1

Security Penetration Testing Jobs in Washington (NOW HIRING)

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

... penetration testing and vulnerability assessment activities within a TS/SCI environment. This role ensures mission‑critical security assurance across enterprise systems, applications, and cloud ...

Penetration Tester

Quantico, VA · On-site

$130K - $147K/yr

Stay up-to-date on the latest security threats, vulnerabilities, and attack techniques. * Research and evaluate new penetration testing tools and methodologies. * Develop custom tools and scripts to ...

Senior Penetration Tester

Washington, DC · On-site

$124K - $180K/yr

... penetration testing and vulnerability assessment activities within a TS/SCI environment. This role ensures mission-critical security assurance across enterprise systems, applications, and cloud ...

This role is responsible for conducting penetration testing and red team activities, assessing security posture across enterprise environments, and supporting identification, validation, and ...

Stay up-to-date on the latest security threats, vulnerabilities, and attack techniques. * Research and evaluate new penetration testing tools and methodologies. * Develop custom tools and scripts to ...

Penetration Tester

Arlington, VA · On-site

$86K - $138K/yr

In lieu of a degree, 4 years of additional IT security or penetration testing experience may be considered. * Minimum of 2 years with penetration testing experience. * Possess one of the following ...

National Security Programs * Professional, Administrative, and Management Support * Mission and ... Penetration Testing Team Lead Location: Arlington, VA Clearance: Secret Duties and Responsibilities ...

At least (12) years of technical IT security experience. * At least (8) years of experience performing Penetration Testing. * At least (5) years of experience performing Penetration Testing for ...

This role is responsible for conducting penetration testing and red team activities, assessing security posture across enterprise environments, and supporting identification, validation, and ...

Network penetration testing and experience working with network infrastructure * An understanding ... Experience with security assessment tools, such as Nessus, Metasploit, Burp Suite Pro, Cobalt ...

OSCP (Offensive Security Certified Professional)CPTS (Certified Penetration Testing Specialist)GPEN (GIAC Penetration Tester)GXPN (GIAC Exploit Programmer)CRTO (Certified Red Team Operator)Additional ...

This individual contributor role performs advanced manual penetration testing to validate the security of company resources. The position serves as the primary point of contact for assigned testing ...

Penetration Tester

Washington, DC · On-site

$117K - $199K/yr

Lead and perform advanced security assessments, including hands-on penetration testing of systems and applications. * Identify vulnerabilities, assess risks, and deliver clear, actionable remediation ...

Showing results 21-40

Security Penetration Testing information

See Washington salary details

$69.7K

$173K

$232.7K

How much do security penetration testing jobs pay per year?

As of Aug 16, 2026, the average yearly pay for security penetration testing in Washington is $173,030.00, according to ZipRecruiter salary data. Most workers in this role earn between $162,000.00 and $179,500.00 per year, depending on experience, location, and employer.

What is security penetration testing?

Security penetration testing, also known as pen testing, is a simulated cyberattack conducted on a computer system, network, or web application to identify vulnerabilities that could be exploited by hackers. The goal is to proactively find security weaknesses before malicious actors do, helping organizations strengthen their defenses. Penetration testers use a combination of automated tools and manual techniques to mimic real-world attack scenarios. The results are documented in a report, which includes recommendations for improving security.

What are some common challenges security penetration testers face when conducting assessments in large organizations?

Security Penetration Testers often encounter challenges such as navigating complex network environments, obtaining the necessary permissions to test sensitive systems, and coordinating with multiple stakeholders to minimize business disruptions. Additionally, they must stay updated with evolving security threats and technologies to ensure their testing methods remain effective. Effective communication and clear reporting are also crucial, as conveying findings to both technical and non-technical audiences can directly impact remediation efforts and overall security posture.

What are the key skills and qualifications needed to thrive as a security penetration tester, and why are they important?

To thrive as a Security Penetration Tester, you need a solid understanding of network security, operating systems, and ethical hacking, usually supported by a degree in computer science or a related field. Familiarity with tools like Metasploit, Burp Suite, and certifications such as OSCP or CEH are commonly required. Strong analytical thinking, attention to detail, and effective communication skills set standout professionals apart in this role. These skills and qualifications are vital for identifying vulnerabilities, communicating risks, and helping organizations strengthen their security posture.

What is the difference between Security Penetration Testing vs Security Analyst?

AspectSecurity Penetration TestingSecurity Analyst
CertificationsOSCP, CEH, GPENCISSP, Security+
Work EnvironmentProject-based, technical testingMonitoring, incident response
Primary FocusIdentifying vulnerabilities through simulated attacksMonitoring security systems and analyzing threats
Employer & Industry UsageCybersecurity firms, IT departmentsCorporate, government, finance sectors

While both roles focus on cybersecurity, Security Penetration Testing involves actively probing systems for vulnerabilities through simulated attacks, whereas Security Analysts monitor and analyze security threats to protect organizational assets. Both roles require relevant certifications and are essential for comprehensive cybersecurity defense.

Is security penetration testing a good career?

Security penetration testing is a growing field within cybersecurity that involves identifying vulnerabilities in systems and networks. It offers high demand for skilled professionals, competitive salaries, and opportunities for continuous learning with certifications like OSCP or CEH. However, it requires strong technical skills, attention to detail, and often involves working in high-pressure environments.

What are popular job titles related to Security Penetration Testing jobs in Washington?

For Security Penetration Testing jobs in Washington, the most frequently searched job titles are:

What job categories do people searching Security Penetration Testing jobs in Washington look for?

The top searched job categories for Security Penetration Testing jobs in Washington are:

What cities in Washington are hiring for Security Penetration Testing jobs?

Cities in Washington with the most Security Penetration Testing job openings:

Infographic showing various Security Penetration Testing job openings in Washington as of August 2026, with employment types broken down into 84% Full Time, 14% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $173,030 per year, or $83.2 per hour.

Senior Penetration Tester

Govcio LLC

Washington, DC • On-site

$124K - $180K/yr

Other

Posted 20 days ago


GovCIO rating

7.5

Company rating: 7.5 out of 10

Based on 9 frontline employees who took The Breakroom Quiz

109th of 224 rated it services


Job description

Overview:

GovCIO is currently hiring for a Senior Pentration Tester with an active TS/SCI clearance to support DHS onsite in Washington, DC.

Responsibilities:

The Senior Penetration Tester serves as Key Personnel responsible for leading advanced penetration testing and vulnerability assessment activities within a TS/SCI environment. This role ensures mission‑critical security assurance across enterprise systems, applications, and cloud infrastructures by applying deep technical expertise, zero‑trust principles, and attacker‑focused methodologies. The Senior Penetration Tester guides technical direction, ensures rigorous execution, and provides authoritative recommendations to strengthen security posture across sensitive environments.

  • Lead, plan, and oversee penetration testing operations for systems, networks, cloud resources, and web‑based applications in a TS/SCI environment

  • Execute comprehensive vulnerability assessments and software assurance evaluations; authoritatively document findings and drive remediation strategies

  • Conduct deep technical analysis of vulnerabilities including buffer overflows, SQL injection, CSRF, XSS, race conditions (TOCTOU), XXE, encryption weaknesses, authentication bypass, and similar issues

  • Assess and advise on security considerations during software acceptance activities, including criteria definition, risk acceptance evaluation, documentation review, and independent validation approaches

  • Apply advanced security defense functions (encryption, access control, identity management) to reduce exploitation risks, including those related to supply chain considerations

  • Provide threat intelligence insights and vulnerability research aligned with frameworks such as NIST 800‑53 and MITRE ATT&CK to inform cloud security architecture decisions

  • Develop new or enhanced penetration testing methodologies to identify emerging vulnerabilities and expand organizational capability

  • Serve as a senior technical advisor and mentor to penetration testing staff; ensure consistency, quality, and rigor in testing execution

  • Represent the penetration testing function in discussions with leadership, engineering teams, and mission stakeholders as required for Key Personnel roles

Qualifications:
  • Bachelor's with 12+ years of penetration testing experience (or commensurate experience)
  • Minimum of 8 years of experience supporting enterprise security architectures and cloud platforms (AWS, Azure, Google Cloud)

  • Proven, extensive experience as a Penetration Tester in complex or classified environments

  • Advanced knowledge of penetration testing methodologies, offensive security techniques, and industry tools

  • Experience with AWS, Azure, RHEL, Linux, and Tenable

  • Hands-on experience with tools including Kali Linux, Burp Suite Pro, and Metasploit

  • Strong analytical and problem‑solving skills with an ability to think like an attacker

  • Excellent communication skills to deliver clear, actionable findings to both technical and executive stakeholders

  • Preferred certifications: CEH, OSCP, or equivalent offensive security certifications

  • Clearance Required: Active TS/SCI clearance
Posted Salary Range: USD $124,540.00 - USD $180,000.00 /Yr.

What GovCIO employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom