Kevin King
- Phone: +1 416 555 0101
- Email: kevin.king@email.com
- Location: Toronto, Canada
- LinkedIn: kevinkingpentest
Summary
Led over 100 successful penetration tests across web applications, networks, and cloud infrastructures for financial and healthcare sectors. Reduced critical vulnerabilities by an average of 35% through comprehensive reporting and actionable recommendations. Developed and implemented custom exploit tools, enhancing assessment efficiency by 20% in complex environments.
Experience
Senior Penetration Tester, Maple Leaf Cyber Solutions -- Toronto, Canada
Mar 2020 – present
-
Executed full-scope penetration tests on enterprise networks, web applications, and APIs, identifying critical vulnerabilities such as SQL injection, XSS, and authentication bypasses.
-
Specialized in cloud security assessments (AWS, Azure), uncovering misconfigurations and access control weaknesses leading to potential data breaches.
-
Mentored junior penetration testers, developing their skills in exploit development and report generation, improving team efficiency by 15%.
-
Developed and maintained automated testing scripts using Python and Bash to streamline reconnaissance and vulnerability scanning phases.
Penetration Tester, Northern Shield Security -- Toronto, Canada
Sept 2017 – Feb 2020
-
Performed black-box and white-box penetration tests, covering network infrastructure, mobile applications, and internal systems for various clients.
-
Authored detailed technical reports outlining vulnerabilities, risk levels, and practical remediation strategies for development teams.
-
Participated in red team exercises, simulating advanced persistent threats to test organizational detection and response capabilities.
-
Contributed to the improvement of internal penetration testing methodologies, incorporating new tools and techniques to enhance coverage.
Junior Security Analyst, SecurePath Consulting -- Toronto, Canada
June 2015 – Aug 2017
-
Assisted in vulnerability assessments and penetration tests under senior supervision, gaining hands-on experience with various security tools.
-
Conducted security reviews of system configurations and network architectures to identify potential weaknesses.
-
Researched emerging threats and vulnerabilities, providing summaries and recommendations to the security team.
-
Supported incident response activities, including log analysis and forensic data collection.
Education
University of Toronto, B.Sc. in Computer Science (Specialization in Information Security) -- Toronto, Canada
Sept 2011 – May 2015
Skills
Penetration Testing Tools: Metasploit, Burp Suite Pro, Nmap, Nessus, OpenVAS, Kali Linux, Wireshark, OWASP ZAP, Cobalt Strike
Programming & Scripting: Python, Bash, PowerShell, C/C++, JavaScript
Cloud Security: AWS Security, Azure Security, GCP Security, Container Security (Docker, Kubernetes)
Operating Systems: Windows Server, Linux (Ubuntu, CentOS, Red Hat), macOS
Network & Web Security: TCP/IP, Firewalls, IDS/IPS, WAF, VPN, OWASP Top 10, API Security, Mobile Application Security
Methodologies & Standards: OSSTMM, PTES, NIST, ISO 27001, GDPR, PCI DSS