Back to all roles

Web Application Penetration Testing

Remote-first Full-time Now hiring

Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team. Job Title: Web Application Penetration Testing Location: Chantilly, VA. Position Overview:

  • We are seeking an experienced and results-driven Penetration Tester to support them in performing comprehensive web application security assessments as part of the Web Application Penetration Testing opportunity.
  • The ideal candidate will have a deep understanding of web application security, vulnerability assessment, and threat exploitation methodologies. This role requires a professional who can think like an attacker, assess systems holistically, and provide actionable insights that enhance the security posture of critical government systems.

Key Responsibilities:

  • Conduct web application, API, and network penetration tests to identify and validate security vulnerabilities.
  • Perform grey-box and black-box testing following NIST SP 800-115 and OWASP Testing Framework methodologies.
  • Evaluate authentication mechanisms, session management, access controls, and data handling practices for security flaws.
  • Execute vulnerability exploitation and proof-of-concept validation to demonstrate real-world risk impact.
  • Document findings with technical precision and provide clear remediation recommendations to stakeholders.
  • Collaborate with internal security engineers and client teams to verify vulnerability fixes and perform retesting.
  • Prepare and deliver comprehensive technical and executive-level reports that align with the COV Information Security Standard (SEC530).
  • Support secure configuration reviews and compliance with applicable state and federal cybersecurity standards.

Required Minimum Qualifications:

  • Bachelor's degree in computer science, Cybersecurity, Information Technology, or a related field (or equivalent experience).
  • Preferably 7 years of experience in penetration testing or ethical hacking, with a strong focus on web applications and APIs.
  • In-depth knowledge of web technologies, networking protocols, authentication systems, and encryption standards.
  • Strong understanding of secure development practices (SDLC) and common vulnerabilities (OWASP Top 10).
  • Excellent analytical, documentation, and communication skills.

Preferred Certifications:

  • CEH (Certified Ethical Hacker) - Required.
  • OSCP (Offensive Security Certified Professional) - Preferred.
  • CompTIA Security / CySA / GPEN / GWAPT - Desirable.

Desired Attributes:

  • Critical thinkers with the ability to simulate real-world attacks creatively and effectively.
  • Detail-oriented with strong problem-solving and analytical skills.
  • Proactive, self-motivated, and able to manage multiple testing assignments.
  • Collaborative and professional, with the ability to work effectively in client-facing environments.
  • Strong commitment to confidentiality, ethical standards, and data security compliance.

Ampcus is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veterans or individuals with disabilities. Apply tot his job Apply To this Job

More remote roles

Senior Security Analyst

Remote-first Full-time

Future Opportunities: Cybersecurity

Remote-first Full-time

Security Analyst (Remote)

Remote-first Full-time

Senior Web Penetration Tester, Part Time Hourly – Remote (Pacific Time Zone highly Preferred)

Remote-first Full-time

Remote: Senior Information Security Analyst (SSH Key Manamgement)

Remote-first Full-time

Cybersecurity Penetration Tester [REMOTE JOB

Remote-first Full-time

Remote Role || Security Analyst

Remote-first Full-time

Jr. Information Security Analyst

Remote-first Full-time

[Remote] Security Consultant II (AI/ML Penetration Tester)

Remote-first Full-time

Penetration Tester (W-2 or 1099 | U.S.-Based)

Remote-first Full-time

APTPUO - Fall 2026 - ENG1100 CF00

Remote-first Full-time

Experienced Entry-Level Remote Part-Time Customer Service Representative – Online Support and Resolution Specialist at arenaflex

Remote-first Full-time

Remote Data Entry Specialist – Entry‑Level Remote Position with arenaflex – Flexible Hours, No Experience Required

Remote-first Full-time

Care Coordination Associate (Bilingual English/Spanish Medical Assistant)

Remote-first Full-time

Experienced Data Entry Clerk – Work From Home – 100% Remote Opportunity at arenaflex

Remote-first Full-time

Senior Data Entry Specialist - Remote Opportunities with Competitive Compensation at arenaflex

Remote-first Full-time

Principal Account Executive (813)

Remote-first Full-time

Experienced Data Entry Specialist – Remote Opportunity at arenaflex

Remote-first Full-time

Workday Senior Analyst

Remote-first Full-time

Experienced Data Entry Agent – Flexible Work From Home Opportunity with arenaflex

Remote-first Full-time