Cyber SDC - Attack & Penetration - Exp - Consulting
Listed on 2025-12-01
-
IT/Tech
Cybersecurity, IT Consultant
Overview
Join to apply for the Cyber SDC - Attack & Penetration - Exp Staff - Consulting - Location OPEN role at EY.
Location:
Anywhere in Country. EY focuses on helping clients build a better working world, with diverse teams and opportunities to grow your career.
- Lead, scope, and execute penetration testing projects, including web applications (black box, white box, and gray box), networks, cloud environments, hardware, and firmware.
- Develop and execute red team and purple team scenarios to identify gaps in organizational security postures and provide actionable recommendations.
- Perform in-depth penetration testing, create comprehensive reports detailing findings, exploitation procedures, risks, and recommendations.
- Stay current with emerging security threats, vulnerabilities, and industry best practices; promote continual learning within the team.
- Assist in configuring, patching, and updating penetration testing software and supporting infrastructure to ensure optimal performance and security.
- Contribute to the creation and updating of operational metrics for client meetings, providing insights into tool performance and security findings.
- Proven experience in penetration testing and offensive security practices, with a minimum of 5+ years of related work experience.
- Strong knowledge of automation tools and processes in offensive security and application security.
- Excellent problem-solving skills and the ability to manage multiple security projects simultaneously.
- Effective communication skills to liaise with clients and internal stakeholders; translate complex technical concepts into understandable terms.
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
- A minimum of three (3) years’ experience in incident response or performing penetration tests; or a minimum of one (1) year working in an electric utility in the area of generation, or transmission & distribution performing penetration tests.
- Extensive experience with manual attack and penetration testing, including web applications, networks, and cloud environments.
- Proficiency in scripting languages (e.g., Python, Bash, Power Shell) for automation of security tasks.
- Knowledge of Windows, Linux, Unix, and other major operating systems.
- Certifications such as CCSP, CSSLP, OSCP, OSWP, GPEN, GWAPT, OSCE, OSEE, GXPN, CISSP, CISM, etc.
- Contributions to the security community, including research, public CVE disclosures, bug bounty acknowledgments, and open-source project involvement.
- Strong analytical skills with the ability to interpret complex information and communicate it effectively.
- Active interest in staying updated on the latest cybersecurity threats and trends, promoting continual learning and adaptation.
We seek top performers who possess a strong passion and foundation in cybersecurity principles and practices, along with relevant certifications and experience. A proactive mindset, the ability to create high performing teams, adaptability to evolving threats, and a commitment to continuous learning are critical attributes. We look for motivated individuals who are committed to safeguarding digital assets and fostering a culture of security awareness within the organization.
What We Offer- Continuous learning:
You’ll develop the mindset and skills to navigate whatever comes next. - Success as defined by you:
We’ll provide the tools and flexibility so you can make a meaningful impact, your way. - Transformative leadership:
We’ll provide insights, coaching and confidence to succeed in high performing teams. - Diverse and inclusive culture:
You’ll be embraced for who you are and empowered to use your voice to help others find theirs.
At EY, we’ll develop you with future-focused skills and world-class experiences. We’ll empower you in a flexible environment, and fuel your talents in a diverse and inclusive culture of globally connected teams. Learn more.
- Compensation and benefits:
The base salary range for this job in all geographic locations in the US is $61,200 to $100,500; for…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).