Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Associate, Compliance Security Penetration Tester

$64k - $117k
Full-time

jobgether

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Associate, Compliance Security Penetration Tester based in United States.

This role offers the opportunity to help organizations identify and address real-world cybersecurity vulnerabilities through hands-on offensive security assessments.
You’ll work across network, web application, API, mobile, cloud, wireless, and social engineering environments, depending on your expertise.
The position combines technical testing with client-facing consulting, security compliance, reporting, and remediation support.
You’ll collaborate with project managers, security professionals, quality teams, and clients to deliver high-quality assessments on schedule.
The environment encourages continuous technical development, industry certifications, knowledge sharing, and exposure to evolving attack techniques.
You’ll also have opportunities to contribute to testing methodologies, mentor developing professionals, and strengthen client relationships.
This is a remote position with occasional travel and a strong focus on professional growth and cybersecurity impact.

Accountabilities:

  • Conduct security assessments and penetration tests across internal and external networks, web applications, APIs, mobile applications, cloud environments, wireless systems, and other technologies as applicable.
  • Simulate sophisticated cyberattacks to identify vulnerabilities, security weaknesses, and potential compliance gaps.
  • Advise clients on technical security and compliance activities, helping them understand findings and appropriate remediation approaches.
  • Manage assigned priorities, testing activities, and project deliverables while meeting utilization, quality, and timeline expectations.
  • Support engagements from initial scoping through testing, reporting, remediation, and final delivery.
  • Collaborate with project management, quality, sales, and delivery teams to ensure strong customer experiences and successful project outcomes.
  • Assist with engagement scoping, project planning, escalation management, report generation, and quality assurance.
  • Develop and improve penetration testing processes, procedures, methodologies, and supporting documentation.
  • Build and maintain professional relationships with clients and communicate technical findings clearly to both technical and non-technical stakeholders.
  • Continue expanding technical expertise and pursue relevant cybersecurity certifications and professional development.
  • Mentor and support less experienced team members while contributing to broader team objectives and performance.
  • Participate in initiatives that improve testing efficiency, assessment quality, and the overall client experience.

Requirements:

  • Bachelor’s degree in a relevant discipline or an equivalent combination of education and professional experience.
  • At least 3 years of information security experience, including hands-on web application and network penetration testing.
  • Experience working within enterprise technology environments and a strong understanding of networks, servers, workstations, and applications.
  • Practical scripting experience with languages such as Python, PowerShell, Shell, or Ruby.
  • Experience with one or more security and compliance frameworks, such as PCI, FISMA, HIPAA, FedRAMP, or HITRUST.
  • 1–3 years of experience in IT security auditing and/or compliance-focused work.
  • Ability to interact confidently with management and provide security guidance in a consultative environment.
  • Strong written, verbal, communication, and presentation skills, with the ability to explain complex security concepts effectively.
  • Strong understanding of cybersecurity principles, security policies, and industry best practices.
  • Ability to manage multiple priorities independently while collaborating effectively with distributed teams.
  • Willingness and ability to travel up to 20% as required.
  • A proactive, curious mindset and commitment to continuously developing technical and consulting expertise.
  • Experience leading penetration testing engagements, working directly with clients, or operating in a consulting environment is a strong advantage.
  • Additional value comes from experience with malware reverse engineering, obfuscation, cryptography, C and compiler toolchains, technical security writing, or public security research.
  • Participation in CTFs, Hack The Box, cyber-defense competitions, security conferences, or other cybersecurity communities is a plus.

Benefits:

  • Salary: $64,000–$117,000 per year, with actual compensation based on factors including experience, education, geographic location, training, licensure, and certifications.
  • Potential eligibility for annual incentive, commission, and/or recognition programs.
  • Flexible work model designed to support effective remote and office-based working arrangements.
  • Comprehensive insurance options to support employees and their families.
  • Paid parental leave.
  • Flexible time off.
  • Certification and professional training reimbursement.
  • Digital mental health and wellbeing support.
  • Employee resource groups and opportunities to participate in virtual and in-person community events.
  • Opportunities for ongoing technical development, industry certifications, and career growth.
  • Collaborative environment focused on cybersecurity expertise, professional development, and meaningful client impact.

How Jobgether works:

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Associate, Compliance Security Penetration Tester in United States vacancy
  • $64k - $117k

     ...such as: Internal and External Network Penetration Testing, Application Penetration Testing...  ..., Wireless Assessments. Conduct security assessments on a wide variety of technologies...  ...clients on technical security or compliance activities Manages priorities and... 
    Suggested
    Full time
    Work experience placement
    Work at office
    Remote work
    Worldwide
    Flexible hours

    Coalfire

    Remote
    4 days ago
  •  ...Application Penetration Testers / Dynamic Application Security Testing (DAST) San Francisco CA or New York City, NY or Charlotte NC or Irving TX or Chandler...  ...of the function policies procedures and compliance requirements. Collaborate with client personnel in... 
    Suggested

    Syntricate Technologies

    Charlotte, NC
    3 days ago
  •  ...Federal is actively hiring an Assured Compliance Assessment Solution (ACAS) Engineer in...  ...support of our Defense Counterintelligence Security Agency (DCSA) program based out of...  ...Description: The Cybersecurity Penetration Tester is a hands-on technical role responsible... 
    Suggested
    Work at office
    Remote work
    2 days per week

    ASRC Federal Holding Company

    Quantico, VA
    1 day ago
  • $130k - $160k

     ...advanced cybersecurity offensive and compliance technical solutions. Our comprehensive...  ...from the best. We're seeking a seasoned Penetration Tester to join our team. Your expertise in...  ...and other compliance frameworks) and security best practices will be essential in helping... 
    Suggested
    Full time
    Temporary work
    Home office
    Flexible hours

    Fortreum

    Washington DC
    2 days ago
  •  ...invites highly motivated individuals to join the Associate Hacker program. You will work with a world-class team in penetration testing to safeguard client environments and...  ...professional growth within IBM’s X-Force security group, with travel dependent on project requirements... 
    Suggested

    IBM

    Austin, TX
    3 days ago
  • $137k - $183k

     ...Associate, Security Engineering with Goldman Sachs Services LLC in New York, New York. Performing...  ..., cryptographic implementation, and compliance and regulatory needs. Requires:...  ...design reviews, source code reviews, penetration testing or vulnerability assessments;... 
    Full time
    Work experience placement
    Shift work

    Goldman Sachs Services LLC

    New York, NY
    2 days ago
  • $160k - $180k

     ...drive operational efficiency, and reduce compliance costs. Built for the AI age, Saviynt is...  ...is recognized as the leader in identity security, with solutions that protect and empower...  ...information, please visit  We are seeking a Associate Principal SDET to lead the architecture... 
    Shift work

    Saviynt

    Milpitas, CA
    4 days ago
  • $159.3k - $202.4k

    Amazon Healthcare Security's (HealthSec) Detections & Monitoring team is hiring a Security Engineer II to design, build, and operate...  ...rapidly and investigated efficiently, while maintaining HIPAA compliance and Amazon's security bar. You will also leverage AI/LLM-powered... 
    Flexible hours

    Amazon

    Seattle, WA
    1 day ago
  • $77k - $202k

     ...SummaryThe OpportunityAs a SAP Business Process & IT Controls Sr Associate, you will engage with clients to optimize operational...  ...our Technology Consulting practice, you will focus on SAP compliance and security, analyzing client requirements, implementing security measures... 
    Full time
    H1b

    PwC

    San Francisco, CA
    2 days ago
  •  ...Reporting to the Program Manager, the Web Developer Embeds security across the SDLC for mission-critical web apps, APIs, and sensitive...  .../tunes WAF and FIM; ensures NIST 800-53 / FISMA / FedRAMP compliance and supports audits and authorization.   REQUIRED QUALIFICATIONS... 
    Full time

    Base Camp Consulting

    Washington DC
    13 hours ago
  •  ...physical world, moving beyond traditional security solutions to deliver AI-driven,...  ...unprecedented visibility and control over safety, compliance, and operations. This is your chance to...  ...THIS ROLE We're looking for an Associate Recruiter who's ready to do meaningful work... 
    Full time
    Internship
    Work at office
    Flexible hours
    Shift work

    Lvt

    Remote
    13 hours ago
  •  ...solutions, tested leadership, and trusted results to enable national security missions worldwide.Job Description*** This position is...  ...support development of remediation recommendations· Support cloud compliance scans and assessment activities· Troubleshoot scan issues and... 
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOSi

    Washington DC
    4 days ago
  • $96.6k - $130k

     ...reviews communications with the public submitted by firms for compliance with FINRA, SEC, MSRB and SIPC advertising rules and regulations...  ...of investment products and new techniques used to market securities products and services.Assists in analysis of communications used... 
    Full time
    Temporary work
    For contractors
    Work experience placement
    For subcontractor
    Local area
    Immediate start

    Financial Industry Regulatory Authority

    Jericho, NY
    1 day ago
  •  ...land, sea and cyber domains in the interest of national security. Job Title: Senior Associate, Contracts Job Location: Waco, TX Job Schedule:...  ...risk, negotiating contract terms, and ensuring compliance with customer requirements, government regulations, and... 
    Contract work
    Local area

    L3Harris

    Waco, TX
    2 days ago
  • $125k - $250k

     ...hard things, together.Appian is seeking an Associate Counsel to work within our technology...  ...and contracts team on issues related to security, privacy, AI, and intellectual property...  ...disclosures, and brand collateral, ensuring compliance with consumer protection and advertising... 
    Contract work
    Work experience placement
    Work at office
    Local area
    Flexible hours

    Appian

    McLean, VA
    13 hours ago
  • $120k - $140k

     ...operational workflow used across finance, legal, security, and IT teams, helping companies move faster while maintaining compliance and control. The company has grown...  ...Opportunity Our partner is hiring a Growth Associate  to join their first U.S. go-to-market team.... 
    Work at office
    3 days per week

    Talentpluto

    New York, NY
    1 day ago
  •  ...particular focus on Defense and National Security mission sets. We leverage more than 17...  ..., academic institutions, and industry associations with a goal of continually building our...  ...documentation, and generate evidence of compliance once settings have been applied.Core... 
    For contractors

    Barbaricum

    Washington, NC
    4 days ago
  • Job Title: Information Security OfficerSummaryThe Information Security Officer (ISO) at German American Bank is responsible for establishing...  ...maintain the company's information security program, ensuring compliance with all regulatory guidance and information security best... 
    Temporary work
    Work experience placement
    Bank staff

    German American Bank

    Evansville, IN
    2 days ago
  •  ...land, sea and cyber domains in the interest of national security. Job Title: Senior Associate, Contracts Job Location: Waco, TX Job Schedule: 9/80:...  ...mitigating risk, negotiating contract terms, and ensuring compliance with customer requirements, government regulations, and... 
    Contract work
    Local area

    Harris Geospatial Solutions

    Brooklyn, NY
    1 day ago
  •  ...is seeking a Warehouse LP Supervisor to optimize workflow, lead loss prevention, and ensure safety compliance across the distribution center. You will supervise security staff, conduct inspections, and coordinate with operations to meet regulatory and company standards... 

    Deckers Brands

    Mooresville, IN
    2 days ago
  • $120k - $145k

     ...Training.ResponsibilitiesServe as the program Information System Security Officer (ISSO) for several tactical information systems and...  ...cybersecurity expertise to guide the program toward and maintain cyber compliance.Act as the primary interface between the program and the... 
    For contractors

    AMERICAN SYSTEMS

    Middletown, RI
    1 day ago
  • $250k - $275k

     ...Overview The Associate General Counsel, the second-in-line to the General Counsel, will...  ...Legal Department, including maintaining compliance with state and federal law, implementing...  ...recruiting process, such as your social security number; send you any unsolicited job offers... 
    Contract work
    Work at office

    A Place for Mom

    New York, NY
    3 days ago
  •  ...established JC, DoD, and DIA policies and standards to minimize and/or mitigate RMF security risks.The contractor will review and comment on technical documentation to ensure compliance with security standards and regulations. The contractor will recommend security monitoring... 
    For contractors
    Work experience placement
    For subcontractor
    Worldwide

    Constellation West

    Washington DC
    4 days ago
  •  ...seeking an entry-level Vulnerability Patch Analyst to ensure compliance with vulnerability management programs while working closely with...  ...engineers. Ideal candidates should have some experience in security engineering, strong analytical skills, and knowledge of database... 

    CVS Health

    Albany, NY
    2 days ago
  • Position Summary The Chief Information Security Officer (CISO) owns enterprise security strategy, risk management, and compliance for the FAL Group of companies under Fortive...  ...application security, AI security, and all associated cyber or cyber adjacent incident response.... 
    Work at office
    Local area
    Worldwide

    Fortive

    Austin, TX
    13 hours ago
  • $350k - $400k

     ...Group Chief Information Security Officer Organization: Location...  ...operations and compliance management. The CISO will play...  ...organizations. Oversee regular penetration testing, vulnerability assessments...  ...monitor, and mitigate risks associated with vendors, cloud... 
    Contract work
    Local area
    Shift work

    The Security Executive Council

    New York, NY
    4 days ago
  • $179.3k - $239k

     ...continuous innovation and acquisition, our offerings comprise of personalized solutions that span the mortgage continuum and enhance security, compliance, customer satisfaction, and profitability. Our inclusive, people-first culture has earned our company numerous accolades,... 

    First American

    Fort Mill, York County, SC
    1 day ago
  •  ...Define and execute the company's enterprise security strategy, aligned with business objectives and compliance obligations (including FedRAMP). Own security...  ...continuous monitoring, threat intelligence integration, penetration testing, and vulnerability management.... 

    Jobtailor

    Salt Lake City, UT
    1 day ago
  •  ...State University, the WMC Chief Information Security Officer (WMC CISO) leads a department focused on security, risk management, compliance and security architecture for the...  ...security risks posed by vendors, business associates, and supply chain partners in alignment... 

    Wexner Medical Center

    Columbus, OH
    1 day ago
  • Pye-Barker Fire & Safety, LLC is hiring a Security Install Technician to perform installation, testing, and commissioning of intrusion...  ...diagrams, install components, test functionality, and ensure compliance with codes and customer requirements. Candidate should have 2+... 

    Pye-Barker Fire & Safety, LLC

    Brooklyn, NY
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Associate, Compliance Security Penetration Tester. Be the first to apply!