Join to apply for the Cyber SDC - WAM Penetration Tester - Senior role at EY .
Location : Anywhere in Country.
Senior Level
Mid-Senior level.
Employment Type
Full-time.
Job Function
Information Technology.
Industries
Professional Services.
Practice Description
Cyber threats, social media, massive data storage, privacy requirements and continuity of the business as usual require heavy information security measures. As an information security specialist, you will lead the implementation of security solutions for our clients and support the clients in their desire to protect the business. You will belong to an international team of cybersecurity specialists helping our clients with their most complex information security needs and contributing toward their business resilience. You will be working with our Advanced Security Centers to access the most sophisticated tools available to fight against cybercrime.
The Opportunity
Our security professionals possess diverse industry knowledge, along with unique technical expertise and specialized skills. The team works together in planning, pursuing, delivering, and managing engagements to assess, improve, build, and in some cases operate integrated security operations for our clients.
Key Responsibilities
- Identify potential threats and vulnerabilities to operational environments.
- Conduct penetration testing and simulate physical breaches to identify vulnerabilities.
- Plan, pursue, deliver, and manage engagements to assess, improve, build, and operate integrated security operations for clients.
- Research and discover the newest security vulnerabilities, attend and speak at top security conferences, and share knowledge with key industry groups.
- Provide thought leadership and information exchanges through traditional and less conventional communications channels such as speaking at conferences and publishing white papers.
Skills and Qualifications
Perform penetration testing including web application, API, and Thick client penetration testing.Ability to work independently and lead a team of technical testers on penetration testing and red team engagements.Provide technical leadership and advise junior team members on attack and penetration test engagements.Identify and exploit security vulnerabilities in a wide array of systems in a variety of situations.Perform in-depth analysis of penetration testing results and create reports that describe findings, exploitation procedures, risks, and recommendations.Execute penetration testing projects using established methodologies, tools and rules of engagement.Convey complex technical security concepts to technical and non-technical audiences including executives.Requirements
A bachelor's degree and at least 5+ years of related work experience.Experience with manual attack and penetration testing.Experience with scripting / programming skills (Bash, Python, PowerShell, Java, Perl, Rust, Golang, J2EE, .NET, JavaScript, etc).Updated and familiarized with the latest exploits and security trends.Any two of the following certifications : OSCP, OSWP, OSEP, OSCE, OSEE, GPEN, GWAPT, GMOB, GCPN, GXPN, GRTP, GDAT, CRTO, CRTP, CRTE, CREST CRT, CCSAS, CWEE, Burp Suite Certified Practitioner, CBBH, eWPTX, OSWA, eWPT, eMAPT.Preferred (Ideally)
A bachelor's degree in Computer Science, Cybersecurity, Information Systems, Information Technology, Engineering, or related field with at least 3+ years of related work experience or a master's degree and at least 2+ years of related work experience in penetration testing.Contributions to the security community, including research, public CVE disclosures, bug bounty acknowledgments, open-source project involvement, blog posts, publications, and similar activities.Understanding of web-based application vulnerabilities (OWASP Top 10).Strong analytical and problem-solving abilities.Excellent communication skills, both written and verbal.Ability to work collaboratively in a team environment.What We Look For
We’re interested in intellectually curious people with a genuine passion for cyber security. With your specialization in attack and penetration testing, we’ll turn to you to speak up with innovative new ideas that could make a lasting difference not only to us – but also to the industry as a whole.
What We Offer
A comprehensive compensation and benefits package that rewards you based on performance and recognizes the value you bring to the business. (Base salary description).Global, diverse, inclusive culture and flexible environment.Hybrid working model : 40‑60% on‑site with flexible vacation, paid holidays and other leave policies.Career‑long training and coaching to develop your skills.How to Apply
Are you ready to shape your future with confidence? Apply today. EY accepts applications for this position on an on-going basis. For those living in California, please click for additional information. EY focuses on high‑ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
Equal Employment Opportunity Statement
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity / expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, in accordance with applicable law. EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1‑800‑EY‑HELP3 or email ssc.customersupport@ey.com.
#J-18808-Ljbffr