Offensive Security Engineer

  • Toronto, Ontario
  • Full Time
Title: Offensive Security Engineer
Location: Toronto, ON / Halifax, NS - Hybrid (3 Days WFO)
Duration: 6 Months Salary Range: C$60 Inc Introduction

Join a leading financial institution's agentic AI vulnerability program, where you will leverage your deep offensive security expertise to enhance security measures. Collaborate with the vulnerability management team and AI capability suppliers to create impactful solutions.

Required Skills & Qualifications
  • 10 years in offensive security with hands-on exploit development, red teaming, and penetration testing.
  • At least one of the following certifications: OSCP, OSCE, OSEP, OSWE, GXPN, or GWAPT.
  • Demonstrated ability to identify and validate exploit chains across vulnerability classes.
  • Strong code reading skills in at least 3 languages relevant to enterprise stacks (Java, Python, JavaScript, C, Go).
  • Hands-on experience with application security testing tools (SAST, DAST, SCA, IAST), specifically around false positive analysis and exploitability validation.
  • Prior work experience in a financial institution or related industry.
Preferred Skills & Qualifications
  • Public evidence of offensive capability such as published CVEs, conference talks, CTF placements, bug bounty track record, or open-source offensive tooling contributions.
  • Software engineering experience and contributions to production codebases.
  • Defensive engineering experience building detection and remediation capabilities.
  • Working familiarity with frontier LLMs and agentic AI tools applied to security analysis.
  • Modern CICD and container platform knowledge (Docker, Kubernetes, GitHub Actions, Jenkins).
Day-to-Day Responsibilities
  • Lead exploitability assessment and false positive analysis across various findings and translate that analysis into reusable AI agent prompts and skills.
  • Identify exploit chains across vulnerability classes and encode the reasoning into agent workflows.
  • Validate that AI-generated fixes close exploitable conditions and feed validation patterns back into agent evaluation frameworks.
  • Develop offensive prompts, attack scenarios, and evaluation criteria for the agentic AI capability.
  • Translate offensive insights into prioritization signals and remediation guidance for VM and engineering teams.
Company Benefits & Culture
  • Opportunity to work with cutting-edge AI technologies in the financial sector.
  • Collaborative and innovative work environment.
  • Comprehensive benefits package and opportunities for professional growth.

For immediate consideration please click APPLY to begin the screening process with Alex.

Job ID: 520193520
Originally Posted on: 5/6/2026

Want to find more Technology opportunities?

Check out the 165,512 verified Technology jobs on iHireTechnology