Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Security Consultant (Web Application Penetration Tester)

NetSPI

Senior Security Consultant (Web Application Penetration Tester)

NetSPI® is an award-winning pioneer of Penetration Testing as a Service (PTaaS) with its AI-powered platform supported by more than 350 in-house cybersecurity experts. Specializing in 50+ pentest types, attack surface visibility, vulnerability prioritization, and attack simulation, NetSPI delivers security testing with unprecedented clarity, speed, and scale.

NetSPI is on an exciting growth journey as we disrupt and improve the proactive security market. We are looking for individuals with a collaborative, innovative, and customer-first mindset to join our team. Learn more about our award-winning workplace culture and get to know our A-Team at

Join the mission as a Senior Security Consultant. We are seeking a skilled and detail-oriented Penetration Tester to conduct thorough security assessments, identify vulnerabilities, and provide expert recommendations to strengthen our clients' security posture. As a Penetration Tester supporting web applications, you will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.

Responsibilities:

  • Conduct engagements on web applications and underlying APIs independently and provide technical oversight
  • Review reports for accuracy in technical oversight, perform weekly QA oversight, and provide mentoring support to others
  • Create, deliver, and collaborate on penetration testing reports in diverse client environments, maintaining client-specific processes, reporting standards, and access protocols to help improve their security posture
  • Research and develop innovative techniques, tools, and methodologies for penetration testing services, alongside commitment to improvement and execution on NetSPI specific products and processes
  • Participate in development, implementation, and oversight of testing, delivery, and management strategies for key client accounts
  • Perform administrative tasks related to day-to-day consulting activities to ensure smooth business and engagement operations.

Minimum Qualifications:

  • Bachelor's degree or higher, with a focus on IT, Computer Science, Engineering or Math or equivalent experience
  • Minimum of 3-5 years of work experience in Penetration Testing
  • Familiarity with offensive tools, based on applicable skillset (e.g., Kali Linux, Burp Suite, Metasploit, Nessus)
  • Familiarity with offensive and defensive IT concepts and protocols
  • Extensive understanding of the OWASP Top 10, MITRE ATT&CK framework, and various security frameworks.
  • Working knowledge of Windows, Linux and MacOS operating systems internals
  • Experience mentoring or coaching to growing team members, while sharing knowledge externally through blogs, hosting webinars, or presenting at conferences
  • Ability to work independently and as part of a team
  • Proficient communication skills, both written and verbal
  • Willingness to travel up to 5-10%
  • This position requires an 8-hour workday, with occasional evenings or weekends necessary to meet project deadlines or critical needs

Preferred Qualifications:

  • Ability to provide technical and QA oversight on web applications and underlying APIs.
  • Experience in one or more of the following programming or scripting languages (e.g., Ruby, Python, Perl, C, C++, Java, and C#)
  • Offensive cybersecurity certifications (e.g., GXPN, GPEN, OSCP, GWAPT)

We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.

Equal Opportunity Employer This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Senior Security Consultant (Web Application Penetration Tester) in United States vacancy
  •  ...Senior Security Consultant (Mainframe Penetration Tester) NetSPI® pioneered Penetration Testing as a Service (PTaaS) and leads the industry in modern...  ...in penetration testing, including network, web or mobile application testing ~ Experience with offensive toolkits... 
    Senior
    Web
    Remote work
    Worldwide

    NetSPI

    United States
    1 day ago
  • $125k - $145k

     ...digital landscape. POSITION OVERVIEW Position: Senior Web Application Penetration Tester Job Type: Full-time Location: Maryland, Northern...  ...will possess deep expertise in web application security testing, vulnerability research, and exploitation techniques... 
    Senior
    Web
    Full time
    Temporary work
    Remote work
    Flexible hours

    SIXGEN

    Annapolis, MD
    3 days ago
  • $60 - $65 per hour

     ...Job Title: Systems Security Specialist (Senior) - Cybersecurity Penetration Tester Job Location: Baltimore, MD (2 days onsite / week) Duration...  ...augmentation, and a comprehensive range of application and web services. Recognized as one of INC. Magazine's... 
    Senior
    Web
    Long term contract
    2 days per week

    Edify Technologies India Pvt Ltd

    Baltimore, MD
    3 days ago
  • Hiring Web and Mobile Application Penetration Testers Job Title – Application Penetration Tester (Senior – Principal) Shorebreak Security is looking for passionate, self-disciplined, motivated...  ...but if you are an independent consultant looking for gigs, please get in... 
    Senior
    Web
    Permanent employment
    Full time
    Contract work
    Remote work
    Flexible hours

    Shorebreak Security, Inc

    Cocoa Beach, FL
    22 days ago
  •  ...Job Title: Manual Web Application Penetration Tester Location: Remote Responsibilities: Perform manual Application penetration testing against API's (REST/SOAP), Web Applications, Mobile applications, and thick client applications Perform threat modeling... 
    Web
    Remote work

    Jobs via Dice

    United States
    1 day ago
  • $51.72 - $59.72 per hour

     ...Application Penetration Tester - Hybrid Genesis10 is currently seeking an Application...  ..., validate, and exploit security vulnerabilities through...  ...will be on browser-based/web and API testing, with additional...  ...of the following: work or consulting experience, training,... 
    Web
    Hourly pay
    Contract work

    Genesis10

    Washington DC
    2 days ago
  •  ...Application Penetration Tester This role focuses on identifying, validating, and exploiting security vulnerabilities through hands-on, manual penetration testing across a broad range...  ...penetration testing on browser-based/web applications, APIs, and mobile applications... 
    Web
    Work experience placement
    Monday to Friday
    Flexible hours

    Leading Utilities Organization

    Washington DC
    2 days ago
  •  ...established industry player is seeking a seasoned penetration tester with over 7 years of experience in application security. This role involves conducting thorough...  ...vulnerability assessments and penetration tests across web and mobile applications, as well as cloud... 
    Senior
    Web

    TechDigital Group

    Cary, NC
    4 days ago
  •  ...Application Penetration Tester We are seeking a highly skilled and experienced Application Penetration...  ...a deep understanding of application security, and the ability to identify and mitigate...  ...architecture. Your focus will be on web and mobile applications and cloud... 
    Web

    OnDefend

    Washington DC
    2 days ago
  •  ...members to join our Security, Privacy, and Risk Consulting practice. The...  ...assessments, penetration testing, and...  ...campaigns (email, web, phone,...  ...etc.), mobile application testing, embedded...  ...verbal) findings to senior management and...  ...Certified Penetration Tester (GPEN);... 
    Web
    Work experience placement
    Internship
    Local area

    RSM US LLP

    Houston, TX
    4 days ago
  • $30 per hour

     ...Intern-Web Application Penetration Tester United States (Remote) Unqork empowers enterprises to accelerate...  ..., these applications become more secure over time while significantly...  ...team. This role is designed for rising seniors or a recent college graduate with a... 
    Web
    Internship
    Remote work

    Unqork

    United States
    1 day ago
  • Job Overview Application Penetration Tester at ASM Research, an Accenture Federal Services Company located...  ...MD. In this role you will safeguard web applications and REST APIs by applying...  ...to identify, mitigate, and remediate security vulnerabilities. Responsibilities... 
    Web
    Contract work
    Work at office

    Payfuture Technologies

    Annapolis, MD
    3 days ago
  • Allwyn UK is seeking a skilled security tester in Watford City to enhance its application security testing capabilities. The role focuses on application and...  ...security outcomes. The successful candidate will lead penetration testing and contribute to security standards,... 
    Senior

    Allwyn UK

    Watford City, ND
    1 day ago
  •  ...Uni Systems is seeking a Penetration Tester to join our UniQue team in Brussels. You'll...  ...penetration testing initiatives, providing security consultancy, and conducting thorough security...  ...and 3+ years of experience in web application and IT infrastructure penetration testing... 
    Senior
    Web

    Uni Systems

    Cedar Grove, WI
    1 day ago
  •  ...leader in Offensive Security including Red Teaming...  ...Discovery and Penetration Testing services. We...  ...Description Penetration Tester (Mid-Senior) | Full-Time |...  ...engagements across web applications, APIs, and internal...  ...experience in a delivery or consulting context ~ Strong... 
    Senior
    Web
    Full time
    Remote work
    Flexible hours

    BreachLock

    United States
    4 days ago
  • Airbus in Deutschland sucht einen Senior Cyber Security Penetration Tester (d/f/m), um Penetrationstests durchzuführen und Sicherheitsanalysen zu erstellen. Sie arbeiten eng mit einem internationalen Team zusammen und profitieren von flexiblen Arbeitszeiten. Diese Position... 
    Senior
    Web

    Airbus

    New Bremen, OH
    2 days ago
  •  ...Senior Penetration Test Consultant Rapid Strategy is seeking a Senior Penetration...  ...Test Consultant for both web apps and network. Rapid Strategy...  ...of the Penetration Tester is to simulate cyber attacks on web applications to identify security vulnerabilities before they... 
    Senior
    Web
    Part time
    Remote work

    Rapid Strategy

    United States
    4 days ago
  •  ...Senior Penetration Tester (Remote) NTT DATA strives to hire exceptional, innovative...  ...the Office of Information Security that forms part of our...  ...network penetration, web application testing, source code reviews...  ...business and technology consulting, data and artificial intelligence... 
    Senior
    Web
    Work at office
    Remote work
    Flexible hours

    Sierra Systems, An Ntt Data Company

    United States
    2 days ago
  •  ...Sopra Steria USA sucht einen Penetration Tester zur Durchführung anspruchsvoller Tests in unterschiedlichen Bereichen wie Web, Mobile und Cloud. Erfolgreiche Kandidaten haben ein...  ...hnlichem und mehrjährige Erfahrung in Offensive Security. Das Unternehmen bietet hybrides Arbeiten... 
    Senior
    Web

    Sopra Steria

    New Bremen, OH
    17 hours ago
  •  ...Packetlabs' Australian Security Team Packetlabs...  ...assessments presented as penetration tests. Our slogan "...  ...security. Packetlabs consultants find weaknesses...  ...penetration testing of web applications, mobile applications,...  ...application security tester to join our team:... 
    Senior
    Web
    Local area
    Remote work
    Flexible hours

    Packetlabs Ltd

    United States
    17 hours ago
  •  ...thinking tax, assurance and consulting services with industry-...  ...Execute internal and external penetration tests against enterprise environments...  ..., including network, web application, API, mobile, wireless, and...  ...Conduct wireless security assessments, including WPA2... 
    Senior
    Web
    Contract work
    Work at office
    Flexible hours

    Elliott Davis

    Greenville, SC
    2 days ago
  • $120k - $140k

    Strata Information Group is seeking a Penetration Tester to join their cybersecurity division, Triaxiom Security. The role requires 3-5 years of experience in penetration testing, particularly with web applications and APIs. Responsibilities include conducting penetration... 
    Senior
    Web

    Strata Information Group

    New York, NY
    4 days ago
  •  ...professional services focus on security and privacy audits,...  ...JOB SUMMARY Senior associates are...  ...Schellman created our Penetration Tester role with the goal of...  ...cloud-based networks and applications. The benefit of being...  ...+ year experience in web application... 
    Senior
    Web
    Contract work
    Work experience placement
    Local area
    Immediate start
    Remote work
    Flexible hours

    Schellman & Company

    United States
    1 day ago
  •  ...Senior Penetration Tester Job Description Overview CoStar Group is a...  ...estate. Evolve our security pentesting capabilities to...  ...processes, infrastructure, and applications. This position will be...  ...Lead penetration tests on web applications and underlying... 
    Senior
    Web
    Full time
    Work at office
    Work from home
    Monday to Thursday

    CoStar Group

    Arlington, VA
    1 day ago
  • $90k - $158.4k

     ...day - quickly, reliably, and securely. Any time you swipe your...  ...at Fiserv. Job Title Senior Penetration Tester About your role: At Fiserv...  ...securely and reliably. The Application Security team focuses on...  ...in-depth assessments of web, API, mobile, and thick-client... 
    Senior
    Web
    Temporary work
    H1b
    Work at office
    Monday to Friday

    Fiserv

    Alpharetta, GA
    4 days ago
  •  ...Senior Network Security Consultant Boston(South of) Consulting Accompanying sales team in customer meetings in a consultative...  ...infrastructure devices such as firewalls, SSL VPNs, secure web gateways, IPSs, application firewalls, etc. Check Point experience a plus... 
    Senior
    Web
    Work experience placement

    The Ceres Group

    Boston, MA
    2 days ago
  • $90k - $150k

     ...Providing intelligence, IT, cyber security, training, logistics,...  ...currently under bid. Summary The Senior Penetration Tester will independently perform penetration testing of applications, systems and enclaves....  ...databases, applications, and Web server design and implementation... 
    Senior
    Web
    Contract work
    Local area

    Goldbelt, Inc.

    New York, NY
    1 day ago
  • Halock Security Labs is hiring a Sr. Offensive Security Consultant to conduct web application and API penetration testing. The role requires 6-8 years of experience, strong proficiency in penetration testing tools, and the ability to develop custom solutions. Responsibilities... 
    Senior
    Web
    Remote job
    Full time

    Halock Security Labs

    Schaumburg, IL
    4 days ago
  • $104.8k - $192.2k

     ...Public Sector – Technology Consulting - Cybersecurity – Penetration Tester – Senior From strategy to...  ...operate integrated security operations for our clients...  ...across network, application, cloud, and identity attack...  ...internet, intranet, wireless, web application, social... 
    Senior
    Web
    For contractors
    Work experience placement
    Summer holiday
    Work at office
    Local area
    Flexible hours

    EY

    McLean, VA
    2 days ago
  • Contribute to leading-edge security and resilience efforts, advancing protective...  ...and simulations - such as penetration tests, technical controls assessments...  ...tests against a wide variety of applications and technologies with a focus on web, API, and thick-clients... 
    Senior
    Web
    Local area
    Worldwide

    JPMorgan Chase & Co.

    Columbus, OH
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Security Consultant (Web Application Penetration Tester). Be the first to apply!