Назад
Company hidden
4 дня назад

Offensive Security Lead - Penetration Testing

98 000 - 180 400CAD
Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
Canada
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Offensive Security Lead - Penetration Testing (Cybersecurity): Performing penetration tests, vulnerability assessments, and secure architecture reviews across client operating systems, networks, wireless solutions, mobile applications, and embedded devices with an accent on adversarial testing, risk analysis, and clear communication of findings. Focus on supervising engagement staff, developing remediation recommendations, and identifying critical weaknesses through black-box, grey-box, and white-box techniques.

Location: Toronto, Canada

Salary: CAD 98,000–180,400 per year, plus discretionary performance-based bonus.

Company

hirify.global provides professional services and security, privacy, and risk consulting to middle-market organizations.

What you will do

  • Perform vulnerability assessments, Internet and network penetration tests, and secure architecture reviews.
  • Test wireless networks, mobile applications, embedded devices, and client infrastructure using commercial and open-source tools.
  • Conduct social engineering campaigns and adversarial testing across email, web, phone, and physical channels.
  • Analyze findings, perform risk analysis, and develop remediation recommendations.
  • Present clear written and verbal findings to clients and senior management.
  • Supervise staff and manage delivery for assigned consulting engagements.

Requirements

  • 4+ years of experience in cybersecurity; consulting or professional services experience is preferred.
  • Ability to travel as needed.
  • Strong verbal and written communication, multitasking, project management, leadership, integrity, and confidentiality.
  • Technical background in networking, system administration, security testing, or related fields.
  • Knowledge of TCP/IP, operating-system and network-device security, firewalls, switches, routers, and VPNs.
  • Experience with penetration-testing methods, vulnerability scanning, exploitation, security frameworks, reporting, authorization, data handling, and legal considerations.

Nice to have

  • Bachelor’s degree in computer science or a related field.
  • Two or more years of experience with Perl, Python, Bash, or C.
  • Experience with tools including Nessus, Qualys, Kali Linux, Metasploit, nmap, Wireshark, and Burp Suite.
  • CEH, GPEN, OSCP, or equivalent testing certification.
  • CISSP, CISA, or CISM certification.

Culture & Benefits

  • Competitive compensation and benefits package.
  • Flexible scheduling to help balance personal demands with client service.
  • Reasonable accommodation is available during recruitment and employment.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →