Penetration Tester
Workstreet
Penetration Tester
At Workstreet, we're on an exciting journey to help businesses scale securely by designing and implementing cutting-edge security and compliance programs. As a fast-growing startup, we specialize in a wide range of GRC (governance, risk, and compliance) services that support frameworks across SOC 2, ISO 27001, GDPR, CMMC, NIST 800-171, NIST 800-53, and FedRAMP. We empower companies to meet regulatory requirements and enhance their cybersecurity posture from day one.
We are seeking a Penetration Tester to join our growing cybersecurity team. In this role, you will assess the security of applications, networks, and systems through structured penetration testing and vulnerability assessments. You will help identify weaknesses, document findings, and provide actionable recommendations to strengthen clients' security defenses.
What You'll Do:
- Execute comprehensive penetration tests across web, mobile, network, and system environments to uncover, exploit, and validate critical infrastructure and application vulnerabilities.
- Produce high-fidelity technical reports mapping out exploit impact and proof-of-concept chains, translating complex risk metrics into actionable remediation roadmaps for clients.
- Partner directly with client engineering teams to guide post-assessment remediation, troubleshoot implementation blocks, and systematically verify the integrity of deployed fixes.
- Engineer custom testing scripts, automation tools, and offensive methodologies to continuously expand vulnerability discovery coverage and testing precision.
- Deploy tactical social engineering simulations, including targeted phishing and pretexting campaigns, to rigorously audit human security awareness and organizational defenses.
- Support active incident response loops by providing offensive technical expertise, investigating compromise vectors, and accelerating threat containment pipelines.
- Own the supporting client experience by maintaining transparent communications, gathering environmental prerequisites, and breaking down testing footprints into clear, business-friendly milestones.
- Track the evolving threat landscape to continuously integrate cutting-edge exploit techniques, active vector changes, and defensive counter-measures into live assessment playbooks.
Who You Are:
- Active offensive security operator - Command a proven history of executing structured penetration tests, vector mapping, and threat validation across complex application, network, and system environments.
- Master of offensive frameworks - Deployed industry-standard testing platforms, exploitation architectures, and reporting frameworks to uncover hidden systemic security vulnerabilities.
- Surgical exploit and validation engineer - Exploited, classified, and cataloged multi-tier security vulnerabilities, providing clear remediation roadmaps to client engineering teams to securely validate system fixes.
- Precision technical author - Formulated high-fidelity assessment documentation, exploit chain proofs, and detailed impact reports that translate complex threat data into highly structured, actionable guidance.
- High-impact security diplomat - Articulated tactical risk scenarios, testing footprints, and remediation expectations with professional clarity to both deep technical infrastructure teams and executive client stakeholders.
- Social engineering and automation developer - Engineered custom testing scripts, targeted phishing simulations, and pretexting campaigns to audit human security awareness and expand overall assessment coverage.
- Autonomous remote operator - Command an advanced local testing station fully optimized for heavy virtual machine deployment, maintaining peak operational velocity during standard US Eastern Time working hours.
- Validated offensive security specialist - Hold or actively pursue high-value technical designations such as OSCP, CEH, or equivalent credentials that demonstrate a rigorous commitment to offensive security practices.
What Helps You Succeed:
- Advanced cloud security auditing - Direct execution of cloud infrastructure penetration tests, container security evaluations, and environment configuration audits within AWS, GCP, or Azure.
- Integration of GRC compliance frameworks - Practical alignment of technical vulnerability data to satisfy the automated audit and evidence requirements of SOC 2, GDPR, or HIPAA.
- Commercial tenure in high-velocity startups - Years spent scaling offensive security workflows, handling rapid client delivery timelines, and adapting to shifting priorities within fast-growth tech environments.
- Incident containment and threat training - Direct support of active incident response containment loops, or the design and execution of technical employee threat awareness initiatives.
What We Offer:
- Career Development: Clear path with mentorship and training opportunities.
- Role-Related Training: Reimbursement for the successful completion of approved training and certification courses relevant to your current role.
- Competitive Compensation: A competitive base salary with regular performance reviews linked to merit-based appraisals and bonus opportunities.
- Growth Opportunity: Early-stage company with significant room for career advancement.
- Remote-First Culture: Flexibility to work from anywhere while collaborating with a global team.
What You'll Need To Thrive:
- Excellent written and verbal English communication skills, with the ability to engage confidently with candidates, hiring managers, and business leaders across global teams.
- A reliable, high-speed internet connection and a professional home office environment that supports confidential conversations, virtual interviews, and uninterrupted collaboration.
- Commitment to working a standard schedule of 8:00 AM–5:00 PM U.S. Eastern Time (ET) to effectively collaborate with team members, stakeholders, and cross-functional partners while ensuring timely communication and support.
- Willingness and ability to travel locally for occasional onsite meetings, team gatherings, or business activities as needed.
Hiring and Selection Process:
- Candidates must participate in live video interviews throughout the hiring process with camera on (non-negotiable) and be prepared to verify their identity during recruitment and onboarding.
- Employment is contingent upon successful completion of identity verification and background screening, where permitted by law.
- Selected candidates will participate in structured interviews with hiring managers and cross-functional stakeholders to assess role fit, experience, and alignment with Workstreet's operating principles.
- Candidates will receive prompt updates and consistent communication throughout the interview process, ensuring a transparent, smooth, and engaging experience at every step.
Workstreet Is An Equal Opportunity Employer
As an equal opportunity employer, Workstreet is committed to providing employment opportunities to all individuals. All applicants for positions at Workstreet will be treated without regard to race, color, ethnicity, religion, sex, gender, gender identity and expression, sexual orientation, national origin, disability, age, marital status, veteran status, pregnancy, or any other basis prohibited by applicable law.
$130k - $190k
...a legacy of protecting national interests and promoting peace and stability worldwide.Job SummaryWe are currently seeking a Penetration Tester. This position is a full-time opportunity located in Arlington, Virginia.Battelle's Mission Focused Tools Business Line is seeking...SuggestedFull timeWork experience placementWork at officeLocal areaRemote workWorldwideFlexible hours- DescriptionSAIC is seeking a highly motivated Penetration Tester. The successful candidate will provide support to the Cybersecurity Integrity Center (CIC) in the Department of State Bureau of Information Resource Management (IRM). Duties are in the Washington, D.C. metropolitan...SuggestedWork at officeLocal areaShift work3 days per week
- ...tested leadership, and trusted results to enable national security missions worldwide.Job DescriptionOverviewSOSi is seeking a Penetration Tester III to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting...SuggestedContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
$86.8k - $198k
Penetration TesterThe Opportunity:Conduct testing and analysis to identify vulnerabilities and potential threat vectors in systems and networks... ...Certified Professional (OSCP), HTB Certified Penetration Tester Specialist (CPTS), eLearnSecurity Junior Penetration Tester (...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$104k - $166k
ResponsibilitiesPeraton is currently seeking to hire an experienced Penetration Tester for its Federal Strategic Cyber Group. Location: Chandler, AZ and Washington DC.Role and Responsibilities: We are seeking to hire an experienced and highly skilled Penetration Tester...SuggestedContract workCurrently hiringShift work$86k - $138k
ResponsibilitiesPeraton is seeking an experienced Cyber Penetration Tester to become part of Peratons’ Federal Strategic Cyber programs. Location: Northern VA; Hybrid - flexible as long as person can come on-site as & when needed. In this role, you will: Support the Red...Contract workFlexible hoursShift work$90k - $130k
...Full-Time Clearance Requirement: TS/SCI Clearance Required Position Overview:Praescient Analytics is seeking a highly motivated Penetration Tester to join our cybersecurity team in Arlington, VA, supporting the Department of War (DoW) Chief Digital and Artificial...Full timeWork at office- ...requirement to be onsite up to two (2) days a week at Quantico Marine Corps Base VA.Position Description: The Cybersecurity Penetration Tester is a hands-on technical role responsible for conducting simulated attacks on systems and networks to identify vulnerabilities...Work at officeRemote work2 days per week
$150k - $195k
OverviewVTG is looking for multiple levels (Level 2, 3 & 4) of a Penetration Tester in Chantilly VA and Aurora CO. (Note: position is contingent upon program award and the postions are located in Chantilly VA & Auroro CO)A Penetration Tester (Pen Tester) is a security...Work experience placement$122.57k - $204.25k
...opportunity to help evolve LPL’s offensive security capabilities.Job OverviewAs a member of the Cyber Security team, the Senior Penetration Tester, Offensive Security, is responsible for the scheduling, scoping, and execution of internal penetration testing, with a...Full timeWork from home- ASRC Federal Technology Solutions is seeking an experienced Penetration Testerto lead advanced security assessments and contribute to the... ....Manage and mentor a small team of junior penetration testers; provide technical guidance and training.Build and lead a Purple...3 days per week
- ...be assigned based on business needs and individual expertise.Penetration TestingConduct penetration tests against enterprise applications... ...: CISSP, CRISHack The Box: CPTS, Active Directory Penetration Tester, Web Exploitation Specialist, Web Exploitation Expert,...Permanent employmentFull timePart timeH1bWork visaShift workDay shift
$95.86k - $208.27k
...expand your capabilities, then consider a career in Advisory.KPMG is currently seeking a Senior Specialist, MAST Application Penetration Tester to join our Managed Services practice.Responsibilities:Conduct manual application penetration testing against API's (REST/SOAP...H1bLocal area$118k - $128k
...Information Technology, Test & Evaluation, Program Mission Support, Engineering & Analysis, and Training.ResponsibilitiesAs a SENIOR PENETRATION TESTER with AMERICAN SYSTEMS you will have the opportunity to do the following:Penetration Testing: Plan, execute, and report on...For contractors$124.54k - $180k
GovCIO is currently hiring for a Senior Pentration Tester with an active TS/SCI clearance to support DHS onsite in Washington, DC.ResponsibilitiesThe Senior Penetration Tester serves as Key Personnel responsible for leading advanced penetration testing and vulnerability...Currently hiring- ...primary responsibility will be to plan, execute, and report on penetration tests targeting high-impact applications, platforms, and... ...peer reviews of penetration test reports and mentoring junior testers.Continuous learner who keeps up with the latest offensive security...
$131.3k - $237.35k
Senior ISSE/Penetration TesterLeidos has an exciting and challenging opportunity for a Senior ISSE/Penetration Tester in our Intel Sector’s Cyber & Analytics Business Area (CABA). Our talented team is at the forefront in Security Engineering, Computer Network Operations...Full timeImmediate startFlexible hours$104.8k - $192.2k
...wherever you want it to go. Join EY and help to build a better working world.Government and Public Sector - Cybersecurity - Penetration Tester - Senior ConsultantFrom strategy to execution, the Government & Public Sector practice (“GPS”) of Ernst & Young provides a full...For contractorsSummer holidayWork at officeLocal areaFlexible hours- ...Qualifications Minimum of 5 years of experience in application penetration testing Bachelor's degree is desirable Minimum of 3 years of experience in App Pentest tools such as Burp Suite and WebInspect Certified in OSCP or GWAPT Business Unit...
- ...Position : Penetration Tester Locations: Los Angeles( CA), Dallas (TX), Washington DC. Responsibilities: Assist in project scoping and SOW creation Perform offensive engagements including red teaming and penetration testing Perform...Work experience placement
- ...CACI International is seeking a Junior Penetration Tester – Cyber Engineer to join our team at Aberdeen Proving Ground, MD. You will perform hands-on assessments and threat-hunting across complex systems, applying cutting-edge techniques to identify vulnerabilities and...
- ...Job Title: Junior Penetration Tester Location: Remote Duration: 6-12 months Job Summary: Role Purpose The Junior Penetration Tester is an execution-focused role responsible for performing authorized security testing activities under defined...Remote work
$95k - $112k
...produce meaningful results. This is a contingent position based upon customer approval. SkyePoint Decisions is seeking a Penetration Tester to support the Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to...Contract workRemote work- ...Penetration Tester GC, USC 100% onsite in Albany, NY. All Candidates must currently live in Albany, NY or the very close surrounding area. Java application security expert with 6+ years in DevSec, skilled in core Java, OWASP, vulnerability assessment...Live in
- ...Penetration Tester Charleston, SC Reston, VA Top Secret Polygraph Unspecified Mid Level Career (5+ yrs experience) Salary not specified Job Description The Penetration Tester will conduct multiple-disciple penetration tests of global customer networks, rapid...
- ...Penetration Tester Djamo is a Series B neobank serving over 1 million customers across Francophone Africa. We're the first fintech to receive a BCEAO microfinance license and the leading card issuer in Côte d'Ivoire. Our engineering team is 27 strong, organized into...Contract workWork at officeImmediate startRemote work
- ...Penetration Tester LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a highly skilled and proactive Penetration Tester to join our cybersecurity team. In...Temporary workFor contractorsImmediate startFlexible hours
- ...Junior Penetration Tester—Cyber Engineer at CACI in Aberdeen Proving Ground, MD. You will join a dedicated team of engineers performing hands-on assessments of complex systems using penetration testing and threat-hunting techniques on site. Required active Secret clearance...
- ...term and long-term disability insurance, paid time off, training and professional development assistance. YSI is seeking a Penetration Tester. The ideal candidate will be responsible for the following: This role supports the establishment and execution of an...Temporary workImmediate startRemote work
- ...Technology Solutions has an immediate opportunity to support the US Navy with operational test and evaluation support. The Penetration Tester will assist in the development of cyber test plans, execute cyber tests, and report cyber test results. In this role you will...Work at officeImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Penetration Tester. Be the first to apply!
- vulnerability management analyst United States
- ethical hacker United States
- vulnerability analyst United States
- penetration tester United States
- ethical hacker work from home
- entry level penetration tester
- vulnerability management analyst
- web application penetration tester
- ethical hacker
- entry level ethical hacker

