Specialist, Threat Emulation and Security Validation
at Teck
Vancouver, BC, Canada -
Start Date | Expiry Date | Salary | Posted On | Experience | Skills | Telecommute | Sponsor Visa |
---|---|---|---|---|---|---|---|
Immediate | 28 Feb, 2025 | USD 103000 Annual | 29 Jan, 2025 | 5 year(s) or above | Powershell,Service Providers,Security Automation,Ruby,Security Tools,Python,Writing,Threat Intelligence,Security Testing,Burp Suite,Risk,Security Operations,Incident Response,Platforms,Penetration Testing,Testing Tools,Assessment,Vulnerability | No | No |
Required Visa Status:
Citizen | GC |
US Citizen | Student Visa |
H1B | CPT |
OPT | H4 Spouse of H1B |
GC Green Card |
Employment Type:
Full Time | Part Time |
Permanent | Independent - 1099 |
Contract – W2 | C2H Independent |
C2H W2 | Contract – Corp 2 Corp |
Contract to Hire – Corp 2 Corp |
Description:
QUALIFICATIONS
- 5+ years of experience in offensive security, penetration testing, and vulnerability assessment
- Certified Ethical Hacker (CEH) and Offensive Security Certified Professional (OSCP) or equivalent. Additional relevant certifications (e.g., GIAC, GPEN, GWAPT) are a plus
- Proven track record in automating security testing and developing custom security tools
- Experience in working with third-party security service providers
- Solid understanding of security operations, including threat intelligence, threat detection, incident response, and offensive security
- Expertise in penetration testing tools and platforms (e.g., Metasploit, Burp Suite, Nessus, Kali)
- Strong coding and scripting skills in Python, Ruby, PowerShell, or similar languages
- Experience with automating offensive security tasks and processes
- Knowledge of security automation and orchestration platforms (e.g., SOAR)
- Understanding of APIs and integration techniques for security tools
- Embody Teck values in daily activities by being responsible and courageous, respectful and inclusive, alongside humble and driven
- You are aware of, have a desire to, with knowledge in, and the ability to increase maturity by building on context, manage and assess risk and trade-offs, and to standardize process through writing and review
- You can demonstrate personal accountability, radical transparency and a growth mindset
Responsibilities:
- Be a courageous safety leader, adhere to and sponsor safety and environmental rules and procedures
- Champion the 3 lines of defense model for risk management and act as a 2nd line of defense facilitator regularly interacting with the 1st line of defense
- Develop and implement automated penetration testing scripts and tools and maintain offensive security scripts and automation tools using languages such as Python, Ruby, or PowerShell
- Conduct regular automated penetration tests and vulnerability assessments using industry-standard tools and custom scripts
- Integrate offensive security tools with other security platforms to enable seamless orchestration and automation
- Collaborate with the threat intelligence and detection teams to ensure a comprehensive and integrated security approach
- Continuously update and refine offensive security tools, techniques, and methodologies to address emerging threats
- Provide guidance and support to the detection and response team on day-to-day operations and strategic projects
REQUIREMENT SUMMARY
Min:5.0Max:10.0 year(s)
Information Technology/IT
IT Software - Network Administration / Security
Systems Administration
Graduate
Certified ethical hacker (ceh) and offensive security certified professional (oscp) or equivalent.
Proficient
1
Vancouver, BC, Canada