Senior Web Application Penetration Tester
SixGen, Inc. · Remote
Posted about 2 months ago · $125-$165K
or apply directly on SixGen, Inc.'s site. We never take the application ourselves.
Is this posting real?
- This role has been open
- 55 days SixGen, Inc.'s roles stay open a median of 55 days
- Reposted
- No
- Salary listed
- Yes 43% of SixGen, Inc.'s roles list one
- Ghost-job risk at SixGen, Inc.
- high 20 stale, 3 reposted of 23 open
- Hiring momentum
- 30 roles opened in the last 90 days ↑ up vs. the prior 90 days
- Last confirmed on the employer's board
- 2026-09-27
Measured from postings appearing on and disappearing from SixGen, Inc.'s own greenhouse board since 2026-08-03. Full hiring picture for SixGen, Inc..
About this role
The Senior Web Application Penetration Tester at SIXGEN will conduct thorough security assessments of web applications, APIs, and mobile applications, utilizing both automated tools and manual testing techniques. The role involves identifying vulnerabilities, analyzing attack paths, and developing custom tools to enhance testing activities. Additionally, the tester will engage with clients to communicate findings and provide remediation strategies, ensuring a comprehensive understanding of security impacts.
- benefits
- 3/5
- freshness
- 1/5
- career value
- 5/5
- role clarity
- 5/5
- pay transparency
- 5/5
Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of SixGen, Inc. as an employer.
What you need
- 5+ years of experience in web application penetration testing or offensive cybersecurity
- Demonstrated experience conducting manual web application security assessments
- Knowledge of modern web application vulnerabilities, attack methodologies, and exploitation techniques
- Experience with network mapping, vulnerability scanning, and penetration testing methodologies
- Familiarity with NIST 800-series standards and cybersecurity best practices
- Experience developing scripts, payloads, or custom testing tools
Nice to have
- One or more of the following certifications is strongly preferred: CWES, CWEE, OSCP, OSWA, OSWE, CRTO, GWAPT, Other relevant hands-on offensive security certifications
- Experience with cloud environments and post-exploitation activities
- Experience with Active Directory security assessments
- Familiarity with FISMA compliance requirements
- Experience supporting government or regulated industry clients
What you get
- Employer-paid health insurance premiums (medical, dental, vision) for you and your family
- Employer-paid short/long term disability insurance and basic life/AD&D insurance
- 401K with a 4% employer contribution
- Professional development reimbursement options available (training, certification, education, etc)
- Flexible and remote work policies for most positions
- Flexible PTO and holiday schedule
Worth weighing
- Salary range is provided but may vary based on experience and qualifications
- Role requires obtaining a Secret Clearance, which may be a consideration for some candidates
Summarised from SixGen, Inc.'s posting. Read the full original.
Listed by SixGen, Inc. on their greenhouse job board, last confirmed open on 2026-09-27. PitchMeAI is not the employer.
More roles at SixGen, Inc.
- Mobile CNO DeveloperNorthern Virginia
- Field Service IT Engineer-TS requiredColumbia, MD
- CNE Developer-TS RequiredColumbia, MD
- Red Team Operator and Infrastructure SMEHybrid
- Reverse EngineerSterling, VA