KPMG US
Specialist, SCA Penetration Tester Job at KPMG US in Dallas
KPMG US, Dallas, TX, United States, 75215
Overview
Specialist, SCA Penetration Tester at KPMG US in Advisory. The role is part of KPMG’s Managed Services practice, focusing on web application security through source code analysis and penetration testing. The team emphasizes collaboration, professional growth, and a strong culture of integrity.
Responsibilities
- Conduct in-depth source code analysis and manual penetration testing of web applications to identify vulnerabilities and security flaws
- Collaborate with development and engineering teams to remediate findings and provide secure coding guidance
- Utilize industry-standard tools to perform dynamic and static application security testing (for example: Burp Suite, OWASP ZAP, Fortify, Checkmarx)
- Document and communicate findings in detailed reports, including risk ratings, remediation recommendations, and technical evidence
- Stay current with emerging threats, attack vectors, and security trends relevant to web applications and source code vulnerabilities
- Support internal security initiatives and contribute to the development of secure coding standards and best practices
- Act with integrity, professionalism, and personal responsibility to uphold KPMG\'s respectful and courteous work environment
Qualifications
- Minimum one year of recent experience in web application penetration testing and source code analysis
- Bachelor\'s degree from an accredited college or university in computer science, cybersecurity, or a related field
- Familiarity with secure coding practices and common vulnerabilities (for example: OWASP Top 10)
- Hands-on experience with SAST and DAST tools, and scripting languages such as Python, JavaScript, or Java
- Strong analytical, problem-solving, and communication skills
- Relevant certifications (for example: OSCP, GWAPT, CEH, CSSLP) are a plus but not required
- Ability to travel as required
- Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; no visa sponsorship is available for this opportunity
Seniorities and Employment Type
- Seniority level: Associate
- Employment type: Full-time
- Job function: General Business
KPMG is an equal opportunity employer and complies with all applicable federal, state, and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by law.