Application Penetration Tester
Leading Utilities Organization
Application Penetration Tester
This role focuses on identifying, validating, and exploiting security vulnerabilities through hands-on, manual penetration testing across a broad range of application technologies.
This position will conduct application penetration testing on browser-based/web applications, APIs, and mobile applications (mainframe and thick client experience a plus) using primarily manual techniques supplemented by automated tools, including authentication/authorization testing and business-logic abuse cases.
Perform deep defect analysis by reproducing, validating, and safely demonstrating security impact, including chained attack paths where applicable, while triaging and dispositioning false positives from automated tooling.
Configure and tune automated application security testing tools to improve coverage, accelerate discovery, and complement manual testing efforts.
Produce clear, reproducible technical reports with detailed evidence including steps to reproduce, impacted components/endpoints, risk/impact assessment, and practical remediation guidance.
Collaborate with application development and security teams to ensure shared understanding of defects, support prioritization, and drive timely remediation through defect walkthroughs and follow-up activities.
Support continuous improvement of penetration testing methodologies and processes by leveraging industry standards and best practices.
Collaborate with team members to share knowledge, complete peer reviews of reports, and strengthen overall testing capabilities.
Communicate findings and risks clearly to technical and non-technical stakeholders, supporting readouts, status updates, and remediation Q&A sessions.
Required Qualifications:
- 2+ years of hands-on application penetration testing experience with a strong emphasis on manual testing, beyond reviewing or validating automated scanner results
- 2+ years of Dynamic Application Security Testing (DAST) experience, including tool configuration/tuning and manual verification of findings
- 2+ years of Cybersecurity experience, or equivalent demonstrated through one or a combination of work experience, training, military experience, or education
- Experience conducting penetration testing on browser-based/web applications and APIs required; experience with mobile, mainframe, or thick client applications a plus
- Proficiency with application security testing tools such as Burp Suite, Invicti, WebInspect, and Fiddler a plus
- Strong knowledge of common application security vulnerabilities and the OWASP Top 10
- Experience with scripting and automation (e.g., Python, Shell) a plus
- Knowledge of security best practices and compliance standards such as PCI DSS and GDPR preferred
- Demonstrated understanding of security risks in AI/ML-enabled applications (e.g., prompt injection, sensitive data exposure, insecure integrations) a plus
- Security certifications such as OSCP, BSCP, GWAPT, GPEN, GXPN or equivalent a plus
- Excellent written and verbal communication skills with the ability to convey technical findings clearly to diverse audiences
- Strong problem-solving and analytical skills
- Proven ability to work effectively in a team-oriented, collaborative environment and partner with cross-functional teams
- Ability to prioritize tasks and deliver high-quality results in a dynamic, fast-paced environment
- Highly self-motivated and directed with strong organizational skills and keen attention to detail
- Strong customer service orientation focused on delivering actionable insights and supporting timely remediation
- This position offers a hybrid work schedule with consistent Monday–Friday hours (flexible as long as schedule remains consistent)
$51.72 - $59.72 per hour
...Application Penetration Tester - Hybrid Genesis10 is currently seeking an Application Penetration Tester - Hybrid position with a Global Financial Institution located in Charlotte, NC, Dallas, TX, Minneapolis, MN, Chandler, AZ, Des Moines, IA, Columbus, OH, Raleigh...SuggestedHourly payContract work$500 per month
...Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements:...SuggestedRemote work10 hours per week- ...Appscan preferred - any other tools is OK as well Minimum 7 years of experience Work with enterprise programs on penetration testing and online application security . Worked extensively on Web & Mobile Application, Network device, API Security, Web Services, cloud infrastructure...Suggested
- An established industry player is seeking a seasoned penetration tester with over 7 years of experience in application security. This role involves conducting thorough vulnerability assessments and penetration tests across web and mobile applications, as well as cloud infrastructures...Suggested
$76.4k - $138.6k
...your physical, financial, and emotional well‑being. Equal Employment Opportunity EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic...SuggestedSummer holidayFlexible hours- ...maintains servers, storage, networking systems, and enterprise applications, while serving as the organization's subject matter expert... ...-party engagements of audits, network scans, and application penetration testing. Systems Engineering Architect and optimize...Work at officeLocal area
- ...updated mandates. • Demonstrate compliance with laws, regulations and industry standards that govern cybersecurity through the application of standards and the best methodologies including NIST, FFIEC, GLBA and ISO. Promote cyber hygiene and information security risk...Permanent employmentWork at officeRemote workFlexible hours
$90k - $125k
A technology solutions provider in North Carolina is seeking a dedicated IT System Administrator & Security Specialist to maintain and secure IT infrastructure. This hybrid role requires a Bachelor’s degree in a relevant field along with 3 years of experience in IT security...- We’re excited for a Senior Vulnerability Management Analyst to join our high-energy team - to help shape the future of Vanguard’s attack surface management and VulnOps. This role sits at the intersection of security risk, automation, and emerging AI‑driven capabilities....Work experience placement
$71.2k - $158.2k
...submission processes. Disclaimer: Certain U.S. based or U.S. customer or client-facing roles may be required to comply with applicable requirements, such as immunization/occupational health mandates, and/or drug testing requirements. Range and benefit...Contract workTemporary workWork experience placementRelocationFlexible hours$126.5k - $182k
The application window is expected to close on: 05/14/2026 Job posting may be removed earlier if the position is filled or if a sufficient number of applications are received. This is a hybrid role at the RTP, NC office. Meet the Team The Cisco MX (Cloud‑managed security...Full timeTemporary workWork at officeLocal areaFlexible hours$174k - $252k
...accruing at a rate of 6.15 hours per pay period for the first five years of employment Sick Time: 40 hours/year (statutory, where applicable); 5 days/event (discretionary) Maternity Leave (Short-Term Disability + Baby Bonding): 28-30 weeks Baby Bonding Leave: 18 weeks...Full timeTemporary work- Align Technology, Inc. is looking for an experienced Software Engineer in Test (SDET) in Raleigh, NC. This full-time, on-site role focuses on designing automatic test systems for clinical features of the Invisalign product. The ideal candidate will have extensive experience...Full time
- A leading technology firm is seeking a Software Development in Test (SDET) Specialist to enhance product stability through robust testing solutions and automation. This role involves collaboration across multiple technology stacks and requires at least 6 years of experience...
$247k - $325k
...measure of financial protection. Equal Employment Opportunity Statement CherryBekaert provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity or expression, national origin...Local area- ...successful implementation of these solutions. Additionally, you will be involved in a multi-year conversion from the current ECC application suite to the new S4 Hana platform, and will play a key role in driving successful implementation of this large-scale conversion....Work at office
- Our Deloitte Customer team empowers organizations to build deeper relationships with customers through innovative strategies, advanced analytics, Generative AI, transformative technologies, and creative design. We can enhance customer experiences and drive sustained growth...Local area
- Red Bull Gruppe in North Carolina is seeking a Business Analyst to act as the primary requirements liaison between Distribution Operations stakeholders and technology teams. The role includes managing the full requirements lifecycle, structuring test phases, and ensuring...
- PowerToFly is seeking a SDET II to join the Human Services Transformation team. You will create and execute test cases, support development cycles, and ensure system behavior is validated. The ideal candidate has a Bachelor's degree and 2+ years of experience in software...
- ...The program spans APIs, data movement, reporting, and migration from legacy mainframe platforms. Due to client requirements, applicants must be willing and able to work on a w2 basis. For our w2 consultants, we offer a great benefits package that includes Medical,...Hourly payContract workLocal areaRemote work
$76k - $86k
...Recruitment Salary Range: $76,000 - $86,000 Location: Raleigh, NC USA Position Number: 20074735 Special Instructions to Applicants: The posting remains open until filled, but applications received by Friday, February 20, 2026 will receive priority...Permanent employmentFull timeTemporary workPart timeFor contractorsWork at officeRemote work$92.97k - $129.23k
...a standard office environment. Compliance ~ Job responsibilities include fostering the Company's compliance with all applicable laws and regulations, adherence to the Code of Conduct and Compliance Program requirements, policies and procedures. Compliance is...For contractorsWork at officeLocal area- ...customer support including troubleshooting basic issues with computer hardware, network/internet connectivity, email, and software applications as well as completing client requests for password and user account administration Create properly formatted tickets for...Full timeWork at office
$69.85k - $97.09k
...a proactive leadership role working with the Engineering team and Customers to triage and resolve highly complex, technical, and application-related issues which impact product performance in customer-specific environments, or issues that directly hamper a broader customer...For contractorsLocal areaRemote work- Global Systems Analyst We are seeking a highly motivated Global Systems Analyst to join a dynamic IT Development team supporting enterprise systems and global business operations. This role serves as a key liaison between business stakeholders and technical teams, ensuring...
$60.8k - $82.9k
...enhance system functionality. Key Responsibilities System Management & Optimization: Support and configure revenue cycle applications utilized for billing and claims management. Identify and implement process improvements to reduce denials and accelerate...Bi-weekly payFull timeTemporary workApprenticeshipWork at officeRemote workHome office- ...QA Tester Raleigh, NC One year rate: $27/hr on W2 all inclusive. Duties include analyzing business requirements for testability and completeness using Functional Specification Documents, Business Requirements Documents and Technical Design Documents, developing requirements...
- ...Your Next Career Move Starts Here Title: QA Manual Tester Location: Raleigh, NC Type : Contract We are seeking an experienced Manual QA Tester to support large-scale initiatives within the insurance domain while working alongside...Contract work
- Position Title -.Net SDET Lead Domain - Banking / Finance Location - Raleigh, NC – Day one onsite. Skills - backend API, webservices automation testing, Java,.Net, Python etc. Employment Type - FTE Job Description SDET Lead 8-12 Years Roles And Responsibilities...
$120k - $150k
...culture in which all Datavanters belong and thrive. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion,...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Penetration Tester. Be the first to apply!
- sdet qa automation engineer Raleigh, NC
- software development engineer in test sdet Raleigh, NC
- sdet Raleigh, NC
- software tester Raleigh, NC
- application tester Raleigh, NC
- vice president of application development Raleigh, NC
- oracle apps technical consultant Raleigh, NC
- product manager mobile applications Raleigh, NC
- now accepting applications Raleigh, NC
- cash application clerk Raleigh, NC

