1

Web Penetration Tester Jobs (NOW HIRING)

... web application vulnerabilities to various level of personnel within a large organization ... application penetration testing. Minimum of 5 years of demonstrated experience with automated ...

... web application vulnerabilities to various level of personnel within a large organization ... with application penetration testing. • Minimum of 5 years of demonstrated experience with ...

Penetration Tester

Arlington, VA · On-site

$86K - $138K/yr

Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...

Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...

SkyePoint Decisions is seeking a Penetration Tester to support the Diplomatic Security Cyber ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...

Penetration Tester

Chantilly, VA · On-site

$90K - $130K/yr

CDT is looking for a Penetration Tester to This will be supporting a government customer onsite in ... System methodologies including: client/server, web hosting, web content servers, policy servers ...

Looking for an experienced Penetration Tester with strong skills in VAPT for Web, API, and Thick-Client applications , along with SAST/DAST expertise. The role involves performing manual and ...

Proven experience conducting penetration tests of web applications, networks, and other systems. * Experience with a variety of penetration testing tools and techniques (e.g., Rapid7 Nexpose ...

Penetration Tester

Colorado Springs, CO · Hybrid

$130K - $145K/yr

Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API ... Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth ...

Penetration Tester

Washington, DC · On-site

$130K - $145K/yr

Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API ... Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth ...

Penetration Tester

Washington, DC · Hybrid

$130K - $145K/yr

Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API ... Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth ...

Identify and exploit vulnerabilities in network infrastructure, operating systems, web applications ... Document all testing activities, findings, and exploitation paths in Penetration Test Reports (PTRs)

Responsibilities Peraton is seeking an experienced Cyber Penetration Tester to become part of ... Common web application vulnerabilities and exploits such as XSS, SQLi, LFI, file uploads, broken ...

Penetration Tester

Herndon, VA · Hybrid

$130K - $145K/yr

Conducting web application security assessments, focusing on OWASP Top Ten vulnerabilities and API ... Engaging in wireless and RF security testing, including penetration testing on Wi-Fi, Bluetooth ...

next page

Showing results 1-20

Web Penetration Tester information

See salary details

$22.5K

$119.9K

$168.5K

How much do web penetration tester jobs pay per year?

As of Aug 1, 2026, the average yearly pay for web penetration tester in the United States is $119,895.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is a Web Penetration Tester job?

A Web Penetration Tester is a cybersecurity professional who evaluates the security of web applications by simulating cyberattacks. They identify vulnerabilities, exploit weaknesses, and provide recommendations to improve security. Their goal is to protect web systems from threats like SQL injection, cross-site scripting (XSS), and authentication flaws. This role requires expertise in ethical hacking, scripting, and security tools such as Burp Suite and OWASP ZAP.

What are the key skills and qualifications needed to thrive in the Web Penetration Tester position, and why are they important?

To thrive as a Web Penetration Tester, you need a solid background in cybersecurity principles, web application architecture, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with tools like Burp Suite, OWASP ZAP, Metasploit, and relevant certifications such as OSCP or CEH are highly valued. Strong analytical thinking, effective communication, and meticulous attention to detail set candidates apart in this profession. These skills ensure that testers can identify critical security flaws while clearly conveying technical risks to both technical teams and non-technical stakeholders, effectively strengthening organizational cybersecurity.

What are some of the main challenges faced by Web Penetration Testers in their daily work?

Web Penetration Testers often face the challenge of keeping up with rapidly evolving web technologies and an ever-changing threat landscape. They must carefully balance thorough testing with tight project deadlines, ensuring their work uncovers both common and obscure security vulnerabilities. Collaborating with development and operations teams can require clear communication to explain findings and foster a security-oriented culture. The role can also involve continual learning and adapting to new tools, methodologies, and compliance requirements.

More about Web Penetration Tester jobs
What are the most commonly searched types of Web Penetration Tester jobs? The most popular types of Web Penetration Tester jobs are:
What states have the most Web Penetration Tester jobs? States with the most job openings for Web Penetration Tester jobs include:
Infographic showing various Web Penetration Tester job openings in the United States as of July 2026, with employment types broken down into 98% Full Time, 1% Part Time, and 1% Contract. Highlights an 83% Physical, 4% Hybrid, and 13% Remote job distribution, with an average salary of $119,895 per year, or $57.6 per hour.

Penetration Tester

Gemini

Charlotte, NC • On-site

Contractor

Re-posted 4 days ago


Job description

Job Description

REQUIRED QUALIFICATIONS
5+ years of experience in security applications and systems
Minimum of 5 years of Information Security Engineer/Consultant experience with application penetration testing.
Minimum of 5 years of demonstrated experience with automated penetration tools
Minimum of 5 years of demonstrated experience with manual penetration testing tools
Demonstrated experience with creating and communication of reports regarding web application vulnerabilities to various level of personnel within a large organization.

Qualifications


Minimum of 5 years of Information Security Engineer/Consultant experience with application penetration testing.
Minimum of 5 years of demonstrated experience with automated penetration tools
Minimum of 5 years of demonstrated experience with manual penetration testing tools

Additional Information

All your information will be kept confidential according to EEO guidelines.