Enable job alerts via email!

Penetration Tester

Behavox

Montreal

Hybrid

CAD 80,000 - 120,000

Full time

5 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative firm is seeking a skilled Penetration Tester to join their Information Security Assurance Red team. This role offers the opportunity to engage in exciting penetration testing and vulnerability scanning activities, contributing to the security of enterprise applications and systems. As a key player, you will exploit vulnerabilities and develop effective solutions while collaborating with a talented team. With a strong focus on continuous learning and a flexible work environment, this position promises significant impact and growth in a dynamic industry. Join a passionate community dedicated to harnessing data for business success.

Benefits

Flexible work schedule
Generous time-off policy (30 days annually)
Performance bonuses
Global mission with a talented community

Qualifications

  • 5+ years in penetration testing and ethical hacking.
  • Strong proficiency in web application security and secure coding practices.

Responsibilities

  • Plan and execute targeted penetration tests on critical systems.
  • Collaborate with teams to address vulnerabilities and provide remediation guidance.

Skills

Penetration Testing
Ethical Hacking
Web Application Security
Technical Communication
Vulnerability Exploitation

Education

Relevant Industry Certifications (OSCP, OSCE, CRTP, CEH)

Tools

Burp Suite
Metasploit
Acunetix
Nessus
ZAP

Job description

Join to apply for the Penetration Tester role at Behavox

4 days ago Be among the first 25 applicants

Join to apply for the Penetration Tester role at Behavox

About Behavox: Behavox is shaping the future for how businesses harness their most important raw material - data. Our mission is bold: Organize enterprise data into actionable information that protects and promotes the business growth of multinational companies around the world.

From managing enterprise risk and compliance to maximizing revenue and value, our data operating platform presents a widespread opportunity to build multilingual, AI/ML-based solutions that activate data for every function within a global enterprise.

Our approach is unique, and it’s validated by our customers who tell us to keep forging ahead because no one else is aggregating, analyzing, and acting on data to uncover opportunities or solve problems quite the way we are.

We are looking for fearless innovators who have an insatiable appetite for building what no one has built before.

About The Role: The penetration tester will join the Information Security Assurance Red team and will be covering the day-to-day penetration test and vulnerability scanning activities. The penetration tester will actively exploit vulnerabilities and then help to develop solutions that will secure the enterprise and Behavox Products.

The main responsibilities of the penetration tester will be:

  • Developing and executing formal web application security testing plans to ensure the delivery of quality software applications. Involved in test planning, preparation, and communication with the development team prior to security test execution.
  • Performs web application/network attack & penetration (A&P) testing to find security issues such as risks, defects, and logical errors. Collects and analyzes security data from manual, automatic, and static source review, and integrates them to find the best way to address security issues to meet the needs of the business.
  • Documents all issues and assists in their resolution. Delivers security training and education to technical staff within findings and acts as an internal security consultant to advise or influence business or technical partners.
  • Provides quality web application security audits across the various IT functions to ensure quality standards, procedures, and methodologies are being followed. Conduct regular knowledge-sharing sessions with the team and stakeholders to enhance communication and collaboration.

What You'll Bring:

  • A strong and genuine interest in Behavox, demonstrated by alignment with its mission, technologies, and approach to security.
  • 5+ years of experience in penetration testing and ethical hacking, including web applications, infrastructure, and cloud environments, with at least 2 years in Red Team operations and vulnerability exploitation using tools like Burp Suite, Metasploit, and custom scripts.
  • Strong proficiency in web application security, including deep familiarity with testing tools (e.g., Acunetix, Nessus, ZAP), OWASP Top 10, and secure coding practices across development languages such as Java and Python.
  • Skilled in technical communication and documentation, with the ability to clearly report findings, articulate technical risk, and align recommendations with security frameworks like MITRE ATT&CK, NIST, and OWASP.
  • Holds relevant industry certifications, such as OSCP, OSCE, CRTP, or CEH, demonstrating validated expertise in offensive security and a commitment to professional development.

What You'll Do:

  • Plan and execute targeted penetration tests on critical systems in collaboration with internal teams, identifying vulnerabilities and delivering actionable remediation guidance.
  • Collaborate with developers, IT, and DevSecOps teams to address code-level and system-wide vulnerabilities, providing expert guidance during assessments and reviews.
  • Exploit vulnerabilities and clearly communicate technical findings, attack paths, and mitigation steps through well-documented, risk-based reports for both technical and non-technical stakeholders.
  • Simulate real-world threats and advanced persistent attacks to test and evaluate the effectiveness of existing security controls and incident response.
  • Continuously research emerging threats and attack techniques, contributing to the organization's evolving security strategy and overall risk posture.

What We Offer:

  • A truly global mission with a passionate highly talented community in locations all over the World
  • The ability to have significant impact and potential for learning as our aspirations require bold innovation
  • A highly competitive cash compensation package with performance bonuses baked into salary payments
  • A flexible work schedule that allows for Remote or Hybrid work as appropriate to the role and location
  • A very generous time-off policy (30 days annually), with public holidays for your geography in addition

About Our Process: We take Talent very seriously and we are building a community of extraordinary individuals working together in very high performing teams. We also know that the best Talent always has options so we believe that the process has to be a two-way assessment - the company AND the candidate assessing the business needs, the career next step, and cultural fit.

During the process, we will explore salary, location, core experience, skills, and values alignment. We will then assess technical competencies and behavioral competencies. The most aligned candidate will then do a practical work task simulation to ensure the role suits them, followed by meetings with senior leaders. Please note, all Zoom interviews will be recorded.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Penetration Tester

Hamilton Barnes ?

Remote

USD 100,000 - 140,000

4 days ago
Be an early applicant

Penetration Tester

Rio Tinto

Montreal

On-site

CAD 70,000 - 110,000

2 days ago
Be an early applicant

Penetration Tester

RioTinto

Montreal

On-site

CAD 75,000 - 110,000

5 days ago
Be an early applicant

Principal Penetration Tester, Canada

Aon Hewitt

Quebec

Remote

CAD 80,000 - 120,000

30+ days ago