1

Security Tester Jobs in Michigan (NOW HIRING)

Application Security Analyst

Auburn Hills, MI · On-site

$55.50 - $74.25/hr

Application Security & Testing * Perform security testing: SAST, DAST, IAST, mobile security, and dynamic testing * Analyze vulnerabilities and recommend secure coding fixes * Demonstrate ...

Application Security Analyst

Auburn Hills, MI

$55.50 - $74.25/hr

Application Security & Testing * Perform security testing: SAST, DAST, IAST, mobile security, and dynamic testing * Analyze vulnerabilities and recommend secure coding fixes * Demonstrate ...

Familiarity with security testing, system scanning, and artifact collection. * Experience with Keylight is a plus. * Bachelor's degree or higher in Information Technology, Computer Science ...

MI-164083 Hybrid/Local (Lansing ONLY) MI Govt Security Analyst (Certification/Degree/ copy & cover letter/ref/In-person IV must/15+) with Keylight, SSP/NIST/GRC, testing/scanning, risk assessments ...

... testing and system scanning requirements. · Perform risk assessments and provide responses for security controls. · Continuously monitor plans of action and milestones and corrective action plans ...

Lead and identify security testing and system scanning requirements. * Perform risk assessments and provide responses for security controls. * Continuously monitor plans of action and milestones and ...

IT Security Analyst 164083

Lansing, MI · Hybrid

$27.59 - $47.59/hr

... security testing, vulnerability scanning, and system assessment activities. · Monitor Plans of Action and Milestones (POA&Ms) and Corrective Action Plans (CAPs) to ensure timely remediation of ...

next page

Showing results 1-20

Security Tester information

See Michigan salary details

$15

$44

$72

How much do security tester jobs pay per hour?

As of Aug 10, 2026, the average hourly pay for security tester in Michigan is $44.53, according to ZipRecruiter salary data. Most workers in this role earn between $38.12 and $53.41 per hour, depending on experience, location, and employer.

What is the difference between Security Tester vs Penetration Tester?

AspectSecurity TesterPenetration Tester
CertificationsSecurity+, CEH, CISSP (optional)OSCP, CEH, GPEN
Work EnvironmentInternal security teams, testing security measuresExternal or internal testing, simulated attacks
Industry UsageBroadly used across industries for security assessmentsSpecialized role focusing on penetration testing

Security Testers focus on evaluating security systems, identifying vulnerabilities, and ensuring overall security measures. Penetration Testers perform simulated attacks to exploit vulnerabilities, often requiring more advanced skills and certifications. While both roles aim to improve security, Penetration Testers typically conduct more in-depth, offensive testing, whereas Security Testers may perform broader security assessments.

What is a security tester?

Security testers, also known as penetration testers or ethical hackers, are professionals who assess the security of computer systems, networks, and applications. They simulate cyberattacks to identify vulnerabilities that malicious hackers could exploit. Their work helps organizations strengthen their defenses by discovering and addressing security weaknesses before they can be exploited. Security testers use a variety of tools and methodologies to conduct their assessments and often provide detailed reports with recommendations for improvement.

What are the key skills and qualifications needed to thrive as a security tester, and why are they important?

To thrive as a Security Tester, you need strong knowledge of cybersecurity principles, penetration testing methods, and a background in computer science or information security. Familiarity with tools like Metasploit, Burp Suite, and certifications such as OSCP or CEH is typically required. Analytical thinking, attention to detail, and effective communication help Security Testers identify vulnerabilities and explain risks to technical and non-technical stakeholders. These skills are crucial for proactively safeguarding systems and ensuring organizational resilience against cyber threats.

What are some common challenges security testers face when working with development teams?

Security Testers often need to balance thorough vulnerability testing with tight project deadlines, which can be challenging when development teams are rapidly releasing new features. Effective communication is essential, as Security Testers must clearly explain security risks and remediation steps to developers who may not have a security background. Additionally, staying updated with evolving security threats and tools is necessary to provide relevant and actionable feedback, making continuous learning a key part of the role.

What does a security tester do?

A security tester works to ensure the security of computer networks and systems. Their duties are to gather information and make assessments of computer security systems for a client or employer. They perform scans, look for vulnerabilities in applications, and locate other risks. Other responsibilities include conducting research and trying to breach networks using methods commonly deployed by hackers. The qualifications to become a security tester vary but often include a degree in computer science, cybersecurity, IT, or a related field or extensive experience and technical skills. Professional certifications are available.

What are popular job titles related to Security Tester jobs in Michigan? For Security Tester jobs in Michigan, the most frequently searched job titles are:
What are popular job titles related to Security Tester jobs in MI? For Security Tester jobs in MI, the most frequently searched job titles are:
Infographic showing various Security Tester job openings in Michigan as of August 2026, with employment types broken down into 100% Full Time. Highlights an 33% In-person, 34% Hybrid, and 33% Remote job distribution, with an average salary of $92,614 per year, or $44.5 per hour.

Senior Application Security Engineer

OneStream Software

Rochester, MI • On-site

$105K - $144K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 8 days ago


Job description

Description

Senior AppSec Engineer

Location: Remote, USA
Employment Type: Full-Time
Benefits Offered: Vision, Medical, Life, Dental, 401K
Gross Annual Base Salary: USD 150,000 - 196,000
Additional variable compensation and benefits may apply. Total compensation is based on experience, skills, and location using objective, job-related criteria.

Summary

The Senior Application Security Engineer joins the Information Security team and plays a key role in securing the OneStream platform throughout the software development lifecycle. This role is responsible for defining and enforcing secure coding and development practices, performing application security testing to identify risks and vulnerabilities before release and in production, and reviewing the output of application security tools to provide clear remediation guidance across the organization.

In addition, the Senior Application Security Engineer partners with engineering teams on the planning and architecture of new features, contributes to platform security design, and leads or supports the development of custom security tools and scanning capabilities. The ideal candidate brings a strong foundation in secure development and programming practices, hands-on experience with C# and .NET, and a passion for protecting customers. This role requires effective communication across technical and non-technical audiences and may involve developing proof-of-concept exploits to validate vulnerabilities and assess real-world risk.

Primary Duties and Responsibilities

  • Perform manual and automated application security testing to identify vulnerabilities across the OneStream platform.
  • Conduct code analysis to assess and ensure the security of application code.
  • Evaluate the software development lifecycle (SDLC) to identify opportunities to strengthen application and supply chain security.
  • Partner with Development and Engineering teams to embed security into OneStream services and workflows.
  • Collaborate with members of the Security team to identify attack patterns and indicators of compromise.
  • Design, develop, and maintain custom security testing tools to support internal testing efforts.
  • Define, document, and enforce secure development policies, standards, and procedures.
  • Provide mentorship and technical guidance to junior members of the Security team to support growth and knowledge sharing.
  • Document, communicate, and report security findings and risks identified during testing activities.
  • Perform penetration testing against OneStream assets to validate application and infrastructure security.
  • Conduct security architecture and design reviews to ensure secure-by-design implementations.
  • Provide secure design and secure coding guidance to engineering teams throughout the development lifecycle.

Required Education and Experience

  • One of the following combinations of education and experience:
    • Bachelor's degree in Computer Science, Engineering, or a related field with 8+ years of experience in application security testing, penetration testing, or software development; or
    • Master's degree in Computer Science, Engineering, or a related field with 3+ years of experience in application security testing, penetration testing, or software development; or
    • Associate degree in Computer Science, Engineering, or a related field with 12+ years of experience in application security testing, penetration testing, or software development.
  • 3+ years of hands-on experience conducting threat modeling for applications and systems and translating findings into actionable remediation guidance.

Preferred Education and Experience

  • Experience writing and reviewing C# and .NET code, including secure coding and code review practices.
  • Hands-on experience performing penetration testing of web applications.
  • Experience decompiling and reverse engineering .NET libraries.
  • Broad experience across IT security and infrastructure, security risk management, and compliance frameworks such as SOC 2 and FedRAMP, including security policies, procedures, testing, auditing, and internal audit.
  • Industry-recognized offensive security or penetration testing certifications, such as:
    • Offensive Security Certified Professional (OSCP)
    • GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)
    • GIAC Penetration Tester (GPEN)
    • Other relevant offensive security or penetration testing certifications
  • Outstanding written and verbal communication skills, with the ability to clearly explain complex technical concepts to both technical and non-technical audiences.

Knowledge, Skills, and Abilities

  • Highly organized with strong analytical and reasoning skills.
  • Self-motivated self-starter who works effectively both independently and with minimal direction.
  • Independent thinker with sound judgment and the ability to make well-reasoned decisions.
  • Ability to think quickly, evaluate trade-offs, and make decisions in fast-paced environments.
  • Strong prioritization and multitasking skills, with the ability to manage multiple initiatives simultaneously.
  • Comfortable communicating and collaborating with stakeholders at all levels of the organization, including senior leadership.
  • Experience with OneStream Software is not required; experience with financial consolidation or enterprise performance management platforms is a plus.

Who We Are

OneStream is how today's Finance teams can go beyond just reporting on the past and Take Finance Further by steering the business to the future. It's the only enterprise finance platform that unifies financial and operational data, embeds AI for better decisions and productivity, and empowers the CFO to become a critical driver of business strategy and execution. Our vision is to be the AI operating system for modern finance, digitizing core financial functions and empowering the CFO to become a critical driver of business strategy. To learn more visit www.onestream.com.

Why Join The OneStream Team

  • Transparency around corporate structure, salary, and benefits
  • Core value of customer success
  • Variety of project work (not industry-specific)
  • Strong culture and camaraderie
  • Multiple training opportunities

Benefits at OneStream
OneStream employees are passionate, hardworking individuals who go above and beyond to keep our customers happy and follow through on our mission statement. They consistently deliver the best and in turn, we make every effort to keep them cared for and happy. A sample of the benefits we provide are:

  • Excellent Medical Plan
  • Dental & Vision Insurance
  • Life Insurance
  • Short & Long Term Disability
  • Vacation Time
  • Paid Holidays
  • Professional Development
  • Retirement Plan

All candidates must be legally authorized to work for any company in the country where this position is located without sponsorship.

OneStream is an Equal Opportunity Employer.

#LI-CB1
#LI-Remote


Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.