Senior Specialist, MAST Application Penetration Tester Job at KPMG US in Houston
KPMG US, Houston, TX, United States, 77246
Overview
Join to apply for the Senior Specialist, MAST Application Penetration Tester role at KPMG US.
KPMG Advisory practice is currently our fastest growing practice. We are seeing tremendous client demand, and we do not anticipate that slowing down. In this environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have flexibility and access to new areas of inspiration, then consider a career in Advisory.
KPMG is currently seeking a Senior Specialist, MAST Application Penetration Tester to join our Managed Services practice.
Responsibilities
- Conduct manual application penetration testing against APIs (REST/SOAP), Web Applications, Mobile applications, and thick client applications
- Perform objectives based on abstract penetration testing engagements
- Execute threat modeling, evaluate application business logic, and perform application architecture reviews
- Demonstrate application testing experience in real time via demos to both internal and external audiences
- Function independently in penetration testing engagements, with minimal oversight and guidance
- Act with integrity, professionalism, and personal responsibility to uphold KPMG\'s respectful and courteous work environment
Qualifications
- Minimum three years of recent experience in application penetration testing of APIs, web applications, or mobile applications
- Bachelor\'s degree from an accredited college/university or equivalent industry experience
- Ability to communicate reporting results with technical and non-technical audiences and lead remediation conversations
- Experience with Burp Suite Pro, and other app testing tools such as Netsparker and Checkmarx
- One or more major ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), CREST, OSWE, or OSWA
- Ability to travel as required
- Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future
KPMG complies with all local/state regulations regarding displaying salary ranges. If required, ranges are provided for locations and are based on factors such as skills, responsibilities, experience, and market considerations. Our Total Rewards package includes medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and well-being benefits. Details vary by job classification, hours, and tenure. See Benefits & How We Work for more information.
All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable laws. No phone calls or agencies please.
Note: Los Angeles County and local Fair Chance Ordinances may apply where applicable.
Seniority level
- Mid-Senior level
Employment type
- Full-time
Job function
- General Business