> Markdown version of [/jobs/ext/254476-senior-penetration-tester](https://www.wearedevelopers.com/jobs/ext/254476-senior-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Penetration Tester - **Company:** Goldbelt - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $90,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Software System Penetration Testing, Computing Platforms, Automation of Tests, Bash Shell, Burp Suite, Databases, Linux, Perl (Programming Language), Web Servers, Internet Information Services (IIS), Python (Programming Language), Windows Servers, Network Architecture, Wireless Security, Nmap, Open Web Application Security, PCI Data Security Standards, Ruby, Scripting, SC Clearance, Metasploit, Nessus, Vulnerability Analysis - **Published:** May 31, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=ba62272986947383 ## About the Role Do you have experience in Writing skills?, Do you have a Bachelor's degree?, Necessary Skills and Knowledge: * Knowledge of TCP/IP protocols and networking architectures * Excellent written documentation and oral presentation skills * Knowledge of open security testing standards and projects, including OWASP * Knowledge of databases, applications, and Web server design and implementation * Possess oral and written communication skills, * Minimum six (6) years proven proficiency in performing extensive vulnerability assessment and penetration testing * Minimum three (3) years of experience with testing tools, including NESSUS, METASPLOIT, CANVAS, NMAP, Burp Suite, and Kismet * Minimum three (3) years of experience with network vulnerability assessments and penetration testing methods * Minimum three (3) years of experience with writing testing assessment reports * Minimum two (2) years of experience with using, administering, and troubleshooting a WINDOWS Server, IIS * Minimum two (2) years of experience with using, administering, and troubleshooting a major version of Linux * Minimum two (2) years of experience PCI DSS testing * Possess a certification in penetration testing, such as: + Licensed Penetration Tester (LPT) + Certified Expert Penetration Tester (CEPT) + Certified Ethical Hacker (CEH) + Global Information Assurance Certification Penetration Tester (GPEN) * Experience scripting in Perl, Python, Ruby, Bash, or Java * Experience with wireless LAN security testing * Required to possess a DOD SECRET Clearance and be eligible for an IT-I Critical Sensitive security clearance or Tier 5 (T5) upon assignment, * Bachelor's degree in a related field ## Description The Senior Penetration Tester will independently perform penetration testing of applications, systems and enclaves Identifies security flaws in computing platforms and applications and devise strategies and techniques to mitigate identified cybersecurity risks. Responsibilities: Essential Job Functions: * Performs application and network penetration testing and wireless security assessments. * Applies offensive cybersecurity testing techniques, coordinate testing projects with internal and external system owners. * Reports the nature of identified cybersecurity risks and recommends risk mitigation measures to improve the cybersecurity posture of the enterprise. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Coffee with Developers: David Heinemeier Hansson](https://www.wearedevelopers.com/videos/875-coffee-with-developers-david-heinemeier-hansson) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) - [Fireside Chat with Werner Vogels, VP & CTO, Amazon.com & Daniel Gebler, CTO at Picnic](https://www.wearedevelopers.com/videos/1405-fireside-chat-with-werner-vogels-vp-cto-amazon-com-daniel-gebler-cto-at-picnic) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Should senior developers refuse interview coding challenges?](https://www.wearedevelopers.com/magazine/29-should-senior-developers-refuse-interview-coding-challenges) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany)