J

Information Security Analyst (Penetration Testing & Vulnerability Assessment) - Canada

Jobgether • Canada
Remote
Apply
AI Summary

This role focuses on enhancing cybersecurity defenses by identifying vulnerabilities and improving security posture through penetration testing, vulnerability assessments, and security analysis across diverse tech environments. The position requires 1-3 years of experience in offensive security, technical investigation, and client collaboration. Ideal for early-career professionals passionate about solving complex security challenges and staying updated on emerging threats.

Key Highlights
Conduct penetration testing and vulnerability assessments across web, mobile, cloud, SaaS, and infrastructure environments
Develop and refine security rule sets for dynamic application security testing (DAST) solutions
Collaborate directly with clients to explain security findings and guide remediation efforts
Key Responsibilities
Perform penetration testing and vulnerability assessments across web applications, mobile apps, cloud infrastructure, SaaS, network devices, and open-source projects
Execute black-box and white-box security testing to identify vulnerabilities, including business logic flaws and technical weaknesses
Develop, test, and improve security rule sets for DAST solutions and maintain vulnerability management systems
Analyze security findings and provide actionable remediation recommendations to clients
Collaborate with clients to define and implement clear action plans for vulnerability resolution and security practice improvements
Stay updated on emerging cybersecurity threats, techniques, and industry best practices
Technical Skills Required
Penetration Testing Vulnerability Assessment Dynamic Application Security Testing (DAST)
Benefits & Perks
Fully remote work opportunity with flexibility to work from anywhere
Exposure to advanced penetration testing and vulnerability management practices
Learning opportunities in a rapidly evolving cybersecurity field
Nice to Have
Experience with published CVEs, bug bounty programs, or Capture The Flag (CTF) competitions
Certifications such as CEH, OSCP, or CREST
Experience with code review in at least one programming language

Job Description


This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Information Security Analyst - I based in Canada.

This role offers the opportunity to strengthen cybersecurity defenses by identifying vulnerabilities and helping organizations improve their security posture.

You will perform penetration testing, vulnerability assessments, and security analysis across diverse technology environments.

The position combines offensive security expertise, technical investigation, client collaboration, and continuous improvement.

You will contribute to building safer digital systems by discovering risks and guiding teams toward effective remediation.

This role is ideal for an early-career security professional who enjoys solving complex challenges and exploring emerging threats.

You will work with modern cybersecurity technologies while gaining valuable experience in application, cloud, and infrastructure security.

Accountabilities

  • Conduct vulnerability assessments and penetration testing across web applications, mobile applications, cloud infrastructure, SaaS applications, network devices, and open-source projects.
  • Perform black-box and white-box security testing to identify vulnerabilities, including business logic issues and technical weaknesses.
  • Develop, test, and improve security rule sets for dynamic application security testing (DAST) solutions.
  • Analyze security findings and provide actionable recommendations to help clients remediate vulnerabilities.
  • Collaborate directly with clients through calls and written communication to explain security issues and remediation approaches.
  • Support clients in defining clear action plans for vulnerability resolution and improving their security practices.
  • Maintain and improve vulnerability management systems and processes.
  • Stay updated on emerging cybersecurity threats, techniques, and industry best practices.
  • Contribute to continuous improvements in security testing methodologies and internal tools.

Requirements

  • 1-3 years of experience performing penetration testing or vulnerability assessments across multiple environments.
  • Experience testing web applications, cloud infrastructure, SaaS applications, or other technology assets.
  • Knowledge of black-box and white-box security testing methodologies.
  • Ability to identify business logic vulnerabilities and assess complex security risks.
  • Certification such as CEH, OSCP, or CREST is preferred.
  • Ability to read and understand code in at least one programming language.
  • Strong analytical and problem-solving skills with attention to technical details.
  • Experience communicating directly with customers through calls and emails.
  • Passion for cybersecurity and willingness to continuously learn new security techniques.
  • Experience with published CVEs, bug bounty programs, or Capture The Flag (CTF) competitions is a plus.

Benefits

  • Fully remote work opportunity with flexibility to work from anywhere.
  • Opportunity to work on real-world cybersecurity challenges and security research initiatives.
  • Exposure to advanced penetration testing and vulnerability management practices.
  • Collaborative startup environment focused on innovation and professional growth.
  • Opportunity to showcase your expertise while contributing to impactful security solutions.
  • Learning opportunities in a rapidly evolving cybersecurity field.
  • Team events and workcation opportunities.

How Jobgether Works

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.


Similar Jobs

Explore other opportunities that match your interests

AI Security Analyst

Cyber Security
•
1d ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Not Applicable

Alignerr

Canada

Microsoft Security Integration Engineer

Cyber Security
•
2d ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

Jobgether

Canada

Penetration Tester

Cyber Security
•
5d ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Associate

hired

Canada

Subscribe our newsletter

New Things Will Always Update Regularly