> Markdown version of [/jobs/ext/1457570-web-application-penetration-tester](https://www.wearedevelopers.com/jobs/ext/1457570-web-application-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Web Application Penetration Tester - **Company:** AZ CYBER SECURITY SOLUTIONS - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $120,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Application Programming Interfaces (APIs), Software System Penetration Testing, Burp Suite, Cyber Security, Network Security, Nmap, Penetration Tools, Web Applications, Computer Networking Systems, Cloud Platform System, GWAPT, Metasploit, Nessus, Vulnerability Analysis - **Published:** July 27, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=b99c4c8a19439d56 ## About the Role 10+ years of experience performing application penetration testing roles. Experience in penetration testing large and complex enterprise networks and cloud environments. Strong knowledge of tools used for wireless, web application, and network security testing. Well-known vulnerability assessment and penetration testing methodologies Excellent communication and interpersonal skills U.S. Citizenship required and ability to attain a Public Trust clearance., One or more certifications in Web Application Penetration Tester: such as GWAPT, OSCP, GXPN, OSCE, or GPEN, * Penetration testing: 10 years (Preferred) * web application: 10 years (Preferred) * Vulnerability assessment: 10 years (Preferred) ## Description Perform web application, API, and network penetration testing. Selects, installs, and configures security testing platforms and tools or develop tools and procedures for penetration tests. Perform application and infrastructure penetration tests, as well as physical security review and social engineering tests. Conduct hands-on technical testing beyond automated tool validation, including full exploitation and leveraging of access within multiple environments, such as Windows or *nix; conduct scenario-based security testing or red teaming to identify gaps in detection and response capabilities. Performs Penetration testing using standard penetration tools (Metasploit, Nmap, Nessus, Burp Suite, etc.) Search for weaknesses in common software, web applications and propriety systems. Perform information technology security research to remain current on emerging technology trends and develop exploits for disclosed and undisclosed vulnerabilities. Establish improvements for existing security services, including hardware, software, policies, and procedures. ## Related Videos - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [11 Best Practices For PHP Security](https://www.wearedevelopers.com/magazine/90-11-best-practices-for-php-security) - [The Best Job Search Websites of 2025](https://www.wearedevelopers.com/magazine/368-the-best-job-search-websites-of-2025)