of vulnerabilities, assessing their risk and exploitability.
  • Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth, and Zigbee networks.
  • Utilizing Software Defined Radio (SDR) for protocol reverse engineering and testing.
  • Reporting detailed findings, documenting case details, and providing actionable recommendations for remediation to enhance product security based on system analysis.
  • Planning and executing full-scale, cross-domain vulnerability assessments, network penetration testing, and phishing/social engineering campaigns.
Required Qualifications:
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Engineering, or a related field
  • Minimum of 2+ years' experience in three or more specific areas to include: intelligence analysis, network engineering, networking security, penetration testing, red team operations, hardware engineering, software engineering, exploit development, reverse engineering, vulnerability assessment, physical security assessments, or social engineering
  • Proficiency with cloud technology and deployments across Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP)
  • Proficiency in the testing and assessment of mobile operating systems, embedded systems, and/or IoT devices
  • Experience in drafting reports, documenting case details, and summarizing findings and recommendations based on system analysis
  • Experience performing advanced vulnerability scanning and assessments on all components
  • Experience conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API security testing
  • Demonstrated strong written and verbal communication skills
  • Strong understanding of NIST 800-53 frameworks
  • US Citizenship and an active security clearance at a minimum of the Secret Level
Desired Qualifications:
  • Familiarity with NIST 800-171 Revision 2
  • Proven ability to develop and execute complex exploits and PoC attacks
  • Strong analytical skills and experience in firmware, binary exploitation, and embedded systems testing
  • Advanced knowledge of Software Defined Radio (SDR) and protocol reverse engineering
  • Active professional certifications such as CEH, OSCP, PNPT, GPEN, or similar security/pen testing certifications

The salary range for this position is $130,000.00 - $145,000.00 commensurate on experience and technical skillset.
We are open to considering a variety of levels of experience for these projects and potential for 1099 hourly opportunity.
We are proud to be an EEO/AA Employer Minorities/Women/Veterans/Disabled and other protected categories.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification from upon hire.