09 Aug
|
NetSPI
|
Toronto
About NetSPINetSPI is an award-winning pioneer of Penetration Testing as a Service (PTaaS) with its AI-powered platform supported by more than 350 inâhouse cybersecurity experts. Specializing in 50+ pentest types, attack surface visibility, vulnerability prioritization, and attack simulation, NetSPI delivers security testing with unprecedented clarity, speed, and scale.MissionJoin the mission as a Senior Security Consultant. We are seeking a skilled and detailâoriented Penetration Tester to conduct thorough security assessments, identify vulnerabilities, and provide expert recommendations to strengthen our clients' security posture. As a Penetration Tester supporting web applications, you will work closely with clients to deliver transparent, actionable reports and contribute to the development of security best practices.ResponsibilitiesConduct engagements on web applications and underlying APIs independently and provide technical oversight.Review reports for accuracy in technical oversight, perform weekly QA oversight, and provide mentoring support to others.Create, deliver, and collaborate on penetration testing reports in diverse client environments, maintaining clientâspecific processes, reporting standards, and access protocols to help improve their security posture.Research and develop innovative techniques, tools, and methodologies for penetration testing services, alongside commitment to improvement and execution on NetSPI specific products and processes.Participate in development, implementation, and oversight of testing, delivery,
and management strategies for key client accounts.Perform administrative tasks related to dayâtoâday consulting activities to ensure smooth business and engagement operations.Minimum QualificationsBachelor's degree or higher, with a focus on IT, Computer Science, Engineering or Math or equivalent experience.Minimum of 3â5 years of work experience in Penetration Testing.Familiarity with offensive tools, based on applicable skillset (e.G., Kali Linux, Burp Suite, Metasploit, Nessus).Familiarity with offensive and defensive IT concepts and protocols.Extensive understanding of the OWASP Top 10, MITRE ATT&CK framework, and various security frameworks.Working knowledge of Windows, Linux and MacOS operating systems internals.Experience mentoring or coaching to growing team members, while sharing knowledge externally through blogs, hosting webinars, or presenting at conferences.Ability to work independently and as part of a team.Proficient communication skills, both written and verbal.Willingness to travel up to 5â10%.This position requires an 8âhour workday, with occasional evenings or weekends necessary to meet project deadlines or critical needs.Preferred QualificationsAbility to provide technical and QA oversight on web applications and underlying APIs.Experience in one or more of the following programming or scripting languages (e.G., Ruby, Python, Perl, C, C++, Java, and C#).Offensive cybersecurity certifications (e.G., GXPN, GPEN, OSCP, GWAPT).We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law. #J-18808-Ljbffr
📌 Lead Penetration Tester At Rsm (Toronto)
🏢 NetSPI
📍 Toronto