Senior Security Consultant (Web Application Penetration Tester)
NetSPI
Senior Security Consultant (Web Application Penetration Tester)
NetSPI® is an award-winning pioneer of Penetration Testing as a Service (PTaaS) with its AI-powered platform supported by more than 350 in-house cybersecurity experts. Specializing in 50+ pentest types, attack surface visibility, vulnerability prioritization, and attack simulation, NetSPI delivers security testing with unprecedented clarity, speed, and scale.
NetSPI is on an exciting growth journey as we disrupt and improve the proactive security market. We are looking for individuals with a collaborative, innovative, and customer-first mindset to join our team. Learn more about our award-winning workplace culture and get to know our A-Team at
Join the mission as a Senior Security Consultant. We are seeking a skilled and detail-oriented Penetration Tester to conduct thorough security assessments, identify vulnerabilities, and provide expert recommendations to strengthen our clients' security posture. As a Penetration Tester supporting web applications, you will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.
Responsibilities:
- Conduct engagements on web applications and underlying APIs independently and provide technical oversight
- Review reports for accuracy in technical oversight, perform weekly QA oversight, and provide mentoring support to others
- Create, deliver, and collaborate on penetration testing reports in diverse client environments, maintaining client-specific processes, reporting standards, and access protocols to help improve their security posture
- Research and develop innovative techniques, tools, and methodologies for penetration testing services, alongside commitment to improvement and execution on NetSPI specific products and processes
- Participate in development, implementation, and oversight of testing, delivery, and management strategies for key client accounts
- Perform administrative tasks related to day-to-day consulting activities to ensure smooth business and engagement operations.
Minimum Qualifications:
- Bachelor's degree or higher, with a focus on IT, Computer Science, Engineering or Math or equivalent experience
- Minimum of 3-5 years of work experience in Penetration Testing
- Familiarity with offensive tools, based on applicable skillset (e.g., Kali Linux, Burp Suite, Metasploit, Nessus)
- Familiarity with offensive and defensive IT concepts and protocols
- Extensive understanding of the OWASP Top 10, MITRE ATT&CK framework, and various security frameworks.
- Working knowledge of Windows, Linux and MacOS operating systems internals
- Experience mentoring or coaching to growing team members, while sharing knowledge externally through blogs, hosting webinars, or presenting at conferences
- Ability to work independently and as part of a team
- Proficient communication skills, both written and verbal
- Willingness to travel up to 5-10%
- This position requires an 8-hour workday, with occasional evenings or weekends necessary to meet project deadlines or critical needs
Preferred Qualifications:
- Ability to provide technical and QA oversight on web applications and underlying APIs.
- Experience in one or more of the following programming or scripting languages (e.g., Ruby, Python, Perl, C, C++, Java, and C#)
- Offensive cybersecurity certifications (e.g., GXPN, GPEN, OSCP, GWAPT)
We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.
Equal Opportunity Employer This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
- ...Senior Security Consultant (Mainframe Penetration Tester) NetSPI® pioneered Penetration Testing as a Service (PTaaS) and leads the industry in modern... ...in penetration testing, including network, web or mobile application testing ~ Experience with offensive toolkits...SeniorWebRemote workWorldwide
$125k - $145k
...digital landscape. POSITION OVERVIEW Position: Senior Web Application Penetration Tester Job Type: Full-time Location: Maryland, Northern... ...will possess deep expertise in web application security testing, vulnerability research, and exploitation techniques...SeniorWebFull timeTemporary workRemote workFlexible hours$60 - $65 per hour
...Job Title: Systems Security Specialist (Senior) - Cybersecurity Penetration Tester Job Location: Baltimore, MD (2 days onsite / week) Duration... ...augmentation, and a comprehensive range of application and web services. Recognized as one of INC. Magazine's...SeniorWebLong term contract2 days per week- Hiring Web and Mobile Application Penetration Testers Job Title – Application Penetration Tester (Senior – Principal) Shorebreak Security is looking for passionate, self-disciplined, motivated... ...but if you are an independent consultant looking for gigs, please get in...SeniorWebPermanent employmentFull timeContract workRemote workFlexible hours
- ...Job Title: Manual Web Application Penetration Tester Location: Remote Responsibilities: Perform manual Application penetration testing against API's (REST/SOAP), Web Applications, Mobile applications, and thick client applications Perform threat modeling...WebRemote work
$51.72 - $59.72 per hour
...Application Penetration Tester - Hybrid Genesis10 is currently seeking an Application... ..., validate, and exploit security vulnerabilities through... ...will be on browser-based/web and API testing, with additional... ...of the following: work or consulting experience, training,...WebHourly payContract work- ...Application Penetration Tester This role focuses on identifying, validating, and exploiting security vulnerabilities through hands-on, manual penetration testing across a broad range... ...penetration testing on browser-based/web applications, APIs, and mobile applications...WebWork experience placementMonday to FridayFlexible hours
- ...established industry player is seeking a seasoned penetration tester with over 7 years of experience in application security. This role involves conducting thorough... ...vulnerability assessments and penetration tests across web and mobile applications, as well as cloud...SeniorWeb
- ...Application Penetration Tester We are seeking a highly skilled and experienced Application Penetration... ...a deep understanding of application security, and the ability to identify and mitigate... ...architecture. Your focus will be on web and mobile applications and cloud...Web
- ...members to join our Security, Privacy, and Risk Consulting practice. The... ...assessments, penetration testing, and... ...campaigns (email, web, phone,... ...etc.), mobile application testing, embedded... ...verbal) findings to senior management and... ...Certified Penetration Tester (GPEN);...WebWork experience placementInternshipLocal area
$30 per hour
...Intern-Web Application Penetration Tester United States (Remote) Unqork empowers enterprises to accelerate... ..., these applications become more secure over time while significantly... ...team. This role is designed for rising seniors or a recent college graduate with a...WebInternshipRemote work- Job Overview Application Penetration Tester at ASM Research, an Accenture Federal Services Company located... ...MD. In this role you will safeguard web applications and REST APIs by applying... ...to identify, mitigate, and remediate security vulnerabilities. Responsibilities...WebContract workWork at office
- Allwyn UK is seeking a skilled security tester in Watford City to enhance its application security testing capabilities. The role focuses on application and... ...security outcomes. The successful candidate will lead penetration testing and contribute to security standards,...Senior
- ...Uni Systems is seeking a Penetration Tester to join our UniQue team in Brussels. You'll... ...penetration testing initiatives, providing security consultancy, and conducting thorough security... ...and 3+ years of experience in web application and IT infrastructure penetration testing...SeniorWeb
- ...leader in Offensive Security including Red Teaming... ...Discovery and Penetration Testing services. We... ...Description Penetration Tester (Mid-Senior) | Full-Time |... ...engagements across web applications, APIs, and internal... ...experience in a delivery or consulting context ~ Strong...SeniorWebFull timeRemote workFlexible hours
- Airbus in Deutschland sucht einen Senior Cyber Security Penetration Tester (d/f/m), um Penetrationstests durchzuführen und Sicherheitsanalysen zu erstellen. Sie arbeiten eng mit einem internationalen Team zusammen und profitieren von flexiblen Arbeitszeiten. Diese Position...SeniorWeb
- ...Senior Penetration Test Consultant Rapid Strategy is seeking a Senior Penetration... ...Test Consultant for both web apps and network. Rapid Strategy... ...of the Penetration Tester is to simulate cyber attacks on web applications to identify security vulnerabilities before they...SeniorWebPart timeRemote work
- ...Senior Penetration Tester (Remote) NTT DATA strives to hire exceptional, innovative... ...the Office of Information Security that forms part of our... ...network penetration, web application testing, source code reviews... ...business and technology consulting, data and artificial intelligence...SeniorWebWork at officeRemote workFlexible hours
- ...Sopra Steria USA sucht einen Penetration Tester zur Durchführung anspruchsvoller Tests in unterschiedlichen Bereichen wie Web, Mobile und Cloud. Erfolgreiche Kandidaten haben ein... ...hnlichem und mehrjährige Erfahrung in Offensive Security. Das Unternehmen bietet hybrides Arbeiten...SeniorWeb
- ...Packetlabs' Australian Security Team Packetlabs... ...assessments presented as penetration tests. Our slogan "... ...security. Packetlabs consultants find weaknesses... ...penetration testing of web applications, mobile applications,... ...application security tester to join our team:...SeniorWebLocal areaRemote workFlexible hours
- ...thinking tax, assurance and consulting services with industry-... ...Execute internal and external penetration tests against enterprise environments... ..., including network, web application, API, mobile, wireless, and... ...Conduct wireless security assessments, including WPA2...SeniorWebContract workWork at officeFlexible hours
$120k - $140k
Strata Information Group is seeking a Penetration Tester to join their cybersecurity division, Triaxiom Security. The role requires 3-5 years of experience in penetration testing, particularly with web applications and APIs. Responsibilities include conducting penetration...SeniorWeb- ...professional services focus on security and privacy audits,... ...JOB SUMMARY Senior associates are... ...Schellman created our Penetration Tester role with the goal of... ...cloud-based networks and applications. The benefit of being... ...+ year experience in web application...SeniorWebContract workWork experience placementLocal areaImmediate startRemote workFlexible hours
- ...Senior Penetration Tester Job Description Overview CoStar Group is a... ...estate. Evolve our security pentesting capabilities to... ...processes, infrastructure, and applications. This position will be... ...Lead penetration tests on web applications and underlying...SeniorWebFull timeWork at officeWork from homeMonday to Thursday
$90k - $158.4k
...day - quickly, reliably, and securely. Any time you swipe your... ...at Fiserv. Job Title Senior Penetration Tester About your role: At Fiserv... ...securely and reliably. The Application Security team focuses on... ...in-depth assessments of web, API, mobile, and thick-client...SeniorWebTemporary workH1bWork at officeMonday to Friday- ...Senior Network Security Consultant Boston(South of) Consulting Accompanying sales team in customer meetings in a consultative... ...infrastructure devices such as firewalls, SSL VPNs, secure web gateways, IPSs, application firewalls, etc. Check Point experience a plus...SeniorWebWork experience placement
$90k - $150k
...Providing intelligence, IT, cyber security, training, logistics,... ...currently under bid. Summary The Senior Penetration Tester will independently perform penetration testing of applications, systems and enclaves.... ...databases, applications, and Web server design and implementation...SeniorWebContract workLocal area- Halock Security Labs is hiring a Sr. Offensive Security Consultant to conduct web application and API penetration testing. The role requires 6-8 years of experience, strong proficiency in penetration testing tools, and the ability to develop custom solutions. Responsibilities...SeniorWebRemote jobFull time
$104.8k - $192.2k
...Public Sector – Technology Consulting - Cybersecurity – Penetration Tester – Senior From strategy to... ...operate integrated security operations for our clients... ...across network, application, cloud, and identity attack... ...internet, intranet, wireless, web application, social...SeniorWebFor contractorsWork experience placementSummer holidayWork at officeLocal areaFlexible hours- Contribute to leading-edge security and resilience efforts, advancing protective... ...and simulations - such as penetration tests, technical controls assessments... ...tests against a wide variety of applications and technologies with a focus on web, API, and thick-clients...SeniorWebLocal areaWorldwide
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Consultant (Web Application Penetration Tester). Be the first to apply!
- security coordinator United States
- entry level security analyst United States
- cloud security analyst United States
- information security compliance analyst United States
- application security analyst United States
- security operations analyst United States
- entry level information security analyst United States
- information security analyst United States
- work from home security analyst United States
- network security analyst United States

