Consultant- Attack and Penetration

1 week ago


Mississauga, Canada Optiv Full time

At Optiv, we’re on a mission to help our clients make their businesses more secure. We’re one of the fastest-growing companies in a truly essential industry. Join us.

**Who we are looking for**:
An Attack & Penetration Consultant is a highly skilled penetration tester capable of performing complex assessments while maintaining a business focus and meeting client requirements. This position will work both independently and as part of a team to perform Security Assessments including vulnerability assessments, penetration tests, red team assessments, wireless security assessments, and social engineering. An Attack & Penetration Consultant also contributes to the development and continuous improvement of the Security Assessment practice through various team and industry contributions.

**How you'll make an impact**:

- Assess an organization’s network security posture using automated tools and manual techniques to identify and verify common security vulnerabilities.
- Use creative approaches to identify vulnerabilities that are commonly missed in security assessments.
- Exploit vulnerabilities and identify specific, meaningful risks to clients based on industry and business focus.
- Perform complex wireless attacks both against wireless clients and access points.
- Use social engineering techniques to obtain sensitive information, network access and physical access to client sites.
- Assess physical security controls by lock picking, tailgating, dumpster diving and other evasive techniques.
- Execute opportunistic, blended, and chained attack scenarios that combine multiple weaknesses to compromise client environments.
- Create comprehensive assessment reports that clearly identify root cause and remediation strategies.
- Interface with client personnel to gather information, clarify scope and investigate security controls.
- Execute projects using established methodology, tools, and documentation.
- Collaborate with other team members and practices to complete client projects and practice contributions.
- Provide support in the ongoing development of security assessment offerings through tool creation and process improvement.
- Perform other duties as assigned.

**Qualifications for success**:

- Prior experience performing Vulnerability Assessments, Penetration Tests, Wireless Security Assessments and or Social Engineering to enterprise-level organizations.
- Ability to travel 25-40% of the time to client sites.
- OSCP, OSEP, OSWE certifications strongly preferred
- Bachelor’s Degree from a four-year college or university in Information Assurance, Computer Science, Management Information Systems, or related area of study; or related experience and/or training; or equivalent combination of education and experience strongly preferred.

Demonstrated ability to deliver projects using well-defined methodology across various security assessment disciplines including:

- Ability to combine multiple separate findings to execute complex attacks.
- Ability to manually validate vulnerabilities identified during assessments.
- Ability to identify, describe and report vulnerabilities and standard remediation activities, to include clear demonstration of risk to clients through post-exploitation activities required.
- Mastery of commercial and open-source security tools required (Nessus, Nexpose, SAINT, Qualys, Burp, Nmap, Kali, Metasploit, Meterpreter, Wireshark, Kismet, Aircrack-ng etc.).
- Familiarity with many different network architectures, network services, system types, network devices, development platforms and software suites required (Linux, Windows, Cisco, Oracle, Active Directory, JBoss,.NET, etc.) required.
- Familiarity with command and control (C2) frameworks, such as Cobalt Strike, Mythic, Covenant, etc.
- Passion for creating tools and automation to make common tasks more efficient preferred.
- Knowledge of programming and scripting for development of security tools preferred.
- Demonstrated ability to create comprehensive assessment reports required.
- Must be able to work well with customers and self-manage through difficult situations, focus on client satisfaction.
- Ability to convey complex technical security concepts to technical and non-technical audiences including executives required.
- Ability to work both independently as well as on teams required.
- Willingness to collaborate and share knowledge with team members required.
- Proven ability to review and revise reports written by peers required.
- Demonstrated effective time management skills, ability to balance multiple projects simultaneously and the ability to take on large and complex projects with little or no supervision required.

**With Optiv you can expect**:

- A company committed to championing Diversity, Equality, and Inclusion through our Affinity groups including, Black Employee Network, Disabled Employee Network, Latino Employee Network, Optiv Pride (LGBTQIA+), Veterans Support Network, and Women's Network.
- Work/life b



  • Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Victoria, Surrey, Halton Hills, London, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada NetSPI Inc. Full time

    Security Consultant II (AI/ML Penetration Tester) Job Category: Services Requisition Number: SECUR001588 Posted : July 25, 2025 Full-Time Remote Locations Showing 1 location CanadaToronto, ON M5J2T3, CAN Description *This is a remote position, and candidates must be located in Ontario, CA NetSPI® is an award-winning pioneer of Penetration Testing as a...


  • Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Victoria, Surrey, Halton Hills, London, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada CyberClan Full time

    Established in 2006, CyberClan’s carefully selected team of experts are capable of solving complex cybersecurity challenges – keeping data secure and businesses running as usual. CyberClan’s Global Incident Response Teams are available 24/7/365 to leap into action, responding to all cyber-attacks with proven defensive methodology, quickly identifying,...

  • Keyholder

    3 days ago


    Mississauga, Canada Rack Attack Full time

    **About Us** Rack Attack is the premiere rack specialty retailer in North America. Our focus has always been a customer-first mentality and finding the best rack solution for your lifestyle. From our first store in 1996 to now, we are passionate about what we do. It has been 26 years and we’re still on top! We are consistently expanding our reach which...


  • Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Surrey, Victoria, London, Halton Hills, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada Control Gap Full time

    A leading cybersecurity consultancy in Canada is seeking an experienced Penetration Tester / Offensive Security Consultant to enhance its Offensive Security practice. You will conduct penetration tests and identify vulnerabilities in various environments while mentoring junior security professionals. The ideal candidate has over 3 years of experience and is...

  • Penetration Tester

    1 day ago


    remote Mississauga, Ontario, Canada . full-time . October , Control Gap Full time $80,000 - $120,000 per year

    Penetration Tester / Offensive Security Consultant Location: Remote (Canada) Toronto, Ontario, CA preferred Company: Control Gap, a CyberGuard Advantage company About Us CyberGuard Advantage is a modern cybersecurity compliance and risk advisory firm backed by Atlantic Street Capital. We help organizations navigate complex privacy, compliance, and...


  • Mississauga, Canada Royal Cyber Inc. Full time

    Full Stack Java Developer (Middleware, Security Assessment & Penetration Testing) Join to apply for the Full Stack Java Developer (Middleware, Security Assessment & Penetration Testing) role at Royal Cyber Inc. Location: GTA based Duration: 6 months with a high probability of extension based on performance. Required Skills Front-end: Strong understanding of...


  • Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Victoria, Surrey, Halton Hills, London, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada NetSPI Inc. Full time

    A cybersecurity consulting firm is seeking a Security Consultant II specialized in AI/ML Penetration Testing. This remote position requires a candidate with a Bachelor's degree and 2-4 years of experience in penetration testing. Responsibilities include conducting advanced tests on AI/ML systems and providing actionable insights to clients. Strong...

  • Penetration Tester

    4 weeks ago


    Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Victoria, Surrey, Halton Hills, London, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada Software Secured Full time

    Software Secured is a leading Penetration Testing as a Service (PTaaS) company, with a head office in beautiful Ottawa, Canada. We help software development teams get ahead of hackers, using a suite of cybersecurity services and products. Software Secured focuses on helping startups, scaleups, and SMBs comply with industry-specific Governance, Risk and...


  • Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Victoria, Surrey, London, Halton Hills, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada NetSPI Full time

    A cybersecurity solutions provider is seeking a Security Consultant II specializing in AI/ML Penetration Testing. This remote position involves conducting complex penetration tests and collaborating with clients to enhance their cybersecurity defenses. Candidates should have a bachelor's degree in a relevant field and 2-4 years of experience in penetration...


  • Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Victoria, Surrey, Halton Hills, London, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada NetSPI Inc. Full time

    A cybersecurity firm in Canada is seeking a Security Consultant II to conduct mobile application penetration testing. The ideal candidate will have 2-3 years of experience in application security testing and familiarity with tools like Kali Linux and Burp Suite. You'll work closely with clients to identify vulnerabilities and improve their security...