5 days ago
Toronto, CanadaSenior
Base Salary
$106k - $124k/yr
Responsibilities
- Design and develop custom security tools, automation frameworks, and scripts for penetration testing and vulnerability assessments.
- Conduct penetration tests against web applications, APIs, cloud environments, networks, and enterprise infrastructure.
- Participate in red team engagements that simulate realistic adversary behavior and attack scenarios.
- Identify, validate, and document vulnerabilities, attack paths, and security weaknesses with actionable remediation recommendations.
- Build integrations between security tools and enterprise platforms to improve testing efficiency and automation.
- Research emerging attack techniques, offensive security methodologies, and exploit development opportunities.
- Develop proof-of-concept exploits, attack simulations, and offensive testing frameworks where appropriate.
- Collaborate with development, infrastructure, and security teams to address vulnerabilities and improve security controls.
- Maintain technical documentation, testing methodologies, tooling standards, and security assessment reports.
- Contribute to continuous improvement of offensive security capabilities, red team operations, and security engineering practices.
Requirements
- 5–8 years of experience in penetration testing, red teaming, security engineering, or security-focused software development.
- Strong programming and scripting expertise in Python, Go, Java, C#, PowerShell, or similar technologies.
- Hands-on experience conducting penetration testing using industry-standard methodologies and frameworks.
- Experience participating in red team engagements and adversary simulation exercises.
- Proficiency with offensive security tools including Burp Suite, Metasploit, Nmap, Cobalt Strike, and BloodHound, or equivalent platforms.
- Strong understanding of web application security, API security, cloud security, network security, and vulnerability assessment techniques.
- Experience developing custom security tooling, automation frameworks, and offensive testing solutions.
- Familiarity with MITRE ATT&CK, OWASP Top 10, and penetration testing best practices.
- Strong analytical, troubleshooting, communication, and documentation skills.
- Security certifications such as OSCP, CRTO, PNPT, GPEN, or CEH are highly desirable.
Benefits
- Annual base salary of $105,500–$124,000, depending on experience and qualifications.
- Eligibility for Cognizant’s discretionary annual incentive program based on performance and applicable plan terms.
- Medical, dental, vision, and life insurance.
- Paid holidays and paid time off.
- Long-term and short-term disability coverage.
- Paid parental leave.
About Cognizant
Cognizant (Nasdaq: CTSH) is an AI Builder and technology services provider, bridging the gap between AI investment and enterprise value. We build full-stack AI solutions powered by deep industry, process and engineering expertise — embedding an organization's unique context into technology systems that amplify human potential and drive tangible outcomes. From strategy to deployment, we help global enterprises move from AI ambition to AI impact and stay ahead in a fast-changing world. See how at cognizant.ai | Follow us @cognizant
