8+ years of experience in network and application penetration testing., Proven ability to work cross-functionally with high-performing teams., Knowledge of penetration testing methodologies like NIST SP 800-115., Preferably holds relevant certifications such as Offensive Security Certified Professional (OSCP) or AWS Certified Security Specialty..
Key responsibilities:
Plan and execute security assessments, including penetration tests on systems and applications.
Analyze vulnerabilities, assess their severity, and recommend remediation strategies.
Develop detailed reports on security findings, methodologies, and recommendations.
Collaborate with engineering and security teams to enhance the company's cybersecurity posture.
Report this Job
Help us maintain the quality of our job listings. If you find any issues
with this job post, please let us know. Select the reason you're reporting
this job:
Your career is an investment that grows over time!
Wealthsimple is on a mission to help everyone achieve financial freedom by reimagining what it means to manage your money. Using smart technology, we take financial services that are often confusing, opaque and expensive and make them transparent and lowcost for everyone. We’re the largest fintech company in Canada, with over 4 million users who trust us with more than $70 billion in assets.
Our teams ship often and make an impact with groundbreaking ideas. Were looking for talented people who keep it simple and value collaboration and humility as we continue to create inclusive and highperforming teams where people can be inspired to do their best work.
About the Role
As a Senior Penetration Tester you will plan engagements, find security vulnerabilities, and help us fix them. Your role also involves establishing rapport with leadership, as well as internal, consultant, and thirdparty teams to support our company’s cybersecurity posture and resiliency. You will report to the Senior Manager, Application Security and have a mandate to plan and execute secure code reviews, penetration tests, and other offensive security activities to improve Wealthsimple’s security.
This opportunity is a 3 month contract only.
In this role, youll have the opportunity to:
Perform security assessments. Help discover flaws in our systems by conducting detailed penetration tests on our internal systems, web applications, and other software.
Analyze vulnerabilities. Help determine the realworld severity of discovered issues and suggest actionable recommendations to address security threats, improve application security, and strengthen our cloud environments.
Develop reports. Create comprehensive reports detailing findings, methodologies, and actionable insights for our engineers and other stakeholders.
Share your expertise. Work closely with our application security, vulnerability management, infrastructure and platform engineers, implement solutions and enhance our security posture.
People who will succeed in this role are:
Courageously Ambitious they enthusiastically tackle big audacious goals.
Deeply Human they understand how to bring the best out of themselves and others.
Problem Solvers they have the ability and resilience to tackle complex issues.
Skill you bring:
Experience (8+ years preferred) in network andor application penetration testing with a proven history of working crossfunctionally with high functioning teams.
Experience performing boundary testing for PCIDSS card holder environments or equivalent.
Technical understanding of networks, endpoint, identity, cloud, encryption, data protection and application deployment stacks.
Knowledge of standard penetration testing methodologies, including NIST SP 800115
Familiarity with Ruby, React, GraphQL, and mobile application testing is preferred.
AWS testing experience is preferred.
Previous industry experience in Financial Services is preferred.
We are looking for amazing people to join our team. If you think you are a great fit for the role but don’t hit every single requirement, consider reaching out anyway.
Relevant Education and Certifications:
Preferably a bachelors or higher degree in cybersecurity, software engineering, or a related field
Preferably one or more:
Offensive Security Certified ProfessionalOSEP
CREST Registered Tester
AWS Certified Security Speciality
We value diverse educational and professional backgrounds. While the certifications and degrees listed above are preferred, equivalent practical experience and demonstrable skills are highly valued.
Why Wealthsimple?
🤑 Competitive salary
🌎 A wide variety of peer and companyled Employee Resource Groups (ie. Rainbow, Women of Wealthsimple, Black @ WS)
We’re a remotefirst team, with over 1,000 employees coast to coast in Canada. Be a part of our Canadian success story and help shape the financial future of millions — join us!