1

Vulnerability Analyst Penetration Tester Jobs (NOW HIRING)

Tharros is seeking a Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer to support a DHS Intelligence and Analysis cybersecurity program in the National Capital ...

Description Tharros is seeking a Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer to support a DHS Intelligence and Analysis cybersecurity program in the National ...

... Analyzing and Threat Modeling as required. • Curation and assessment of vulnerability data ... Penetration Testing • Knows scripting language. • Review test cases from time to time ...

Penetration Tester

Chantilly, VA · On-site

$150K - $195K/yr

... vulnerability analysis including misconfigurations and zero-day exploits, and developing more sophisticated exploitation techniques. Leads penetration tests, mentoring junior testers, and providing ...

Penetration Tester

Aurora, CO · On-site

$150K - $195K/yr

... vulnerability analysis including misconfigurations and zero-day exploits, and developing more sophisticated exploitation techniques. Leads penetration tests, mentoring junior testers, and providing ...

... vulnerability analysis including misconfigurations and zero-day exploits, and developing more sophisticated exploitation techniques. Leads penetration tests, mentoring junior testers, and providing ...

Description Tharros has an immediate opportunity for a Penetration Tester to support the US Navy ... Conduct network scouting and vulnerability analyses of systems within a network. * Conduct on-net ...

Analyze vulnerability scan results and correlate findings from multiple tools to validate security weaknesses and eliminate false positives. * Provide expert technical consulting and security ...

Designs and conducts penetration tests, exploring more complex vulnerability analysis including ... Pen Tester, Level 2 (Intermediate) Functional Description: In addition to achieved duties described ...

Designs and conducts penetration tests, exploring more complex vulnerability analysis including ... Pen Tester, Level 2 (Intermediate) Functional Description: In addition to achieved duties described ...

... vulnerability analysis including misconfigurations and zero-day exploits, and developing more sophisticated exploitation techniques. • Leads penetration tests, mentoring junior testers, and ...

Penetration Tester

Chantilly, VA · On-site

$100 - $125/hr

Designs and conducts penetration tests, exploring more complex vulnerability analysis including ... Pen Tester, Level 2 (Intermediate) Functional Description: In addition to achieved duties described ...

next page

Showing results 1-20

Vulnerability Analyst Penetration Tester information

See salary details

$22.5K

$119.9K

$168.5K

How much do vulnerability analyst penetration tester jobs pay per year?

As of Sep 9, 2026, the average yearly pay for vulnerability analyst penetration tester in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What cities are hiring for Vulnerability Analyst Penetration Tester jobs?

Cities with the most Vulnerability Analyst Penetration Tester job openings:

What states have the most Vulnerability Analyst Penetration Tester jobs?

States with the most job openings for Vulnerability Analyst Penetration Tester jobs include:

What are popular job titles related to Vulnerability Analyst Penetration Tester jobs?

For Vulnerability Analyst Penetration Tester jobs, the most frequently searched job titles are:

Infographic showing various Vulnerability Analyst Penetration Tester job openings in the United States as of August 2026, with employment types broken down into 87% Full Time, 6% Part Time, and 7% Contract. Highlights an 80% Physical, 9% Hybrid, and 11% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.

Senior Penetration Tester

Washington, DC • Hybrid

Analygence
Business Management Consulting • 201 - 500 employees

Full-time

Re-posted 5 days ago


Job description

Tharros is seeking a Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer to support a DHS Intelligence and Analysis cybersecurity program in the National Capital Region.
This role will support advanced penetration testing, software assurance, vulnerability assessment, cyber supply chain risk management, secure cloud and hybrid engineering, and cross-domain security assessment activities. The ideal candidate is a senior technical assessor who can go beyond automated scanning to identify systemic weaknesses, validate exploitability, assess operational impact, and provide clear remediation recommendations for complex mission environments.
Responsibilities:
  • Conduct penetration testing, vulnerability assessments, software assurance, and cyber supply chain risk management activities for Federal mission systems.
  • Perform full-scope security testing using established methodologies such as MITRE ATT&CK, OWASP, NIST 800-115, and related Federal or IC assessment practices.
  • Support pre-engagement planning, rules of engagement, intelligence gathering, threat modeling, vulnerability analysis, exploitation, post-exploitation, and reporting.
  • Use approved automated and manual testing methods to identify vulnerabilities, validate exploitability, and assess potential business and operational impacts.
  • Identify vulnerabilities commonly missed by automated tools through manual, expert-driven testing techniques.
  • Assess SOC detection and response capabilities through controlled testing activities.
  • Produce penetration testing reports, vulnerability assessment reports, software assurance recommendations, and corrective action guidance.
  • Support software assurance through vulnerability and compliance testing, source code review, static/dynamic analysis, dependency review, and software supply chain risk identification.
  • Conduct vulnerability assessments and interpret results to recommend corrective actions and mitigation strategies.
  • Support secure cloud, hybrid, DevSecOps, application, identity, API, microservices, CI/CD, Zero Trust, and cross-domain assessment activities.
  • Maintain secure testing kits and assessment tooling, including patching, configuration updates, and approved tool management.
  • Update and maintain penetration testing, SCRM, and vulnerability assessment procedures.
  • Support audits, working groups, and stakeholder briefings related to penetration testing, software assurance, vulnerability assessment, and cyber supply chain risk.
  • Identify opportunities to improve testing processes, automate assessment workflows, strengthen reporting, and produce useful metrics for leadership and technical stakeholders.
  • Translate assessment findings into actionable remediation plans, risk insights, POA&M inputs, dashboards, and decision-ready reporting.