Senior Offensive Security – Penetration Testing & Red Team Engineer

Cognizant

Toronto

On-site

CAD 147,000 - 172,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical/Dental/Vision/Life Insurance
Paid holidays and PTO
Long-term/Short-term Disability
Paid Parental Leave

Job summary

Cognizant Canada is seeking a Senior Offensive Security Engineer to lead advanced penetration testing, red team operations, and custom security tooling initiatives.

You will design automation and run tests across web apps, APIs, cloud environments, and enterprise infrastructure, collaborating with multiple teams to improve security posture.

Note: visa sponsorship is not available for this role; OSCP or equivalent certifications are highly desirable.

Qualifications

  • 5–8 years of experience in Penetration Testing or Red Teaming.
  • Strong scripting and programming capabilities across established languages.
  • Experience with industry security frameworks and methodologies.
  • Proficiency in offensive security tooling and automation development.
  • Certificates such as OSCP, GPEN, CEH or equivalent are desirable.

Responsibilities

  • Design and develop custom security tools and automation frameworks for testing.
  • Conduct comprehensive penetration tests of web apps, APIs, cloud, networks, and infrastructure.
  • Participate in red team engagements simulating adversary behavior.
  • Identify vulnerabilities, document attack paths, and provide remediation guidance.
  • Build integrations between security tools and enterprise platforms to increase efficiency.
  • Research new attack techniques and develop PoCs and testing frameworks.
  • Collaborate with development, infra, and security teams to harden controls.
  • Maintain documentation, methodologies, and testing standards.
  • Contribute to ongoing improvements of offensive security capabilities.

Skills

Python
Go
Java
C#
PowerShell

Tools

Burp Suite
Metasploit
Nmap
Cobalt Strike
BloodHound

Job description

Practice - CIS - Cloud, Infrastructure, and Security Services

About Cloud Infrastructure & Security Services: Cognizant’s Cloud, Infrastructure, and Security Services Practice (CIS), is all about embracing digital transformation by driving core modernization holistically across layers. We help customers transform infrastructure and workplace to meet the rapidly evolving needs of the digital era. Our holistic approach delivers key results for our customers by achieving cloud driven modernization and workplace and operational transformation to run the business in a secure environment.

Job Summary

We are seeking a Senior Offensive Security Engineer to support advanced penetration testing, red team operations, and custom security tool development initiatives. This role combines offensive security expertise with strong software engineering capabilities to identify vulnerabilities, simulate real-world attack scenarios, and develop automation solutions that enhance enterprise security testing. The ideal candidate will have hands‑on experience in penetration testing, red teaming, exploit research, and security tooling, with the ability to both assess and improve organizational security posture through custom-built solutions.

*Please note, this role is not able to offer visa transfer or sponsorship now or in the future*

In this role, you will:
  • Design and develop custom security tools, automation frameworks, and scripts to support penetration testing and vulnerability assessment activities.
  • Conduct comprehensive penetration tests against web applications, APIs, cloud environments, networks, and enterprise infrastructure.
  • Participate in red team engagements that simulate realistic adversary behavior and attack scenarios.
  • Identify, validate, and document vulnerabilities, attack paths, and security weaknesses with actionable remediation recommendations.
  • Build integrations between security tools and enterprise platforms to improve testing efficiency and automation capabilities.
  • Research emerging attack techniques, offensive security methodologies, and exploit development opportunities.
  • Develop proof-of-concept exploits, attack simulations, and offensive testing frameworks where appropriate.
  • Collaborate with development, infrastructure, and security teams to address identified vulnerabilities and improve security controls.
  • Maintain technical documentation, testing methodologies, tooling standards, and security assessment reports.
  • Contribute to continuous improvement of offensive security capabilities, red team operations, and security engineering practices.
What you need to have to be considered
  • 5-8 years of experience in Penetration Testing, Red Teaming, Security Engineering, or Software Development with a strong security focus.
  • Strong programming and scripting expertise in languages such as Python, Go, Java, C#, PowerShell, or similar technologies.
  • Hands‑on experience conducting penetration testing using industry‑standard methodologies and frameworks.
  • Experience participating in red team engagements and adversary simulation exercises.
  • Proficiency with offensive security tools such as Burp Suite, Metasploit, Nmap, Cobalt Strike, BloodHound, or equivalent platforms.
  • Strong understanding of web application security, API security, cloud security, network security, and vulnerability assessment techniques.
  • Experience developing custom security tooling, automation frameworks, and offensive testing solutions.
  • Familiarity with security frameworks such as MITRE ATT&CK, OWASP Top 10, and penetration testing best practices.
  • Strong analytical, troubleshooting, communication, and documentation skills.
  • Security certifications such as OSCP, CRTO, PNPT, GPEN, CEH, or equivalent are highly desirable.
Applications will be accepted until 8 Sep 2026.
Salary and Other Compensation

The annual salary for this position is between $[105,500 - 124,000] depending on experience and other qualifications of the successful candidate.

This position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans.

Benefits: Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:
  • Medical/Dental/Vision/Life Insurance
  • Paid holidays plus Paid Time Off
  • Long-term/Short-term Disability
  • Paid Parental Leave

#LI-EF1

#CB

#Ind123

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer - Snyk
Security Engineer - Snyk

Cognizant • Toronto

On-site
CAD 100,000 - 115,000
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
Long-term/Short-term Disability
+1
Senior .NET Application Security Developer
Senior .NET Application Security Developer

Cognizant • Halifax

On-site
CAD 61,000 - 100,000
Medical Insurance
Paid Holidays
401(k) Plan
+2
Offensive Security Lead - Penetration Testing
Offensive Security Lead - Penetration Testing

RSM Canada • Canada

On-site
CAD 80,000 - 100,000
Senior Offensive Security Engineer: Red Team & Pen Testing
Senior Offensive Security Engineer: Red Team & Pen Testing

Cognizant • Toronto

On-site
CAD 147,000 - 172,000
Medical/Dental/Vision/Life Insurance
Paid holidays and PTO
Long-term/Short-term Disability
+1
Senior .NET Developer – Application Security
Senior .NET Developer – Application Security

Cognizant • Halifax

Hybrid
CAD 80,000 - 94,000
Discretionary annual incentive
Wellbeing programs
Hybrid work arrangement
Splunk Cybersecurity Architect
Splunk Cybersecurity Architect

Cognizant • Vancouver

Hybrid
CAD 78,000 - 124,000
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
Long-term/Short-term Disability
+1
Senior Penetration Tester
Senior Penetration Tester

OffSeq • North Glengarry

Hybrid
CAD 36,000 - 43,000
Source-code review
OT/ICS testing
Mobile/thick-client testing
+2
Senior Security Consultant (Web Application Penetration Tester)
Senior Security Consultant (Web Application Penetration Tester)

NetSPI • Toronto

On-site
CAD 100,000 - 150,000
Spécialiste en Sécurité Offensive-Red Team
Spécialiste en Sécurité Offensive-Red Team

Vaco by Highspring • Quebec

On-site
CAD 80,000 - 100,000
Accès à des mandats stimulants
Développement professionnel
Security Advisor Specialist, Offensive Security (Global Red Team)
Security Advisor Specialist, Offensive Security (Global Red Team)

Intact • Saint-Hyacinthe

Hybrid
CAD 80,000 - 110,000
Competitive financial rewards
Employee Share Purchase Plan
Comprehensive pension and benefits package
+1