1

Security Tester Jobs (NOW HIRING)

NY · On-site

$72.35 - $98.18/hr

Evaluate test results, identify potential security risks, and provide clear reporting to stakeholders. * Collaborate with global System Test and HIL teams to ensure alignment on testing strategies ...

Responsibilities Conduct black box ,white box security and penetration testing to assess and validate application security Perform manual pen-tests, ability to setup threat models and fuzzers. Be ...

Be Seen First

Automotive Embedded Security Tester (BH ID) Location: Plymouth, MI Duration:2+ year contract Key Requirements * Automotive industry background required * Experience with Electronic Control Units ...

New

Hands-on security tester with proficiency in tools like HP Fortify, Web Inspect, Nessus, BURP, IBM Appscan * Expert in security frameworks & standards (OWASP, NIST, ISO27001, Data security, PCI etc)

Company Description - Conduct black box, white box vulnerability and penetration testing - Setup ... security tools and services - Good at assessment of security policies, best practices and ...

- Conduct black box, white box vulnerability and penetration testing - Setup threat modesla and ... security tools and services - Good at assessment of security policies, best practices and ...

Penetration Tester

Chantilly, VA · On-site

$110 - $170/hr

Penetration Tester LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this ... In this role, you will identify vulnerabilities and test the security of networks, applications ...

Penetration Tester LOCATION Annapolis Junction, MD 20701 CLEARANCE TS/SCI Full Poly (Please note ... In this role, you will identify vulnerabilities and test the security of networks, applications ...

Penetration Tester

Honolulu, HI · On-site

$120 - $160/hr

Penetration Tester LOCATIONHonolulu, HI 96815 CLEARANCETS/SCI Full Poly (Please note this position ... In this role, you will identify vulnerabilities and test the security of networks, applications ...

Penetration Tester

Aurora, CO · On-site

$90 - $130/hr

Penetration Tester LOCATION Aurora, CO 80014 CLEARANCE TS/SCI Full Poly (Please note this position ... In this role, you will identify vulnerabilities and test the security of networks, applications ...

Showing results 41-60

Security Tester information

See salary details

$17

$51

$83

How much do security tester jobs pay per hour?

As of Sep 5, 2026, the average hourly pay for security tester in the United States is $51.09, according to ZipRecruiter salary data. Most workers in this role earn between $43.75 and $61.30 per hour, depending on experience, location, and employer.

What is a security tester?

Security testers, also known as penetration testers or ethical hackers, are professionals who assess the security of computer systems, networks, and applications. They simulate cyberattacks to identify vulnerabilities that malicious hackers could exploit. Their work helps organizations strengthen their defenses by discovering and addressing security weaknesses before they can be exploited. Security testers use a variety of tools and methodologies to conduct their assessments and often provide detailed reports with recommendations for improvement.

What does a security tester do?

A security tester works to ensure the security of computer networks and systems. Their duties are to gather information and make assessments of computer security systems for a client or employer. They perform scans, look for vulnerabilities in applications, and locate other risks. Other responsibilities include conducting research and trying to breach networks using methods commonly deployed by hackers. The qualifications to become a security tester vary but often include a degree in computer science, cybersecurity, IT, or a related field or extensive experience and technical skills. Professional certifications are available.

What are the key skills and qualifications needed to thrive as a security tester, and why are they important?

To thrive as a Security Tester, you need strong knowledge of cybersecurity principles, penetration testing methods, and a background in computer science or information security. Familiarity with tools like Metasploit, Burp Suite, and certifications such as OSCP or CEH is typically required. Analytical thinking, attention to detail, and effective communication help Security Testers identify vulnerabilities and explain risks to technical and non-technical stakeholders. These skills are crucial for proactively safeguarding systems and ensuring organizational resilience against cyber threats.

What are some common challenges security testers face when working with development teams?

Security Testers often need to balance thorough vulnerability testing with tight project deadlines, which can be challenging when development teams are rapidly releasing new features. Effective communication is essential, as Security Testers must clearly explain security risks and remediation steps to developers who may not have a security background. Additionally, staying updated with evolving security threats and tools is necessary to provide relevant and actionable feedback, making continuous learning a key part of the role.

What is the difference between Security Tester vs Penetration Tester?

AspectSecurity TesterPenetration Tester
CertificationsSecurity+, CEH, CISSP (optional)OSCP, CEH, GPEN
Work EnvironmentInternal security teams, testing security measuresExternal or internal testing, simulated attacks
Industry UsageBroadly used across industries for security assessmentsSpecialized role focusing on penetration testing

Security Testers focus on evaluating security systems, identifying vulnerabilities, and ensuring overall security measures. Penetration Testers perform simulated attacks to exploit vulnerabilities, often requiring more advanced skills and certifications. While both roles aim to improve security, Penetration Testers typically conduct more in-depth, offensive testing, whereas Security Testers may perform broader security assessments.

What cities are hiring for Security Tester jobs?

Cities with the most Security Tester job openings:

What are the most commonly searched types of Security Tester jobs?

The most popular types of Security Tester jobs are:

Who are the top companies hiring for Security Tester jobs?

The top employers for Security Tester jobs are:

What states have the most Security Tester jobs?

States with the most job openings for Security Tester jobs include:

Infographic showing various Security Tester job openings in the United States as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $106,258 per year, or $51.1 per hour.

Automotive Embedded Security Tester (BH ID)

Sunrise Systems, Inc.

Plymouth, MI • On-site

Other

Posted 7 days ago


Key responsibilities

  • Design and execute comprehensive penetration testing campaigns against automotive embedded targets.

  • Configure and deploy fuzzing frameworks to identify vulnerabilities in vehicle ECUs and related systems.

  • Intercept, manipulate, and analyze traffic across wired vehicle networks and wireless communication interfaces.


Job description

Job Title: Automotive Embedded Security Tester (BH ID) Location: Plymouth, MI Duration:2+ year contract
Key Requirements

  • Automotive industry background required
  • Experience with Electronic Control Units (ECUs)
  • Strong understanding of CAN (Controller Area Network) protocols


Technical Skills

  1. Penetration testing experience
  2. Must have experience beyond fuzz testing
  3. Looking for candidates with security testing experience in one or more of the following areas:
  • USB
  • Wireless communications
  • Bluetooth
  • Similar embedded/connected device technologies

Position Notes: Embedded Security / Pen Testing Engineer
Automotive Embedded Security Tester (BH ID)
Embedded Systems Penetration & Fuzz Testing

  • Design & Execute Campaigns: Build and execute comprehensive penetration testing campaigns against a wide variety of automotive embedded targets.
  • Advanced Fuzzing: Configure and deploy targeted fuzzing frameworks (e.g., AFL++, libFuzzer, Peach, Defensics) against vehicle computers, ECUs, and clusters.
  • Vulnerability Discovery: Uncover memory corruption vulnerabilities (buffer overflows, use-after-free), resource exhaustion, and complex logic flaws that automated static analyzers often miss.


Comprehensive Wireless & Wired Protocol Analysis

  • Wired Vehicle Networks: Intercept, manipulate, and inject traffic across internal wired topologies, including CAN, CAN-FD, Automotive Ethernet (SOME/IP, DoIP), LIN, and FlexRay. You will utilize industry-standard tools like Vector CANoe/CANalyzer and Vehicle Spy.
  • Wireless Ecosystems: Aggressively analyze and exploit vulnerabilities across every wireless communication interface. This includes deep-dive assessments of Bluetooth/BLE, Wi-Fi (802.11), Cellular networks (4G/LTE, 5G, and C-V2X), UWB, NFC, and traditional RF/Keyless Entry Systems (RKE/PEPS) using Software Defined Radios (SDRs like HackRF, USRP).


Hardware & Firmware Reverse Engineering

  • Physical Attack Vectors: Conduct hands-on, hardware-level security testing to identify physical attack vectors.
  • Hardware Debugging & Exploitation: Utilize tools like Logic Analyzers, Bus Pirate, J-Link, and UART/JTAG/SPI debuggers, side-channel analysis (SCA), and voltage/clock fault injection techniques.
  • Firmware Analysis: Extract firmware from flash memory for subsequent reverse engineering and static analysis using disassemblers like IDA Pro.


AI-Enhanced Fuzzing and Vulnerability Discovery

  • Develop and apply AI-driven fuzzing techniques, using machine learning to intelligently guide test case generation and uncover complex vulnerabilities in vehicle software.
  • Utilize ML models to perform automated analysis of source code and binaries, identifying potential zero-day vulnerabilities that evade traditional static and dynamic analysis tools.


Automated Anomaly Detection in Vehicle Networks

  • Implement and manage machine learning systems to analyze real-time data from CAN, Automotive Ethernet, and wireless channels, automatically detecting anomalous patterns indicative of a cyberattack.


Adversarial AI/ML System Testing

  • Conduct security assessments of on-board AI/ML systems (e.g., those used for perception, sensor fusion, or decision-making in autonomous driving).
  • Design and execute adversarial attacks (e.g., data poisoning, evasion attacks) to test the resilience and integrity of automotive AI models.


Strategic Remediation

  • Actionable Reporting: Document findings in meticulous, highly technical reports that include mitigation strategies.
  • Engineering Collaboration: Partner directly with other security tester/consultants to craft actionable, robust remediation strategies that fix the root cause of vulnerabilities.


What We Are Looking For
Experience & Education

  • Bachelor's or Master's degree in Computer Science, Cybersecurity, Computer Engineering, or a heavily related technical discipline.
  • Proven experience in applying AI/ML techniques to cybersecurity challenges, such as intelligent fuzzing, anomaly detection, or securing machine learning systems.
  • 3+ years of hands-on experience in penetration testing, vulnerability research, or reverse engineering, specifically focused on automotive embedded systems, IoT devices, or specialized custom hardware.


Deep Technical Expertise & Certifications

  • Deep understanding of automotive E/E architectures, RTOS (e.g., QNX, VxWorks, AUTOSAR OS), and POSIX-based systems (Automotive Linux).
  • Familiarity with automotive microcontrollers (e.g., Infineon AURIX TriCore, Renesas RH850, ARM Cortex-R/M) and hardware security modules (HSM/SHE).
  • Strong grasp of industry-standard cybersecurity regulations and frameworks, specifically ISO/SAE 21434, UNECE WP.29 R155, and MITRE Telecommunication&CK.
  • Knowledge of common machine learning frameworks (e.g., TensorFlow, PyTorch, scikit-learn) and their application in a security context.


Understanding of adversarial ML concepts and defenses.

  • Preferred Certifications: OSCP, OSCE, OSWE, eCPTX, GXPN, or specialized automotive/IoT security certifications.


Programming & Tooling Proficiency

  • Proficiency in scripting and low-level programming languages such as Python, C/C++, Bash, or Assembly (ARM/x86/TriCore).
  • Experience with data science and machine learning libraries within Python (e.g., Pandas, NumPy).
  • Extensive hands-on experience with hardware/software testing tools (e.g., Oscilloscopes, Wireshark, Burp Suite, GNU Radio, Binwalk).