Security Consultant II (Thick Client Penetration Tester)

NetSPI
$82,618 - $104,613 a year
Canada
Full time
4 days ago

  • This is a remote position, and candidates must be located in Ontario, CA.

NetSPI is the proactive security solution used to discover, prioritize, and remediate security vulnerabilities of the highest importance, so businesses can protect what matters most. NetSPI secures the most trusted brands on Earth through Penetration Testing as a Service (PTaaS), External Attack Surface Management (EASM), Cyber Asset Attack Surface Management (CAASM), and Breach and Attack Simulation (BAS). Leveraging a unique combination of dedicated security experts, intelligent process, and advanced technology, NetSPI brings a proactive approach to cybersecurity with more clarity, speed, and scale than ever before.

NetSPI is on an exciting growth journey as we disrupt and improve the proactive security market. We are looking for individuals with a collaborative, innovative, and customer-first mindset to join our team. Learn more about our award-winning workplace culture and get to know our A-Team at www.netspi.com/careers.

Join the mission as a Security Consultant II. We are seeking a skilled and detail-oriented Penetration Tester to conduct thorough security assessments, identify vulnerabilities, and provide expert recommendations to strengthen our clients' security posture. As a Penetration Tester supporting Thick client testing, you will be responsible for performing thick client, web and mobile penetration testing. You will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.

Responsibilities:

  • Conduct penetration testing engagements on below service line independently:
    • Thick Application Penetration Testing
    • Includes Web Application Penetration (WaPen) testing.
    • Occasionally includes Mobile (MaPen) and IOT/embedded penetration testing.
  • Create, deliver, and collaborate on penetration testing reports in diverse client environments, maintaining client-specific processes, reporting standards, and access protocols to help improve their security posture.
  • Research and develop innovative techniques, tools, and methodologies for penetration testing services, alongside commitment to improvement and execution on NetSPI specific products and processes
  • Perform administrative tasks related to day-to-day consulting activities to ensure smooth business and engagement operations.

Minimum Qualifications:

  • Bachelor’s degree or higher required, with a concentration in Computer Science, Engineering, Math, or IT preferred, or equivalent experience
  • Minimum of 3-4 years of work experience in Thick Application Penetration Testing for applications written in Java, C#, C, C++, Swift, Rust, etc. code
    • Includes experience with offensive toolkits used in web application penetration testing.
  • Experience with disassemblers and debuggers like WinDbg, IDA, Ghidra, etc.
  • Experience with dynamic instrumentation toolkits like Frida.
  • Familiarity with offensive tools (e.g., Kali Linux, Burp Suite, Metasploit, Nessus)
  • Familiarity with offensive and defensive IT concepts and protocols
  • Extensive understanding of the OWASP Top 10, MITRE ATT&CK framework, and various security frameworks.
  • Working knowledge of Windows, Linux and MacOS operating systems internals
  • Ability to work independently and as part of a team
  • Proficient communication skills, both written and verbal
  • This position requires an 8-hour workday, with occasional evenings or weekends necessary to meet project deadlines or critical needs

Preferred Qualifications:

  • Experience performing fuzz testing.
  • Ability to reverse engineer proprietary application layer protocols.
  • Experience with IOT/embedded penetration testing.
  • Experience in one or more of the following programming or scripting languages (e.g., Ruby, Python, Perl, C, C++, Java, and C#)
  • Offensive Security Certifications (e.g., GWAPT, GPEN, GXPN, OSWE, OSCP, OSCE)

We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.

Apply
Other Job Recommendations:

Security Consultant II (Thick Client Penetration Tester)

NetSPI
Toronto, Ontario
  • Occasionally includes Mobile (MaPen) and IOT/embedded...
  • Create, deliver, and collaborate on penetration testing...
3 days ago

Hourly Security Installation Technician

AlarmTek Security Systems
Calgary, Alberta
$18 - $37 an hour
  • Installation: Install and configure alarm and security...
  • Maintenance: Perform routine maintenance and inspections to...
4 days ago

Security Supervisor (Residential Condominium)

Platinum Security Guards Inc
Vaughan, Ontario
Posting: Front Desk High-rise residential condominium What are we looking for: Well mannered, well groomed, hardworking, positive...
5 days ago

Security Guard

Securitas
York Region, Ontario
We are seeking highly motivated security professionals to provide exceptional security services across a wide range of industries,...
1 week ago

Library Security Guard

GardaWorld
Winnipeg, Manitoba
  • Facilitate access to restricted areas for authorized persons...
  • React quickly to threats, incidents, and emergencies,...
4 days ago

Security Specialist - Aerospace/Government

Securitas
Cambridge, Ontario
Securitas is a global leader in the security industry and has been providing security services since 1899 With over 8,000...
1 week ago

GRC Manager, Information Security

First National Financial
Toronto, Ontario
$127,272 - $161,155 a year
Reporting To: Senior Manager and Team Lead A strategic and integral member of the Information Security Team, reporting to the...
1 week ago

Tactical Security Guard

GardaWorld
Toronto, Ontario
What matters most in a role like this is your ability to read the environment, anticipate risk and act accordingly As a Tactical...
1 week ago

Physical Security Operations Centre Supervisor

ADGA Group Consultants Inc
Toronto, Ontario
  • Manage IRC activities and supervise IRC third-party Staff
  • Monitor and identify threats, trends, and incidents...
3 weeks ago

Site Security Coordinator

ADGA Group Consultants Inc
Toronto, Ontario
  • Reporting of Security Activities
  • Conduct of security activities and reports to the Senior...
3 weeks ago