Specialist in Offensive Security

Devolutions

Lavaltrie

On-site

CAD 85,000 - 120,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Comprehensive benefits package
On-site gym
Breakfast, snacks and beverages
RRSP program accessible from day one
Cell phone and monthly plan provided

Job summary

Devolutions is seeking an Offensive Security Specialist (Level 2) to perform end-to-end penetration testing of web applications, APIs, infrastructure, and internal environments. You will identify, exploit, and document vulnerabilities, demonstrate real-world impact, and help automate offensive tasks.

Collaborating with Security, Product, and IT teams, you will produce clear risk assessments, write reports, and contribute to the evolution of internal tools and AI-assisted research.

Qualifications

  • 3–5 years of offensive cybersecurity or red team experience.
  • Certifications OSCP, OSCP+, or HTB CPTS are preferred.
  • Strong Windows, Linux, AD, and web app environment knowledge.
  • Ability to clearly communicate risks and recommendations.

Responsibilities

  • Perform penetration tests on web apps, APIs, infrastructure, SaaS, and internal environments.
  • Identify, exploit, and document vulnerabilities with evidence and risk context.
  • Document tests and collaborate on remediation and patch validation.
  • Automate recurring offensive testing tasks and improve internal tools.

Skills

Offensive cybersecurity experience
Explain risks to non-specialists
AI-assisted security research interest

Education

OSCP
OSCP+
HTB CPTS

Tools

Burp Suite
Nmap
Metasploit
BloodHound
Sliver

Job description

JOB DESCRIPTION

As an Offensive Security Specialist (Level 2), you will conduct end-to-end offensive security assessments to identify, exploit, and document vulnerabilities affecting the organization's products, infrastructure, applications, and platforms. You will plan, execute, and document offensive exercises, demonstrate the real-world impact of discovered weaknesses, and participate in the automation of offensive capabilities. Working closely with the product and security teams, you will contribute to risk prioritization and the strengthening of defense mechanisms, leveraging artificial intelligence technologies to accelerate research, analysis, and certain operational activities.

Core responsibilities – for all security specialists
  • Actively contribute to the protection of the company's digital assets.
  • Participate in projects related to the security posture and its continuous improvement.
  • Document procedures, analysis results, and lessons learned.
  • Work closely with coordinators and the Tech Lead.
  • Participate in internal reviews, technical audits, and simulation exercises.
  • Maintain your skills in day through self-directed learning or structured training.
  • Respond professionally to internal communication platforms (Teams, email, tickets, etc.).
  • Welcome, direct, or refer visitors appropriately to the security area.
Specific Responsibilities for the Level 2 Offensive Security Specialist Role
Offensive Testing
  • Participate in penetration tests on web applications, APIs, infrastructure, SaaS platforms, and internal environments.
  • Identify, exploit, and document application, network, or system vulnerabilities in a controlled manner.
  • Test the limits of security controls within an authorized framework and demonstrate the real-world impact of discovered vulnerabilities.
  • Participate in advanced offensive exercises in collaboration with specialists Seniors.
  • Contribute to patch validation and vulnerability lifecycle management.
Analysis, Documentation, and Automation
  • Document vulnerabilities with clear technical evidence, reproduction steps, and a realistic risk assessment.
  • Contribute to writing penetration test reports and technical recommendations.
  • Participate in risk prioritization with relevant teams.
  • Automate recurring offensive testing or security validation tasks.
  • Contribute to the development or improvement of internal tools related to offensive activities.
Artificial Intelligence and Continuous Improvement
  • Effectively use AI tools to accelerate research, analysis, test scenario generation, and report writing. Technical.
  • Validate the results produced by artificial intelligence with professional judgment.
  • Experiment with new approaches using AI to improve offensive capabilities and team productivity.
  • Conduct continuous monitoring of emerging vulnerabilities, offensive techniques, and specialized tools.
Collaboration
  • Work collaboratively with the Security, Product, Development, Infrastructure, and IT teams.
  • Clearly communicate technical risks to different types of audiences.
  • Respect established scopes, rules of engagement, and operational limits.
  • Contribute positively to collaboration and knowledge sharing within the team.
QUALIFICATIONS REQUIREMENTS
  • Between 3 and 5 years of relevant experience in offensive cybersecurity, penetration testing, or Red Teaming.
  • Recognized offensive cybersecurity certification such as OSCP, OSCP+, or HTB CPTS.
  • Strong command of Windows, Linux, Active Directory, and web application environments.
  • Ability to explain risks and technical recommendations clearly to non-specialist teams.
ASSETS
  • Experience with modern offensive tools (Burp Suite, Nmap, Metasploit, Bloodhound, Sliver, etc.).
  • Strong interest in the use of artificial intelligence applied to offensive cybersecurity.
CONDITIONS WORK ENVIRONMENT
  • Dynamic work environment
  • Flexible 35-hour work week
  • 4 weeks of vacation within the first year of employment
  • Comprehensive benefits package and wellness program
  • Access to Telus Health telemedicine service
  • Group RRSP program accessible from day one
  • Cell phone and monthly plan provided
  • Skills and leadership development programs
  • Breakfast, snacks, and beverages provided
  • On-site gym
  • Entertainment room including pinball machines, table tennis, foosball, etc.
  • Golf and racing simulator

Discover our benefits at: https://devolutions.net/fr/company/benefits/

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Advisor Specialist, Offensive Security (Global Red Team)
Security Advisor Specialist, Offensive Security (Global Red Team)

Intact • Saint-Hyacinthe

Hybrid
CAD 80,000 - 110,000
Competitive financial rewards
Employee Share Purchase Plan
Comprehensive pension and benefits package
+1
Conseiller ou conseillère, Sécurité offensive, Red Team
Conseiller ou conseillère, Sécurité offensive, Red Team

Jobgether • Canada

Remote
CAD 140,000 - 170,000
Competitive salary and annual bonus
Four weeks flexible vacation
Defined-benefit pension plan
+3
Senior Offensive Security Advisor
Senior Offensive Security Advisor

Desjardins • Montreal West

On-site
CAD 120,000 - 160,000
Competitive salary with bonus
4 weeks vacation
Defined benefit pension plan
+3
Spécialiste en Sécurité Offensive-Red Team
Spécialiste en Sécurité Offensive-Red Team

Vaco by Highspring • Quebec

On-site
CAD 80,000 - 100,000
Accès à des mandats stimulants
Développement professionnel
Offensive Security Advisor, Red Team
Offensive Security Advisor, Red Team

Desjardins • Montreal West

On-site
CAD 120,000 - 160,000
Competitive salary and annual bonus
4 weeks of flexible vacation
Defined benefit pension plan
+3
Offensive Security Advisor, Red Team
Offensive Security Advisor, Red Team

Desjardins • Lévis

On-site
CAD 120,000 - 180,000
Competitive salary and annual bonus
4 weeks of flexible vacation starting
Defined benefit pension plan
+3
Senior Red Team Operator
Senior Red Team Operator

Sun Life Financial • Toronto

On-site
CAD 90,000 - 120,000
Senior Cloud Security Engineer, Information Security
Senior Cloud Security Engineer, Information Security

Peoples Group • Vancouver

Hybrid
CAD 150,000 - 190,000
Hybrid work environment
Competitive salary
Profit sharing
Senior Cloud Security Engineer, Information Security
Senior Cloud Security Engineer, Information Security

Peoples Group • Toronto

Hybrid
CAD 140,000 - 180,000
Senior Cyber Security Specialist
Senior Cyber Security Specialist

Socket.dev • Burnaby

Hybrid
CAD 120,000 - 160,000
Health benefits
Retirement plan
Employee discount