Enable job alerts via email!
Boost your interview chances
Create a job specific, tailored resume for higher success rate.
An innovative firm is seeking a Security Specialist with expertise in penetration testing and vulnerability assessments. This hybrid role involves conducting thorough security evaluations of web applications and IT systems, ensuring compliance with industry standards. You'll play a crucial role in identifying vulnerabilities and advising on security architecture, all while collaborating with diverse teams. If you're passionate about IT security and eager to tackle complex challenges, this position offers a fantastic opportunity to make a significant impact in a dynamic environment. Join a forward-thinking company where your skills will help shape the future of security in the digital landscape.
Security Specialist (Penetration Tester) 8437-3112
Skills Required:
HM Note: This hybrid contract role is three (3) days in office. Candidates' resumes must include first and last name. The role commences April 1, 2025.
Description
Responsibilities:
General Skills:
Mandatory Requirement:
Current penetration test experience.
PENETRATION TEST EXPERIENCE: 35%
Demonstrated experience in identifying, analyzing, and exploiting common vulnerabilities using both manual techniques and automated tools for web and network pen testing and vulnerability assessments. Demonstrated experience in leading penetration tests, web application vulnerability assessments, code reviews, and network vulnerability assessments in a large environment with diverse systems; and in common attacks, common web application vulnerabilities, exploits, and best practices for remediation. Knowledge of IT security methodologies, tools, techniques, security design and architecture, threat/risk concepts and practices, and encryption technologies. Ability to acquire and interpret corporate I&IT security strategy, programs, the government’s trust model, and privacy legislation.
TECHNICAL EXPERTISE: 25%
Experience with multiple operating systems, programming and scripting languages, platforms, and network services and protocols. Understanding of emerging I&IT trends, best practices, and developments in common attacks, common web application vulnerabilities, exploits, and best practices for remediation.
ANALYTICAL AND PROBLEM SOLVING SKILLS: 20%
Demonstrated analytical and problem-solving skills to determine alternative and innovative solutions where guidelines or policies exist but may not address new and emerging I&IT trends. Ability to conceptualize, interpret, and evaluate security exposures across multiple domains.
COMMUNICATION AND RELATIONSHIP BUILDING SKILLS: 10%
Experience with writing reports aimed at both the executive/non-technical management level and technical analyst level. Oral and written communication, mediation, negotiation, consultative and advisory skills. Skills to provide training in the use of commercial security assessment tools and scanners. Stakeholder management, partnership, and relationship building skills to initiate and nurture strong working relationships with internal and external colleagues.
LEADERSHIP AND PROJECT MANAGEMENT SKILLS: 10%
Proven ability to provide leadership, advice, and direction on business risk planning and coordination. Demonstrated project methodology and management skills to provide project planning and technical leadership on concurrent projects.