You'll lead offensive security initiatives including penetration testing, red teaming, AI security validation, vulnerability management, and bug bounty programs while partnering closely with ...
You'll lead offensive security initiatives including penetration testing, red teaming, AI security validation, vulnerability management, and bug bounty programs while partnering closely with ...
Director, Offensive Security
Toronto, ON · On-site
CA$138K - CA$181K/yr
You'll lead offensive security initiatives including penetration testing, red teaming, AI security validation, vulnerability management, and bug bounty programs while partnering closely with ...
Director, Offensive Security
Toronto, ON · On-site
CA$138K - CA$181K/yr
You'll lead offensive security initiatives including penetration testing, red teaming, AI security validation, vulnerability management, and bug bounty programs while partnering closely with ...
Consultant, Offensive Security
CA$90K - CA$110K/yr
Our Offensive Security professionals are on a mission to make the world a safer place, one company at a time. We believe that our work to help our clients discover and remediate their unique security ...
Consultant, Offensive Security
CA$90K - CA$110K/yr
Our Offensive Security professionals are on a mission to make the world a safer place, one company at a time. We believe that our work to help our clients discover and remediate their unique security ...
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies)
As a Staff Offensive Security Engineer, you will take a hands-on role in designing and executing stealthy adversarial simulations to validate assumptions and uncover gaps in detection and response.
As a Staff Offensive Security Engineer, you will take a hands-on role in designing and executing stealthy adversarial simulations to validate assumptions and uncover gaps in detection and response.
Offensive Security - Penetration Tester
Toronto, ON · On-site
CA$62K - CA$107K/yr
Preferred, but not required - one or more relevant certifications such as Offensive Security Web Assessor (OSWA), Offensive Security Web Expert (OSWE), Offensive Security Certified Professional (OSCP ...
Offensive Security - Penetration Tester
Toronto, ON · On-site
CA$62K - CA$107K/yr
Preferred, but not required - one or more relevant certifications such as Offensive Security Web Assessor (OSWA), Offensive Security Web Expert (OSWE), Offensive Security Certified Professional (OSCP ...
OSCP (Offensive Security Certified Professional), OSCE (Offensive Security Certified Expert), GPEN (GIAC Penetration Tester), GXPN (GIAC Exploit Researcher and Advanced Penetration Tester), CEH ...
OSCP (Offensive Security Certified Professional), OSCE (Offensive Security Certified Expert), GPEN (GIAC Penetration Tester), GXPN (GIAC Exploit Researcher and Advanced Penetration Tester), CEH ...
This is a key role within the Cyber Defense - Offensive Security Team at KPMG, where the candidate will serve as a subject matter expert primarily in web application security, and also perform ...
This is a key role within the Cyber Defense - Offensive Security Team at KPMG, where the candidate will serve as a subject matter expert primarily in web application security, and also perform ...
This is a key role within the Cyber Defense - Offensive Security Team at KPMG, where the candidate will serve as a subject matter expert primarily in web application security, and also perform ...
This is a key role within the Cyber Defense - Offensive Security Team at KPMG, where the candidate will serve as a subject matter expert primarily in web application security, and also perform ...
This is a key role within the Cyber Defense - Offensive Security Team at KPMG, where the candidate will serve as a subject matter expert primarily in web application security, and also perform ...
This is a key role within the Cyber Defense - Offensive Security Team at KPMG, where the candidate will serve as a subject matter expert primarily in web application security, and also perform ...
Offensive Security Certified Professional (OSCP); or equivalent development or testing certification (ECSA, CEPT, CPTE, CPTS, etc) * In addition, one or more of the following governance ...
Offensive Security Certified Professional (OSCP); or equivalent development or testing certification (ECSA, CEPT, CPTE, CPTS, etc) * In addition, one or more of the following governance ...
Offensive Security Certified Professional (OSCP); or equivalent development or testing certification (ECSA, CEPT, CPTE, CPTS, etc) * In addition, one or more of the following governance ...
Offensive Security Certified Professional (OSCP); or equivalent development or testing certification (ECSA, CEPT, CPTE, CPTS, etc) * In addition, one or more of the following governance ...
As a Red Team Specialist you will be working with threat intelligence, human behaviours, and security alerts to develop red team scenarios. In collaboration with your team, you will prove the ...
As a Red Team Specialist you will be working with threat intelligence, human behaviours, and security alerts to develop red team scenarios. In collaboration with your team, you will prove the ...
As a Red Team Specialist you will be working with threat intelligence, human behaviours, and security alerts to develop red team scenarios. In collaboration with your team, you will prove the ...
As a Red Team Specialist you will be working with threat intelligence, human behaviours, and security alerts to develop red team scenarios. In collaboration with your team, you will prove the ...
QNX Senior Security Researcher
Ottawa, ON · On-site
CA$108K - CA$158K/yr
Perform penetration testing and offensive security assessments against real-world embedded platforms * Design, develop, and execute large-scale fuzzing campaigns to uncover memory corruption defects ...
QNX Senior Security Researcher
Ottawa, ON · On-site
CA$108K - CA$158K/yr
Perform penetration testing and offensive security assessments against real-world embedded platforms * Design, develop, and execute large-scale fuzzing campaigns to uncover memory corruption defects ...
Offensive Security information
See Ontario salary details
$16.5K - $36.5K
16% of jobs
$36.5K - $56.5K
5% of jobs
$56.5K - $76.5K
1% of jobs
$94.8K is the 25th percentile. Wages below this are outliers.
$76.5K - $96.5K
3% of jobs
$96.5K - $116.5K
8% of jobs
$116.5K - $136.5K
6% of jobs
The median wage is $150.1K / yr.
$136.5K - $156.5K
15% of jobs
$156.5K - $176.5K
17% of jobs
$180.8K is the 75th percentile. Wages above this are outliers.
$176.5K - $196.5K
16% of jobs
$196.5K - $216.5K
6% of jobs
$216.5K - $236.5K
6% of jobs
$16.5K
$138.3K
$236.5K
How much do offensive security jobs pay per year?
What is offensive security?
An Offensive Security job involves proactively identifying and exploiting security vulnerabilities in systems, networks, and applications to help organizations strengthen their defenses. Professionals in this field, such as ethical hackers and penetration testers, simulate real-world cyberattacks to find weaknesses before malicious actors can exploit them. They use various tools, techniques, and frameworks to assess security risks, provide recommendations, and improve overall cybersecurity posture. Offensive security experts often work for security firms, enterprises, or government agencies to ensure robust digital protection.
What does a typical day look like for someone working in offensive security?
A typical day in Offensive Security involves conducting penetration tests, vulnerability assessments, and red teaming exercises to identify and exploit potential weaknesses in systems and networks. You may spend time analyzing findings, preparing detailed reports, and collaborating with IT teams to discuss remediation strategies. The role often requires staying current with emerging threats and tools, as well as participating in team meetings to review attack simulations or incident scenarios. Regular communication with clients or internal stakeholders is also common to explain technical concepts in an accessible way. The dynamic nature of the work keeps each day interesting and fosters continuous learning and problem-solving.
What are the key skills and qualifications needed to thrive in offensive security, and why are they important?
To thrive as an Offensive Security professional, you need a deep understanding of networks, operating systems, penetration testing methodologies, and typically hold a degree in computer science or a related field. Familiarity with tools such as Metasploit, Burp Suite, Nmap, as well as certifications like OSCP or CEH, is often required. Strong analytical thinking, attention to detail, effective communication, and ethical judgment are essential soft skills. These abilities are crucial for identifying vulnerabilities, communicating risks, and helping organizations improve their security posture.
What are popular job titles related to Offensive Security jobs in Ontario?
For Offensive Security jobs in Ontario, the most frequently searched job titles are:
What job categories do people searching Offensive Security jobs in Ontario look for?
The top searched job categories for Offensive Security jobs in Ontario are:

Director, Offensive Security
Toronto, ON
Full-time
Re-posted 23 days ago
Job description
- Innovate with Purpose: Build impactful solutions for customers worldwide.
- Join Excellence: Work in a diverse, collaborative, and innovative team.
- Shape the Future: Lead in redefining revenue optimization.
- Grow Together: Unlock your potential in a supportive environment.
About the Role
We're looking for a hands-on Director of Offensive Security to lead and evolve our offensive security program across applications, cloud environments, enterprise systems, and AI-enabled products.
This role combines technical expertise, strategic leadership, and cross-functional partnership to help identify, prioritize, and reduce security risk at scale. You'll lead offensive security initiatives including penetration testing, red teaming, AI security validation, vulnerability management, and bug bounty programs while partnering closely with Engineering, Product, Security, Compliance, and Legal teams.
What You'll Do
Lead the Offensive Security Program
- Define and execute the offensive security strategy and roadmap.
- Lead internal and external teams across penetration testing, red teaming, AI security testing, and vulnerability research.
- Establish standards, reporting, and metrics that drive measurable risk reduction.
Drive Security Testing & Validation
- Oversee web, API, mobile, cloud, and AI-enabled security testing.
- Lead red team operations, adversary simulations, and purple team exercises.
- Manage external penetration testing engagements and testing vendors.
- Mature attack surface management and continuous security validation programs.
Secure AI-Enabled Products
- Design and execute AI red teaming activities for LLM-enabled products and agentic workflows.
- Partner with AI and engineering teams to integrate security throughout the AI development lifecycle.
- Build scalable approaches for AI security testing, validation, and risk assessment.
Improve Vulnerability Management
- Drive vulnerability triage, prioritization, remediation, and retesting.
- Partner with engineering teams to implement risk-based remediation practices.
- Mature bug bounty and vulnerability disclosure programs.
Influence Across the Business
- Partner with Engineering, Product, Security Operations, Compliance, and Legal teams.
- Communicate security risks, trends, and recommendations to senior leadership.
- Help shape the future of AI-enabled offensive security across the organization.
What You'll Bring
- 10+ years of Information Security experience, including 5+ years in Offensive Security and 3+ years in Development or Engineering.
- Experience leading offensive security programs in SaaS and cloud environments.
- Hands-on expertise in penetration testing, red teaming, vulnerability management, and security testing of AI-enabled products.
- Strong understanding of application security, cloud security, attack surface management, and secure development practices.
- Experience working with modern cloud environments, APIs, web applications, containers, and AI/LLM technologies.
- Ability to translate technical findings into business risk and influence stakeholders at all levels.
- Relevant certifications such as OSCP, OSWE, GXPN, GPEN, CISSP, CCSP, or cloud security certifications are considered an asset.
What Success Looks Like
First 90 Days
- Assess the current offensive security landscape and identify key opportunities for improvement.
- Build relationships across engineering, security, and business teams.
- Establish priorities and define a roadmap for continuous security validation.
6+ Months
- Scale AI-enabled offensive security capabilities.
- Improve vulnerability management effectiveness and remediation outcomes.
- Deliver measurable reductions in organizational security risk.
Long-term (7+ months): Mature, Measure & Reduce Risk
- Scale autonomous vulnerability management across critical assets and environments.