Demo

Security Specialist - Penetration Testing

Cleo Consulting
Ontario, CA Full Time
POSTED ON 1/29/2025
AVAILABLE BEFORE 3/29/2025

Job Details

Job Description

Job Description
Assignment: RQ08436 - Security Specialist - Penetration Testing - Senior
Job Title: Security Specialist - Penetration Testing
Requisition (SS): RQ08436 & RQ08435
Start Date: 2025-04-01
End Date: 2026-03-31
Client: I&IT Strategy and Cyber Security
Office Location: 222 Jarvis, Toronto
Organization: I&IT Strategy and Cyber Security
Extension # of Days: 246.00
Ministry: Ministry of Public and Business Service Delivery (former MGCS)
# Business Days: 494.00

Note: Candidate is required to come in office -3 days a week

Must have:

  • Current penetration test experience

Description

Responsibilities:

  • Conducts penetration tests, web application vulnerability assessments, code reviews and network vulnerability assessments of all environments or applications related to the OPS province-wide I&IT infrastructure and information resources.
  • Defines, evaluates, and assesses security architecture requirements for systems environments and IT projects.
  • Ensures the incorporation of IT security and contingency measures in the development of systems.
  • Advises on the identification, analysis, and resolution of specific security factors, risks, vulnerabilities; protection of personal privacy issues; and appropriate industry and international security standards.
  • Carry out information and information technology (I&IT) security projects and tasks in the Ontario Public Service as assigned by Corporate Security or cluster I&IT management

General Skills

  • Experience in vulnerability assessment/penetration testing of web applications by identifying, analyzing and exploiting common vulnerabilities contained in web applications by using manual techniques and automated tools appropriate for enterprise use.
  • Experience performing penetration tests and red team assessments.
  • Experience with vulnerability assessment methodologies, tools and techniques used to conduct network vulnerability assessments and penetration testing
  • Knowledge of techniques to secure information assets and the planning, design, and implementation of security technologies.
  • Proven techniques to discover gaps or weaknesses in security architecture to identify and mitigate known security threats or inherent weaknesses.
  • Strong understanding and expertise in security architecture.
  • Knowledge and understanding of relevant legislation and corporate directives related to the security and confidentiality of information (e.g. Freedom of Information and Protection of Privacy Act) in order to identify and assess areas of concern and risk.
  • Solid knowledge of current security and contingency technology and techniques (e.g. digital signature, encryption, access controls, fire-walls, authentication, virus protection, etc. ); and a proven working knowledge of security audit procedures and protocols.
  • Experience in establishing secure environments at a network, operating system or application level.
  • Experience with implementing security on complex and distributed systems.
  • Experience in writing reports to a large audience both at an executive/non-technical management level and technical resources.
  • Awareness of emerging IT trends and directions, especially as related to security.
  • Excellent analytical, problem-solving, and decision-making skills; written and verbal communication skills; interpersonal and negotiation skills.
  • A team player with a track record for meeting deadlines, managing competing priorities and client relationship management experience.
  • Experience with multiple operating systems such as Windows and Linux, multiple programming languages such as.NET and Java, and common network services and protocols.

Experience and Skill Set Requirements

PENETRATION TEST EXPERIENCE: 35%

  • Demonstrated experience in identifying, analyzing, and exploiting common vulnerabilities using both manual techniques and automated tools for web and network pen testing and vulnerability assessments. Demonstrated experience in leading penetration tests, web application vulnerability assessments, code reviews and network vulnerability assessments in a large environment with diverse systems; and in common attacks, common web application vulnerabilities, exploits and best practices for remediation. Knowledge of IT security methodologies, tools, techniques, security design and architecture, threat/risk concepts and practices, and encryption technologies. Ability to acquire and interpret corporate I&IT security strategy, programs, the government`s trust model, and privacy legislation

TECHNICAL EXPERTISE: 25%

  • Experience with multiple operating systems, programming and scripting languages, platforms, and network services and protocols. Understanding of emerging I&IT trends, best practices and developments in common attacks, common web application vulnerabilities, exploits and best practices for remediation.

ANALYTICAL AND PROBLEM SOLVING SKILLS: 20%

  • Demonstrated analytical and problem solving skills to determine alternative and innovation solutions where guidelines or policies exist but may not address new and emerging I&IT trends. Ability to conceptualize, interpret and evaluate security exposures across multiple domains.

COMMUNICATION AND RELATIONSHIP BUILDING SKILLS: 10%

  • Experience with writing reports aimed at both the executive/non-technical management level, and technical analyst level. Oral and written communication, mediation, negotiation, consultative and advisory skills. Skills to provide training in the use of commercial security assessment tools and scanners. Stakeholder management, partnership and relationship building skills to initiate and nurture strong working relationships with internal and external colleagues.

LEADERSHIP AND PROJECT MANAGEMENT SKILLS: 10%

  • Proven ability to provide leadership, advice and direction on business risk planning and co-ordination. Demonstrated project methodology and management skills to provide project planning and technical leadership on concurrent projects.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Specialist - Penetration Testing?

Sign up to receive alerts about other jobs on the Security Specialist - Penetration Testing career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$59,793 - $89,166
Income Estimation: 
$73,266 - $131,599
Income Estimation: 
$83,579 - $128,541
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Cleo Consulting

Cleo Consulting
Hired Organization Address Denver, CO Full Time
Client : State of CO / CO OIT Job ID : AI Program Manager Job Title : Artificial Intelligence (AI) Architect Location : ...
Cleo Consulting
Hired Organization Address West Jordan, UT Full Time
Client: State of Utah Job ID: 135287 Job Title: Quality Assurance Developer - KSSOW 25011 - Quality Assurance Technician...
Cleo Consulting
Hired Organization Address Ontario, CA Full Time
Job Details Job Description Job Description Assignment: RQ08440 - Project Manager/Leader - Senior Job Title: Project Man...
Cleo Consulting
Hired Organization Address Ontario, CA Full Time
Job Details Job Description Job Description Assignment: RQ08654 - Software Developer - Senior Job Title: Senior Power Pl...

Not the job you're looking for? Here are some other Security Specialist - Penetration Testing jobs in the Ontario, CA area that may be a better fit.

Onsite / Roadside Automotive Master Technician

ROME'S AUTO SPECIALIST INC, Riverside, CA

Onsite / Roadside Automotive Master Technician

ROME'S AUTO SPECIALIST INC, Hemet, CA

AI Assistant is available now!

Feel free to start your new journey!