Enable job alerts via email!

Senior Penetration Tester

Scotiabank

Golden Horseshoe

Hybrid

CAD 80,000 - 120,000

Full time

2 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a Senior Penetration Tester to join their dynamic Cyber Security Red Team. This role offers the opportunity to lead complex penetration testing engagements, shape internal testing practices, and collaborate closely with advisory teams. Ideal candidates will have extensive experience in network and application testing, a passion for continuous learning, and the ability to communicate findings effectively. Join a forward-thinking organization committed to diversity and inclusion, where your skills will contribute to enhancing security measures and protecting valuable assets in a collaborative environment.

Benefits

Flexible Vacation
Tuition Assistance
Competitive Rewards Program
Community Engagement Opportunities
Free Tea & Coffee
Dynamic Workspace

Qualifications

  • 3+ years of experience in penetration testing.
  • Strong understanding of testing methodologies and risk assessment.

Responsibilities

  • Conduct penetration tests on network and application systems.
  • Develop executive-level reports and summaries based on testing results.

Skills

Penetration Testing
Network Infrastructure Testing
Web Application Testing
Mobile Application Testing
Report Writing
Communication Skills
Risk Assessment

Education

OSCP Certification
GCPN Certification
OSWE Certification
GWAN Certification
OSWP Certification

Tools

MITRE ATT&CK Framework
OWASP Testing Methodologies

Job description

Requisition ID: 224132

Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.

The Team
Scotiabank’s Cyber Security Red Team is responsible for delivery of offensive security services across Scotiabank globally, conducting annual & release penetration testing engagements, control effectiveness testing, purple team engagements, and security assessments through threat emulation, and adversarial means.

The role:
The Cyber Security Red Team (CSRT) is looking for a Senior Penetration Tester, with expertise in network & server infrastructure testing, mobile and/or web application penetration testing to join our internal team. As a senior member of team, you will help shape and enhance our internal testing practices and work closely with the Service Advisory & Coordination team on complex engagements to assess scope and level of effort based on identified areas of risk. Additionally, you will execute assigned engagements as the senior tester, in alignment to industry frameworks.

Is this role right for you?

  • This role is ideal for experienced penetration testers who are looking to further develop their expertise and skills.

  • You enjoy working in a collaborative team, and sharing your ideas, perspective, and experience.

  • You have a natural curiosity for how things work, exploring unknowns, and unafraid to test perceived limitations.

  • You take initiative and dedicate time to continuing your education, practising your craft, and honing your skills.

  • You adhere to strong morale and ethical standard

  • You have strong customer service skills

Do you have the skills that will enable you to succeed in this role?

  • Candidates should have 3+ years of experience performing penetration tests.

  • The ideal candidate has achieved multiple industry certifications, and at least one advanced level certifications (OSCP, GCPN, OSWE, GWAN, OSWP, or equivalent).

  • Experienced in scoping penetration testing engagements to assess plausible attack vectors, accurately estimate level of effort, and determine the best approach to test areas of risk.

  • Able to develop executive level reports, write penetration testing reports and executive summaries with minimal error or edits.

  • Ability to execute testing engagements against complex projects and systems

  • Experienced in developing custom tooling, leverage whitepapers and online resources to enhance testing

  • Possesses an in-depth understanding of testing methodologies, within their area of expertise. (ex OWASP Web & Mobile testing methodologies and OSSTMM, and the MITRE ATT&CK Framework.)

  • You possess strong communication (verbal/written/presentation) skills in English. The same in Spanish would be a strong asset as Scotiabank as a strong presence in Latin American Countries.

What's in it for you?

  • Diversity, Equity, Inclusion & Allyship - We strive to create an inclusive culture where every employee is empowered to reach their fullest potential, respected for who they are, and are embraced through bias-free practices and inclusive values across Scotiabank. We embrace diversity and provide opportunities for all employee to learn, grow & participate through our various Employee Resource Groups (ERGs) that span across diverse gender identities, ethnicity, race, age, ability & veterans.

  • Accessibility and Workplace Accommodations - We value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. Scotiabank continues to locate, remove and prevent barriers so that we can build a diverse and inclusive environment while meeting accessibility requirements.

  • Upskilling through online courses, cross-functional development opportunities, and tuition assistance.

  • Competitive Rewards program including bonus, flexible vacation, personal, sick days and benefits will start on day one.

  • Dynamic Ecosystem - Free tea & coffee, universal washrooms, and lots of space for team collaboration.

  • Community Engagement - No matter where you choose to work from; we offer opportunities for community engagement & belonging with our various programs such as hackathons, contests, cooking with friends, Humans of Digital and much more!



Working location condition: Hybrid

#LI-Hybrid

Location(s): Canada : Ontario : Scarborough || Canada : Ontario : Toronto

Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.

At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our Recruitment team know. If you require technical assistance, please click here. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.