Offensive Security Analyst responsible for intrusion tests and enhancing security posture at iA Financial Group. Collaborating with teams to document findings and improve detection mechanisms.
Responsibilities
plan and perform intrusion tests on web applications, APIs, cloud environments, internal infrastructures
set up and participate in purple team exercises simulating real attack scenarios
collaborate with defensive teams to validate controls and improve detection mechanisms
document findings, provide remediation recommendations, and present results to stakeholders
stay informed about emerging threats, tools, and techniques in offensive security
work with a high degree of autonomy and initiative
Requirements
3 to 5 years of experience in offensive security
7 years of experience in information technology (IT)
knowledge of the OWASP Top 10, MITRE ATT&CK, and threat-modeling frameworks
ability to perform intrusion tests on various infrastructures
proficiency with offensive security tools such as Burp Suite, Nmap, Nessus, BloodHound, Metasploit, Cobalt Strike
strong ability to communicate technical concepts clearly
intermediate level of English and French proficiency
certifications such as OSCP, OSWE, OSEP, CRTP, GPEN, CPTS are strong assets
experience in scripting (Python, Bash, PowerShell) for automation and exploit development
experience with Infrastructure as Code, such as Terraform
Cybersecurity Compliance Analyst at PCL Constructors Inc. developing and supporting cybersecurity compliance initiatives and governance activities in Edmonton.
Threat Intelligence Analyst role analyzing cyber threats and providing strategic recommendations. Working with cybersecurity teams at PwC Canada to safeguard client data and systems.
Cybersecurity Analyst monitoring security systems and mitigating threats at Vosyn, a pioneering AI firm. Engaging in hands - on experience and collaboration with senior management.
Senior Security Analyst at McCarthy Tétrault in Canada focusing on security and IT compliance initiatives. Collaborating with teams on incident response and vulnerability management in a hybrid workspace.
Security Analyst providing technical client support in Managed Security Services at CDW. Monitoring security alerts and incidents while fostering trust and loyalty with clients.
Temporary Security Specialist supporting Microsoft security assessment for public sector client. Hybrid role focusing on security posture improvement and implementation planning.
Junior Cybersecurity Analyst role in Toronto, working with senior leadership in a growing Cyber division. Requires understanding of cyber principles, diligent personality, and some complex environment experience.