1

Security Tester Jobs in Virginia (NOW HIRING)

Penetration Tester

Herndon, VA · On-site

$86K - $198K/yr

Offensive Security Certified Professional (OSCP), HTB Certified Penetration Tester Specialist (CPTS), eLearnSecurity Junior Penetration Tester (EJPT), GIAC Global Information Assurance Penetration ...

CCNA Cyber Ops, CCNA-Security, CEH, CFR, Cloud+, CySA+, GCIA, GCIH, GICSP, SCYBER, Security+ CE, SSCP * Demonstrated experience with Kali Linux. * Demonstrated penetration testing tools experience ...

CCNA Cyber Ops, CCNA-Security, CEH, CFR, Cloud+, CySA+, GCIA, GCIH, GICSP, SCYBER, Security+ CE, SSCP * Demonstrated experience with Kali Linux. * Demonstrated penetration testing tools experience ...

Security testing experience a plus * Self-motivated, quick learner with strong analytical and problem-solving skills * Familiarity with SPA web applications such as Angular, React, or Blazor

Evolve our security pentesting capabilities to test our internal and external facing processes ... Experience testing modern applications in cloud-native tech stacks. Experience with mobile ...

Evolve our security pentesting capabilities to test our internal and external facing processes ... Experience testing modern applications in cloud-native tech stacks. * Experience with mobile ...

Software Tester

Stafford, VA · On-site

$90 - $130/hr

Security testing experience a plus * Self-motivated, quick learner with strong analytical and problem-solving skills * Familiarity with SPA web applications such as Angular, React, or Blazor

Security testing experience a plus * Self-motivated, quick learner with strong analytical and problem-solving skills * Familiarity with SPA web applications such as Angular, React, or Blazor

Security testing experience a plus * Self-motivated, quick learner with strong analytical and problem-solving skills * Familiarity with SPA web applications such as Angular, React, or Blazor

Senior Penetration Tester Overview CoStar Group (NASDAQ: CSGP) is a leading global provider of ... Evolve our security pentesting capabilities to test our internal and external facing processes ...

Evolve our security pentesting capabilities to test our internal and external facing processes ... Experience testing modern applications in cloud-native tech stacks. * Experience with mobile ...

Conducts security testing of web applications, web services, end points, (and other web-related assets) using both Information Assurance & Cybersecurity Division (IAD)-provided automated testing ...

Showing results 41-60

Security Tester information

See Virginia salary details

$17

$50

$82

How much do security tester jobs pay per hour?

As of Sep 5, 2026, the average hourly pay for security tester in Virginia is $50.65, according to ZipRecruiter salary data. Most workers in this role earn between $43.37 and $60.77 per hour, depending on experience, location, and employer.

What is a security tester?

Security testers, also known as penetration testers or ethical hackers, are professionals who assess the security of computer systems, networks, and applications. They simulate cyberattacks to identify vulnerabilities that malicious hackers could exploit. Their work helps organizations strengthen their defenses by discovering and addressing security weaknesses before they can be exploited. Security testers use a variety of tools and methodologies to conduct their assessments and often provide detailed reports with recommendations for improvement.

What does a security tester do?

A security tester works to ensure the security of computer networks and systems. Their duties are to gather information and make assessments of computer security systems for a client or employer. They perform scans, look for vulnerabilities in applications, and locate other risks. Other responsibilities include conducting research and trying to breach networks using methods commonly deployed by hackers. The qualifications to become a security tester vary but often include a degree in computer science, cybersecurity, IT, or a related field or extensive experience and technical skills. Professional certifications are available.

What are the key skills and qualifications needed to thrive as a security tester, and why are they important?

To thrive as a Security Tester, you need strong knowledge of cybersecurity principles, penetration testing methods, and a background in computer science or information security. Familiarity with tools like Metasploit, Burp Suite, and certifications such as OSCP or CEH is typically required. Analytical thinking, attention to detail, and effective communication help Security Testers identify vulnerabilities and explain risks to technical and non-technical stakeholders. These skills are crucial for proactively safeguarding systems and ensuring organizational resilience against cyber threats.

What are some common challenges security testers face when working with development teams?

Security Testers often need to balance thorough vulnerability testing with tight project deadlines, which can be challenging when development teams are rapidly releasing new features. Effective communication is essential, as Security Testers must clearly explain security risks and remediation steps to developers who may not have a security background. Additionally, staying updated with evolving security threats and tools is necessary to provide relevant and actionable feedback, making continuous learning a key part of the role.

What is the difference between Security Tester vs Penetration Tester?

AspectSecurity TesterPenetration Tester
CertificationsSecurity+, CEH, CISSP (optional)OSCP, CEH, GPEN
Work EnvironmentInternal security teams, testing security measuresExternal or internal testing, simulated attacks
Industry UsageBroadly used across industries for security assessmentsSpecialized role focusing on penetration testing

Security Testers focus on evaluating security systems, identifying vulnerabilities, and ensuring overall security measures. Penetration Testers perform simulated attacks to exploit vulnerabilities, often requiring more advanced skills and certifications. While both roles aim to improve security, Penetration Testers typically conduct more in-depth, offensive testing, whereas Security Testers may perform broader security assessments.

What are the most commonly searched types of Security Tester jobs in Virginia?

The most popular types of Security Tester jobs in Virginia are:

What are popular job titles related to Security Tester jobs in VA?

For Security Tester jobs in VA, the most frequently searched job titles are:

Infographic showing various Security Tester job openings in Virginia as of August 2026, with employment types broken down into 79% Full Time, 19% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $105,346 per year, or $50.6 per hour.

Penetration Tester / Active Secret

Peraton

Arlington, VA

$86K - $138K/yr

Full-time

Re-posted 27 days ago


Peraton rating

8.3

Company rating: 8.3 out of 10

Based on 56 frontline employees who took The Breakroom Quiz

52nd of 226 rated it services


Job description

Responsibilities

Peraton is seeking an experienced Cyber Penetration Tester to become part of Peratons' Federal Strategic Cyber programs. 

Location: Northern VA; Hybrid - flexible as long as person can come on-site as & when needed. 

In this role, you will:

  • Support the Red Cell Team by performing and leading penetration tests to assess the security of customer systems.
  • Identify vulnerabilities and develop recommended remediations to satisfy mandated NIST 800-53 security controls.
  • Report and demonstrate findings to system owners and engineers.
  • Maintain Red Cell infrastructure.
  • Develop or modify tools to automate discovery or exploitation.
Qualifications

Basic Qualifications:

  • Bachelor of Science and 5 years experience, or a Master's of Science and 3 years of experience. In lieu of a degree, 4 years of additional  experience may be considered.
  • Minimum of 2 years with penetration testing experience. 
  • Possess one of the following certifications, OR be able to obtain before start date:
    • CCNA Cyber Ops, CCNA-Security, CEH, CFR, Cloud+, CySA+, GCIA, GCIH, GICSP, SCYBER, Security+ CE, SSCP
  • Demonstrated experience with Kali Linux.
  • Demonstrated penetration testing tools experience with Nmap, Burp Suite, Metasploit, etc.
  • Demonstrated ability in evaluating vulnerabilities, performing root cause analysis, and reporting findings utilizing assessment methodologies such as NIST SP 800-115, Penetration Testing Execution Standard (PTES), Information Systems Security Assessment Framework (ISSAF), OWASP Web Security Testing Guide (WTG), etc.
  • Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers.
  • U.S. citizenship required. 
  • An active Secret security clearance. 
    • Must have the ability to obtain a final Top Secret security clearance.

Preferred:

  • Active Top Secret or TS/SCI clearance.
  • One of the following certifications or an alternate, verifiable certification demonstrating IT security competence:
    • CompTIA CASP+
    • ISC2 Certified Information Security Professional (CISSP)
    • ISC2 Certified Cloud Security Professional (CCSP)
    • ISC2 Information Systems Security Engineering Professional (ISSEP)
  • One of the following certifications or an alternate, verifiable certification demonstrating practical penetration testing competence:
    • Offensive Security Certified Professional (OSCP)
    • Offensive Security Certified Professional (OSCP)
    • Hack the Box Certified Penetration Testing Specialist (CPTS)
    • TCM Security Practical Network Penetration Tester (PNPT)
    • GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)
    • Zero Point Security Red Team Ops II
  • Advanced understanding of the following:
    • NIST Risk Management Framework (RMF) and the Assessment and Authorization (A&A) process.
    • Security principles such as CIA, IAAAA, access control models, risk management, etc.
    • Networking principles and technologies such as IP routing, TCP/UDP, VPNs, firewalls, NAT, etc.
    • Common network protocols such as SSH, FTP, SMTP, SMB, HTTP, etc.
    • Operating system principles such as process management, device management, user management, file systems, etc.
    • Data processing principles such as encoding, hashing, encryption, etc.
    • Scripting and programming languages such as Bash, Python, PowerShell, JavaScript, etc.
    • Common application vulnerabilities and exploits such as outdated components,
    • permissions mis-configurations, lack of input validation, logging/monitoring failures, etc.
    • Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken authentication mechanisms, etc.
    • Active Directory (AD) enumeration and attacks such as kerberoasting, AS-REP roasting, abusing mis-configured privileges, crafting golden tickets, etc.
    • Public Key Infrastructure (PKI) and navigating IT environments implementing multifactor authentication.
    • Cloud technologies and platforms such as Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (GCP), etc.

#DSCM

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range$86,000 - $138,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Employment Type: FULL_TIME

What Peraton employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Peraton logo

About Peraton

Sourced by ZipRecruiter

At Peraton, we re at the forefront of delivering the next big thing every day. We re the partner of choice to help solve some of the world s most daunting challenges, delivering bold, new solutions to keep people around the world safer and more secure.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Herndon, VA, US

Year founded

2017