← Back to results

penetration-testing jobs in San Diego

$172,000 – $200,000 · Posted 3 days ago

Senior Application Security Engineer responsible for building and tuning Turquoise's application security scanning program (SAST, DAST, SCA, container, IaC scanning) and triaging findings from scans, penetration tests, and bug bounties. Day-to-day work includes partnering with engineering teams to remediate vulnerabilities, performing threat modeling, maintaining secure-coding standards, and supporting incident response for application-layer issues.… Requires 5+ years in application security or software engineering with security focus, deep hands-on experience with scanning tools, strong understanding of OWASP Top 10 and common vulnerability classes, and experience securing cloud environments and CI/CD pipelines.

San DiegoLast seen 1 day ago
$82,600 – $162,800 · Posted 4 days ago

As a Managed Services Engineer II (L1 SOC Analyst) on Deloitte's Cyber Operate team, you will monitor security alerts from SIEM and other security tools, validate and escalate incidents within SLA timeframes, investigate suspected threats, and perform IOC searches. You will respond to security events using documented procedures, distinguish false positives from genuine incidents, coordinate with escalation paths, and maintain runbooks and shift handover documentation.… The role requires a Bachelor's degree in IT/Computer Science plus 1+ years of security operations or cybersecurity experience, hands-on familiarity with SIEM platforms, IDS/IPS, EDR, DLP, WAF, firewalls, and threat intelligence, and the ability to work rotating 24/7 shifts from a Deloitte office 50% of the time.

San DiegoLast seen 2 days ago
$118,500 – $207,750 · Posted 6 days ago

Lead the design and implementation of enterprise security enforcement technologies, including SIEM platforms, endpoint security, threat detection, and incident response systems. Develop and maintain a forward-looking cybersecurity technology roadmap aligned with NIST frameworks and business objectives, evaluating emerging threats and technologies to strengthen organizational security capabilities.… Conduct threat hunting, penetration testing, and detection engineering activities while driving automation of security controls, policy enforcement, and response across complex technology environments. Mentor cybersecurity teams and influence enterprise security strategy across large organizations, with demonstrated experience securing AI-enabled solutions and understanding AI-specific security considerations.

San DiegoLast seen 4 days ago
$139,874 – $250,377 · Posted 8 days ago

Lead information security engineer responsible for designing and implementing comprehensive security architectures across ICW Group's IT and business technology infrastructure. Will conduct risk assessments, penetration tests, and security compliance reviews; partner with systems engineering and project management teams to ensure secure design throughout the development lifecycle; and lead remediation strategies for identified vulnerabilities.… Requires 10+ years of security engineering experience, AWS cloud security expertise (3–5 years preferred), and hands-on proficiency with IDS/IPS, firewalls, SIEM, forensics tools, and endpoint security solutions.

San DiegoLast seen 6 days ago
$125,000 – $180,000 · Posted 12 days ago

The IT Cybersecurity Specialist will architect and implement ServiceNow-specific security controls (RBAC, ACLs, Data Policies, Edge Encryption) aligned to DoD Zero Trust Strategy for the Blue UAS Cleared List platform. The role requires developing and maintaining System Security Plans and RMF artifacts, mapping ServiceNow configurations to NIST SP 800-53 and NIST SP 800-171/172 standards, and tracking POA&M to remediate vulnerabilities and maintain Authority to Operate.… The specialist will coordinate with Government IT Program Managers and Authorizing Officials, conduct continuous monitoring, provide Security Assessment Reports, and ensure personnel meet DoDM 8140.03 certification requirements. This position requires a bachelor's degree, five years of practical cybersecurity experience, active DoD security clearance, and demonstrated expertise securing ServiceNow instances in FedRAMP High and DoD IL4/IL5 environments.

San DiegoLast seen 10 days ago
$105,000 – $120,000 · Posted 12 days ago

Lead OutSystems engineer responsible for designing, building, and delivering enterprise low-code applications in a banking environment. Provide technical leadership through code reviews, mentoring developers through OutSystems certifications, and acting as the platform SME for architectural decisions.… Manage application deployments via LifeTime and ODC Portal, collaborate with DevOps teams on CI/CD integration, and proactively resolve performance and security issues. Extend OutSystems with full-stack capabilities in .NET/C#, SQL, REST/SOAP integrations, and front-end frameworks while maintaining regulatory compliance.

San DiegoLast seen 10 days ago
$160,001 – $200,000 · Posted 12 days ago

Senior Principal Cybersecurity Engineer supporting DoD Navy communication systems, responsible for planning and executing penetration tests, performing network traffic analysis, architecting hardened IT systems in classified environments, and conducting vulnerability assessments aligned with DISA STIGs and DoD standards. Requires 14+ years of experience (or 12+ with master's degree), with 5–7 years in hands-on cybersecurity engineering and 5+ years designing/implementing hardened systems in classified settings.… Must hold an active Top Secret clearance and be able to obtain TS/SCI.

San DiegoLast seen 10 days ago
Posted 14 days ago

The IT Security Analyst ensures the organization's IT environment complies with internal security policies, regulatory requirements, and industry standards. Key responsibilities include preparing NIST/CIS evaluations, monitoring compliance with SOX, PCI, and other frameworks, coordinating penetration tests and security assessments, reviewing IT administrative activities for policy adherence, conducting formal audits, and maintaining compliance documentation.… The role requires 4+ years of IT security, compliance, and audit experience, with strong understanding of IT General Controls, access management, regulatory frameworks, and audit support processes.

San DiegoLast seen 13 days ago
$117,000 – $130,000 · Posted 17 days ago

The Cybersecurity Analyst leads Bumble Bee's day-to-day cybersecurity operations, investigating and responding to security incidents, hunting threats, and tuning detection tooling. The role owns the full incident response lifecycle, manages vulnerability remediation, optimizes SIEM platforms, conducts security risk assessments for platforms and vendors, and maintains compliance through access control reviews and policy development.… The analyst builds incident response playbooks, monitors threat intelligence and CVE disclosures, and advises on third-party cyber risk. The position requires 4+ years of cybersecurity experience, proficiency with SIEM platforms, EDR tools, vulnerability management, MITRE ATT&CK framework, and knowledge of NIST, SOC, and ISO standards.

San DiegoLast seen 15 days ago
$192,051 – $268,870 · Posted 19 days ago

Develop firmware for secure enclaves of custom ASICs in Blue Origin's TeraWave satellite communications network. Responsibilities include writing ROM code, bootloaders, and runtime firmware supporting secure boot, attestation, OTA updates, and lifecycle management.… Work closely with hardware and systems engineers on pre- and post-silicon validation, debugging, and bring-up of custom silicon. Requires 5+ years of firmware development in C with strong embedded systems and hardware/software integration experience.

San DiegoLast seen 17 days ago
$139,081 – $159,943 · Posted 20 days ago

Senior Network Engineer responsible for designing, operating, and securing enterprise-grade wired and wireless networks across San Diego International Airport. Diagnose and resolve complex network issues through root cause analysis, lead infrastructure projects, and manage disaster recovery and compliance initiatives including vulnerability assessments and penetration testing.… Develop comprehensive network documentation, architecture designs, and standard operating procedures. Participate in on-call rotation supporting critical network operations and frequently access airfield facilities.

San DiegoLast seen 18 days ago
Posted 22 days ago

Join an offensive security team to triage and analyze vulnerabilities from bug bounties, penetration tests, and responsible AI security programs. You'll assess severity, write detailed security reports, collaborate with product and security teams on remediation, and support penetration testing across web apps, APIs, mobile, desktop applications, and LLMs.… The role requires 3+ years in computer security with at least 2 years of offensive security experience, hands-on penetration testing and vulnerability scanning skills, deep knowledge of OWASP Top 10, and proficiency in Python or similar scripting languages.

San DiegoLast seen 20 days ago
$160,001 – $200,000 · Posted 25 days ago

SAIC seeks a Principal Cybersecurity Engineer to perform penetration testing, vulnerability assessments, and security architecture work on classified Navy communication systems. The role requires hands-on expertise in network traffic analysis (Wireshark), hardened IT systems design, DoD/IC security frameworks (NIST RMF, DISA STIG), and offensive security techniques against DoD/IC infrastructure.… Candidates must have 9+ years total experience (5–7 years in cybersecurity engineering, 5+ in classified/high-security environments), proven red-team capabilities, and an active Top Secret clearance with ability to obtain TS/SCI.

San DiegoLast seen 22 days ago
Posted 26 days ago

This role combines offensive security expertise with vulnerability management for a financial software company. The engineer will triage and analyze bug bounty and vulnerability disclosure reports, reproduce vulnerabilities, develop technical findings, and communicate security risks to product and engineering teams.… The position requires 3+ years of cybersecurity experience with 2+ years in offensive security, hands-on penetration testing and vulnerability scanning skills, experience testing web/mobile/desktop applications or AI systems, and proficiency in Python or similar scripting languages.

San DiegoLast seen 24 days ago
Posted 27 days ago

Senior embedded software engineer leading secure firmware development for satellite communication systems. Designs and implements hardware interfaces using protocols like I2C, SPI, UART, and Ethernet with embedded security controls.… Collaborates with hardware architects and security teams to bring custom silicon from concept through secure verification and production integration. Requires 7+ years of professional software engineering with deep expertise in secure embedded systems, RTOS, real-time constraints, threat modeling, and penetration testing methodologies.

San DiegoLast seen 5 days ago
$117,000 – $130,000 · Posted 1 month ago

The Cybersecurity Analyst owns Bumble Bee's day-to-day security operations, investigating and responding to incidents, hunting threats, and tuning detection tooling to close coverage gaps. Responsibilities include managing the full incident response lifecycle, optimizing SIEM platforms, conducting vulnerability assessments, performing access control audits, and building incident response playbooks and procedures.… The role requires 4+ years of cybersecurity experience, proficiency with SIEM platforms, EDR tools, vulnerability management platforms, and hands-on knowledge of Windows/Linux, networking, and the MITRE ATT&CK framework. Success demands both technical operations expertise and cross-functional collaboration to strengthen security posture, ensure compliance, and assess third-party cyber risk.

San DiegoLast seen 1 month ago
$115,000 – $200,000 · Posted 1 month ago

Conduct software security assessments, vulnerability testing, penetration testing, and threat analysis on TrellisWare products. Perform static and dynamic analysis, reverse engineering, and incident investigation while ensuring compliance with FIPS 140, NIST STIG, and other regulatory standards.… Requires 5+ years industry experience with 3+ years software development and 2+ years vulnerability testing, proficiency in Python/C++/Java, and at least one security certification (Security+, CISSP, OSCP, or SANS/GIAC).

San DiegoLast seen 16 days ago
$190,000 – $270,000 · Posted 1 month ago

Lead the security assurance organization at Logos Space, responsible for defining security governance frameworks and leading a multi-disciplinary team of red teamers, vulnerability researchers, and penetration testers across embedded systems, spacecraft, supply chain, cloud infrastructure, and ground-based communications. You will own security sign-off for mission-critical software and hardware releases, establish vulnerability remediation thresholds, conduct adversarial modeling and red team exercises, and translate deep-dive security findings into architectural improvements.… The role requires 10–12+ years of security engineering experience with at least 5+ years in senior leadership of offensive security or assurance teams, plus demonstrable expertise leading security assurance programs for safety-critical aerospace or defense systems.

San DiegoLast seen 1 month ago
$190,000 – $270,000 · Posted 1 month ago

The Security Assurance Lead will build and direct a multi-disciplinary security team responsible for end-to-end security validation across embedded systems, spacecraft, cloud infrastructure, and supply chain. The role owns security governance frameworks, risk management thresholds, and go/no-go sign-off for mission-critical launches and deployments.… Key responsibilities include leading red team exercises, defining organizational testing strategies and security KPIs, and translating vulnerability research into architectural improvements across firmware, hardware, CI/CD pipelines, and orbital systems.

San DiegoLast seen 1 month ago
$106,985 – $171,777 · Posted 1 month ago

Senior Network Engineer responsible for diagnosing and resolving complex network issues across a large enterprise airport infrastructure, including wired, wireless, and data center environments. Design and lead technical projects, develop enterprise system documentation and architecture, and support disaster recovery, compliance, and security assessments.… Maintain detailed network diagrams, standard operating procedures, and serve as a hands-on technical lead coordinating with vendors and stakeholders. Participate in on-call rotations for critical network operations.

San DiegoLast seen 1 month ago
$139,081 – $159,943 · Posted 1 month ago

Senior Network Engineer at San Diego County Regional Airport Authority responsible for diagnosing and resolving complex network issues, developing enterprise systems analysis, leading infrastructure projects, and ensuring disaster recovery and compliance. The role requires hands-on technical leadership across wired, wireless, and data center environments with expertise in Cisco networking platforms (DNAC, ISE, ASA, FTD, ACI).… This position includes rotating on-call support for critical network operations and occasional airfield vehicle operation to access secure facilities.

San DiegoLast seen 1 month ago
$110,000 – $155,000 · Posted 1 month ago

The Cybersecurity Analyst will serve as a technical subject matter expert evaluating the cybersecurity posture of drone systems and components submitted to the Blue UAS Cleared List Program. You will review assessment reports, identify vulnerabilities and residual risks, validate remediation plans, and provide technical recommendations on compliance with NIST frameworks and DoD Risk Management Framework requirements.… The role requires expertise in embedded systems security, firmware analysis, wireless communications, encryption, authentication, and supply chain security. You must hold an active DoD 8570/8140 IAM or IAT Level II/III certification (CISSP, CISM, or Security+) and demonstrate proficiency with NIST SP 800-53 and NIST SP 800-161.

San DiegoLast seen 1 month ago
$180,000 – $270,000 · Posted 1 month ago

Senior Staff Product Security Engineer responsible for security incident response, vulnerability detection and mitigation across Qualcomm products, particularly in mobile, IoT, and automotive domains. The role involves binary analysis and reverse engineering of exploits, secure code review, vulnerability assessment, security testing, and coordinating with external security researchers and customers on patch adoption and disclosure.… Requires 6+ years of security engineering experience with expertise in at least two areas such as binary analysis, incident response, fuzzing, malware analysis, embedded firmware security, or automotive security. Must work independently, evaluate new security tools and technologies, and communicate technical findings internally and externally.

San DiegoLast seen 1 month ago
$113,200 – $141,500 · Posted 1 month ago

This Cybersecurity Manager role owns vulnerability and exposure management, leads penetration testing, threat hunting, and threat intelligence programs. The position integrates AI and machine learning into security operations to enhance threat detection and anomaly identification, manages security tools and incident response, and ensures the security of AI/ML systems across the enterprise.… The candidate will develop automation scripts and SOAR workflows, conduct forensic investigations, and drive continuous improvement in the security posture. Required qualifications include 5+ years of cybersecurity experience, a relevant bachelor's degree, and an industry-recognized certification (Security+, SSCP, CCNP Security, CISSP, or equivalent).

San DiegoLast seen 1 month ago
$100,000 – $200,000 · Posted 1 month ago

Design and implement security strategies for Abbott's cloud-based applications and medical devices, including hardening, incident response, penetration testing, and disaster recovery. Apply expertise in user authentication, certificate management, digital signatures, and cloud security architecture while ensuring compliance with ISO, FDA, and regulatory standards.… Leverage AI-assisted development tools and cybersecurity platforms to automate vulnerability analysis, evidence collection, and remediation tracking. Conduct hands-on web, mobile, and cloud infrastructure security testing using DAST, SAST, SCA, and vulnerability scanning tools, with demonstrated experience in product security and medical device environments preferred.

San DiegoLast seen 1 month ago