1

Penetration Test Jobs in Quebec (NOW HIRING)

Test de soudage horizontal à pleine pénétration ainsi qu'un test de pliage. Conditions de travail * Travail en présence de bruits. * Exposition aux fumées de soudage. * Exposition à la chaleur.

Test de soudage horizontal à pleine pénétration ainsi qu'un test de pliage. Conditions de travail Travail en présence de bruits. Exposition aux fumées de soudage. Exposition à la chaleur.

Penetration Test information

See Quebec salary details

$29K

$110.9K

$161K

How much do penetration test jobs pay per year?

As of Aug 8, 2026, the average yearly pay for penetration test in Quebec is $110,870.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,000.00 and $136,500.00 per year, depending on experience, location, and employer.

What is a penetration tester?

A penetration tester, often called a 'pen tester' or ethical hacker, is a cybersecurity professional who simulates cyberattacks on computer systems, networks, or applications to identify vulnerabilities that malicious hackers could exploit. Their goal is to uncover weaknesses before real attackers can find and exploit them, helping organizations strengthen their security. Penetration testers use a variety of tools and techniques, document their findings, and often provide recommendations for mitigation. This role requires knowledge of security protocols, programming, and the latest hacking methods.

Is penetration testing a good career?

Penetration testing is a growing cybersecurity field that involves identifying vulnerabilities in computer systems and networks. It requires technical skills, knowledge of security tools, and often certifications like OSCP or CEH. The role offers high demand, competitive salaries, and opportunities for continuous learning, making it a viable career choice for those interested in cybersecurity.

What are the key skills and qualifications needed to thrive as a penetration tester, and why are they important?

To thrive as a Penetration Tester, you need a solid understanding of network security, operating systems, and vulnerability assessment, often backed by a degree in computer science or cybersecurity and relevant certifications like OSCP or CEH. Familiarity with tools such as Metasploit, Burp Suite, and Nmap is typically required to identify and exploit system weaknesses. Strong analytical thinking, attention to detail, and effective communication skills help convey technical findings to both technical and non-technical stakeholders. These skills are crucial for identifying security risks, mitigating vulnerabilities, and ensuring the overall protection of organizational assets.

How much do penetration testers make?

Penetration testers typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Senior professionals with advanced skills and certifications like OSCP or CISSP can earn higher salaries, especially in high-demand markets or specialized environments.

What qualifications do you need to be a penetration test?

A penetration tester typically needs a strong understanding of computer networks, operating systems, and security principles, along with proficiency in scripting and using tools like Kali Linux or Metasploit. Relevant certifications such as Certified Ethical Hacker (CEH) or Offensive Security Certified Professional (OSCP) are highly valued. Practical experience through labs, internships, or hands-on projects is also important for this role.

What are the typical challenges faced by penetration testers when working with clients?

Penetration testers often encounter challenges such as limited access to information, time constraints, and varying levels of security awareness among client staff. Navigating these obstacles requires strong communication skills to clarify the scope of work, as well as adaptability to different environments and technologies. Building trust with clients and providing actionable, clear reports are also essential, as they help ensure that identified vulnerabilities are understood and addressed effectively.

What is the average pay for penetration testing?

The average salary for penetration testers typically ranges from $70,000 to $130,000 annually, depending on experience, certifications, and location. Entry-level roles may start around $60,000, while experienced professionals with advanced skills and certifications like OSCP or CISSP can earn over $150,000. Many penetration testers work in cybersecurity environments that value technical expertise and problem-solving skills.

What is the difference between Penetration Test vs Vulnerability Analyst?

AspectPenetration TestVulnerability Analyst
CertificationsOSCP, CEH, GPENCVE, CISSP, GIAC
Work EnvironmentSimulated attacks on systems to identify security gapsScanning and analyzing vulnerabilities in networks and applications
Employer & Industry UsageCybersecurity firms, IT departments, consultingSecurity teams, risk management, compliance

While both roles focus on cybersecurity, Penetration Testers actively exploit vulnerabilities to assess security defenses, whereas Vulnerability Analysts identify and prioritize vulnerabilities without exploiting them. Both roles are essential for a comprehensive security strategy and often collaborate within security teams.

What are popular job titles related to Penetration Test jobs in Quebec? For Penetration Test jobs in Quebec, the most frequently searched job titles are:
What job categories do people searching Penetration Test jobs in Quebec look for? The top searched job categories for Penetration Test jobs in Quebec are:
Infographic showing various Penetration Test job openings in Quebec as of August 2026, with employment types broken down into 1% As Needed, 82% Full Time, 12% Part Time, 1% Temporary, 3% Contract, and 1% Nights. Highlights an 89% Physical, 2% Hybrid, and 9% Remote job distribution, with an average salary of $110,870 per year, or $53.3 per hour.

Web Application Penetration Tester

Wawanesa Insurance

Quebec, QC • Hybrid

CA$90K - CA$110K/yr

Full-time, Part-time

Retirement, PTO

Re-posted 8 days ago


Job description

Job ID: 10164 


Employment Type:
Existing Role 

Work Environment: We offer a hybrid work environment that offers flexibility to our employees in balancing in-office (2 days per week OR 15 hours per week in a Wawanesa office) and remote work. You may work from any of the following locations: Winnipeg, MB; Wawanesa, MB; Vancouver, BC; Calgary, AB; Edmonton, AB; Lethbridge, AB; Toronto (North York), ON; Kitchener, ON; Ottawa, ON; Montreal, QC; Quebec City, QC, Moncton, NB; Dartmouth; NS. 

Working Business Language: English. This role is considered a head-office role and will be required to communicate with internal stakeholders across Canada where the primary business language utilized is English.
 

Salary: At Wawanesa, salary is only one component of a holistic, comprehensive and competitive offering that we provide to our employees. In addition to salary, full-time and part-time permanent employees are eligible for an annual bonus plan, leave of absence top-up programs and provided with generous vacation time, personal days, premium free benefits and pension plan. 
 

The salary offered for this role is determined with consideration to various factors, including but not limited to: your work location, local labour market conditions, external market salary data, internal pay equity and the knowledge, skills, experience and anticipated proficiency in the role. The salary offered is estimated to be within the following range: $90,000 - $110,000. Candidates with salary expectations outside of the range are still encouraged to apply. 

About The Wawanesa Mutual Insurance Company
Founded in 1896, The Wawanesa Mutual Insurance Company is one of Canada's largest mutual insurers, 100% owned by its members, with more than $4.1 billion in annual revenue and $12.5 billion in assets. Headquartered in Winnipeg, Wawanesa is the parent company of Wawanesa Life, which provides life insurance solutions throughout Canada, and Western Financial Group, a leading national distributor of personal and business insurance. In March of 2026, Wawanesa entered into an agreement to acquire Everest Insurance Company of Canada to strengthen its commercial insurance capabilities and advance its long-term growth strategy.


Wawanesa proudly serves more than 1.8 million members and we are home to more than 3,000 employees across Canada. The company actively gives back to organizations that strengthen communities, donating more than $4 million annually to charitable organizations, including more than $2 million each year in support of people on the front lines of climate change. Learn more at wawanesa.com.

We are currently looking for dedicated, driven, and enthusiastic individuals who thrive in an environment that welcomes change and are looking for an opportunity for diverse experience and advancement on a growing team.

Job Overview

The Web Application Penetration Tester role will contribute to Wawanesa's success by helping to deliver security testing services to our enterprise client groups.  This role will ensure that Wawanesa's internally-developed web applications and APIs are free of design flaws or vulnerabilities prior to their release.

Job Responsibilities

  • Perform evaluations of client systems, web applications, APIs and their supporting networks to discover vulnerabilities.
  • Configure, run, and monitor automated security testing tools.
  • Thoroughly document exploit chain/proof of concept scenarios for internal client consumption.
  • Assist clients with the design, implementation, and/or monitor security measures for the protection of web applications.
  • Identify, define, and/or implement system security requirements for external and internal facing web applications.
  • Assist with vulnerability risk assessments.
  • Follow established practices and processes.
  • Perform role in cyber incident response as required.
  • Generate reports based on test findings.
  • Perform other duties as assigned.
Qualifications
  • Bachelor's degree in computer science, an analytical discipline or equivalent experience.
  • 1+ year of web application security testing experience.
  • Knowledge of Web application vulnerabilities and security considerations.
  • Working knowledge of industry standard technical security controls.
  • Familiarity with vulnerability assessment and penetration best practices.
  • Experience with the following:
    • vulnerability and penetration testing techniques and tools.
    • Burp Suite.
    • testing web and mobile platforms.
    • working with markup, scripting, and programming languages such as HTML, XML, JavaScript, PHP, Perl, Python, Bash, ASP, C++, C#, Java, and .NET.
  • Possess or working towards one of the following certifications:
    • GIAC Penetration Tester (GPEN).
    • GIAC Web Application Penetration Tester (GWAPT).
    • GIAC Certified Incident Handler (GCIH).
    • Offensive Security Certified Expert (OSCE).
    • Offensive Security Certified Professional (OSCP).
  • Must have an ability to communicate effectively, both verbally and in writing, to interact effectively with internal teams (such as developers, project team members, and management) to build relationships and use facilitation skills with both technical and non-technical personnel.
  • Ability to work independently and within a team.
  • Knowledge of and experience in the insurance industry is considered an asset.


Diversity Equity, Inclusion& Belonging
At Wawanesa, we are committed to Diversity, Equity, Inclusion and Belonging (DEIB) and believe that our strength lies in the diversity of our people - this is supported by having a representative workforce.

We welcome applications from all qualified candidates, including racialized persons, women, Indigenous Peoples, persons with disabilities, members of the 2SLGBTQIA+ community, gender-diverse and neurodiverse individuals, and anyone who can contribute to the further diversification of thought and ideas. 
 

We aim to ensure our recruitment process is accessible to all candidates. If you require accommodations during any stage of the recruitment process, please reach out in confidence to jobs@wawanesa.com.
 

All Wawanesa job applicants are subject to Wawanesa's Privacy Policy.

Please note that the recruitment process for this position may involve the use of AI tools to screen, assess, or select applicants. All final decisions are taken or reviewed by human recruiters and human hiring leaders in compliance with all applicable legislation.