Remote Security Consultant — AppSec & Pentesting

IOActive, Inc.

United States

Hybrid

USD 65,000 - 150,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Remote work flexibility
Travel opportunities
Competitive compensation and benefits

Job summary

IOActive, Inc. is seeking a Security Consultant for a fixed-term engagement of up to 3 months, with potential renewal. You will perform web/mobile app assessments, infrastructure reviews, and AI-enhanced pentesting, delivering clear reports and actionable remediation guidance.

You’ll work with senior stakeholders, reporting findings and supporting client discussions, with opportunities to travel and contribute to cutting-edge research.

Qualifications

  • 5+ years in offensive security services, with at least 2–3 years focused on application security and source code review.
  • Hands-on engagement delivery across multiple AppSec disciplines — application penetration testing, code review, or SDLC consulting
  • The ability to work independently under deadlines.
  • Strong technical credibility and the comfort to operate as a senior voice on engagements
  • Excellent written communication — you produce reports that developers act on rather than file
  • Strong verbal communication, with the ability to both present as a subject matter expert in technical discussions and deliver complex concepts
  • Nice to have - Familiarity with relevant standards and frameworks: OWASP, NIST, ISO, SAE
  • Relevant bachelor's degree or equivalent experience
  • Relevant industry certifications strongly preferred: OSCP, OSWE, GWAPT, CSSLP, GWEB, or equivalent application-security focused credentials

Responsibilities

  • Conduct application security assessments for web and mobile applications (Android/iOS), APIs, and other software systems.
  • Conduct infrastructure and cloud configuration security reviews
  • Conduct assessments incorporating AI-based and traditional pentesting approaches against real world threats.
  • Identify and document security vulnerabilities, misconfigurations and deviations from best practices, providing actionable recommendations to address them.
  • Prepare clear, professional reports describing identified risks and recommended remediation steps.
  • Participate in client meetings and technical discussions

Skills

Offensive security
AppSec testing
Code review
Report writing
Client communication
Independent work

Education

Bachelor's degree or equivalent experience

Tools

OWASP
NIST
ISO
SAE

Job description

IOActive, Inc. is seeking a Security Consultant for a fixed-term engagement of up to 3 months, with potential renewal. You will perform web/mobile app assessments, infrastructure reviews, and AI-enhanced pentesting, delivering clear reports and actionable remediation guidance.

You’ll work with senior stakeholders, reporting findings and supporting client discussions, with opportunities to travel and contribute to cutting-edge research.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Remote AppSec Security Consultant
Senior Remote AppSec Security Consultant

Socket.dev • United States

On-site
USD 65,000 - 150,000
Senior AppSec Consultant: App & Infra Pen Testing Remote
Senior AppSec Consultant: App & Infra Pen Testing Remote

Fleet Glass Services, Inc. • Northern (KY)

Hybrid
USD 65,000 - 150,000
Remote work option
Travel opportunities
Competitive compensation
Remote Associate Security Consultant - App & Infra Security
Remote Associate Security Consultant - App & Infra Security

IOActive, Inc. • United States

Hybrid
USD 46,000 - 58,000
Remote work flexibility
Travel opportunities
Competitive compensation
Security Consultant - Fixed Term
Security Consultant - Fixed Term

Socket.dev • United States

Hybrid
USD 65,000 - 150,000
Security Consultant - Fixed Term
Security Consultant - Fixed Term

Fleet Glass Services, Inc. • Northern (KY)

Hybrid
USD 65,000 - 150,000
Remote work option
Travel opportunities
Competitive compensation
Remote Application Security Research Engineer (Part-Time)
Remote Application Security Research Engineer (Part-Time)

Hidden Jobs • United States

Remote
USD 96,000 - 152,000
Fully remote
Part-time project-based engagement
Remote AppSec Engineer — Secure Coding & Pentests
Remote AppSec Engineer — Secure Coding & Pentests

aitrainer • United States

Remote
USD 41,000 - 138,000
Principal Consultant
Principal Consultant

AGS • United States

On-site
USD 100,000 - 130,000
Application Security Consultant
Application Security Consultant

Direct Defense • Northern (KY)

Hybrid
USD 96,000 - 124,000
Senior Offensive Security Consultant (Web App/API)
Senior Offensive Security Consultant (Web App/API)

HALOCK Security Labs • United States

On-site
USD 100,000 - 150,000