Veracity Software Inc
Penetration Testing Analyst
Veracity Software IncCanada16 hours ago
Full-timeRemote FriendlyOther
Position Title: Penetration Testing Analyst

Contract Duration: Initial Term: 2 Years + Optional Extension: Up to 1 Year

Work Location: 100% Onsite - Regina, Saskatchewan (No Remote / No Hybrid)

Client is seeking qualified Penetration Testing Analyst resources to support cybersecurity programs through security assessments, vulnerability testing, penetration testing, and IT security risk management across government systems, applications, and network environments.

This role requires real professional penetration testing experience (training/academic experience will not be considered) and the ability to work 100% onsite in Regina.

Key Responsibilities

The Penetration Testing Analyst will be responsible for:

  • Conducting penetration testing on government applications, systems, and networks
  • Identifying, validating, and safely exploiting security vulnerabilities
  • Performing static application security testing (SAST) and dynamic application security testing (DAST)
  • Executing manual testing and automated scanning as per approved methods
  • Performing white-box testing and black-box testing
  • Conducting cloud security testing, including cloud-based application architecture and deployment models
  • Evaluating vulnerabilities and mapping them to risk impacts
  • Creating and delivering detailed penetration test / assessment reports
  • Presenting findings to technical teams and stakeholders with remediation recommendations
  • Supporting broader government cybersecurity and security governance initiatives

Standards & Frameworks

Resources must demonstrate strong familiarity and working experience with:

  • OWASP (especially OWASP Application Security Testing Standard)
  • ISO 27002:2022 (or equivalent information security controls)
  • Regulatory compliance standards and ensuring compliance during penetration testing

Required Qualifications

Mandatory

  • Demonstrated professional experience as a Penetration Tester / Penetration Testing Analyst
    • Must be real job experience
    • Academic projects / training / lab-only experience does NOT qualify
  • Strong experience identifying, exploiting, and documenting vulnerabilities across:
    • Web applications
    • Infrastructure and networks
    • Cloud environments
  • Demonstrated ability to write and present detailed security assessment reports
  • Deep understanding of:
    • Common attack vectors and techniques
    • Defense approaches / mitigation strategies

Nice to Have (Assets)

  • Valid cybersecurity certifications such as:
    • CEH (Certified Ethical Hacker)
    • CISSP (Certified Information Systems Security Professional)
    • Other relevant cybersecurity certifications

Technical Skills Required

Candidates should have strong hands-on experience with penetration testing tools and techniques such as:

  • Burp Suite
  • Nessus / Tenable
  • Nmap
  • Metasploit
  • OWASP ZAP
  • SQLmap
  • Kali Linux
  • Wireshark
  • Hydra / password testing tools
  • Cloud security tools (AWS/Azure/GCP security tooling - where applicable)

Local Knowledge Requirement: Government/public sector entities / large enterprise environments

Recruiter Submission Template -

Full Name:

Degree Major with University and Completion Year:

Do you have valid certifications such as CEH or CISSP? (Yes/No - specify):

Other cybersecurity certifications (if any):

Total Years of Penetration Testing Experience (must be professional / real job exp only):

Total Years of Cybersecurity Experience:

Do you have experience working with Government/Public Sector/Large Enterprise? (Yes/No - elaborate):

Do you have demonstrated experience with OWASP standards (especially OWASP Application Security Testing Standard)?

Do you have demonstrated experience with ISO 27002:2022 or equivalent security controls?

Do you have demonstrated experience in regulatory compliance standards and ensuring compliance during penetration testing?

Do you have mandatory professional experience as a Penetration Tester (not training/academic)? (Yes/No - elaborate with employers/projects):

Please describe your most recent penetration testing engagement (Client/Industry, Systems Tested, Role, Tools Used, Outcome):

Demonstrated experience with cloud security / cloud-based application architecture / deployment models? (Yes/No - AWS/Azure/GCP - elaborate):

Have you performed penetration testing in cloud environments? (Yes/No - describe approach and tools):

Motivation/Reason for Interest in This Role:

Expected Start Date (must support March 18, 2026):

Contact Number:

Email ID:

LinkedIn Profile URL:

Full Address (Street, City, Province/State, ZIP/Postal Code, Country):

Notice Period / Availability (in weeks):

Current Work Authorization Status (Canada Citizen/PR/Work Permit/Other):

Hourly Rate Expectation (CAD):

Is it Incorporated/Corp-to-Corp or T4/Contract? If Corp, Corporation Name:

Are you able to work 100% onsite in Regina, Saskatchewan, Canada? (Yes/No):

Candidate References Form

Please collect and include 3 references:

Reference 1

  • Name:
  • Title/Position:
  • E-mail Address:
  • Telephone Number:
  • Association to Candidate:

Reference 2

  • Name:
  • Title/Position:
  • E-mail Address:
  • Telephone Number:
  • Association to Candidate:

Reference 3

  • Name:
  • Title/Position:
  • E-mail Address:
  • Telephone Number:
  • Association to Candidate:

Key Skills

Ranked by relevance