Engagements may include internal and external network penetration testing, web application testing, mobile application testing, wireless security assessments, social engineering exercises, and ...
Engagements may include internal and external network penetration testing, web application testing, mobile application testing, wireless security assessments, social engineering exercises, and ...
We are seeking an experienced and results-driven Penetration Tester to perform comprehensive web application security assessments. The role involves conducting penetration tests, evaluating security ...
We are seeking an experienced and results-driven Penetration Tester to perform comprehensive web application security assessments. The role involves conducting penetration tests, evaluating security ...
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
Penetration Testing Lead
Melbourne, FL · On-site
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
Penetration Testing Lead
Melbourne, FL · On-site
GIAC Web Application Penetration Tester (GWAPT) * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) * GIAC Assessing and Auditing Wireless Networks (GAWN) Blue Teaming Certifications:
... Web Penetration Testing: • Common web application vulnerabilities like XSS, CSRF, Command Injection, SQLi, single sign-on limitations, etc. --Tools: • Proficiency in any of the following:
New
... Web Penetration Testing: • Common web application vulnerabilities like XSS, CSRF, Command Injection, SQLi, single sign-on limitations, etc. --Tools: • Proficiency in any of the following:
New
Penetration Tester
Virginia, MN · On-site
$120 - $180/hr
* Work closely with all members of the team to conduct penetration testing of customer networks, applications (API, web, and mobile), and/or social engineering activities to achieve the customer ...
New
Penetration Tester
Virginia, MN · On-site
$120 - $180/hr
* Work closely with all members of the team to conduct penetration testing of customer networks, applications (API, web, and mobile), and/or social engineering activities to achieve the customer ...
New
... penetration testing tools Demonstrated experience with creating and communication of reports regarding web application vulnerabilities to various level of personnel within a large organization.
... penetration testing tools Demonstrated experience with creating and communication of reports regarding web application vulnerabilities to various level of personnel within a large organization.
Penetration Tester
Washington, DC · On-site
$120 - $180/hr
A minimum of five (5)+ years of hands-on penetration testing experience, including network, system, and web application testing. * At least 2 years of relevant experience must be recent (performed ...
New
Penetration Tester
Washington, DC · On-site
$120 - $180/hr
A minimum of five (5)+ years of hands-on penetration testing experience, including network, system, and web application testing. * At least 2 years of relevant experience must be recent (performed ...
New
Senior Penetration Tester
Herndon, VA · On-site
$120 - $150/hr
* Perform penetration testing on networks, applications (including APIs, mobile apps, and web apps) * Utilize social engineering techniques * Provide mentoring to junior staff * Support Red Team ...
Senior Penetration Tester
Herndon, VA · On-site
$120 - $150/hr
* Perform penetration testing on networks, applications (including APIs, mobile apps, and web apps) * Utilize social engineering techniques * Provide mentoring to junior staff * Support Red Team ...
Penetration Tester
Charlotte, NC · On-site
... penetration ... testing tools • Demonstrated experience with creating and communication of reports regarding web ...
Penetration Tester
Charlotte, NC · On-site
... penetration ... testing tools • Demonstrated experience with creating and communication of reports regarding web ...
Senior Penetration Tester
Washington, DC · On-site
$145K - $180K/yr
Certification focuses on Web Application penetration testing. * i.e. eWPT, BSCP, etc * Relevant security research. * Accredited CVEs, research papers or contributions to the cyber security sphere.
Quick apply
Senior Penetration Tester
Washington, DC · On-site
$145K - $180K/yr
Certification focuses on Web Application penetration testing. * i.e. eWPT, BSCP, etc * Relevant security research. * Accredited CVEs, research papers or contributions to the cyber security sphere.
Penetration Tester
Reston, VA · On-site
$110 - $170/hr
Perform web application, network, API and AI penetration testing. * Conduct red teaming engagements and emulate attacker techniques to surface vulnerabilities. * Develop actionable recommendations to ...
New
Penetration Tester
Reston, VA · On-site
$110 - $170/hr
Perform web application, network, API and AI penetration testing. * Conduct red teaming engagements and emulate attacker techniques to surface vulnerabilities. * Develop actionable recommendations to ...
New
Security Tester
Sunnyvale, CA · On-site
Good knowledge of Secure code Analysis and Web penetration testing. Good experience in HP Fortify and WebInspect tool. Top 3 responsibilities you would expect the Subcon to shoulder and execute:
Security Tester
Sunnyvale, CA · On-site
Good knowledge of Secure code Analysis and Web penetration testing. Good experience in HP Fortify and WebInspect tool. Top 3 responsibilities you would expect the Subcon to shoulder and execute:
Penetration Tester
Arlington, VA · On-site
$86K - $138K/yr
... Web Security Testing Guide (WTG), etc. * Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers. * U.S. citizenship required. * An active Secret security ...
Penetration Tester
Arlington, VA · On-site
$86K - $138K/yr
... Web Security Testing Guide (WTG), etc. * Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers. * U.S. citizenship required. * An active Secret security ...
Senior Penetration Tester - Web & Hardware/IoT
Chicago, IL · On-site
$133 - $225/hr
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick‑client, and/or mobile ...
Senior Penetration Tester - Web & Hardware/IoT
Chicago, IL · On-site
$133 - $225/hr
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick‑client, and/or mobile ...
Penetration Tester
Arlington, VA · On-site
$95K - $112K/yr
... Web Security Testing Guide (WTG), etc. * Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers. * U.S. citizenship required. * An active Secret security ...
Quick apply
Penetration Tester
Arlington, VA · On-site
$95K - $112K/yr
... Web Security Testing Guide (WTG), etc. * Demonstrated ability to lead a penetration test and guide Senior/Junior Penetration Testers. * U.S. citizenship required. * An active Secret security ...
Penetration Tester
Chantilly, VA · On-site
$90K - $130K/yr
Conduct penetration testing that uses both active and passive capabilities to expose and exploit IA ... System methodologies including: client/server, web hosting, web content servers, policy servers ...
Penetration Tester
Chantilly, VA · On-site
$90K - $130K/yr
Conduct penetration testing that uses both active and passive capabilities to expose and exploit IA ... System methodologies including: client/server, web hosting, web content servers, policy servers ...
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications ...
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications ...
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications ...
Plan, scope, and execute penetration testing engagements across a variety of environments, including web applications, APIs, cloud platforms, infrastructure, thick-client, and/or mobile applications ...
Web Penetration Testing information
See salary details
$11.54 - $18.36
4% of jobs
$18.36 - $25.17
0% of jobs
$25.17 - $31.99
0% of jobs
$31.99 - $38.81
6% of jobs
$38.81 - $45.63
5% of jobs
$50.89 is the 25th percentile. Wages below this are outliers.
$45.63 - $52.45
12% of jobs
The median wage is $59.11 / hr.
$52.45 - $59.27
23% of jobs
$65.74 is the 75th percentile. Wages above this are outliers.
$59.27 - $66.08
26% of jobs
$66.08 - $72.90
13% of jobs
$72.90 - $79.72
3% of jobs
$79.72 - $86.54
7% of jobs
$11
$59
$86
How much do web penetration testing jobs pay per hour?
What is web penetration testing?
What are the key skills and qualifications needed to thrive as a web penetration tester?
What are some common challenges faced by web penetration testers during assessments, and how can they be addressed?
What is the difference between Web Penetration Testing vs Web Security Analyst?
| Aspect | Web Penetration Testing | Web Security Analyst |
|---|---|---|
| Certifications | OSCP, CEH, GPEN | CISSP, CISA, GIAC |
| Work Environment | Hands-on testing, simulated attacks | Monitoring, policy development, incident response |
| Employer & Industry Usage | Cybersecurity firms, tech companies, consulting | Corporate IT, financial institutions, government agencies |
Web Penetration Testing focuses on actively identifying vulnerabilities through simulated attacks, while Web Security Analysts monitor and improve security measures, analyze threats, and respond to incidents. Both roles require cybersecurity certifications but differ in their approach and daily tasks.
What cities are hiring for Web Penetration Testing jobs?
Cities with the most Web Penetration Testing job openings:
What states have the most Web Penetration Testing jobs?
States with the most job openings for Web Penetration Testing jobs include:
What job categories do people searching Web Penetration Testing jobs look for?
The top searched job categories for Web Penetration Testing jobs are:
- Penetration Tester Ethical Hacker
- Cyber Security Penetration Testing
- Part Time Penetration Tester Ethical Hacker
- Apprentice Penetration Tester Ethical Hacker
- Overnight Cybersecurity Penetration Tester
- Pnpt Certification
- Part Time Oscp
- Penetration Tester Ethical Hacker Redlens Infosec
- Oscp Salary
- Ethical Penetration Testing

Job description
Engagements may include internal and external network penetration testing, web application testing, mobile application testing, wireless security assessments, social engineering exercises, and adversary simulation activities.
This opportunity is ideal for experienced cybersecurity professionals seeking flexible, project-based consulting work while maintaining independence and control of their schedule.
Requirements
- Conduct authorized penetration testing activities against client environments.
- Perform internal and external network penetration tests.
- Execute web application, mobile application, wireless, and social engineering assessments as applicable.
- Validate vulnerabilities and document security findings.
- Prepare clear, professional reports with supporting evidence and remediation recommendations.
- Participate in project kickoff, status, and findings review meetings as needed.
- Adhere to established testing methodologies, quality standards, and project timelines.
- Maintain strict confidentiality of client information and assessment results.
Preferred Areas of Expertise
Candidates may possess expertise in one or more of the following areas:
- Internal Network Penetration Testing
- External Network Penetration Testing
- Active Directory Security Assessments
- Web Application Penetration Testing
- Mobile Application Penetration Testing
- Wireless Security Testing
- Social Engineering Assessments
- Red Team / Adversary Simulation Exercises
- Cloud Security Assessments
Required Qualifications
- Minimum three years of hands-on penetration testing experience.
- Experience performing client-facing security assessments.
- Strong understanding of attack methodologies, exploitation techniques, and common security weaknesses.
- Experience with industry-standard penetration testing tools and methodologies.
- Excellent written and verbal communication skills.
- Ability to work independently and manage assignments with minimal supervision.
- Ability to execute confidentiality and independent contractor agreements.
Preferred Certifications
One or more of the following certifications is required:
- Offensive Security Certified Professional (OSCP) / preferred
- Practical Network Penetration Tester (PNPT)
- GIAC Penetration Tester (GPEN)
- Offensive Security Web Expert (OSWE)
- eLearnSecurity Web Application Penetration Tester (eWPT)
- Certified Red Team Operator (CRTO)
- Other relevant offensive security certifications
Engagement Model
- Independent Contractor (1099)
- Project-Based Assignments
- Flexible Schedule
- Primarily Remote
- Occasional Travel May Be Required
- Engagements may range from several days to multiple weeks depending on project scope
Desired Attributes
- Professionalism and integrity
- Strong attention to detail
- Reliable project execution
- Excellent client communication skills
- Ability to translate technical findings into business-focused recommendations
- Commitment to producing high-quality deliverables
Interested Consultants
We are continuously building a network of qualified penetration testing professionals for future project opportunities. Interested consultants are encouraged to submit the following information for consideration:
- Current resume
- Relevant certifications
- Areas of specialization
- Typical availability for project work
- Desired hourly rate or project-based pricing information