Logo
EY

EY is hiring: Cyber SDC - WAM Penetration Tester - Senior - Location OPEN in Por

EY, Portland, Oregon, United States

Save Job

Join to apply for the Cyber SDC - WAM Penetration Tester - Senior - Location OPEN role at EY

Location: Anywhere in Country

Overview

At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.

Title: Cybersecurity – Attack and Penetration Tester

The Opportunity

Our security professionals possess diverse industry knowledge, along with unique technical expertise and specialized skills. The team works together in planning, pursuing, delivering and managing engagements to assess, improve, build, and in some cases operate integrated security operations for our clients. You will belong to an international team of cybersecurity specialists helping our clients with their most complex information security needs and contributing toward their business resilience. You will be working with our Advanced Security Centers to access the most sophisticated tools available to fight against cybercrime.

We will support you with career-long training and coaching to develop your skills. EY is a global leading service provider in this space, and you will be working with the best in a collaborative environment.

Your Key Responsibilities

As part of our Penetration Testing team, you'll identify potential threats and vulnerabilities to operational environments. Projects here could include penetration testing and simulating physical breaches to identify vulnerabilities. Our security professionals stay highly relevant by researching and discovering the newest security vulnerabilities, attending and speaking at top security conferences around the world, and sharing knowledge on a variety of cybersecurity topics with key industry groups. The team frequently provides thought leadership and information exchanges through traditional and less conventional communications channels such as speaking at conferences and publishing white papers.

Our professionals work together in planning, pursuing, delivering and managing engagements to assess, improve, build, and in some cases operate integrated security operations for our clients.

Skills and Attributes to Success

  • Perform penetration testing which includes, web application, API, and Thick client penetration testing
  • Ability to work independently as well as lead a team of technical testers on penetration testing and red team engagements
  • Provide technical leadership and advise junior team members on attack and penetration test engagements
  • Identify and exploit security vulnerabilities in a wide array of systems in a variety of situations
  • Perform in-depth analysis of penetration testing results and create reports that describe findings, exploitation procedures, risks and recommendations
  • Execute penetration testing projects using the established methodology, tools and rules of engagements
  • Convey complex technical security concepts to technical and non-technical audiences including executives

Qualifications

  • A bachelor’s degree and at least 5+ years of related work experience
  • Experience with manual attack and penetration testing
  • Experience with scripting / programming skills (eg, Bash, Python, PowerShell, Java, Perl, Rust, Golang, J2EE, .NET, JavaScript, etc)
  • Updated and familiarized with the latest exploits and security trends
  • Any two of the following certifications: OSCP, OSWP, OSEP, OSCE, OSEE, GPEN, GWAPT, GMOB, GCPN, GXPN, GRTP, GDAT, CRTO, CRTP, CRTE, CREST CRT, CCSAS, CWEE, Burp Suite Certified Practitioner, CBBH, eWPTX, OSWA, eWPT, eMAPT

Ideally, you'll also have

  • A bachelor’s degree in a related field with at least 3+ years of related work experience or a master’s degree with at least 2+ years of related work experience in penetration testing
  • Contributions to the security community, including research, public CVE disclosures, bug bounty acknowledgments, open-source project involvement, blog posts, publications, and similar activities
  • Understanding of web-based application vulnerabilities (OWASP Top 10)
  • Strong analytical and problem-solving abilities
  • Excellent communication skills, both written and verbal
  • Ability to work collaboratively in a team environment

What We Look For

We're interested in intellectually curious people with a genuine passion for cyber security. With your specialization in attack and penetration testing, we'll turn to you to speak up with innovative ideas that could make a lasting difference to us and the industry.

What We Offer You

We'll develop you with future-focused skills and world-class experiences. We’ll empower you in a flexible environment, and fuel your talents in a diverse and inclusive culture of globally connected teams.

  • Comprehensive compensation and benefits package, including medical and dental coverage, pension and 401(k) plans, and paid time off options. The base salary range for this job in all geographic locations in the US is $72,500 to $140,900; in NYC Metro, WA, and CA (excluding Sac) it is $92,900 to $160,500. Salaries are determined by education, experience, knowledge, skills and geography.
  • Hybrid model: most external, client-serving roles require in-person work 40-60% of the time over an engagement or year.
  • Flexible vacation policy and designated EY holidays, breaks, personal/family care, and other leave options.

Are you ready to shape your future with confidence? Apply today. EY accepts applications on an ongoing basis. For California residents, please click here for additional information.

EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities. EY | Building a better working world. Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for today and tomorrow. EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law. EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you need assistance applying online or an accommodation during the application process, please call 1-800-EY-HELP, select options, and contact EY's Talent Shared Services Team.

#J-18808-Ljbffr