VS
Penetration Testing Analyst
Veracity Software Inc
- ๐จ๐ฆ Canada
- On-site
- 8 months ago
- Penetration Testing
- Risk Management
- SAST
- DAST
- OWASP
- Regulatory Compliance
- CEH
- CISSP
- Burp Suite
- Nessus
- Tenable
- Nmap
- Metasploit
- OWASP ZAP
- Kali Linux
- Wireshark
- AWS
- Azure
- GCP
- CAD
8 months ago
Contract Duration:Initial Term: 2 Years +Optional Extension: Up to 1 Year
Work Location:100% Onsite โ Regina, Saskatchewan (No Remote / No Hybrid)
Client is seeking qualifiedPenetration Testing Analyst resources to support cybersecurity programs through security assessments, vulnerability testing, penetration testing, and IT security risk management across government systems, applications, and network environments.
This role requiresreal professional penetration testing experience (training/academic experience will not be considered) and the ability to work100% onsite in Regina.
Key Responsibilities
The Penetration Testing Analyst will be responsible for:
- Conductingpenetration testing on governmentapplications, systems, and networks
- Identifying, validating, and safely exploitingsecurity vulnerabilities
- Performingstatic application security testing (SAST) anddynamic application security testing (DAST)
- Executingmanual testing andautomated scanning as per approved methods
- Performingwhite-box testing andblack-box testing
- Conductingcloud security testing, including cloud-based application architecture and deployment models
- Evaluating vulnerabilities and mapping them torisk impacts
- Creating and deliveringdetailed penetration test / assessment reports
- Presenting findings to technical teams and stakeholders with remediation recommendations
- Supporting broader government cybersecurity and security governance initiatives
Resources must demonstrate strong familiarity and working experience with:
- OWASP (especially OWASP Application Security Testing Standard)
- ISO 27002:2022 (or equivalent information security controls)
- Regulatory compliance standards and ensuring compliance during penetration testing
Mandatory
- Demonstrated professional experience as aPenetration Tester / Penetration Testing Analyst
- Must be real job experience
- Academic projects / training / lab-only experience doesNOT qualify
- Strong experience identifying, exploiting, and documenting vulnerabilities across:
- Web applications
- Infrastructure and networks
- Cloud environments
- Demonstrated ability to write and presentdetailed security assessment reports
- Deep understanding of:
- Common attack vectors and techniques
- Defense approaches / mitigation strategies
- Valid cybersecurity certifications such as:
- CEH (Certified Ethical Hacker)
- CISSP (Certified Information Systems Security Professional)
- Other relevant cybersecurity certifications
Candidates should have strong hands-on experience with penetration testing tools and techniques such as:
- Burp Suite
- Nessus / Tenable
- Nmap
- Metasploit
- OWASP ZAP
- SQLmap
- Kali Linux
- Wireshark
- Hydra / password testing tools
- Cloud security tools (AWS/Azure/GCP security tooling โ where applicable)
Recruiter Submission Template โ
Full Name:
Degree Major with University and Completion Year:
Do you have valid certifications such as CEH or CISSP? (Yes/No โ specify):
Other cybersecurity certifications (if any):
Total Years of Penetration Testing Experience (must be professional / real job exp only):
Total Years of Cybersecurity Experience:
Do you have experience working with Government/Public Sector/Large Enterprise? (Yes/No โ elaborate):
Do you have demonstrated experience with OWASP standards (especially OWASP Application Security Testing Standard)?
Do you have demonstrated experience with ISO 27002:2022 or equivalent security controls?
Do you have demonstrated experience in regulatory compliance standards and ensuring compliance during penetration testing?
Do you have mandatory professional experience as a Penetration Tester (not training/academic)? (Yes/No โ elaborate with employers/projects):
Please describe your most recent penetration testing engagement (Client/Industry, Systems Tested, Role, Tools Used, Outcome):
Demonstrated experience with cloud security / cloud-based application architecture / deployment models? (Yes/No โ AWS/Azure/GCP โ elaborate):
Have you performed penetration testing in cloud environments? (Yes/No โ describe approach and tools):
Motivation/Reason for Interest in This Role:
Expected Start Date (must support March 18, 2026):
Contact Number:
Email ID:
LinkedIn Profile URL:
Full Address (Street, City, Province/State, ZIP/Postal Code, Country):
Notice Period / Availability (in weeks):
Current Work Authorization Status (Canada Citizen/PR/Work Permit/Other):
Hourly Rate Expectation (CAD):
Is it Incorporated/Corp-to-Corp or T4/Contract? If Corp, Corporation Name:
Are you able to work 100% onsite in Regina, Saskatchewan, Canada? (Yes/No):
Candidate References Form
Please collect and include3 references:
Reference 1
- Name:
- Title/Position:
- E-mail Address:
- Telephone Number:
- Association to Candidate:
- Name:
- Title/Position:
- E-mail Address:
- Telephone Number:
- Association to Candidate:
- Name:
- Title/Position:
- E-mail Address:
- Telephone Number:
- Association to Candidate:
Penetration Testing Analyst ยท Veracity Software Inc