Penetration Tester

1 week ago


Regina, Saskatchewan, Canada Charter Full time

About the Role

Charter is seeking a seasoned Penetration Tester / Application Security Specialist to lead end-to-end security assessments across applications, infrastructure, and cloud environments. The ideal resource will plan and execute white-box and black-box testing, identify and exploit vulnerabilities, provide pragmatic remediation guidance, and ensure all activities align with regulatory and industry standards. Location: Regina, SK. Term: 24 months.

Key Responsibilities:

  • Penetration Testing & Exploitation
  • Conduct comprehensive penetration tests (network, application, API, mobile, cloud) using both automated tools and manual techniques.
  • Identify, validate, and exploit vulnerabilities to demonstrate business impact and prioritize remediation.
  • Perform red-team style assessments where appropriate (e.g., phishing simulations, lateral movement, privilege escalation).
  • Application Security Testing
  • Execute
    Static Application Security Testing (SAST)
    and
    Dynamic Application Security Testing (DAST)
    using industry-standard tools.
  • Partner with engineering teams to embed security into the SDLC, including secure code reviews, threat modeling, and secure design reviews.
  • Attack Vectors & Defense
  • Analyze and communicate common attack vectors (e.g., injection, authentication/authorization flaws, deserialization, misconfigurations).
  • Provide actionable defense strategies and hardening guidance to reduce risk and improve security posture.
  • Compliance & Standards
  • Ensure testing practices meet
    regulatory compliance requirements
    (e.g., SOC 2, PCI DSS, HIPAA, GDPR depending on scope).
  • Apply and align security controls to
    ISO/IEC 27002:2022
    (or equivalent), documenting control coverage and gaps.
  • Reporting & Communication
  • Produce detailed, executive-ready
    assessment reports
    including methodology, findings, risk ratings, exploit details, business impact, and remediation recommendations.
  • Present results to technical and non-technical stakeholders; facilitate remediation workshops and retesting.
  • Governance & Continuous Improvement
  • Contribute to security policies, playbooks, and testing methodologies.
  • Track metrics, trends, and lessons learned to continuously improve testing effectiveness and control maturity.

Qualifications:

  • Demonstrated Experience
  • Identifying and exploiting vulnerabilities across applications and infrastructure.
  • Common attack vectors and techniques, and how to defend against them.
  • Regulatory compliance standards and ensuring compliance during penetration testing.
  • SAST/DAST using automated tools and manual techniques.
  • White-box and black-box testing methodologies.
  • Applying the
    ISO/IEC 27002:2022
    code of practice for information security controls (or equivalent).
  • Writing and presenting detailed assessment reports to diverse audiences.
  • Certifications (Assets)
  • Valid certifications such as
    CEH (Certified Ethical Hacker)
    or
    CISSP (Certified Information Systems Security Professional)
    are considered significant assets.
  • Related cybersecurity certifications (e.g., OSCP, GWAPT, GPEN, GWEB, CCSP, Security+) will be considered.
  • Technical Stack & Tools (Typical)
  • SAST/DAST: SonarQube, Checkmarx, Fortify, Veracode, Burp Suite, OWASP ZAP
  • Infra/Cloud: Nmap, Metasploit, Kali, BloodHound, Cloud-specific tools (Azure, AWS, GCP)
  • Code Review & DevSecOps: GitHub/GitLab CI, SCA tools (e.g., Snyk), threat modeling (e.g., STRIDE)
  • Soft Skills
  • Strong analytical and problem-solving skills; able to translate technical risk into business impact.
  • Clear written/verbal communication,
  • Ability to influence cross-functional teams.
  • High attention to detail, integrity, and discretion handling sensitive information.

Our Company
:

Charter is an award-winning Canadian IT Solutions and Managed Services Provider founded in 1997 in Victoria, BC, Canada. With offices nationwide, Charter offers innovative IT solutions, managed services, project delivery, and consulting. Our mission is to align people, processes, and technologies to enhance communication, boost performance, and modernize businesses. Using a business architecture methodology and human-centered design, we drive successful digital transformations, unlock new opportunities, and promote growth. We empower our clients to focus on core operations with our comprehensive support.

Not quite a fit for this role? Please forward your resume to or for future considerations.


  • Penetration Tester

    1 week ago


    Regina, Saskatchewan, Canada Enterprise Solutions Inc. Full time

    Job Title: Penetration Testing AnalystLocation: Onsite (Regina, Saskatchewan, Canada)Contract Type: Full-time, Contract (Initial term: 2 years, with possible 1-year extension)Start Date: March 2026Role Overview:We are seeking an experienced Penetration Testing Analyst to join a cybersecurity team responsible for safeguarding enterprise IT systems. The ideal...

  • Penetration Tester

    6 days ago


    Regina, Saskatchewan, Canada RP Inc. Full time

    Hi,I hope you are doing wellPlease will you review the below and let me know:If you would be interested in us presenting you for this role.Your hourly rate for this project.Penetration Testing AnalystOur client in Regina is looking for a Penetration Testing Analyst to join the Cyber Security and Risk Management Branch (CSRM) startingMarch 18, 2026, for a...

  • Penetration Tester

    6 days ago


    Regina, Saskatchewan, Canada Systematix Full time

    We are Systematix and we are currently looking for a seniorPenetration Testing Analystfor our client.This is a long contract, 100% onsite in Regina, SK.ABOUT THE PROJECT:Systematix is supporting a Government of Saskatchewan cybersecurity initiative within the Cyber Security and Risk Management (CSRM) Branch. The project focuses on strengthening enterprise...


  • Regina, Saskatchewan, Canada Coniah Consulting Inc. Full time

    OverviewOur client, a government entity in Saskatchewan, Canada, needs the services of a Penetration Testing Analyst(s) to join the Cyber Security and Risk Management Branch (CSRM). The Penetration Testing Analyst would be part of the CSRM and be responsible for managing all things related to IT security including, though not necessarily limited to:Provide...


  • Regina, Saskatchewan, Canada Visionpool Business Services Full time

    Visionpool Business Services is hiring a Penetration Testing Analyst. THIS OPPORTUNITY IS LOCATED 100% ONSITE IN REGINA, SASKATCHEWANResponsibilities:Conduct internal and external (remote from GOS offices) security testing on networks and applications;Assessing physical security;Conducting security auditsAnalyzing security policies and standards;Performing...


  • Regina, Saskatchewan, Canada VISIONPOOL BUSINESS SERVICES INC Full time

    Visionpool Business Services is hiring a Penetration Testing Analyst. THIS OPPORTUNITY IS LOCATED 100% ONSITE IN REGINA, SASKATCHEWAN Responsibilities:Conduct internal and external (remote from GOS offices) security testing on networks and applications;Assessing physical security;Conducting security auditsAnalyzing security policies and standards;Performing...


  • Regina, Saskatchewan, Canada Russell Tobin Full time

    Position:Penetration Testing AnalystLocation: Regina, Saskatchewan, Canada. (Onsite)Pay Rate: CAD$90/Hr - CAD$100/HrOverview:Seeking an experienced Penetration Testing Analyst to perform comprehensive security assessments of applications, networks, and systems. The role requires strong hands-on expertise in penetration testing methodologies, vulnerability...


  • Regina, Saskatchewan, Canada Dasro Consulting Inc. Full time

    Dasro is looking for aPenitration Testing Analystfor a 2 year contract with potential for extension, for one of its clients in Regina, SK.Location: Onsite Regina, SKTerm: 12 months with possible extensionsDuties and responsibilities include:Possess a strong foundation in cybersecurity principles, with demonstrated expertise in penetration testing...

  • Penetration Tester

    1 week ago


    Regina, Canada Kyndryl Full time

    Onsite role — seeking local Regina, SK resources - Long-term contract (2+ years) - CEH, CISSP, other security certification highly desired **Penetration Tester** **Regina, SK — 100% onsite (local Regina resources)** Our client is currently seeking a **Penetration Testing Analyst** (on contract) to support cybersecurity testing and assessment work. This...

  • Penetration Tester

    7 days ago


    Regina, Canada Charter Full time

    Director, IT Staff Augmentation – Charter About the role Charter is seeking a seasoned Penetration Tester / Application Security Specialist to lead end‑to‑end security assessments across applications, infrastructure, and cloud environments. The ideal resource will plan and execute white‑box and black‑box testing, identify and exploit...

  • Penetration Tester

    7 days ago


    Regina, Canada Charter Full time

    Director, IT Staff Augmentation – Charter About the role Charter is seeking a seasoned Penetration Tester / Application Security Specialist to lead end‑to‑end security assessments across applications, infrastructure, and cloud environments. The ideal resource will plan and execute white‑box and black‑box testing, identify and exploit...


  • Regina, Canada Charter Full time

    A leading IT Solutions Provider is seeking a seasoned Penetration Tester / Application Security Specialist in Regina, SK. You will conduct comprehensive penetration tests and provide actionable defense strategies while ensuring compliance with various regulatory standards. The ideal candidate should have a strong background in identifying vulnerabilities,...


  • Regina, Canada Charter Full time

    A leading IT Solutions Provider is seeking a seasoned Penetration Tester / Application Security Specialist in Regina, SK. You will conduct comprehensive penetration tests and provide actionable defense strategies while ensuring compliance with various regulatory standards. The ideal candidate should have a strong background in identifying vulnerabilities,...


  • Regina, Canada Coniah Consulting Inc. Full time

    **Overview** Our client, a government entity in Saskatchewan, Canada, needs the services of a Penetration Testing Analyst(s) to join the Cyber Security and Risk Management Branch (CSRM). The Penetration Testing Analyst would be part of the CSRM and be responsible for managing all things related to IT security including, though not necessarily limited to: -...


  • Regina, Canada Intellex Systems Inc. Full time

    our client requires a Penetration Testing Analyst to join the client’s Cyber Security and Risk Management Branch (CSRM). The CSRM is responsible for managing all things related to IT security including providing interpretation and enforcement of the information security policy and standards. This resource will also be responsible for responding to...


  • Regina, Canada Visionpool Business Services Inc Full time

    Visionpool Business Services is hiring a Penetration Testing Analyst. THIS OPPORTUNITY IS LOCATED 100% ONSITE IN REGINA, SASKATCHEWAN Responsibilities Conduct internal and external (remote from GOS offices) security testing on networks and applications; Assessing physical security; Conducting security audits Analyzing security policies and standards;...


  • Regina, Canada Visionpool Business Services Full time

    Visionpool Business Services is hiring a Penetration Testing Analyst. THIS OPPORTUNITY IS LOCATED 100% ONSITE IN REGINA, SASKATCHEWAN Responsibilities: Conduct internal and external (remote from GOS offices) security testing on networks and applications; Assessing physical security; Conducting security audits Analyzing security policies and standards;...


  • Regina, Canada Intellex Systems Full time

    Penetration Testing Analyst Back to All Jobs [social_share] Our client requires a Penetration Testing Analyst to join the client’s Cyber Security and Risk Management Branch (CSRM). The CSRM is responsible for managing all things related to IT security including providing interpretation and enforcement of the information security policy and standards. This...