Key Responsibilities Conduct external network and web application penetration testing and vulnerability assessments per NIST SP 800-115 methodology. Attempt to obtain ePHI, PII, financial data, and ...
Key Responsibilities Conduct external network and web application penetration testing and vulnerability assessments per NIST SP 800-115 methodology. Attempt to obtain ePHI, PII, financial data, and ...
Key Responsibilities โข Conduct external network and web application penetration testing and vulnerability assessments per NIST SP 800-115 methodology. โข Attempt to obtain ePHI, PII, financial ...
Key Responsibilities โข Conduct external network and web application penetration testing and vulnerability assessments per NIST SP 800-115 methodology. โข Attempt to obtain ePHI, PII, financial ...
Conduct external network and web application penetration testing and vulnerability assessments per NIST SP 800-115 methodology. * Attempt to obtain ePHI, PII, financial data, and privileged ...
Quick apply
Conduct external network and web application penetration testing and vulnerability assessments per NIST SP 800-115 methodology. * Attempt to obtain ePHI, PII, financial data, and privileged ...
Senior Penetration Tester (WebApp and Network)
Charlotte, NC ยท On-site +1
$50 - $65/hr
Strong understanding of web application technologies and protocols (HTTP/HTTPS, HTML, JavaScript, etc.). * Proficiency in using penetration testing tools like Burp Suite, OWASP ZAP, Metasploit ...
Senior Penetration Tester (WebApp and Network)
Charlotte, NC ยท On-site +1
$50 - $65/hr
Strong understanding of web application technologies and protocols (HTTP/HTTPS, HTML, JavaScript, etc.). * Proficiency in using penetration testing tools like Burp Suite, OWASP ZAP, Metasploit ...
Senior Penetration Tester (WebApp and Network)
Charlotte, NC ยท On-site
$50 - $65/hr
Strong understanding of web application technologies and protocols (HTTP/HTTPS, HTML, JavaScript, etc.). * Proficiency in using penetration testing tools like Burp Suite, OWASP ZAP, Metasploit ...
Senior Penetration Tester (WebApp and Network)
Charlotte, NC ยท On-site
$50 - $65/hr
Strong understanding of web application technologies and protocols (HTTP/HTTPS, HTML, JavaScript, etc.). * Proficiency in using penetration testing tools like Burp Suite, OWASP ZAP, Metasploit ...
As a Penetration Tester supporting web applications, you will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.
Quick apply
As a Penetration Tester supporting web applications, you will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.
Lead Penetration Tester
Kansas City, MO ยท On-site
$110 - $150K/hr
Lead Penetration Tester Location: Washington, DC, Ft. Collins, CO, or Kansas City, MO (project ... Web application security assessments (approximately 3-4 applications per year) * Test plan and ...
Quick apply
Lead Penetration Tester
Kansas City, MO ยท On-site
$110 - $150K/hr
Lead Penetration Tester Location: Washington, DC, Ft. Collins, CO, or Kansas City, MO (project ... Web application security assessments (approximately 3-4 applications per year) * Test plan and ...
Penetration Tester
Rensselaer, NY ยท On-site
$90K - $105K/yr
Key Responsibilities Penetration Testing and Vulnerability Assessment * Conduct penetration tests ... Proficiency in web application security principles, including OWASP. * Knowledge of common web ...
Quick apply
Penetration Tester
Rensselaer, NY ยท On-site
$90K - $105K/yr
Key Responsibilities Penetration Testing and Vulnerability Assessment * Conduct penetration tests ... Proficiency in web application security principles, including OWASP. * Knowledge of common web ...
As a Penetration Tester supporting web applications, you will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.
As a Penetration Tester supporting web applications, you will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.
Lead Penetration Tester
Washington, DC ยท On-site
$110 - $150K/hr
Lead Penetration Tester Location: Washington, DC, Ft. Collins, CO, or Kansas City, MO (project ... Web application security assessments (approximately 3-4 applications per year) * Test plan and ...
Quick apply
Lead Penetration Tester
Washington, DC ยท On-site
$110 - $150K/hr
Lead Penetration Tester Location: Washington, DC, Ft. Collins, CO, or Kansas City, MO (project ... Web application security assessments (approximately 3-4 applications per year) * Test plan and ...
Lead Penetration Tester
Fort Collins, CO ยท On-site
$110 - $150K/hr
Lead Penetration Tester Location: Washington, DC, Ft. Collins, CO, or Kansas City, MO (project ... Web application security assessments (approximately 3-4 applications per year) * Test plan and ...
Quick apply
Lead Penetration Tester
Fort Collins, CO ยท On-site
$110 - $150K/hr
Lead Penetration Tester Location: Washington, DC, Ft. Collins, CO, or Kansas City, MO (project ... Web application security assessments (approximately 3-4 applications per year) * Test plan and ...
* Plan and execute penetration tests across web, mobile (iOS & Android), API, cloud-native ... Conduct mobile application security testing and reverse engineering, including hardcoded ...
* Plan and execute penetration tests across web, mobile (iOS & Android), API, cloud-native ... Conduct mobile application security testing and reverse engineering, including hardcoded ...
Penetration Tester
Rensselaer, NY ยท On-site
$90 - $105/hr
Key Responsibilities Penetration Testing and Vulnerability Assessment * Conduct penetration tests ... Proficiency in web application security principles, including OWASP. * Knowledge of common web ...
Penetration Tester
Rensselaer, NY ยท On-site
$90 - $105/hr
Key Responsibilities Penetration Testing and Vulnerability Assessment * Conduct penetration tests ... Proficiency in web application security principles, including OWASP. * Knowledge of common web ...
$90 - $105/hr
Key Responsibilities Penetration Testing and Vulnerability Assessment * Conduct penetration tests ... Proficiency in web application security principles, including OWASP. * Knowledge of common web ...
$90 - $105/hr
Key Responsibilities Penetration Testing and Vulnerability Assessment * Conduct penetration tests ... Proficiency in web application security principles, including OWASP. * Knowledge of common web ...
* Plan and execute penetration tests across web, mobile (iOS & Android), API, cloud-native ... Conduct mobile application security testing and reverse engineering, including hardcoded ...
* Plan and execute penetration tests across web, mobile (iOS & Android), API, cloud-native ... Conduct mobile application security testing and reverse engineering, including hardcoded ...
$90 - $130/hr
* Plan and execute penetration tests across web, mobile (iOS & Android), API, cloud-native ... Conduct mobile application security testing and reverse engineering, including hardcoded ...
$90 - $130/hr
* Plan and execute penetration tests across web, mobile (iOS & Android), API, cloud-native ... Conduct mobile application security testing and reverse engineering, including hardcoded ...
Penetration Tester
Albany, NY ยท On-site
$60/hr
Proficiency in web application security principles (e.g., OWASP). * Knowledge of common web vulnerabilities (e.g., SQL injection, XSS) and exploit techniques. * Experience with penetration testing ...
Quick apply
Penetration Tester
Albany, NY ยท On-site
$60/hr
Proficiency in web application security principles (e.g., OWASP). * Knowledge of common web vulnerabilities (e.g., SQL injection, XSS) and exploit techniques. * Experience with penetration testing ...
Penetration Testing Lead
Leesburg, VA ยท On-site
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
Penetration Testing Lead
Leesburg, VA ยท On-site
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
... Web Application Penetration Tester). Location: Hybrid to Alexandria, VA Clearance: Public Trust
New
... Web Application Penetration Tester). Location: Hybrid to Alexandria, VA Clearance: Public Trust
New
Penetration Testing Lead
Leesburg, VA ยท On-site
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
Penetration Testing Lead
Leesburg, VA ยท On-site
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
Web Application Penetration Tester information
See salary details
$96.5K - $102.2K
4% of jobs
$102.2K - $108K
8% of jobs
$108K - $113.7K
4% of jobs
$113.7K - $119.4K
2% of jobs
$121.8K is the 25th percentile. Wages below this are outliers.
$119.4K - $125.1K
16% of jobs
$125.1K - $130.9K
15% of jobs
The median wage is $131.2K / yr.
$130.9K - $136.6K
11% of jobs
$136.6K - $142.3K
10% of jobs
$145.3K is the 75th percentile. Wages above this are outliers.
$142.3K - $148K
10% of jobs
$148K - $153.8K
11% of jobs
$153.8K - $159.5K
10% of jobs
$96.5K
$132.3K
$159.5K
How much do web application penetration tester jobs pay per year?
What is a web application penetration tester?
What are the key skills and qualifications needed to thrive as a web application penetration tester, and why are they important?
What types of challenges might a web application penetration tester encounter when working with diverse client environments?
What is the difference between Web Application Penetration Tester vs Security Analyst?
| Aspect | Web Application Penetration Tester | Security Analyst |
|---|---|---|
| Certifications | OSCP, CEH, GPEN | CISSP, Security+ |
| Work Environment | Hands-on testing, vulnerability assessments | Monitoring, incident response, policy development |
| Industry Usage | Cybersecurity firms, tech companies, consulting | Corporate security teams, government agencies |
While both roles focus on cybersecurity, a Web Application Penetration Tester specializes in identifying vulnerabilities in web applications through active testing. In contrast, a Security Analyst monitors security systems, analyzes threats, and manages security policies. The roles often overlap in certifications and industry usage but differ in daily tasks and focus areas.
What cities are hiring for Web Application Penetration Tester jobs?
Cities with the most Web Application Penetration Tester job openings:
What states have the most Web Application Penetration Tester jobs?
States with the most job openings for Web Application Penetration Tester jobs include:
What job categories do people searching Web Application Penetration Tester jobs look for?
The top searched job categories for Web Application Penetration Tester jobs are:

Full-time
Re-posted 5 days ago
Job description
Description
Position Summary
Performs blind and intelligent penetration testing against internet-facing assets - web applications, firewalls, remote access (VPN/RDP), and internet postings - for all 47 County departments, attempting to obtain confidential/sensitive data using real-world threat intelligence-based techniques while evading detection.
Key Responsibilities
Conduct external network and web application penetration testing and vulnerability assessments per NIST SP 800-115 methodology.
Attempt to obtain ePHI, PII, financial data, and privileged communications from external sources without causing service disruption.
Document all findings with risk ratings, evidence, and remediation recommendations for the Assessment report.
Attempt to avoid detection and evade department response efforts during testing windows, as scoped.
Requirements
Required Qualifications
4+ years of hands-on external network / web application penetration testing experience.
Proficiency with industry-standard tools (Burp Suite, Nmap, Metasploit, or equivalent).
Strong understanding of OWASP Top 10 and common network attack vectors.
Preferred Qualifications
OSCP, GPEN, GWAPT, or CEH certification.
Experience testing government or healthcare-sector environments.
Travel
Fully remote; must remain within the continental United States.
About Xtreme Solutions
Sourced by ZipRecruiter
Industry
It services
Company size
51 - 200 Employees
Headquarters location
Atlanta, GA, US
Year founded
2002