Junior Penetration Tester
Offre en anglaisPerform security code reviews and conduct web, mobile, and network security tests for clients. Assist with security design reviews, threat modelling, and the development of remediation strategies.
- Télétravail
- Canada
- Publié 12 août 2026
- 1 poste
D’autres postes auxquels postuler directement
Des possibilités semblables publiées par des employeurs qui recrutent sur Jobs.ca, sans formulaire externe.
Résumé du poste
Software Secured is a leading Penetration Testing as a Service company, with a head office in beautiful Ottawa, Canada. We help software development teams get ahead of hackers using a suite of services and products. Our pentesting team is looking for a junior pentester to join us and help secure a few hundred more applications and networks. As a Junior Pentester at Software Secured, you will have the opportunity to help our clients secure their mission-critical applications. This includes performing security code review, web, mobile, and network security tests. Help clients with security design reviews, threat modelling, and remediation strategies. The ideal candidate will be self-driven and take ownership of their own work and the team’s deliverables. The individual will be motivated and passionate about application security and take pride in spreading the word and helping developers write secure code. You will be a part of the local and global security community and care about pushing the status quo. He/she will also have an affinity for security best practices and vulnerability exploits. Mandatory: Experience performing web, API, or mobile pentests, or comparable experience conducting independent research or participating in bug bounties. If pentesting experience is limited, an OSCP, OSWE, or GWAPT would go a long way to closing the gap. Demonstrated software development background in one or more of Python, .NET, Ruby, Java, Objective C/Swift. Pretty familiar with things like OWASP Top 10, ASVS, or WSTG You have competed in CTFs (Capture the Flag) competitions. Expert with OWASP Top 10 and can explain them easily. Strong verbal and written communication skills. Demonstrated analytical and problem-solving skills Nice to Haves: Experience in adjacent security-related roles, e.g. Secure Development/Engineering, Security Operations/SOC/Blue Teaming, Incident Response, IT Security, etc. Experience or security certification in cloud technologies (AWS, Azure) Open-source contributions Public speaking experience Performing training in a professional capacity Teaching experience, preferably in security or CS topics What we are offering: 🤑 Competitive base salary - $70,000 - $95,000 CAD 🍁 Work remotely anywhere in Canada (you're welcome to work in the Ottawa office when you'd like the option). 🌍 Work remotely from anywhere in the world for up to 2 months per year. 💰 Yearly profit-sharing between 7% - 12% of your base salary, based on your performance. 💸 Perks such as: monthly UberEats budget, annual home office stipend. 🌴 3 weeks of vacation to start. Additionally, the whole company is off for the week between Christmas and the New Year. 🍼 Parental, bereavement and child loss leave. 🏥 You will receive a great health benefits package (includes dental, vision, practitioners, etc.).
Ce que vous ferez
Perform security code reviews and conduct web, mobile, and network security tests for clients. Assist with security design reviews, threat modelling, and the development of remediation strategies.
Exigences
Requires experience in web, API, or mobile pentesting, or participation in bug bounties and CTFs. Candidates must have a software development background in languages like Python or Java and familiarity with OWASP standards.
Avantages
• Yearly profit-sharing • Monthly UberEats budget • Annual home office stipend • 3 weeks of vacation • Company closure between Christmas and New Year • Parental leave • Bereavement leave • Child loss leave • Health benefits package • Dental insurance • Vision insurance
Compétences indiquées
- PythonSouhaitée
- .NETSouhaitée
- RubySouhaitée
- JavaSouhaitée
- Résolution de problèmesSouhaitée
Autres compétences pertinentes
Relevées dans la description du poste. Confirmez les exigences importantes ci-dessus.
- Penetration Testing
- Security Code Review
- Web Security Testing
- Mobile Security Testing
- Network Security Testing
- Threat Modelling
- Python
- .NET
- Ruby
- Java
- Objective C/Swift
- OWASP Top 10
- ASVS
- WSTG
- Analytical Skills
- Problem Solving
Domaines d’emploi
- Security & Safety
- Technology
- Software
- Engineering
- Consulting
Renseignements supplémentaires
- Formation minimale
- Diplôme professionnel
- Expérience minimale
- 0+ ans
- Langue de l’offre
- anglais
- Heures de travail
- 40 heures par semaine
- Niveau d’expérience
- Entry level