Penetration Tester
1 week ago
About the Role
Charter is seeking a seasoned Penetration Tester / Application Security Specialist to lead end-to-end security assessments across applications, infrastructure, and cloud environments. The ideal resource will plan and execute white-box and black-box testing, identify and exploit vulnerabilities, provide pragmatic remediation guidance, and ensure all activities align with regulatory and industry standards. Location: Regina, SK. Term: 24 months.
Key Responsibilities:
- Penetration Testing & Exploitation
- Conduct comprehensive penetration tests (network, application, API, mobile, cloud) using both automated tools and manual techniques.
- Identify, validate, and exploit vulnerabilities to demonstrate business impact and prioritize remediation.
- Perform red-team style assessments where appropriate (e.g., phishing simulations, lateral movement, privilege escalation).
- Application Security Testing
- Execute
Static Application Security Testing (SAST)
and
Dynamic Application Security Testing (DAST)
using industry-standard tools. - Partner with engineering teams to embed security into the SDLC, including secure code reviews, threat modeling, and secure design reviews.
- Attack Vectors & Defense
- Analyze and communicate common attack vectors (e.g., injection, authentication/authorization flaws, deserialization, misconfigurations).
- Provide actionable defense strategies and hardening guidance to reduce risk and improve security posture.
- Compliance & Standards
- Ensure testing practices meet
regulatory compliance requirements
(e.g., SOC 2, PCI DSS, HIPAA, GDPR depending on scope). - Apply and align security controls to
ISO/IEC 27002:2022
(or equivalent), documenting control coverage and gaps. - Reporting & Communication
- Produce detailed, executive-ready
assessment reports
including methodology, findings, risk ratings, exploit details, business impact, and remediation recommendations. - Present results to technical and non-technical stakeholders; facilitate remediation workshops and retesting.
- Governance & Continuous Improvement
- Contribute to security policies, playbooks, and testing methodologies.
- Track metrics, trends, and lessons learned to continuously improve testing effectiveness and control maturity.
Qualifications:
- Demonstrated Experience
- Identifying and exploiting vulnerabilities across applications and infrastructure.
- Common attack vectors and techniques, and how to defend against them.
- Regulatory compliance standards and ensuring compliance during penetration testing.
- SAST/DAST using automated tools and manual techniques.
- White-box and black-box testing methodologies.
- Applying the
ISO/IEC 27002:2022
code of practice for information security controls (or equivalent). - Writing and presenting detailed assessment reports to diverse audiences.
- Certifications (Assets)
- Valid certifications such as
CEH (Certified Ethical Hacker)
or
CISSP (Certified Information Systems Security Professional)
are considered significant assets. - Related cybersecurity certifications (e.g., OSCP, GWAPT, GPEN, GWEB, CCSP, Security+) will be considered.
- Technical Stack & Tools (Typical)
- SAST/DAST: SonarQube, Checkmarx, Fortify, Veracode, Burp Suite, OWASP ZAP
- Infra/Cloud: Nmap, Metasploit, Kali, BloodHound, Cloud-specific tools (Azure, AWS, GCP)
- Code Review & DevSecOps: GitHub/GitLab CI, SCA tools (e.g., Snyk), threat modeling (e.g., STRIDE)
- Soft Skills
- Strong analytical and problem-solving skills; able to translate technical risk into business impact.
- Clear written/verbal communication,
- Ability to influence cross-functional teams.
- High attention to detail, integrity, and discretion handling sensitive information.
Our Company
:
Charter is an award-winning Canadian IT Solutions and Managed Services Provider founded in 1997 in Victoria, BC, Canada. With offices nationwide, Charter offers innovative IT solutions, managed services, project delivery, and consulting. Our mission is to align people, processes, and technologies to enhance communication, boost performance, and modernize businesses. Using a business architecture methodology and human-centered design, we drive successful digital transformations, unlock new opportunities, and promote growth. We empower our clients to focus on core operations with our comprehensive support.
Not quite a fit for this role? Please forward your resume to or for future considerations.
-
Penetration Tester
1 week ago
Regina, Saskatchewan, Canada Enterprise Solutions Inc. Full timeJob Title: Penetration Testing AnalystLocation: Onsite (Regina, Saskatchewan, Canada)Contract Type: Full-time, Contract (Initial term: 2 years, with possible 1-year extension)Start Date: March 2026Role Overview:We are seeking an experienced Penetration Testing Analyst to join a cybersecurity team responsible for safeguarding enterprise IT systems. The ideal...
-
Penetration Tester
6 days ago
Regina, Saskatchewan, Canada RP Inc. Full timeHi,I hope you are doing wellPlease will you review the below and let me know:If you would be interested in us presenting you for this role.Your hourly rate for this project.Penetration Testing AnalystOur client in Regina is looking for a Penetration Testing Analyst to join the Cyber Security and Risk Management Branch (CSRM) startingMarch 18, 2026, for a...
-
Penetration Tester
6 days ago
Regina, Saskatchewan, Canada Systematix Full timeWe are Systematix and we are currently looking for a seniorPenetration Testing Analystfor our client.This is a long contract, 100% onsite in Regina, SK.ABOUT THE PROJECT:Systematix is supporting a Government of Saskatchewan cybersecurity initiative within the Cyber Security and Risk Management (CSRM) Branch. The project focuses on strengthening enterprise...
-
Penetration Testing Analyst
1 week ago
Regina, Saskatchewan, Canada Coniah Consulting Inc. Full timeOverviewOur client, a government entity in Saskatchewan, Canada, needs the services of a Penetration Testing Analyst(s) to join the Cyber Security and Risk Management Branch (CSRM). The Penetration Testing Analyst would be part of the CSRM and be responsible for managing all things related to IT security including, though not necessarily limited to:Provide...
-
Penetration Testing Analyst
1 week ago
Regina, Saskatchewan, Canada Visionpool Business Services Full timeVisionpool Business Services is hiring a Penetration Testing Analyst. THIS OPPORTUNITY IS LOCATED 100% ONSITE IN REGINA, SASKATCHEWANResponsibilities:Conduct internal and external (remote from GOS offices) security testing on networks and applications;Assessing physical security;Conducting security auditsAnalyzing security policies and standards;Performing...
-
Penetration Testing Analyst
1 week ago
Regina, Saskatchewan, Canada VISIONPOOL BUSINESS SERVICES INC Full timeVisionpool Business Services is hiring a Penetration Testing Analyst. THIS OPPORTUNITY IS LOCATED 100% ONSITE IN REGINA, SASKATCHEWAN Responsibilities:Conduct internal and external (remote from GOS offices) security testing on networks and applications;Assessing physical security;Conducting security auditsAnalyzing security policies and standards;Performing...
-
Penetrating Testing Analyst
1 week ago
Regina, Saskatchewan, Canada Russell Tobin Full timePosition:Penetration Testing AnalystLocation: Regina, Saskatchewan, Canada. (Onsite)Pay Rate: CAD$90/Hr - CAD$100/HrOverview:Seeking an experienced Penetration Testing Analyst to perform comprehensive security assessments of applications, networks, and systems. The role requires strong hands-on expertise in penetration testing methodologies, vulnerability...
-
Penitration Testing Analyst
5 days ago
Regina, Saskatchewan, Canada Dasro Consulting Inc. Full timeDasro is looking for aPenitration Testing Analystfor a 2 year contract with potential for extension, for one of its clients in Regina, SK.Location: Onsite Regina, SKTerm: 12 months with possible extensionsDuties and responsibilities include:Possess a strong foundation in cybersecurity principles, with demonstrated expertise in penetration testing...
-
Penetration Tester
1 week ago
Regina, Canada Kyndryl Full timeOnsite role — seeking local Regina, SK resources - Long-term contract (2+ years) - CEH, CISSP, other security certification highly desired **Penetration Tester** **Regina, SK — 100% onsite (local Regina resources)** Our client is currently seeking a **Penetration Testing Analyst** (on contract) to support cybersecurity testing and assessment work. This...
-
Penetration Tester
7 days ago
Regina, Canada Charter Full timeDirector, IT Staff Augmentation – Charter About the role Charter is seeking a seasoned Penetration Tester / Application Security Specialist to lead end‑to‑end security assessments across applications, infrastructure, and cloud environments. The ideal resource will plan and execute white‑box and black‑box testing, identify and exploit...
-
Penetration Tester
7 days ago
Regina, Canada Charter Full timeDirector, IT Staff Augmentation – Charter About the role Charter is seeking a seasoned Penetration Tester / Application Security Specialist to lead end‑to‑end security assessments across applications, infrastructure, and cloud environments. The ideal resource will plan and execute white‑box and black‑box testing, identify and exploit...
-
Lead Penetration Tester
7 days ago
Regina, Canada Charter Full timeA leading IT Solutions Provider is seeking a seasoned Penetration Tester / Application Security Specialist in Regina, SK. You will conduct comprehensive penetration tests and provide actionable defense strategies while ensuring compliance with various regulatory standards. The ideal candidate should have a strong background in identifying vulnerabilities,...
-
Lead Penetration Tester
7 days ago
Regina, Canada Charter Full timeA leading IT Solutions Provider is seeking a seasoned Penetration Tester / Application Security Specialist in Regina, SK. You will conduct comprehensive penetration tests and provide actionable defense strategies while ensuring compliance with various regulatory standards. The ideal candidate should have a strong background in identifying vulnerabilities,...
-
Penetration Testing Analyst
2 weeks ago
Regina, Canada Coniah Consulting Inc. Full time**Overview** Our client, a government entity in Saskatchewan, Canada, needs the services of a Penetration Testing Analyst(s) to join the Cyber Security and Risk Management Branch (CSRM). The Penetration Testing Analyst would be part of the CSRM and be responsible for managing all things related to IT security including, though not necessarily limited to: -...
-
Penetration Testing Analyst #56569
2 weeks ago
Regina, Canada Intellex Systems Inc. Full timeour client requires a Penetration Testing Analyst to join the client’s Cyber Security and Risk Management Branch (CSRM). The CSRM is responsible for managing all things related to IT security including providing interpretation and enforcement of the information security policy and standards. This resource will also be responsible for responding to...
-
Penetration Testing Analyst
7 days ago
Regina, Canada Visionpool Business Services Inc Full timeVisionpool Business Services is hiring a Penetration Testing Analyst. THIS OPPORTUNITY IS LOCATED 100% ONSITE IN REGINA, SASKATCHEWAN Responsibilities Conduct internal and external (remote from GOS offices) security testing on networks and applications; Assessing physical security; Conducting security audits Analyzing security policies and standards;...
-
Penetration Testing Analyst
2 weeks ago
Regina, Canada Visionpool Business Services Full timeVisionpool Business Services is hiring a Penetration Testing Analyst. THIS OPPORTUNITY IS LOCATED 100% ONSITE IN REGINA, SASKATCHEWAN Responsibilities: Conduct internal and external (remote from GOS offices) security testing on networks and applications; Assessing physical security; Conducting security audits Analyzing security policies and standards;...
-
Penetration Testing Analyst
2 weeks ago
Regina, Canada Intellex Systems Full timePenetration Testing Analyst Back to All Jobs [social_share] Our client requires a Penetration Testing Analyst to join the client’s Cyber Security and Risk Management Branch (CSRM). The CSRM is responsible for managing all things related to IT security including providing interpretation and enforcement of the information security policy and standards. This...