2-year contract Penetration Testing Analyst role requiring onsite work in Regina, Saskatchewan. Must have penetration testing experience and relevant cybersecurity certifications.
Responsibilities
Position title: RFR-0719 – Penetrating Testing Analyst. Working Status: On-Site. Location: GOS office located in Regina, Saskatchewan. Start Date: 18th March 2026.
Requirements
Mandatory Qualification/Requirement M1 – Demonstrated experience working as a Penetration Tester. M2 – Candidate must be able to work 100% onsite at a Government of Saskatchewan office in Regina, Saskatchewan, Canada upon contract start date. Rated Qualification/Requirement R1 – Local Knowledge R2 – Demonstrated experience with cybersecurity standards including the Open Web Application Security Project (OWASP) Application Security Testing Standard. R3 – Demonstrated experience with cloud security and cloud-based application architecture and different deployment models. R4 -Demonstrated experience with penetration testing tools. R5 – Demonstrated experience identifying and exploiting vulnerabilities. R6 – Demonstrated experience with common attack vectors and techniques, and how to defend against them. R7 – Demonstrated experience in regulatory compliance standards and ensuring compliance during penetration testing. R8 – Demonstrated experience in static and dynamic application security testing using automated tools and manual techniques. R9 – Demonstrated experience with white box testing and black box testing. R10 – Demonstrated experience with the ISO 27002:2022, or equivalent, code of practice for information security controls. R11 – Demonstrated experience writing and presenting detailed assessment reports. R12 – Valid certifications such as Certified Ethical Hacker (CEH) or Certified Information Systems Security Professional (CISSP) are considered significant assets. Related cybersecurity certifications will be considered.
Threat Intelligence Analyst investigating telecom security threats and customer deployment data for Enea, a global telecom and cybersecurity software company. Supporting client security reviews and threat intelligence operations.
Information Security Analyst governing End - User Computing risks, controls, and remediation for TD, a major North American bank. Advising stakeholders and supporting governance reporting, audits, and regulatory requirements.
IT Security Analyst II coordinating cybersecurity monitoring, MSP oversight, audits, and incident follow - up. Supporting Veristat’s global life - sciences services and regulated technology environments.
Security Analyst protecting GitLab’s DevSecOps platform through vulnerability triage and CVE operations. Coordinating researchers, customers, and internal teams on secure software response.
SIEM/SOAR cybersecurity analyst monitoring threats, building alerts, and measuring controls. Supporting Wepoint’s digital transformation work for businesses and public sector organizations.
SIEM/SOAR information security analyst supporting Wepoint’s digital transformation services. Developing cybersecurity monitoring cases, alerts, dashboards, and security - control documentation.
Security Analyst II protecting Intact’s insurance operations through incident response and SIEM monitoring. Supporting security platforms, incident resolution, dashboards, and IT security initiatives.