Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Web Application Penetration Testing

Ampcus

Web Application Penetration Testing

Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented team. Location: Chantilly, VA. Position Overview: We are seeking an experienced and results-driven Penetration Tester to support them in performing comprehensive web application security assessments as part of the Web Application Penetration Testing opportunity. The ideal candidate will have a deep understanding of web application security, vulnerability assessment, and threat exploitation methodologies. This role requires a professional who can think like an attacker, assess systems holistically, and provide actionable insights that enhance the security posture of critical government systems.

Key Responsibilities:

  • Conduct web application, API, and network penetration tests to identify and validate security vulnerabilities.
  • Perform grey-box and black-box testing following NIST SP 800-115 and OWASP Testing Framework methodologies.
  • Evaluate authentication mechanisms, session management, access controls, and data handling practices for security flaws.
  • Execute vulnerability exploitation and proof-of-concept validation to demonstrate real-world risk impact.
  • Document findings with technical precision and provide clear remediation recommendations to stakeholders.
  • Collaborate with internal security engineers and client teams to verify vulnerability fixes and perform retesting.
  • Prepare and deliver comprehensive technical and executive-level reports that align with the COV Information Security Standard (SEC530).
  • Support secure configuration reviews and compliance with applicable state and federal cybersecurity standards.

Required Minimum Qualifications:

  • Bachelor's degree in computer science, Cybersecurity, Information Technology, or a related field (or equivalent experience).
  • Preferably 7 years of experience in penetration testing or ethical hacking, with a strong focus on web applications and APIs.
  • In-depth knowledge of web technologies, networking protocols, authentication systems, and encryption standards.
  • Strong understanding of secure development practices (SDLC) and common vulnerabilities (OWASP Top 10).
  • Excellent analytical, documentation, and communication skills.

Preferred Certifications:

  • CEH (Certified Ethical Hacker) – Required.
  • OSCP (Offensive Security Certified Professional) – Preferred.
  • CompTIA Security / CySA / GPEN / GWAPT – Desirable.

Desired Attributes:

  • Critical thinkers with the ability to simulate real-world attacks creatively and effectively.
  • Detail-oriented with strong problem-solving and analytical skills.
  • Proactive, self-motivated, and able to manage multiple testing assignments.
  • Collaborative and professional, with the ability to work effectively in client-facing environments.
  • Strong commitment to confidentiality, ethical standards, and data security compliance.

Ampcus is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veterans or individuals with disabilities.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Web Application Penetration Testing in Chantilly, Loudoun County, VA vacancy
  •  ...is looking for an experienced Penetration Tester/Red Team Security...  ...of adversarial based security testing of various targets. Successful...  ...of evaluating environments, applications, systems or processes to discover...  ...network penetration, web application testing, threat analysis... 
    Application
    Web
    Work experience placement

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...Overview: CDT is looking for a Penetration Tester to This will be...  ...Responsibilities: Conduct penetration testing that uses both active and...  ..., hardware, networks and applications. Reviews of the...  ...methodologies including: client/server, web hosting, web content servers,... 
    Application
    Web
    Work experience placement

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    1 day ago
  • $113.2k - $237.8k

     ...Job Title: Penetration Tester Job Category: Engineering Time Type: Full time Minimum...  ...and techniques related to penetration testing. Demonstrated real world experience...  ...of and interest in common web application vulnerabilities like XSS, CSRF, Command... 
    Application
    Web
    Full time
    Contract work
    Work experience placement
    Immediate start
    Flexible hours

    CACI International

    Chantilly, Loudoun County, VA
    4 days ago
  • $127.2k - $246.9k

     ...our team. KPMG is currently seeking a Manager, Cyber Assessment (Penetration Testing) to join our Digital Security Group. Responsibilities: Conduct detailed network and web application penetration tests Perform red teaming exercises to assess the detection... 
    Application
    Web
    H1b
    Local area

    KPMG

    McLean, VA
    17 hours ago
  •  ...Senior Penetration Testing Lead Everforth ECS is seeking a Senior Penetration Testing Lead to work in the National Capital Region covering...  ...testing engagements against network infrastructure, web applications, cloud environments, and mission systems to identify exploitable... 
    Application
    Web
    Contract work

    ECS

    Fairfax, VA
    3 days ago
  • $87.1k - $157.45k

     ...highly skilled and experienced Penetration Tester to join our team...  ...Responsibilities: Conduct penetration testing activities aligned withCBPand...  ...and externalweb application, network, and infrastructurepentestassessments...  ...,?with specific?emphasis on web application?and enterprise... 
    Application
    Web
    Local area
    Immediate start

    Leidos

    Ashburn, VA
    3 days ago
  • $86.8k - $198k

     ...Enterprise Cybersecurity Penetration Tester The Opportunity:...  ...to lead dynamic penetration testing and product assessments, uncovering...  ...frameworks commonly used in modern web development ~ Ability to...  ...science, product, or application security Nice If You Have... 
    Application
    Web
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    2 days ago
  • $66k - $106k

     ...Penetration Tester, Journeyman Job Locations US-VA-Herndon...  ...Responsibilities Execute penetration testing activities per CDAP mission...  ...Conduct network, host, and application assessments to identify...  ...indicators. Perform web application testing, phishing... 
    Application
    Web
    Contract work
    Shift work

    Peraton

    Herndon, VA
    1 day ago
  • $131.3k - $237.35k

     ...team supportingCBP.As the leader of this highly technical Penetration Testing Team supporting CBP, youwill be responsible formanaging theday...  ...infrastructure, operating systems (Windows/Linux), web applications, APIs, and cloud platforms; proven capability to move frominitialaccess... 
    Application
    Web
    Work at office
    Local area
    Immediate start

    Leidos

    Ashburn, VA
    1 day ago
  • $130k - $145k

     ...Wolf is actively seeking an experienced Penetration Tester to join our innovative team....  ...demands a deep understanding of penetration testing methodologies and advanced exploit...  ...Execution Environments (TEE). * Conducting web application security assessments, focusing on OWASP... 
    Application
    Web
    Hourly pay

    Dark Wolf Solutions

    Herndon, VA
    4 days ago
  • $104.8k - $192.2k

     ...Consulting - Cybersecurity – Penetration Tester – Senior From strategy...  ...As part of our Penetration Testing team, you'll identify...  ...Correlate findings across network, application, cloud, and identity attack...  ...internet, intranet, wireless, web application, social engineering... 
    Application
    Web
    For contractors
    Work experience placement
    Summer holiday
    Work at office
    Local area
    Flexible hours

    EY

    McLean, VA
    1 day ago
  •  ...Capabilities Developer to support Rapid Application Development (RAD) for both offensive...  ...analysis, and utilizing open-source penetration testing tools. Required Skills • Ability to...  ...vulnerabilities in network, host, and web application endpoints utilizing a variety... 
    Application
    Web
    Contract work

    The Amatriot Group

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...for a Red Team Operator/ Cloud Penetration Tester to support a government customer...  ...providers including Amazon Web Services (AWS), IBM, Google...  ...and access management, console applications, and functions. A strong Penetration Testing and/or Red Team (Offensive Cybersecurity... 
    Application

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...office. Job Responsibilities: Perform recon on applications and networks Perform penetration testing and system exploitation against desktops, servers,...  ...testing in Cloud environments, including Amazon Web Services (AWS), Azure, and on-premise systems Translate... 
    Application
    Web
    Work experience placement
    Work at office

    Ampcus

    Chantilly, Loudoun County, VA
    22 hours ago
  •  ...requirements may include: RMF, COOP, disaster recovery, contingency planning, Vulnerability assessments, penetration testing, Security assessments, Web Application Security Program, web application scanning, web filtering, trusted sites, web site certifications, Sharepoint... 
    Application
    Web

    TENICA

    Chantilly, Loudoun County, VA
    1 day ago
  •  ...of red team assessments, offensive cyber operations, and penetration testing. Oak Grove Technologies is a Service-Disabled Veteran...  ...Tester (GXPN), GIAC Penetration Tester (GPEN), and/or GIAC Web Application Penetration Tester (GWAP). What Required Skills You... 
    Application
    Web
    For contractors
    Apprenticeship

    Oak Grove Technologies

    Chantilly, Loudoun County, VA
    6 hours ago
  •  ...This role requires hands-on experience in ethical hacking, penetration testing, and incident response, and will contribute significantly...  ...vulnerability assessments and penetration tests (e.g., network, web application, cloud, API) to identify and prioritize security... 
    Application
    Web
    Full time
    Work experience placement
    Work at office
    Monday to Friday

    RSEKURE

    Chantilly, Loudoun County, VA
    2 days ago
  •  ...well as hands-on vulnerability testing experience. The selected...  ...functionality to ensure uniform application of security policy and enterprise...  ...techniques/tools, and web services. Must have experience...  ...and auditing network penetration testing, anti-virus planning... 
    Application
    Web
    Immediate start
    Relocation package

    Open Systems Technologies

    Chantilly, Loudoun County, VA
    22 hours ago
  •  ...Software Engineer to design, develop, and deploy scalable web-based applications and data-driven solutions. The ideal candidate will have strong...  ..., and delivery timelines. Ensure code quality through testing, debugging, and performance optimization. Support CI/CD... 
    Application
    Web

    VTG

    Chantilly, Loudoun County, VA
    2 days ago
  •  ...answering the complex needs for multifaceted applications and IT systems Ability to provide...  ...Skills Experience with automated testing Model Based Systems Engineering (MBSE...  ...iterative development projects Knowledge of web applications and frameworks (e.g., Ruby,... 
    Application
    Web

    NeoMax

    Chantilly, Loudoun County, VA
    22 hours ago
  •  ...Penetration Tester LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position...  ...In this role, you will identify vulnerabilities and test the security of networks, applications, and systems by simulating real-world attacks. You will... 
    Application
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    Chantilly, Loudoun County, VA
    4 days ago
  •  ...Web Software Developer We are seeking a Web Software Developer to support the Drug...  ...(DEA) developing web based applications including online customer service for agency...  ...deadlines Perform unit and integration testing before launch Conduct functional and... 
    Application
    Web
    For contractors
    Work at office
    Local area
    Remote work

    ITC Federal

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...QA Automation Engineer to design, develop, and maintain automated test frameworks and scripts. This role will play a critical part in...  ...you do? Design, develop, and execute automated test scripts for web, API, and backend systems Build and maintain scalable test automation... 
    Application
    Web

    VTG

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...Testing Lead – Overview Position Title: Testing Lead Location: Remote (U.S.) Clearance...  ...(IV) platform—a mission‑critical federal application that processes over 2 billion records...  ...query development ~ Experience testing web services using tools like Postman ~... 
    Application
    Web
    Long term contract
    Remote work

    Seneca

    Chantilly, Loudoun County, VA
    4 days ago
  •  ...motivated individual to design, develop, test, and integrate custom software solutions....  ...passionate about building robust, scalable applications and thrive in a collaborative setting, we...  ...• Knowledge of 508 compliance (web accessibility) • Familiarity with DevOps... 
    Application
    Web

    SpatialGIS

    Chantilly, Loudoun County, VA
    22 hours ago
  •  ...-performing, scalable, enterprise-grade applications. You will be part of a talented software...  ...development lifecycle, from concept and design to testing, delivery, and sustainment. DevOps...  ...technologies: Experience with Amazon Web Services (AWS) Experience with... 
    Application
    Web

    Anthem Engineering

    Chantilly, Loudoun County, VA
    8 days ago
  •  ...role and grow your career. Position: Penetration Tester / Security Assessment Specialist...  ...security assessments, penetration tests, and vulnerability analyses to protect...  ...vulnerability assessments of servers, web applications, web services, and databases Manually... 
    Application
    Web
    Flexible hours

    Falls Technology

    McLean, VA
    24 days ago
  •  ...performance, and compliance of AI-enabled applications and platforms for a leading independent...  ...stability. This role will support testing efforts across a suite of AI technologies...  ...testing AI/ML systems, APIs, and web applications. ~ Experience with accessibility... 
    Application
    Web

    Ampcus

    Chantilly, Loudoun County, VA
    2 days ago
  •  ...Job Title Responsible for analysis, design, coding, and testing of new applications or enhancements to existing applications using Java-based technologies...  ...as JBOSS, MessagingMOM (JMS, MQSeries), EJB 2.0/3.0, and Web Services (REST). ~ Computer Science fundamentals in... 
    Application
    Web
    Work experience placement

    Omni Inclusive

    Chantilly, Loudoun County, VA
    1 day ago
  •  ...architecture, design, and development of Java/J2EE applications with a focus on RESTful services and...  ..., and implementation of restful web services using spring boot. Define and implement best practices for coding, testing, and deployment to ensure high performance... 
    Application
    Web

    Omni Inclusive

    Chantilly, Loudoun County, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Web Application Penetration Testing. Be the first to apply!