Enable job alerts via email!

Senior Penetration Testing Engineer

Microsoft Power Platform Community

Toronto

On-site

CAD 108,000 - 200,000

Full time

7 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative firm is seeking a Senior Penetration Testing Engineer to enhance security across its digital platforms. In this role, you will be responsible for simulating real-world attacks, assessing vulnerabilities, and developing robust testing procedures. The organization values a growth mindset and aims to empower users with comprehensive security solutions. Join a team dedicated to making the digital world safer, leveraging your expertise in penetration testing and coding to drive impactful change. If you are passionate about cybersecurity and eager to tackle emerging threats, this opportunity is perfect for you.

Qualifications

  • 5+ years experience in identifying security vulnerabilities and anomaly detection.
  • Proficient coding skills in C#, Python, C++, Go, PowerShell, ASP.NET, and JavaScript.
  • Experience with penetration testing tools and methodologies.

Responsibilities

  • Plan and execute testing of systems to simulate real-world adversaries.
  • Assess existing security capabilities and document risk impacts.
  • Stay current with penetration testing tools and educate the community.

Skills

Identifying Security Vulnerabilities
Penetration Testing/Red-Teaming
Cloud Security
Network Security
C#
Python
C++
Go
PowerShell
ASP.NET
JavaScript

Education

Master’s Degree in Statistics, Mathematics, Computer Science or related field

Tools

Nessus
NMAP
Metasploit
Cobalt Strike
Burp Suite Pro

Job description

Join to apply for the Senior Penetration Testing Engineer role at Microsoft Power Platform Community

2 weeks ago Be among the first 25 applicants

Join to apply for the Senior Penetration Testing Engineer role at Microsoft Power Platform Community

Overview

Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world.

Responsibilities
  1. Plan, research, and execute testing of computer systems and applications to simulate real-world adversaries on Microsoft’s services and infrastructure.
  2. Assess existing security capabilities to detect and respond to emerging threats.
  3. Outline and document risk impacts in executive summary reports and communications to relevant stakeholders.
  4. Perform research to stay current with penetration testing tools, methodologies, tactics, and mitigations.
  5. Participate as an infrastructure/operation specialist in overt penetration testing engagements, including Purple Team exercises.
  6. Develop and maintain penetration testing procedures and methodologies.
  7. Conduct research to remain updated with the latest in application security, penetration testing, and defensive techniques, and educate the Microsoft Security Community.
Qualifications
Required/Minimum Qualifications:
  • 5+ years experience in identifying security vulnerabilities, software development lifecycle, large-scale computing, modeling, cyber security, and anomaly detection.
  • 5+ years of experience in penetration testing/red-teaming, cloud, services, and network security.
  • 2+ years proficient coding skills in languages such as C#, Python, C++, Go, PowerShell, ASP.NET, JavaScript.
Other Requirements

Ability to meet Microsoft, customer, and/or government security screening requirements, including passing the Microsoft Cloud Background Check upon hire/transfer and every two years.

Preferred Qualifications
  • Certifications like GPEN, GWAPT, GXPN, OSCP, OSCE, or similar.
  • 6+ years experience in security vulnerabilities, software development, large-scale computing, modeling, cyber security, and anomaly detection.
  • Master’s Degree in Statistics, Mathematics, Computer Science or related field.
  • Experience with penetration testing tools such as Nessus, NMAP, Metasploit, Cobalt Strike, Burp Suite Pro.
  • Understanding of security threats against server/services/network infrastructure.
  • Ability to quickly learn new adversary vectors and demonstrate creativity in threat identification.
  • Effective collaboration skills and ability to handle ambiguity.
  • Experience with APT emulation, purple teaming, and threat intelligence.
  • Experience exploiting bugs and bypassing security mitigations in operating systems.
Additional Information

The typical base pay range for this role in Canada is CAD $108,100 - CAD $199,700 per year. Find more pay information here. Applications are accepted until April 29, 2025. Microsoft is an equal opportunity employer and provides accommodations for applicants with disabilities.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.