1

Security Tester Jobs in Virginia (NOW HIRING)

Conducts security testing of web applications, web services, end points, (and other web-related assets) using both Information Assurance & Cybersecurity Division (IAD)-provided automated testing ...

Penetration Tester

Herndon, VA ยท On-site

$86K - $198K/yr

  • Medical

  • Life

  • Retirement

  • PTO

Offensive Security Certified Professional (OSCP), HTB Certified Penetration Tester Specialist (CPTS), eLearnSecurity Junior Penetration Tester (EJPT), GIAC Global Information Assurance Penetration ...

Penetration Tester

Herndon, VA ยท On-site

$86K - $198K/yr

  • Medical

  • Life

  • Retirement

  • PTO

Offensive Security Certified Professional (OSCP), HTB Certified Penetration Tester Specialist (CPTS), eLearnSecurity Junior Penetration Tester (EJPT), GIAC Global Information Assurance Penetration ...

CCNA Cyber Ops, CCNA-Security, CEH, CFR, Cloud+, CySA+, GCIA, GCIH, GICSP, SCYBER, Security+ CE, SSCP * Demonstrated experience with Kali Linux. * Demonstrated penetration testing tools experience ...

CCNA Cyber Ops, CCNA-Security, CEH, CFR, Cloud+, CySA+, GCIA, GCIH, GICSP, SCYBER, Security+ CE, SSCP * Demonstrated experience with Kali Linux. * Demonstrated penetration testing tools experience ...

Penetration Tester

Herndon, VA ยท On-site +1

$86K - $198K/yr

  • Medical

  • Life

  • Retirement

  • PTO

Offensive Security Certified Professional (OSCP), HTB Certified Penetration Tester Specialist (CPTS), eLearnSecurity Junior Penetration Tester (EJPT), GIAC Global Information Assurance Penetration ...

Security Engineer (Web Application)

Arlington, VA ยท On-site

$67.50 - $90.25/hr

Application testing will require authenticated and non-authenticated testing to ensure full ... Conducts security testing of web applications, web services, end points, (and other web-related ...

Senior Penetration Tester

Arlington, VA

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Evolve our security pentesting capabilities to test our internal and external facing processes ... Experience testing modern applications in cloud-native tech stacks. Experience with mobile ...

Senior Penetration Tester

Arlington, VA ยท On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Evolve our security pentesting capabilities to test our internal and external facing processes ... Experience testing modern applications in cloud-native tech stacks. * Experience with mobile ...

Secret Duties and Responsibilities The Security Analyst supports this Transportation Security Administration Information Technology (TSA IT) Task Order (TO) by executing security testing in a variety ...

Senior Penetration Tester

Arlington, VA ยท On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Evolve our security pentesting capabilities to test our internal and external facing processes ... Experience testing modern applications in cloud-native tech stacks. * Experience with mobile ...

Pen Testers are also responsible for performing security focused services to improve the security posture of NRO ISs. Travel: 25% estimate for pen testers (OCONUS travel 2x per year). What will you ...

Security testing experience a plus * Self-motivated, quick learner with strong analytical and problem-solving skills * Familiarity with SPA web applications such as Angular, React, or Blazor

New

Security Engineer (Infrastructure)

Arlington, VA ยท On-site

$164K/yr

Maintains and stays current with in-depth technical knowledge of operating system security testing tools in use by the Information Assurance & Cybersecurity Division (IAD), and testing techniques in ...

Showing results 41-60

Security Tester information

See Virginia salary details

$17

$50

$82

How much do security tester jobs pay per hour?

As of Aug 14, 2026, the average hourly pay for security tester in Virginia is $50.65, according to ZipRecruiter salary data. Most workers in this role earn between $43.37 and $60.77 per hour, depending on experience, location, and employer.

What is the difference between Security Tester vs Penetration Tester?

AspectSecurity TesterPenetration Tester
CertificationsSecurity+, CEH, CISSP (optional)OSCP, CEH, GPEN
Work EnvironmentInternal security teams, testing security measuresExternal or internal testing, simulated attacks
Industry UsageBroadly used across industries for security assessmentsSpecialized role focusing on penetration testing

Security Testers focus on evaluating security systems, identifying vulnerabilities, and ensuring overall security measures. Penetration Testers perform simulated attacks to exploit vulnerabilities, often requiring more advanced skills and certifications. While both roles aim to improve security, Penetration Testers typically conduct more in-depth, offensive testing, whereas Security Testers may perform broader security assessments.

What is a security tester?

Security testers, also known as penetration testers or ethical hackers, are professionals who assess the security of computer systems, networks, and applications. They simulate cyberattacks to identify vulnerabilities that malicious hackers could exploit. Their work helps organizations strengthen their defenses by discovering and addressing security weaknesses before they can be exploited. Security testers use a variety of tools and methodologies to conduct their assessments and often provide detailed reports with recommendations for improvement.

What are the key skills and qualifications needed to thrive as a security tester, and why are they important?

To thrive as a Security Tester, you need strong knowledge of cybersecurity principles, penetration testing methods, and a background in computer science or information security. Familiarity with tools like Metasploit, Burp Suite, and certifications such as OSCP or CEH is typically required. Analytical thinking, attention to detail, and effective communication help Security Testers identify vulnerabilities and explain risks to technical and non-technical stakeholders. These skills are crucial for proactively safeguarding systems and ensuring organizational resilience against cyber threats.

What are some common challenges security testers face when working with development teams?

Security Testers often need to balance thorough vulnerability testing with tight project deadlines, which can be challenging when development teams are rapidly releasing new features. Effective communication is essential, as Security Testers must clearly explain security risks and remediation steps to developers who may not have a security background. Additionally, staying updated with evolving security threats and tools is necessary to provide relevant and actionable feedback, making continuous learning a key part of the role.

What does a security tester do?

A security tester works to ensure the security of computer networks and systems. Their duties are to gather information and make assessments of computer security systems for a client or employer. They perform scans, look for vulnerabilities in applications, and locate other risks. Other responsibilities include conducting research and trying to breach networks using methods commonly deployed by hackers. The qualifications to become a security tester vary but often include a degree in computer science, cybersecurity, IT, or a related field or extensive experience and technical skills. Professional certifications are available.

What are the most commonly searched types of Security Tester jobs in Virginia?

The most popular types of Security Tester jobs in Virginia are:

What are popular job titles related to Security Tester jobs in Virginia?

For Security Tester jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Security Tester jobs in Virginia look for?

The top searched job categories for Security Tester jobs in Virginia are:

What are popular job titles related to Security Tester jobs in VA?

For Security Tester jobs in VA, the most frequently searched job titles are:

Infographic showing various Security Tester job openings in Virginia as of August 2026, with employment types broken down into 100% Full Time. Highlights an 46% In-person, 27% Hybrid, and 27% Remote job distribution, with an average salary of $105,346 per year, or $50.6 per hour.

Development Security Engineer

gTANGIBLE

Arlington, VA โ€ข On-site

Full-time

Re-posted 13 days ago


Job description

gTANGIBLE Corporation (gTC), www.gtangible.com, is a C corporation and a registered Government contractor that provides services and solutions in:

  • National Security Programs
  • Professional, Administrative, and Management Support
  • Mission and Warfighter Support

We are a Service-Disabled Veteran-Owned Small Business (SDVOSB) and the founder has years of successful experience in the Government contracting arena. Our leadership team is an exceptional group of Government contracting professionals. gTANGIBLE is in the process of identifying candidates for the following position.

Requisition Type: Full Time

Position Status: Contingent
Position Title: Development Security Engineer

Location: Arlington, VA

Security Clearance:Secret

Duties and Responsibilities

The Development Security Engineer supports this Transportation Security Administration Information Technology (TSA IT) Task Order (TO) by coordinating with Agile and Development Security Operations (DevSecOps) teams to develop, document and integrate security best practices during the Agile Software Development Life Cycle (SDLC). Duties include the following:

  • Conducts code review, identifies flaws in the business logic, programmatic vulnerabilities and weaknesses during the Agile Software Development Life Cycle (SDLC) process.
  • Conducts security testing of web applications, web services, end points, (and other web-related assets) using both Information Assurance & Cybersecurity Division (IAD)-provided automated testing tools and manual testing techniques. These scans will be coordinated for each of the Agile Sprints.
  • Provide findings feedback to the Agile and DevSecOps team.

Knowledge and Qualifications

  • At least ten (10) years of technical IT security experience performing software development in an Agile Environment.
  • At least five (5) years of experience performing application security testing.
  • At least three (3) years of experience performing web application security testing using manual techniques and vulnerability testing tools and/or code review tools for Federal IT systems.
  • At least five (5) years of experience with writing scripts and utilities using interpreted languages.
  • At least one (1) year of experience writing scripts with each of the following: PowerShell, PERL, and Python.
  • Extensive knowledge of the Agile SDLC methodology.
  • Strong programming languages background such as Python, Java, PowerShell, C#, C++, JavaScript.
  • Ability to work independently/minimal oversight.
  • Experience with manual web security testing techniques.
  • Strong understanding of NIST SP 800-53 and DISA STIGS.
  • Required Certifications: CISSP, CEH, GWAPT or other relevant certifications.
  • Experience with WebInspect, AppScan, BurpSuite, SoapUI, Nessus Professional, HP Fortify, Apple Developers Toolkit, Visual Studio and open source IDEs for development and testing.
  • Strong organizational, analytical, and technical writing skills to be able to document findings in reports.

gTANGIBLE Corporation is an equal opportunity employer and does not discriminate against any employee or applicant because of race, age, sex, color, physical or mental disability, religion, sexual orientation, marital status, national origin, or political affiliation.

Employment Type: Full-Time