Penetration Tester

4 weeks ago


Toronto, Ontario, Canada Aon Hewitt Full time
Job Title: Principal Security Penetration Tester

Join Aon Hewitt's Proactive Security Testing team as a Principal Security Penetration Tester, where you will play a key role in assessing the security of web applications, mobile applications, APIs, and thick clients. As a senior member of the team, you will be responsible for conducting complex hybrid web application security assessments, involving code review and dynamic application testing.

Key Responsibilities:
  • Perform penetration testing activities to assess the security of web applications, mobile applications, APIs, and thick clients.
  • Conduct complex hybrid web application security assessments, involving code review and dynamic application testing.
  • Perform infrastructure penetration testing, including external/internal penetration testing, red teams, etc.
  • Write test harnesses to help identify and proof-of-concept potential security vulnerabilities.
  • Document technical issues identified during security assessments, outlining the associated risks for clients, and providing tailored recommendations for remediation.
  • Assist colleagues in pre-sales scoping activities for penetration testing engagements.
  • Offer technical mentorship and career development guidance to junior engineers within the organization.
  • Develop, update, and improve internal tooling used for reporting and penetration testing.
  • Partner with the team in the recruitment of new penetration testing talent, including reviewing resumes and conducting interviews.
Requirements:
  • 5+ years of hands-on penetration testing and/or bug bounty experience against web/mobile applications, beyond running automated tools.
  • Proven track record of 5 more years performing network/infrastructure penetration testing.
  • Some expertise in development and/or source code review, focusing on languages such as Java, C#, C/C++, PHP, Ruby, Python, Go, Swift, Objective C/C++, Kotlin, etc.
  • Current experience with testing techniques and tooling, such as Burp Suite and other fuzzers/proxies.
  • Deep knowledge of common software vulnerabilities, such as those described in the OWASP Top 10 and CWE/SANS Top 25.
  • Possesses a solid grasp of Unix, Windows, and network security.
  • Ability to work remotely as part of a distributed team and travel to client sites when required.
  • Superb communication (written & verbal) in English, to present sophisticated technical topics concisely to both technical and business audiences.
Preferred Qualifications:
  • Experience performing hands-on mobile application penetration testing on iOS and/or Android platforms.
  • Understanding how to build and maintain Red Team Command and Control systems.
  • Experience with Bug Bounties, reporting critical/high risk issues to programs.
  • Degree in Computer Science, Information Systems, Engineering, or related major and/or equivalent experience.
  • Reputable security certifications, including but not limited to: OSCP, OSWE, GWAPT, OSEE, OSCE/OSED, GPEN, GXPN, BSCP.
  • Produced public facing research and/or delivered presentations at well-known industry security conferences.

Aon Hewitt is an equal employment opportunity employer and welcomes applications from all qualified candidates. We provide reasonable adjustments to participate in the job application, interview process, and to perform essential job functions once onboard.



  • Toronto, Ontario, Canada Scotiabank Full time

    Senior Penetration TesterAre you a seasoned penetration tester looking to take your skills to the next level?This role is ideal for experienced testers who want to further develop their expertise and skills.You should enjoy working in a collaborative team and sharing your ideas, perspective, and experience.You have a natural curiosity for how things work,...


  • Toronto, Ontario, Canada Scotiabank Full time

    Senior Penetration TesterAre you a seasoned penetration tester looking to take your skills to the next level?This role is ideal for experienced testers who want to further develop their expertise and skills.You should enjoy working in a collaborative team and sharing your ideas, perspective, and experience.You have a natural curiosity for how things work,...


  • Toronto, Ontario, Canada Scotiabank Full time

    Job Title: Senior Penetration TesterAre you a seasoned penetration tester looking to take your skills to the next level?This role is ideal for experienced professionals who want to expand their expertise and skills in penetration testing.You should enjoy working collaboratively with a team, sharing your ideas, perspective, and experience.You have a natural...


  • Toronto, Ontario, Canada Scotiabank Full time

    Senior Penetration TesterAre you a seasoned penetration tester looking to take your skills to the next level?This role is ideal for experienced professionals who want to further develop their expertise and skills in penetration testing.You will work collaboratively with a team, sharing your ideas, perspective, and experience to deliver high-quality...


  • Toronto, Ontario, Canada Scotiabank Full time

    Senior Penetration TesterAre you a seasoned penetration tester looking to take your skills to the next level?This role is ideal for experienced professionals who want to further develop their expertise and skills in penetration testing.You will work collaboratively with a team, sharing your ideas, perspective, and experience to deliver high-quality...


  • Toronto, Ontario, Canada Blue Mantis Full time

    Unlock Your Cybersecurity PotentialAre you a skilled cybersecurity professional looking to elevate your career and make a meaningful impact in the industry? Do you have a passion for ethical hacking and a desire to stay ahead of the latest threats?We're seeking a highly motivated and experienced Senior Penetration Tester to join our team at Blue Mantis. As a...


  • Toronto, Ontario, Canada Aon Full time

    About the RoleWe are seeking a highly skilled Senior Security Penetration Tester to join our team at Aon. As a key member of our Proactive Security Testing team, you will be responsible for conducting complex penetration testing activities to assess the security of web applications, mobile applications, APIs, and thick clients.Key ResponsibilitiesPerform...


  • Toronto, Ontario, Canada Aon Full time

    About the RoleWe are seeking a highly skilled Senior Security Penetration Tester to join our team at Aon. As a key member of our Proactive Security Testing team, you will be responsible for conducting complex penetration testing activities to assess the security of web applications, mobile applications, APIs, and thick clients.Key ResponsibilitiesPerform...


  • Old Toronto, Ontario, Canada TeacherOn Full time

    Job Title: Expert Penetration Tester for Hands-on LabsJob Description: We are seeking an expert in Penetration Testing to assist a university student with their course. The ideal candidate will have hands-on experience with Kali Linux, Metasploitable3, VirtualBox, and Ubuntu.Requirements:* Expertise in Penetration Testing* Proficiency in Kali Linux,...


  • Toronto, Ontario, Canada Aon Hewitt Full time

    About the RoleWe are seeking a highly skilled Principal Security Penetration Tester to join our team in Canada. As a senior member of our penetration testing team, you will be responsible for performing complex penetration testing activities, including web application security assessments, infrastructure penetration testing, and code review.Key...


  • Toronto, Ontario, Canada Aon Hewitt Full time

    About the RoleWe are seeking a highly skilled Principal Security Penetration Tester to join our team in Canada. As a senior member of our penetration testing team, you will be responsible for performing complex penetration testing activities, including web application security assessments, infrastructure penetration testing, and code review.Key...


  • Toronto, Ontario, Canada Blue Mantis Full time

    Unlock Your Cybersecurity PotentialAre you ready to take your cybersecurity career to new heights? Do you have a passion for uncovering hidden vulnerabilities and protecting digital fortresses? We're seeking a skilled Cybersecurity Expert to join our team at Blue Mantis.In this role, you'll be the detective, the strategist, and the guardian of our clients'...


  • Toronto, Ontario, Canada Blue Mantis Full time

    Unlock Your Cybersecurity PotentialAre you ready to take your cybersecurity career to new heights? Do you have a passion for uncovering hidden vulnerabilities and protecting digital fortresses? We're seeking a skilled Cybersecurity Expert to join our team at Blue Mantis.In this role, you'll be the detective, the strategist, and the guardian of our clients'...


  • Toronto, Ontario, Canada Scotiabank Full time

    Are you a seasoned penetration tester looking to take your skills to the next level?We are seeking a highly experienced and skilled penetration tester to join our team at Scotiabank.As a penetration tester, you will be responsible for identifying and exploiting vulnerabilities in our systems and networks.You will work closely with our development and...


  • Toronto, Ontario, Canada Scotiabank Full time

    Are you a skilled penetration tester looking to take your career to the next level?We are seeking an experienced penetration tester to join our team at Scotiabank.This role is ideal for individuals with a strong background in penetration testing and a desire to further develop their skills.You will work closely with our team to identify and mitigate...


  • Toronto, Ontario, Canada Scotiabank Full time

    Role OverviewScotiabank is seeking a highly skilled Senior Penetration Tester to join our team.The ideal candidate will have a strong background in penetration testing, with a focus on identifying and mitigating security vulnerabilities.Key Responsibilities:Perform penetration testing engagements to assess plausible attack vectors and determine the best...


  • Toronto, Ontario, Canada Scotiabank Full time

    Job DescriptionAs a Senior Penetration Tester at Scotiabank, you will be responsible for assessing the security of our systems and networks to identify vulnerabilities and provide recommendations for remediation.About UsScotiabank is a leading financial institution with a strong presence in Latin America. We are committed to providing our customers with...


  • Toronto, Ontario, Canada TD Full time

    Job Title: Information Security Network ExpertAt TD, we're seeking a highly skilled Information Security Network Expert to join our team. As a key member of our security team, you will be responsible for conducting thorough and methodical penetration testing on web applications, network infrastructures, and other systems to identify security...


  • Toronto, Ontario, Canada TD Full time

    Job Title: Information Security Network ExpertAt TD, we're seeking a highly skilled Information Security Network Expert to join our team. As a key member of our security team, you will be responsible for conducting thorough and methodical penetration testing on web applications, network infrastructures, and other systems to identify security...


  • Toronto, Ontario, Canada TD Full time

    Job DescriptionTD is seeking a highly skilled Cybersecurity Specialist to join our team.Key ResponsibilitiesConduct thorough penetration testing on web applications, network infrastructures, and other systems to identify security vulnerabilities.Assess and analyze security weaknesses, and provide actionable recommendations to mitigate risks and improve...