Talent.com
Cyber SDC - Attack & Penetration - Exp Staff - Consulting - Location OPEN
Cyber SDC - Attack & Penetration - Exp Staff - Consulting - Location OPENEY • Baltimore, MD, United States
No longer accepting applications
Cyber SDC - Attack & Penetration - Exp Staff - Consulting - Location OPEN

Cyber SDC - Attack & Penetration - Exp Staff - Consulting - Location OPEN

EY • Baltimore, MD, United States
7 days ago
Job type
  • Full-time
Job description

Location : Anywhere in Country

At EY, we’re all in to shape your future with confidence.

We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.

As a Senior Consultant in Offensive Security within our Service Delivery Center, you will play a pivotal role in enhancing our clients' security posture through proactive threat assessments and vulnerability management. You will lead and collaborate with a team of cybersecurity professionals to implement and manage offensive security initiatives, ensuring that security measures are integrated throughout the software development lifecycle while optimizing service delivery processes.

The opportunity

In this role, you will manage and execute penetration testing, red teaming, and security assessments for our clients. You will work closely with cross-functional teams to identify vulnerabilities, develop mitigation strategies, and ensure that security practices align with industry standards. Your expertise will drive the team’s efforts in automating security processes and help our clients build a more secure working world.

Your Key Responsibilities

Lead, scope, and execute penetration testing projects, including web applications (including black box, white box, and gray box assessments), networks, cloud environments, hardware, and firmware.

Develop and execute red team and purple team scenarios to identify gaps in organizational security postures and provide actionable recommendations.

Perform in-depth penetration testing results create comprehensive reports detailing findings, exploitation procedures, risks, and recommendations.

Stay current with emerging security threats, vulnerabilities, and industry best practices, and promote continual learning within the team.

Assist in configuring, handling, patching, and updating penetration testing software an supporting infrastructure to ensure optimal performance and security.

Contribute to the creation and updating of operational metrics for client meetings, providing insights into tool performance and security findings.

Skills and Attributes for Success

Proven experience in penetration testing and offensive security practices, with a minimum of 5+ years of related work experience.

Strong knowledge of automation tools and processes, particularly in the context of offensive security and application security.

Excellent problem-solving skills and the ability to manage multiple security projects simultaneously.

Effective communication skills to liaise with clients and internal stakeholders, translating complex technical concepts into understandable terms.

To qualify for the role, you must have

Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.

A minimum of three (3) years’ experience in incident response or performing penetration tests; or a minimum of one (1) year working in an electric utility in the area of generation, or transmission & distribution performing penetration tests

Extensive experience with manual attack and penetration testing, including web applications, networks, and cloud environments.

Proficiency in scripting languages (e.g., Python, Bash, PowerShell) for automation of security tasks.

Knowledge of Windows, Linux, Unix, and other major operating systems.

Ideally, you’d also have

Certifications such as CCSP, CSSLP, OSCP, OSWP, GPEN, GWAPT, OSCE, OSEE, GXPN, CISSP, CISM, etc.

Contributions to the security community, including research, public CVE disclosures, bug bounty acknowledgments, and open-source project involvement.

Strong analytical skills with the ability to interpret complex information and communicate it effectively.

Active interest in staying updated on the latest cybersecurity threats and trends, promoting continual learning and adaptation.

What We Look For

We seek top performers who possess a strong passion and foundation in cybersecurity principles and practices, along with relevant certifications and experience. A proactive mindset, creating high performing teams, adaptability to evolving threats, and a commitment to continuous learning are also critical attributes we look for in candidates. Ultimately, we look for motivated individuals who are committed to safeguarding digital assets and fostering a culture of security awareness within the organization.

What We Offer

Continuous learning :  You’ll develop the mindset and skills to navigate whatever comes next.

Success as defined by you :  We’ll provide the tools and flexibility, so you can make a meaningful impact, your way.

Transformative leadership :  We’ll give you the insights, coaching and confidence to succeed in high performing teams.

Diverse and inclusive culture :  You’ll be embraced for who you are and empowered to use your voice to help others find theirs.

What we offer you

At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more .

We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $61,200 to $100,500. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $73,100 to $113,500. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.

Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.

Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter / Summer breaks, Personal / Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.

Are you ready to shape your future with confidence? Apply today.

EY accepts applications for this position on an on-going basis.

For those living in California, please click here for additional information.

EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.

EY | Building a better working world

EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.

EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity / expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.

EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at ssc.customersupport@ey.com .

Create a job alert for this search

Cyber • Baltimore, MD, United States

Related jobs
Offensive Cyber Software Engineers

Offensive Cyber Software Engineers

Lockheed Martin • Harmans, MD, US
Full-time
Job ID : 701893BR Date posted : Nov.Description : The Work : A CNO Software Expert does work that requires a highly skilled individual using their expertise in computer network operations, programming,...Show more
Last updated: 13 hours ago • Promoted • New!
AWS / ATO Specialist

AWS / ATO Specialist

STEM Solutions • Fort Meade, MD, United States
Full-time
Are you looking to take the next steps in your career as an AWS Security / ATO Specialist? Let's chat and see if we are a good match!. We are searching searching for an experienced AWS Security / AT...Show more
Last updated: 30+ days ago • Promoted
Digital Network Exploitation Analyst

Digital Network Exploitation Analyst

Blue-Halo.org • Annapolis Junction, MD, United States
Full-time
At BlueHalo an AV company, we're shaping the future of national security.We are seeking a Digital Network Exploitation Analyst (DNEA) to join our innovative team in Annapolis Junction, MD.Your expe...Show more
Last updated: 6 days ago • Promoted
Cybersecurity SME - Network & Threat Detection

Cybersecurity SME - Network & Threat Detection

Indigo IT • Fort Meade, MD, United States
Full-time
Cybersecurity SME - Network & Threat Detection.Cybersecurity SME - Network & Threat Detection.Founded in 2001, Indigo IT is an award winning information technology consulting and services company.W...Show more
Last updated: 7 days ago • Promoted
CyberArk Engineer

CyberArk Engineer

InstantServe LLC • Baltimore, MD, United States
Full-time
CyberArk Engineer / Consultant - Remote, (.District of Columbia, Maryland, and Virginia).The client is recruiting for a CyberArk Engineer Consultant role. In this role, you will be responsible for en...Show more
Last updated: 6 days ago • Promoted
Cyber Warfare Technician

Cyber Warfare Technician

U.S. Navy • Baltimore, MD, US
Full-time +1
To be eligible to enlist in the U.Navy, candidates must be between the ages of 18-34.As a Cryptologic Technician, you are one of the worlds greatest problem-solvers. Were looking for people with sha...Show more
Last updated: 28 days ago • Promoted
Technical Local Area Network Encryption TACLANE

Technical Local Area Network Encryption TACLANE

Competitive Range Solutions LLC • Fort Meade, MD, United States
Full-time
Competitive Range partners with the government to plan and deploy complex, IT-enabled, and mission-essential capabilities. Our goal is to help you develop and expand your professional capabilities w...Show more
Last updated: 30+ days ago • Promoted
Digital Network Exploitation Analyst (DNEA), Lead Associate

Digital Network Exploitation Analyst (DNEA), Lead Associate

Peraton • Fort Meade, MD, United States
Full-time
Digital Network Exploitation Analyst (DNEA), Lead Associate.Peraton's Cyber Mission in Annapolis Junction, MD supplies the Intel community with mission essential Next Generation SIGINT Analysts and...Show more
Last updated: 6 days ago • Promoted
Digital Network Exploitation Analyst (DNEA)

Digital Network Exploitation Analyst (DNEA)

CTC Group • Fort Meade, MD, US
Full-time
Quick Apply
Summary CTC Group is seeking Digital Network Exploitation Analysts (DNEA), levels 1-4, evaluate target opportunities using all source data to understand and map target networks, and to assist...Show more
Last updated: 30+ days ago
Defense Network Exploitation Analyst

Defense Network Exploitation Analyst

Markon Solutions • Fort Meade, MD, United States
Full-time
Defense Network Exploitation Analyst.Eager to join a team where your skills are valued, your growth is nurtured, and your impact is profound? Look no further than Markon, a premier consulting firm ...Show more
Last updated: 6 days ago • Promoted
Network Engineer

Network Engineer

Leidos Inc • Fort Meade, MD, United States
Full-time
National Security Sector's (NSS) Cyber & Analytics Business Area (CABA).Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO), Mission Software, Analytica...Show more
Last updated: 30+ days ago • Promoted
Cyber SDC - WAM Penetration Tester - Senior - Location OPEN

Cyber SDC - WAM Penetration Tester - Senior - Location OPEN

EY • Baltimore, MD, United States
Full-time
At EY, we're all in to shape your future with confidence.We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...Show more
Last updated: 30+ days ago • Promoted
Digital Network Exploitation Analyst (DNEA2), Lead Associate

Digital Network Exploitation Analyst (DNEA2), Lead Associate

Peraton • Fort Meade, MD, United States
Full-time
Digital Network Exploitation Analyst (DNEA2), Lead Associate.Next Generation Digital Network Exploitation Analyst (DNEA1). Annapolis Junction / Fort Meade, MD.Active TS / SCI with Polygraph Required.P...Show more
Last updated: 6 days ago • Promoted
Network Security Engineer

Network Security Engineer

Office of The Chief Financial Officer • Maryland, MD, United States
Full-time
Government of the District of Columbia.Office of the Chief Financial Officer (OCFO).Network Security Engineer (INFOSEC).This position is located in the Office of the Chief Financial Officer (OCFO),...Show more
Last updated: 30+ days ago • Promoted
Principal Integration Cyber Security Engineer with Security Clearance

Principal Integration Cyber Security Engineer with Security Clearance

Amentum • Harmans, MD, United States
Full-time
Are you interested in using your skills to help shape the Cyber, Security, & Intel space? If so, look no further.Amentum is seeking an Integration Cyber Security Engineer (IASE) to join our team of...Show more
Last updated: 4 days ago • Promoted
TASS (Current Contract) - Cyber Security Engineer, Jr - Connection Approval

TASS (Current Contract) - Cyber Security Engineer, Jr - Connection Approval

AGE solutions • Fort Meade, MD, United States
Full-time
AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.Prioritizing innovatio...Show more
Last updated: 4 days ago • Promoted
Technical Advisor, Cybersecurity

Technical Advisor, Cybersecurity

CRDF Global • Baltimore, MD, United States
Full-time
Technical Advisor, Cybersecurity.Around the world, digital security is increasingly seen as a foundational component of national security, as nearly all facets of global financial, political, and s...Show more
Last updated: 30+ days ago • Promoted
Offensive Cyber Software Engineer

Offensive Cyber Software Engineer

Lockheed Martin • Harmans, MD, US
Full-time
Job ID : 701893BR Date posted : Nov.Description : The Work : A CNO Software Expert does work that requires a highly skilled individual using their expertise in computer network operations, programming,...Show more
Last updated: 13 hours ago • Promoted • New!