Principle Penetration Tester - Toronto, Canada - Scotiabank

Scotiabank
Scotiabank
Verified Company
Toronto, Canada

1 week ago

Sophia Lee

Posted by:

Sophia Lee

beBee Recruiter


Description
Requisition ID: 176644

Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.


The Team


Scotiabank's Cyber Security Red Team is responsible for delivery of offensive security services across Scotiabank globally, conducting annual & release penetration testing engagements, control effectiveness testing, purple team engagements, and security assessments through threat emulation, and adversarial means.


The role:


The Cyber Security Red Team (CSRT) is looking for a Principle Penetration Tester, with expertise in Network & Server Infrastructure Testing and/or Web Application Penetration testing to join our internal team.

As a principle member of team, you will help shape and enhance our internal testing practices, and work closely with the Service Advisory & Coordination team, on complex engagements to assess scope and level of effort based on identified areas of risk, and execute assigned engagements as the principle tester, in alignment to industry frameworks.


Is this role right for you?

  • This role is ideal for experienced penetration testers who are looking to further develop their expertise and skills.
  • You enjoy working in a collaborative team, and sharing your ideas, perspective, and experience.
  • You have a natural curiosity for how things work, exploring unknowns, and unafraid to test perceived limitations.
  • You take initiative and dedicate time to continuing your education, practising your craft, and honing your skills.
  • You adhere to strong morale and ethical standard
  • You have strong customer service skills

Do you have the skills that will enable you to succeed in this role?

  • Experienced in scoping penetration testing engagements to assess plausible attack vectors, accurately estimate level of effort, and determine the best approach to test areas of risk.
  • Able to develop executive level reports, write penetration testing reports and executive summaries with mínimal error or edits
  • Ability to execute testing engagements against complex projects and systems
  • Experienced in developing custom tooling, leverage whitepapers and online resources to enhance testing
  • Possesses an indepth understanding of testing methodologies, within their area of expertise. (ex OWASP Web & Mobile testing methodologies and OSSTMM, and the MITRE ATT&CK Framework.)
  • You possess strong communication (verbal/written/presentation) skills in English. The same in Spanish would be a strong asset as Scotiabank as a strong presence in Latin American Countries.
cyberatscotia

Location(s): Canada : Ontario : Toronto

Scotiabank is a leading bank in the Americas


Guided by our purpose:
"for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.

More jobs from Scotiabank