Red Team Security Engineer in Canada Creek, Nova Scotia at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Red Team Security Engineer based in Canada.
As a Red Team Security Engineer, you will play a key role in strengthening the security posture of a modern technology organization. You will partner closely with software and engineering teams to identify, validate, and address security weaknesses across cloud environments. The role focuses on adversary emulation, offensive security assessments, and realistic attack simulations designed to uncover exploitable paths. You will assess cloud infrastructure, identity architectures, CI/CD pipelines, containers, and cloud-native services. You will also help evaluate detection and response capabilities by working alongside security monitoring and incident response teams. This is an opportunity to apply advanced offensive security expertise while directly improving the resilience of critical technology environments.
- Plan and execute red team operations, adversary simulations, and targeted offensive security assessments across cloud environments.
- Evaluate the security of cloud infrastructure, identity and access architectures, CI/CD pipelines, containerized workloads, and cloud-native services.
- Identify and validate attack paths involving IAM misconfigurations, excessive privileges, exposed secrets, metadata abuse, insecure automation, and weaknesses in cloud service configurations.
- Assess security detection and response capabilities by testing logging, alerting, monitoring, and incident response processes in collaboration with blue team and detection engineering functions.
- Research emerging attacker techniques, cloud exploitation trends, and new abuse paths relevant to modern enterprise environments.
- Translate findings into actionable remediation efforts and work with engineering teams to help address identified vulnerabilities.
- Communicate security risks and technical findings clearly to stakeholders across security, engineering, and other technical functions.
Requirements:
- 5+ years of experience in offensive security, red teaming, penetration testing, and/or security detection validation.
- Strong understanding of attacker tactics, techniques, and procedures, with the ability to map findings to frameworks such as MITRE ATT&CK.
- Hands-on knowledge of cloud security, including cloud infrastructure, IAM, CI/CD environments, containers, and cloud-native services.
- Ability to identify and validate complex attack paths and assess security controls from an adversarial perspective.
- Strong technical writing skills, with the ability to produce concise, actionable security reports.
- Excellent communication skills and the ability to explain complex technical security issues to diverse stakeholders.
- Relevant industry certifications such as OSCP, OSEP, GXPN, GPEN, or recognized cloud security certifications are valued.
Benefits:
- Compensation range of $146,000–$190,000 CAD, depending on location and factors such as education, experience, and certifications.
- Potential eligibility for restricted stock units as part of total compensation.
- Health, pharmacy, optical, and dental care benefits, subject to eligibility.
- Paid time off and sick time off.
- Short-term and long-term disability coverage.
- Life insurance.
- 401(k) contribution, subject to eligibility.
- Remote work opportunity in Canada.
- Some interviews or new-hire training sessions may be held in person at a global office.
- Equal opportunity workplace committed to diverse backgrounds, experiences, abilities, and perspectives.