Cyber Security Analyst Penetration Testing, Firm IT
MNP
Description
General Position Summary: Firm Information Technology Services – Cyber Security Analyst
Make an impact with our Technology. As a key team member of the Cyber Security team as a Cyber Security Analyst (Penetration Testing).. This diverse team of tech-savvy problem solvers embraces digital transformation and the possibilities technology brings to the future of our industry. As a trusted advisor, you'll support, utilize and maintain MNP's technology to ensure smooth IT operations, enabling team members to work efficiently and effectively.
MNP's Cyber Security Team provides round the clock vigilance to MNP's environment. The team not only monitor threats and prevents them but also performs proactive drills to anticipate and mitigate all new and emerging forms of threats. Our team members are committed to continuous learning and stay updated on the latest trends in cyber threats and security. Being a 24/7 service to MNP our team members are expected to work in shifts.
National in scope and local in focus, MNP is one of Canada's largest professional service firms providing client-focused accounting, consulting, tax, and digital services to clients. Founded in 1958, MNP today is a CAD 2 billion+ organization with 9600+ employees and 154 offices across Canada.
MNP prides itself on being an 'advisor' to its clients(individuals, businesses, and organizations), focusing on their success by delivering personalized strategies and solutions that help clients reach their full potential — wherever business takes them.
MNP set up MNP SPARK its GCC in Bangalore in May 2025 with a focus on enabling the firm drive growth, efficiency, customer delight and innovation, by leveraging high quality talent in India. MNP Spark is like any other MNP region/office - front facing, client focused but working with all of MNP regions in Canada to deliver services
Responsibilities:
- Assist in performing internal and external penetration tests across applications, systems, and cloud infrastructure
- Support Red Team exercises, including reconnaissance, exploitation, and post-exploitation activities under supervision
- Conduct vulnerability assessments, validate findings, and assist in proof of concept exploit development
- Write and maintain scripts and automation tools to streamline engagements and reporting
- Contribute to the development of Red Team documentation, including threat emulation plans, reports, and lessons learned
- Work closely with defensive teams to support Purple Team efforts and security control validation
- Stay informed on current threats, CVEs, and industry research
- Manage External Attack Surface Management (EASM) by identifying, monitoring, and mitigating risks associated with external-facing assets
- Continuously assess and improve the security posture of external assets, including web applications, APIs, and cloud services
- Provide detailed technical reports, risk ratings, and remediation recommendations for identified vulnerabilities and attack vectors
Requirements
Qualification
Skills:
· Familiarity with penetration testing tools like Burp Suite, Nmap, Metasploit, and BloodHound
· Basic to intermediate experience with scripting languages (e.g., Python, Bash, or PowerShell)
· Foundational knowledge of networking, OS internals, and common attack vectors
· Exposure to cloud environments and security assessments (Azure, AWS, or GCP) are considered an asset
Educational Qualifications:
· Bachelor Or Master in Technology
· Bachelor Or Master of Computer Applications
Certifications:
- Certifications such as OSCP, eJPT, CRTO, or CEH are considered an asset
Experience:
• 2 to 4 years of experience in penetration testing, security assessments, or offensive security
About MNP
-
