Talent.com
Intact Financial Corporation
Security Advisor Specialist, Offensive Security (Global Red Team)Intact Financial Corporation • Mississauga, Ontario, CAN
No longer accepting applications
Security Advisor Specialist, Offensive Security (Global Red Team)

Security Advisor Specialist, Offensive Security (Global Red Team)

Intact Financial Corporation • Mississauga, Ontario, CAN
30+ days ago
Salary
CA$118,700.00 yearly
Job type
  • Full-time
Job description

Pay at Intact is about much more than just salary.

  • Flexible work arrangements and a hybrid work model

  • Possibility to purchase up to 5 extra days off per year

  • Multiple benefits offered to support physical and mental wellbeing, including telemedicine, Wellness account and much more

  • Share plan & other savings: up to 12% of salary or even more (ask how you could earn guaranteed income for life)

Salary range (but not limited to):

118,700 - 145,100

Annual bonus target, based on the base salary, with a potential payout of up to double the target (subject to personal and company performance):

15%

As part of our commitment to Win As A Team, we share our success with employees through our annual bonus plan and Employee Share Purchase Plan (ESPP) – with Intact matching 50% of your net shares.

Our pension offerings provide flexibility and long-term security for our employees beyond their careers. We are one of the few companies offering the opportunity to receive guaranteed income for life via our defined benefit pension plan.

Salary for the candidate will be determined taking into consideration a number of factors including: experience, skills, qualifications, anticipated contribution to role, internal equity, etc. The salary range presented above is based on a 35-hour workweek and would represent a majority of different candidate profiles. However, we encourage candidates who may fall outside of this range to apply as well.


About the role

The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies). He/she works as a specialist employing techniques, tactics and protocols to test security controls, working as part of a global offensive security team.

The Specialist, Offensive Security reports to the Director, Offensive Security and works with a team of technical advisors across multiple locations and time zones.

If you can think outside of the Kali box, and love to think like an attacker (with a track record to prove your capabilities) we want to talk to you about joining our team!


What you'll do here:

  • Conduct reconnaissance on network environment to build external landscape using industry standard tools, threat intelligence feeds, OSINT and other readily available information sources

  • Conduct offensive security testing to ensure security controls and response actions are effective. If you are detected, shifting from a red team focus to a purple team approach – your purpose isn’t to create a “Gotcha!” moment – our mission is to strengthen our controls throughout the entire attack chain across the enterprise.

  • Employ attack strategies to simulate real-world attacks by threat actors and benchmark response capabilities across the enterprise.

  • Ability to identify and exploiting vulnerabilities in computer systems, networks and applications to simulate attacks by threat actors – you have a proven track record of evading modern EDR (eg. Crowdstrike, MDE, SentinelOne) while elevating privileges/hitting your target.

  • Analyze and report on the results of security assessments and make recommendations to improve the security posture of the enterprise.

  • You understand the TCP/IP stack in depth and know how to exploit it to create covert beacons, C2 channels, exfiltrate data across DNS. Understanding how routing tables work (eg. BGP) and how they can be exploited is an asset.

  • Work with regional cyber governance and risk teams to ensure that findings are properly tracked for remediation

  • Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness

  • Leverage industry standard and emerging tools to evaluate emerging threats to the financial services space and benchmark regions and affiliate companies to peers.

  • Able to consume threat intelligence and apply the attack surface to crown jewel assets for target and tactic development, proposing clear rules of engagement for testing activities (either one time or perpetual) and ensuring compliance to the ROE through all phases of testing.

  • Maintain and update all offensive security tools, technologies and processes in line with company rules of engagement

  • Provide timely and effective communications to key internal stakeholders in alignment with policy and rules of engagement.


What you bring to the table:

  • Advanced knowledge in the following areas: computer networks, operational security platforms, information security principles, TCP/IP, DNS, UDP, BGP, SOC, IAM, SIEM, DLP, EDR, Threat intelligence, Incident Response, technical writing, information risk.

  • Bachelor's degree in Computer Technology, Information Security, an asset.

  • A minimum of five (5) years of relevant professional experience in information technology.

  • A minimum of three (3) years of experience in information security.

  • Knowledge of offensive security operations, tools and techniques.

  • Knowledge of information security standards, regulations and legislation (NIST, COBIT5, ISO 27001), an asset.

  • Python scripting comes naturally, and have a history of using it in blue/red/purple team engagements

  • Proficiency in manual testing techniques beyond automated scanning.

  • Strong knowledge of OWASP Top 10, MITRE ATT&CK, and CVSS scoring.

  • You can take many vectors of technical vulnerability information (Pentest reports, vulnerability scanning data, SAST/DAST reports) and build an attack plan on critical assets.

  • You must have the ability to take highly technical data and results and translate them to business-friendly language to help non-technical stakeholders understand the approach, impact and outcome from offensive security operations.

  • If you’ve joined capture the flag competitions (even better if you won) we want to hear about it!

  • Recognized certification in information security (CEH, CISM or other), an asset.

  • Analytical mind, pragmatic approach to IT security issues and problems.

  • Strong partner in all areas, internally and externally, to provide a secure solution.

  • Ability to reduce stress in situations that are stressful to you and others.

  • Positive attitude, initiative with strong analytical and interpersonal skills to lead work groups, negotiate and build consensus.

  • Ability to write and present material to communicate difficult concepts and gain consensus.

  • Ability to work in a dynamic environment with multiple objectives.

  • Highly motivated and self-directed, with attention to detail.

  • Ability to prioritize and execute tasks in a high-pressure environment.

  • Ability to deal diplomatically and effectively at all levels of the organization.

  • Ability to challenge the status quo.

  • Customer focused approach.

  • For candidates located in Quebec, bilingualism is required considering the necessity to interact on a regular basis with English-speaking colleagues across the country.

  • No Canadian work experience required however must be eligible to work in Canada.

#LI-Hybrid

Ce poste jouera un rôle essentiel au sein de notre équipe. | This position will fill an essential role in our team.

Create a job alert for this search

Security Advisor Specialist, Offensive Security (Global Red Team) • Mississauga, Ontario, CAN

Similar jobs

Senior Offensive Security Consultant & Red Team Lead

CDW CanadaVaughan, York Region, CA
Full-time

A leading technology solutions provider in Vaughan, Ontario is seeking a Cyber Security Consultant to conduct penetration testing and provide clients with security insights.Candidates should have o... Show more

 • Promoted

Strategic Information Security Architect

ColliersMississauga, Peel Region, CA
Full-time

Transform global security architecture as a Strategic Information Security Architect.Spearhead cloud migration security strategies while ensuring systems are secure and compliant.This pivotal role ... Show more

 • Promoted

Cyber Security Architect

Intuitive.aiMississauga, Peel Region, CA
Full-time

Talent Acquisition Leader | Hiring Cloud Professionals Globally.Cloud is one of the fastest-growing (INC 5000, CRN) Cloud & SDx solution and services companies supporting enterprise customers on a ... Show more

 • Promoted

Security Operations & Client Services Lead

Merit ServicesVaughan, York Region, CA
Full-time

A security services provider in Vaughan is seeking an Operations Manager.This role involves managing security services for assigned accounts, ensuring high-quality customer service, and coordinatin... Show more

 • Promoted

Sr. Director, Network Security Engineering - $150,800 - $251,300 A Year

McKessonMississauga, Canada
Full-time

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare.We are known for delivering insights, products, and services that make quality care more accessibl... Show more

 • Promoted

Cyber Security Support

Brainhunter Systems LtdMississauga, Peel Region, CA
Full-time

How many paid working hours: 20 hrs/ week.Remote work with occasional site travel.Familiarity with the ECC Process as outlined in BP-PROC-01081 is an asset.Knowledge of Bruce Power’s Cyber Security... Show more

 • Promoted

Identity Security Engineer

KTek ResourcingBrampton, Peel Region, CA
Full-time

Title: Identity Security Engineer (Okta / Ping/ Transmit Security).Expert implementation of CIAM solutions (Okta / Ping/ Transmit Security ) for enterprise applications.Hands-on experience with Ide... Show more

 • Promoted

Specialist

LTMMississauga
Full-time

Governance Risk and Compliance Analyst - Job Description.We are looking for a Governance Risk and Compliance Analyst to be part of our growing security team.Evaluate and report on adequacy/effectiv... Show more

 • Promoted

Senior Security Engineer Focused on Detection and Response Frameworks

1PasswordMississauga, Peel Region, CA
Full-time

Join as a Senior Security Engineer to strengthen detection and incident response frameworks.Lead initiatives that optimize security measures and enhance organizational resilience in a remote enviro... Show more

 • Promoted

Security Architect

AGFA HealthCareMississauga, Peel Region, CA
Full-time

We are hiring an experienced security Architect who is responsible for designing and implementing security within our architecture.This role involves working closely with cross-functional teams (en... Show more

 • Promoted

Full-Time Focus Group Participant - Remote

ApexFocusGroupVaughan
Remote
Full-time +1

Now accepting applicants for Focus Group studies.Earn up to $850 per week part-time working from home.Must register to see if you qualify.No Customer Service Representative Agent experience needed.... Show more

 • Promoted

Remote Senior Officer Training Technician for Security Development

Cpus Engineering Staffing Solutions Inc.Mississauga, Peel Region, CA
Remote
Full-time

Seeking a proactive Senior Officer Training Technician to enhance security training materials remotely.Leverage your expertise in weapons, tactics, and systematic training approaches to address gap... Show more

 • Promoted

Senior Cyber Security Specialist - C$96,727 - C$138,142 A Year

SobeysMississauga, Canada
Full-time

Seeking an experienced Senior Cybersecurity Specialist to enhance offensive security capabilities through penetration tests, red team activities, and vulnerability assessments.Role involves collabo... Show more

 • Promoted

Regional Sales Manager - Homeland Security

EXFOMississauga, Peel Region, CA
Full-time

Regional Sales Manager - Homeland Security.Regional Sales Manager - Homeland Security.Wireless Telecom Regional Sales Manager for Homeland Security Business.You will be an integral part of the Home... Show more

 • Promoted

Zero-Trust Network Security Specialist

Rexall Pharmacy Group Ltd.Mississauga
Full-time

A leading pharmacy group is seeking a Network Security Analyst in Mississauga to enhance their network security measures.The role involves monitoring network traffic, ensuring compliance with regul... Show more

 • Promoted

Remote Client Engagement Manager - Cyber Security

CyberClanMississauga, Peel Region, CA
Remote
Full-time +1

A leading cybersecurity firm is seeking a Client Engagement Manager to provide superior customer-centric experiences.The role involves overseeing project execution, ensuring seamless onboarding for... Show more

 • Promoted

Sr. IAM Security Architect (Hybrid)- Toronto

Rubicon Pathbrampton, peel region, Canada
Full-time

IAM Security Architect (Hybrid) - Toronto.Our client, the top national telecommunication company is looking for a Senior IAM Security Architect.They drive large-scale, complex, and high-visibility ... Show more

 • Promoted

Security Governance, Risk and Compliance Specialist

Tecsys Inc.Mississauga, Peel Region, CA
Full-time +1

Security Governance, Risk and Compliance Specialist.Having recognized the advantages of remote work, such as improved employee morale, increased productivity, and positive impacts on both employee ... Show more

 • Promoted

Network Solutions Security Expert

Loblaw Companies LimitedBrampton, Peel region, Canada
Full-time

Contribute to network security as a Network Solutions Security Expert.Apply your extensive technical capabilities to enhance security protocols within network operations.In this contract role, you ... Show more

 • Promoted

Remote Presales Engineer for Global Network Security

StealthWatchMississauga, Peel Region, CA
Remote
Full-time

A leading technology firm is seeking a Presales Engineer to join their team.This role offers the chance to work remotely from anywhere in Canada and requires expertise in network and security techn... Show more