Logo
KPMG US

KPMG US is hiring: Senior Specialist, MAST Application Penetration Tester in San

KPMG US, San Francisco, CA, US, 94199

Save Job

KPMG Advisory practice is currently our fastest growing practice. We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility and leading market tools, we make sure our people continue to grow both professionally and personally. KPMG is currently seeking a Senior Specialist, MAST Application Penetration Tester to join our Managed Services practice. Responsibilities: Conduct manual application penetration testing against API's (REST/SOAP), Web Applications, Mobile applications, and thick client applications Perform objective based on abstract penetration testing engagements Execute threat modeling, evaluate application business logic, and perform application architecture reviews Demonstrate application testing experience in real time via demos to both internal and external audiences Function independently in penetration testing engagements, with minimal oversight and guidance Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment Qualifications: Minimum three years of recent experience in application penetration testing of Application Programming Interface (API's), web applications, or mobile applications Bachelor's degree from an accredited college/university or equivalent industry experience Ability to communicate reporting results with technical and non-technical audiences and lead remediation conversations Experience with burp suite pro, and other app testing tools such as Netsparker and Checkmarx One or more major ethical hacking certifications not required but preferred; GIAC Web Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE), Offensive Security Web Assessor (OSWA) Ability to travel as required Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. #J-18808-Ljbffr