Penetration Testing Specialist

Ottawa 5 days agoFull-time External
Negotiable
Job Opportunity We are seeking an experienced Red Team Operator to join our team. As a key member of our Offensive Security team, you will play a crucial role in helping our clients improve their security posture through dynamic simulations of real-world threats. Key Responsibilities • Design and execute full-scale adversary simulation engagements from conception to report delivery. • Communicate effectively with team members and clients throughout the engagement. • Stay up-to-date with the latest offensive security techniques, leveraging frameworks such as MITRE ATT&CK and other sources of information. • Develop payloads, scripts, and tools that exploit new concepts for evasion and lateral movement. • Evaluate and evade detection by defenders to progress engagements. • Collaborate with other Red Team operators to achieve specific goals. • Deliver comprehensive reports and debriefs to clients in a format that enhances detection and response capabilities. • Conduct/present technical security research. Requirements • At least 3 years of experience in a dedicated red teaming role. • 5+ years of system administration, network administration, or programming experience. • Ability to develop/modify exploits and payloads to circumvent defensive countermeasures. • Understanding of real-world adversary operations methodologies, tactics, techniques, and procedures. • Demonstrated history of published exploitation research; strong analytical and problem-solving skills. • Excellent interpersonal, organizational, communications, and time-management skills. • Experience coordinating security testing projects with multiple consultants. • Effective English writing skills. Preferred Qualifications • History of presenting at security conferences. • Track record in vulnerability research and CVE assignments. • Knowledge of Windows APIs. • Expert-level skills in one of the following: Active Directory, Software Development, or Cloud Infrastructure. • Relevant certifications from organizations such as Offensive Security (OSCP/OSCE), SANS (GPEN, GXPN, GWAPT), or CREST CSAT/CSAM. • Prior security consulting experience. What We Offer This is a mid-senior level, full-time position that offers opportunities for growth and development. If you are a motivated and experienced Red Team Operator looking to join a dynamic team, we encourage you to apply. Seniority level: Mid-Senior level Employment type: Full-time Job function: Management and Manufacturing Industries: IT Services and IT Consulting