Talent.com
CGI
Cybersecurity Penetration TesterCGI • Mississauga, Canada
Cybersecurity Penetration Tester

Cybersecurity Penetration Tester

CGI • Mississauga, Canada
5 days ago
Job type
  • Full-time
Job description

Position Description:

We are seeking an experienced Penetration Tester / Offensive Security Consultant to assess the security posture of applications, infrastructure, cloud environments, and network systems through authorized penetration testing and security assessments. The successful candidate will identify exploitable vulnerabilities, evaluate potential business impact, and provide actionable remediation recommendations to strengthen the organization's overall security posture.
The role requires strong hands-on technical expertise, an understanding of modern attack techniques, and the ability to communicate complex security findings clearly to both technical and non-technical stakeholders.

Your future duties and responsibilities:

Penetration Testing & Security Assessments
• Plan and execute authorized penetration testing engagements across internal and external environments.
• Conduct network, infrastructure, web application, API, wireless, and cloud security testing, as required.
• Perform vulnerability identification, validation, and controlled exploitation to assess potential security impact.
• Assess authentication, authorization, session management, access controls, and security configurations.
• Identify vulnerabilities arising from misconfigurations, insecure implementations, weak security controls, and architectural weaknesses.
• Evaluate security controls designed to prevent, detect, and respond to potential attacks.
• Perform manual testing to validate automated vulnerability scanning results and identify vulnerabilities that automated tools may not detect.
Application & API Security
• Conduct penetration testing of web and mobile applications and APIs.
• Assess applications against recognized security standards and methodologies, including OWASP Top 10 and OWASP API Security Top 10.
• Evaluate common application security risks, including injection vulnerabilities, broken access controls, authentication weaknesses, insecure configurations, and business logic vulnerabilities.
• Review application attack surfaces and identify potential pathways that could lead to unauthorized access or data exposure.
Infrastructure & Cloud Security
Perform security assessments of internal and external network infrastructure.
• Evaluate operating systems, network devices, security appliances, and exposed services.
• Conduct penetration testing of cloud environments, where authorized, including Microsoft Azure, AWS, and Google Cloud Platform.
• Assess identity and access management configurations, cloud permissions, exposed resources, and potential privilege escalation paths.
• Evaluate Active Directory and enterprise identity environments for security weaknesses and potential attack paths.
Vulnerability Analysis & Risk Assessment
• Analyze identified vulnerabilities to determine exploitability, severity, and potential business impact.
• Prioritize findings based on technical risk, business context, and likelihood of exploitation.
• Apply industry-standard vulnerability scoring methodologies, including CVSS, where appropriate.
• Research emerging vulnerabilities, attack techniques, and threat trends relevant to the organization's technology environment.
Reporting & Remediation
• Develop clear and comprehensive penetration testing reports documenting methodology, findings, evidence, risk ratings, business impact, and recommended remediation actions.
• Provide executive-level summaries for senior management and detailed technical findings for security and technology teams.
• Present penetration testing results to technical teams, application owners, security leadership, and other stakeholders.
• Collaborate with infrastructure, application, cloud, and cybersecurity teams to support vulnerability remediation.
• Perform remediation validation and retesting to confirm that identified vulnerabilities have been effectively addressed.

Governance & Testing Standards
• Conduct all penetration testing activities within formally approved Rules of Engagement (ROE) and defined scope.
• Ensure testing activities are performed safely and minimize the risk of disruption to production systems.
• Maintain accurate documentation of testing activities, evidence, findings, and remediation status.
• Follow established penetration testing methodologies and industry standards, such as PTES, OWASP Testing Guide, NIST guidance, and relevant security frameworks.
• Support continuous improvement of penetration testing methodologies, processes, tools, and reporting standards.

Required qualifications to be successful in this role:

• Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline, or equivalent practical experience.
• Demonstrated experience conducting hands-on penetration testing and security assessments. Strong knowledge of TCP/IP, networking protocols, operating systems, web technologies, APIs, and enterprise infrastructure.
• Experience with Windows and Linux security testing. Understanding of Active Directory, identity and access management, authentication protocols, and privilege escalation techniques.
• Knowledge of web applications and API security vulnerabilities and OWASP methodologies.
• Familiarity with cloud security concepts and major cloud platforms.
• Ability to analyze technical vulnerabilities and translate findings into business risk.
• Strong technical documentation and report-writing skills.
• Excellent verbal and written communication skills.
• Ability to work independently and collaboratively with technical and business stakeholders.

CGI is providing a reasonable estimate of the pay range for this role. The determination of this range includes factors such as skill set level, geographic market, experience and training, and licenses and certifications. Compensation decisions depend on the facts and circumstances of each case. A reasonable estimate of the current range is $95,–$,. This role is an existing vacancy.

#LI-YK2

Skills:

  • Cyber
  • English
  • Offensive Security Cert Prof
  • Offensive Security Cert Prof
  • Penetration Testing
  • Security assessment
  • Security Testing
  • Vulnerability Testing (IAVT)
Create a job alert for this search

Cybersecurity Penetration Tester • Mississauga, Canada

Similar jobs

Cyber Security Architect

Intuitive.aiMississauga, Peel Region, CA
Full-time

Talent Acquisition Leader | Hiring Cloud Professionals Globally.Cloud is one of the fastest-growing (INC 5000, CRN) Cloud & SDx solution and services companies supporting enterprise customers on a ... Show more

 • Promoted

Senior Analyst, Security Compliance

P2PMississauga, Peel Region, CA
Full-time

Our Krakenites are a world-class team with crypto conviction, united by our desire to discover and unlock the potential of crypto and blockchain technology.Kraken is a mission-focused company roote... Show more

 • Promoted

AtkinsRéalis Senior Cyber Security Role

AtkinsRéalisMississauga, Peel Region, CA
Full-time

Step into a pivotal role at AtkinsRéalis as a Senior Cyber Security and Software Qualification Specialist for the DNNP smart modular reactor initiative.Your focus will be on ensuring cyber security... Show more

 • Promoted

Cybersecurity Specialist for IESO Systems

Independent Electricity System Operator (IESO)Mississauga
Full-time

Join IESO as a Cybersecurity Specialist in Mississauga, ON, where you'll leverage your expertise to protect Ontario's electricity infrastructure.This hybrid position involves developing security pr... Show more

 • Promoted

Senior DFIR Consultant for Complex Cybersecurity Investigations

New Value SolutionsMississauga, Peel region, Canada
Full-time

Become a pivotal force in cybersecurity as a Senior DFIR Consultant.Lead forensic investigations and incident responses in a contract capacity across enterprise systems.This senior role requires yo... Show more

 • Promoted

Zero-Trust Network Security Specialist

Rexall Pharmacy Group Ltd.Mississauga, Peel Region, CA
Full-time

A leading pharmacy group is seeking a Network Security Analyst in Mississauga to enhance their network security measures.The role involves monitoring network traffic, ensuring compliance with regul... Show more

 • Promoted

Remote SaaS Security Engineer: Protect Cloud Apps

Linxus GroupMississauga, Peel Region, CA
Remote
Full-time

A leading SaaS company in Toronto is seeking an experienced Security Engineer to join their remote team.The role focuses on designing and maintaining security measures for cloud applications and re... Show more

 • Promoted

Cybersecurity Consultant – Azure & AI Governance

ConcentrixMississauga, Peel Region, CA
Full-time

Cybersecurity Consultant – Azure & AI Governance.Microsoft ecosystem to advise enterprise customers and lead strategic AI security initiatives.Lead customer workshops to assess AI readiness, focusi... Show more

 • Promoted

Experienced Account Executive in Cybersecurity and SaaS Solutions

Action1 CorporationMississauga, Peel Region, CA
Full-time

Take the lead as an Account Executive in the fast-evolving cybersecurity market.Use your expertise to engage with enterprise clients and effectively manage the full sales cycle remotely.In this piv... Show more

 • Promoted

Senior Threat Detection & Response Engineer

1PasswordMississauga, Peel region, Canada
Full-time

A leading cybersecurity company in Canada seeks a Senior Security Engineer to enhance threat detection and response capabilities.You will design systems for threat detection, lead incident response... Show more

 • Promoted

Senior Malware Protection Specialist (Trellix) – Remote

act digitalMississauga, Peel Region, CA
Remote
Full-time

A consulting and technology expertise company is seeking an experienced Senior IT and Security Administrator specializing in Malware Protection technologies.The ideal candidate will have a strong b... Show more

 • Promoted

Senior Solutions Specialist, Cybersecurity

Bell CanadaMississauga
Full-time

Senior Solutions Specialist, Cybersecurity.At Bell, we are dedicated to providing advanced digital solutions and secure connectivity for businesses across Canada.We are looking for an experienced S... Show more

 • Promoted

Remote Red Team Operator for AI-Driven Cybersecurity Enhancements

DataAnnotationMississauga, Peel Region, CA
Remote
Full-time

Transform cybersecurity through your expertise as a Red Team Operator.Work remotely to evaluate AI security models and inform advanced defense tactics against evolving threats.This role invites you... Show more

 • Promoted

Cybersecurity Analyst: Protect & Defend Digital Assets

Maple Lodge FarmsBrampton, Peel region, Canada
Full-time

A leading poultry processing company in Peel Region, Canada, is seeking a Cybersecurity Analyst.This mid-senior level role involves protecting digital assets and implementing security solutions whi... Show more

 • Promoted

Remote Client Engagement Manager - Cyber Security

CyberClanMississauga, Peel Region, CA
Remote
Full-time +1

A leading cybersecurity firm is seeking a Client Engagement Manager to provide superior customer-centric experiences.The role involves overseeing project execution, ensuring seamless onboarding for... Show more

 • Promoted

Freelance Cybersecurity Analyst - AI Trainer

MindriftMississauga, Peel Region, CA
Part-time

Freelance Cybersecurity Analyst - AI Trainer.Be among the first 25 applicants.This opportunity is only for candidates currently residing in the specified country.Please submit your resume in Englis... Show more

 • Promoted

Remote DeFi Trader — AI‑Powered Alpha & Risk

Al Falasi ConsultancyMississauga, Peel Region, CA
Remote
Full-time

A recruitment agency specializing in DeFi roles is seeking a proactive DeFi Trader to manage and execute trading strategies within a leading quantitative crypto fund.This fully remote position offe... Show more

 • Promoted

Roblox QA Tester - Remote, Detail-Driven, Impact Millions

Voldex GamesMississauga, Peel Region, CA
Remote
Full-time

A leading gaming company is seeking a dedicated QA Tester to enhance the player experience for Brookhaven, a top Roblox game.The role involves testing across multiple platforms, documenting issues,... Show more

 • Promoted

Remote Security & DevOps Engineer for SaaS/IoT Cloud

KeycafeMississauga, Peel Region, CA
Remote
Full-time

A leading technology firm in Canada is seeking a passionate Security & DevOps Engineer to enhance its cloud environments and ensure high security across its global IoT platform.You'll manage applic... Show more

 • Promoted

Remote Cybersecurity Account Executive - Eastern Canada

CYBERWELLMississauga, Peel Region, CA
Remote
Full-time

A leading cybersecurity company is looking for an Account Executive in Eastern Canada.This role focuses on identifying new client opportunities and cultivating long-term partnerships, requiring exc... Show more