Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Web Application Penetration Tester

$125k - $145k

SIXGEN

SIXGEN's mission is to deliver agile, mission-ready cybersecurity solutions that empower government and critical infrastructure organizations to stay ahead of advanced cyber threats. We combine innovation, deep expertise, and cutting-edge capabilities to uncover vulnerabilities, protect vital systems, and ensure operational superiority in an ever-evolving digital landscape.
POSITION OVERVIEW

Position: Senior Web Application Penetration Tester
Job Type: Full-time
Location: Maryland, Northern Virginia, or Remote
Clearance Requirements: Must be able to obtain a Secret Clearance
Travel Requirements: Up to 10%
Experience: 5+ years

Salary: $125,000-$145,000
WHAT YOU'LL DO

We are seeking a skilled and motivated Senior Web Application Penetration Tester to join our growing cyber operations team. The ideal candidate will possess deep expertise in web application security testing, vulnerability research, and exploitation techniques, with the ability to identify complex attack paths and develop creative solutions to challenging security problems.

This role goes far beyond automated scanning. Successful candidates will conduct in-depth assessments of web applications, APIs, mobile applications, and supporting infrastructure while leveraging custom tooling, manual testing techniques, and advanced exploitation methodologies to uncover impactful security findings.
KEY RESPONSIBILITIES
Web Application Security Assessments
  • Conduct penetration testing of web applications, APIs, mobile applications, databases, and client-side technologies.
  • Perform application enumeration, endpoint discovery, vulnerability research, and exploitation activities.
  • Identify, validate, and assess vulnerabilities across complex environments.
  • Analyze attack paths and security weaknesses to determine business and operational impact.
Technical Analysis & Research
  • Develop and utilize custom tools, scripts, and payloads to support testing activities.
  • Perform network mapping, vulnerability analysis, and security assessments across applications and supporting infrastructure.
  • Research emerging vulnerabilities, attack techniques, and exploitation methodologies.
  • Support post-exploitation activities involving cloud and enterprise environments when applicable.
Client Engagement & Reporting
  • Collaborate with clients and internal teams to define scope, review findings, and recommend remediation strategies.
  • Communicate technical concepts and findings to both technical and non-technical stakeholders.
  • Produce comprehensive reports, including detailed findings, exploitation procedures, risk analysis, and mitigation recommendations.
  • Participate in client meetings and provide ongoing updates throughout assessment activities.
QUALIFICATIONS
  • 5+ years of experience in web application penetration testing or offensive cybersecurity.
  • Demonstrated experience conducting manual web application security assessments.
  • Knowledge of modern web application vulnerabilities, attack methodologies, and exploitation techniques.
  • Experience with network mapping, vulnerability scanning, and penetration testing methodologies.
  • Familiarity with NIST 800-series standards and cybersecurity best practices.
  • Experience developing scripts, payloads, or custom testing tools.
  • Strong analytical, problem-solving, and communication skills.
Preferred Certifications

One or more of the following certifications is strongly preferred:
  • CWES (preferred)
  • CWEE (preferred)
  • OSCP
  • OSWA
  • OSWE
  • CRTO
  • GWAPT
  • Other relevant hands-on offensive security certifications
PREFERRED QUALIFICATIONS
  • Experience with cloud environments and post-exploitation activities.
  • Experience with Active Directory security assessments.
  • Familiarity with FISMA compliance requirements.
  • Experience supporting government or regulated industry clients.
  • Proficiency with common offensive security tools and frameworks.
COMPENSATION & BENEFITS

At SIXGEN, we are committed to fair and equitable compensation practices. Compensation for this role will be based on experience, qualifications, technical expertise, and overall alignment with the position.

Additionally, SIXGEN offers top-tier benefits for full-time employees, including:
  • Employer-paid health insurance premiums (medical, dental, vision) for you and your family
  • Employer-paid short/long term disability insurance and basic life/AD&D insurance
  • 401K with a 4% employer contribution
  • Professional development reimbursement options available (training, certification, education, etc)
  • Flexible and remote work policies for most positions
  • Flexible PTO and holiday schedule

For more information, please reach out to our Director of Human Resources, Amy Maxwell at View email address on click.appcast.io.
OUR COMMITMENT

SIXGEN is an Equal Opportunity Employer. We ensure that all applicants are considered for employment without regard to race, color, religion, sexual orientation, gender identity, national origin, disability, age, marital status, ancestry, projected veteran status, or any other protected group or class.

We are committed to fostering an inclusive culture that values diversity in our people, reflecting the communities we serve and our customer base. We strive to attract and retain a diverse talent pool and create an environment where everyone is empowered to be their authentic selves at work.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior Web Application Penetration Tester in Annapolis, MD vacancy
  • Job Overview Application Penetration Tester at ASM Research, an Accenture Federal Services Company located in Annapolis, MD. In this role you will safeguard web applications and REST APIs by applying deep knowledge of OWASP Top10 and SANS25 to identify, mitigate, and remediate... 
    Web
    Contract work
    Work at office

    Payfuture Technologies

    Annapolis, MD
    2 days ago
  • $150k - $190k

     ...Security. Role Description: A Lead Penetration Tester is needed to join a high performing...  ...develop mitigation strategies. Perform web app pentests. Perform vulnerability...  ...familiarity of the following Web Application tools; Burp Suite, Web Inspect, Appdetective... 
    Senior
    Web
    For subcontractor
    Local area
    Flexible hours
    Shift work

    Navstar

    Annapolis, MD
    3 days ago
  • $150k - $220k

     ...Belay Technologies is seeking a Lead Penetration Tester to join their intel team. The PT is needed...  ...mitigation strategies. Perform web app pentests. Perform vulnerability...  ...strong familiarity of the following Web Application tools; Burp Suite, Web Inspect, Appdetective... 
    Senior
    Web
    Contract work
    Work experience placement
    Local area
    Flexible hours
    Shift work

    Belay Technologies

    Annapolis, MD
    1 day ago
  • $131.3k - $237.35k

     ...Senior ISSE/Penetration Tester Leidos has an exciting and challenging opportunity for a Senior ISSE...  ...and functionality to ensure uniform application of security policy and enterprise solutions...  ...mitigation strategies. Performing web app pen tests. Performing... 
    Senior
    Web
    Immediate start
    Flexible hours

    Leidos

    Annapolis, MD
    2 days ago
  • $2,500 per month

     ...Testing Events by conducting penetration testing, publishing results,...  ...functionality to ensure uniform application of security policy and...  ...mitigation strategies. Performing web app pen tests. Performing vulnerability...  ...Web Applications Penetration Tester (GWAPT) GIAC Penetration... 
    Senior
    Web
    Immediate start

    ProdigyOne

    Annapolis, MD
    2 days ago
  • Job Title: Senior Database Vulnerability Analyst Location: Fort Meade, MD 20755 Clearance...  ...Clearance Requirements: Serve as an application technical specialist for assets connected...  ...meetings to provide cyber oversight for web changes that affect the level of risk Recommend... 
    Senior
    Web
    Full time
    Work experience placement
    Casual work

    PD Inc

    Annapolis, MD
    4 days ago
  • Overview Job Title: Senior Network Vulnerability Analyst Location: Fort Meade, MD 20755 Clearance Level: Active Secret Clearance Job...  ...from RMF supporting documents, links to documents stored on the web, control correlation identifier ownerships, and RMF overlay relationships... 
    Senior
    Web
    Full time
    Work experience placement
    Casual work
    Work at office

    PD Inc

    Annapolis, MD
    1 day ago
  •  ...proficiency in SQL and Java. The position offers a range of benefits including health insurance, parental leave, and unlimited 401K matching. The company fosters an inclusive environment and encourages applicants from diverse backgrounds. #J-18808-Ljbffr Interclypse, Inc.
    Senior
    Web

    Interclypse, Inc.

    Annapolis, MD
    3 days ago
  •  ...evaluate results to ensure compliance with applicable regulations G. Design and prepare all...  ...(8) years of experience as an analyst/tester on software projects in supporting requirement...  ...testing tools. Experience in testing Web application, Mobile application in a... 
    Senior
    Web
    Full time
    Temporary work
    Flexible hours

    Interclypse

    Annapolis, MD
    2 days ago
  • $210k - $220k

     ...Description: A Lead Penetration Tester is needed to join a high performing agile...  ...develop mitigation strategies. Perform web app pentests. Perform vulnerability...  ...strong familiarity of the following Web Application tools; Burp Suite, Web Inspect, Appdetective... 
    Web
    Full time
    Contract work
    Temporary work
    Work experience placement
    Local area
    Immediate start
    Shift work

    Unisity LLC

    Annapolis, MD
    1 day ago
  •  ...About the role Seeking a skilled Lead Penetration Tester to join a high-performing agile team...  ...response, with a strong background in web development and security tools. This role...  ...strategies. Conduct web application penetration tests and vulnerability risk... 
    Web
    Shift work

    Falcon IT & Staffing Solutions

    Annapolis, MD
    2 days ago
  • $2,500 per month

     ...Job Description: A Lead Penetration Tester is needed to join a high performing agile...  ...testing tools. Must have experience in web development and programming languages such...  ...strong familiarity of the following Web Application tools; Burp Suite, Web Inspect, Appdetective... 
    Web
    Local area
    Immediate start
    Shift work

    ProdigyOne

    Annapolis, MD
    2 days ago
  • $40 per hour

     ...directly shapes the next generation of AI security models Qualifications 2+ years of hands‑on experience in cybersecurity (e.g., penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some coding... 
    Senior
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Annapolis, MD
    5 days ago
  • $131.3k - $237.35k

     ...Lead Penetration Tester Leidos has a new and exciting opportunity for a Lead Penetration...  ...develop mitigation strategies. Perform web app pentests. Perform vulnerability...  ...strong familiarity of the following Web Application tools; Burp Suite, Web Inspect,... 
    Web
    Local area
    Immediate start
    Flexible hours
    Shift work

    Leidos

    Annapolis, MD
    4 days ago
  • $113k - $279k

     ...systems and software engineering services firm is seeking a Lead Penetration Tester to join their agile team. The role entails addressing...  ...should have extensive experience with penetration testing tools, web development, and managing multiple projects. This position offers... 
    Web

    One Network Enterprises

    Annapolis, MD
    4 days ago
  • A cybersecurity firm is looking for a Penetration Tester to assess the security of systems and applications. In this role, you will conduct vulnerability and penetration tests, collaborate with analysts, and prepare reports on security findings. The ideal candidate will... 
    Senior

    Independent Software

    Annapolis, MD
    5 days ago
  • $90k - $109k

     ...criteria for cybersecurity architecture. Perform infrastructure penetration testing to discover and exploit vulnerabilities to test the...  ...of the organization's security posture. Perform web application penetration testing to identify and exploit OWASP Top 10 web... 
    Web
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Annapolis, MD
    3 days ago
  • Lead Penetration Tester Leidos is hiring a Lead Penetration Tester in its National Security Sector's Cyber & Analytics Business Area. This...  ...will perform internal and external penetration tests, web application tests, vulnerability risk assessments, physical pentests and... 
    Web
    Immediate start
    Flexible hours
    Shift work

    Fairygodboss

    Annapolis, MD
    2 days ago
  •  ...involves coding IT solutions, systems modeling, and providing technical consultation. Ideal candidates have 3 to 5 years of experience in web development, particularly with Ruby on Rails, and must possess an active TS/SCI with Full-scope Polygraph Clearance. Strong problem-... 
    Senior
    Web

    SourcePro Search

    Annapolis, MD
    3 days ago
  • $120k - $250k

    A technology solutions provider based in Maryland is hiring a Full Stack Developer to design and maintain web applications. Candidates should possess an active TS/SCI clearance and have 5+ years of relevant experience. The position involves collaboration with stakeholders... 
    Senior
    Web

    The Josef Group

    Annapolis, MD
    1 day ago
  • $140k - $265k

     ...NMAP, PKI, Wireshark, auditing, penetration testing, scripting, IASAE,...  ...encryption techniques/tools, and web services. Must have in-depth...  ...assurance support for application development that includes system...  ...Web Applications Penetration Tester (GWAPT) GIAC Penetration Tester... 
    Web
    Contract work
    Temporary work
    Immediate start

    Constellation Technologies, Inc

    Annapolis, MD
    1 day ago
  • Payfuture Technologies is looking for an Application Penetration Tester based in Annapolis, MD. The role involves safeguarding web applications and REST APIs through thorough security assessments and vulnerability remediation. Ideal candidates should possess over 3 years... 
    Web

    Payfuture Technologies

    Annapolis, MD
    1 day ago
  • $155k - $195k

     ...Server), systems integration and life cycle support, enterprise application development, network engineering, and information systems...  ...state-of-the-art commercial products. We hire software engineers, web designers, test engineers, systems engineers, systems administrators... 
    Senior
    Web
    Contract work
    Work experience placement
    Flexible hours

    Belay Technologies

    Annapolis, MD
    4 days ago
  • 6AM City, LLC is seeking an Experienced Mid-level Full Stack Application Developer and Backend Engineer to enhance technology infrastructure...  ...will be involved in both front-end and back-end processing of web applications, ensuring smooth integration of user-facing... 
    Senior
    Web

    6AM City, LLC

    Annapolis, MD
    4 days ago
  • Interclypse, Inc. is seeking a Senior Computer Programmer to contribute to the modernization of critical systems for Maryland state agencies...  ...and Node.js technologies, as well as experience with RESTful web services. The position is onsite in Maryland, offering an... 
    Senior
    Web

    Interclypse, Inc.

    Annapolis, MD
    2 days ago
  • $237k - $262k

    Erias Ventures, LLC is seeking an Application Engineer to join the Secure the Enterprise initiative in Annapolis, MD. This position involves...  ...a current Top-Secret/SCI clearance. Candidates will work on web-based capabilities using Angular and play a key role in designing... 
    Senior
    Web
    Flexible hours

    Erias Ventures, LLC

    Annapolis, MD
    3 days ago
  • $104k - $166k

     ...Maryland. The role involves designing, developing, and maintaining applications that support critical operations, collaborating with diverse...  ...should possess a TS/SCI clearance and experience in modern web development. The estimated salary range for this position is $1... 
    Senior
    Web

    Peraton

    Annapolis, MD
    1 day ago
  • A leading IT services company is seeking a Senior Web Developer to join their Customer Self-Service team in Maryland. Candidates should have 7-10 years of experience and strong skills in Angular, TypeScript, and .NET Core. This role includes full-stack development and... 
    Senior
    Web

    Compunnel, Inc.

    Annapolis, MD
    5 days ago
  • Overview Diverse Systems Group (DSG) is seeking an experienced Project Manager to lead and oversee IT and web-based system support efforts. This individual will serve as the primary point of contact, ensuring successful delivery, coordination, and performance across all... 
    Senior
    Web

    Vinstuen Femmeren jazzværtshus

    Annapolis, MD
    2 days ago
  • Momentum Engineering, Inc. is seeking a Software Test Engineer to design and execute tests for web-based applications. The role requires a strong technical background with 20 years of experience and a Top Secret/SCI clearance. You will work in an Agile environment, focusing... 
    Senior
    Web
    Hourly pay

    Momentum Engineering, Inc.

    Annapolis, MD
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Web Application Penetration Tester. Be the first to apply!