Jobgether

Red Team Security Engineer

Jobgether Canada · CA$146K–CA$190K/yr

Internet Marketplace Platforms · 11-50 employees

20 h ago
Remote security Senior (5-10 yrs) Full-time Canada
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

Plan and execute red team operations and adversary simulations to identify security weaknesses across cloud environments. Collaborate with engineering and security teams to validate attack paths and translate findings into actionable remediation efforts.

What they look for

Red teaming Offensive security Penetration testing Cloud security Adversary emulation IAM CI/CD pipelines Container security Cloud-native services Vulnerability assessment Incident response Technical writing Security monitoring MITRE ATT&CK Exploitation trends

Requirements

Requires 5+ years of experience in offensive security, red teaming, or penetration testing. Candidates must possess strong hands-on knowledge of cloud infrastructure, IAM, and container security, along with excellent communication skills.

Benefits

Restricted stock units Health care Pharmacy care Optical care Dental care Paid time off Sick time off Short-term disability coverage Long-term disability coverage Life insurance 401(k) contribution

Full description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Red Team Security Engineer based in Canada.

As a Red Team Security Engineer, you will play a key role in strengthening the security posture of a modern technology organization. You will partner closely with software and engineering teams to identify, validate, and address security weaknesses across cloud environments. The role focuses on adversary emulation, offensive security assessments, and realistic attack simulations designed to uncover exploitable paths. You will assess cloud infrastructure, identity architectures, CI/CD pipelines, containers, and cloud-native services. You will also help evaluate detection and response capabilities by working alongside security monitoring and incident response teams. This is an opportunity to apply advanced offensive security expertise while directly improving the resilience of critical technology environments.

\n

Accountabilities:

  • Plan and execute red team operations, adversary simulations, and targeted offensive security assessments across cloud environments.
  • Evaluate the security of cloud infrastructure, identity and access architectures, CI/CD pipelines, containerized workloads, and cloud-native services.
  • Identify and validate attack paths involving IAM misconfigurations, excessive privileges, exposed secrets, metadata abuse, insecure automation, and weaknesses in cloud service configurations.
  • Assess security detection and response capabilities by testing logging, alerting, monitoring, and incident response processes in collaboration with blue team and detection engineering functions.
  • Research emerging attacker techniques, cloud exploitation trends, and new abuse paths relevant to modern enterprise environments.
  • Translate findings into actionable remediation efforts and work with engineering teams to help address identified vulnerabilities.
  • Communicate security risks and technical findings clearly to stakeholders across security, engineering, and other technical functions.

Requirements:

  • 5+ years of experience in offensive security, red teaming, penetration testing, and/or security detection validation.
  • Strong understanding of attacker tactics, techniques, and procedures, with the ability to map findings to frameworks such as MITRE ATT&CK.
  • Hands-on knowledge of cloud security, including cloud infrastructure, IAM, CI/CD environments, containers, and cloud-native services.
  • Ability to identify and validate complex attack paths and assess security controls from an adversarial perspective.
  • Strong technical writing skills, with the ability to produce concise, actionable security reports.
  • Excellent communication skills and the ability to explain complex technical security issues to diverse stakeholders.
  • Relevant industry certifications such as OSCP, OSEP, GXPN, GPEN, or recognized cloud security certifications are valued.

Benefits:

  • Compensation range of $146,000–$190,000 CAD, depending on location and factors such as education, experience, and certifications.
  • Potential eligibility for restricted stock units as part of total compensation.
  • Health, pharmacy, optical, and dental care benefits, subject to eligibility.
  • Paid time off and sick time off.
  • Short-term and long-term disability coverage.
  • Life insurance.
  • 401(k) contribution, subject to eligibility.
  • Remote work opportunity in Canada.
  • Some interviews or new-hire training sessions may be held in person at a global office.
  • Equal opportunity workplace committed to diverse backgrounds, experiences, abilities, and perspectives.

\nHow Jobgether works:

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

Similar roles