The Security Consultant, focusing on Penetration Testing, will join our team of experts in ensuring the integrity and resilience of our clients' IT infrastructure and applications. You'll be able to work flexibly, providing expert guidance and support to our clients as needed. Please still contact us if you prefer part-time work, as we may have some options.
Key Responsibilities:
· Conduct thorough assessments of networks and applications to identify security risks and vulnerabilities and develop recommendations to mitigate potential threats.
· Collaborate closely with clients to understand their unique security needs and provide tailored solutions that align with industry best practices and regulatory requirements.
· Develop and document pragmatic recommendations and solutions, ensuring our clients receive clear and actionable insights to fortify their digital defenses.
· Design and follow testing plans and perform risk assessments and testing of network and web applications.
· Synthesize data from multiple sources and present concise, relevant information for key parties.
· Use various tools to discover vulnerabilities, such as cross-site scripting, SQL injection, cross-site request forgery, and remote code execution.
· Foster transparent communication and expectation management with key stakeholders, ensuring seamless information flow, updates, and documentation.
· Remain agile and responsive, undertaking any related duties necessary to ensure the efficacy and integrity of our security practices.
· Experience with the full consulting security testing project delivery cycle, including scoping, project kick-off, client-facing communications, and presentation of results to the client.
You Will Have:
· Demonstrated expertise in conducting comprehensive internal and external penetration tests, web applications penetration tests, and vulnerability assessments.
· Strong understanding of web application development frameworks, protocols, and security principles.
· Proficiency in utilizing various security assessment tools and frameworks, including but not limited to Kali Linux, Nessus, Burp Suite, CIS benchmarks, MITRE ATT&CK, etc.
· Proficient in identifying and exploiting Active Directory misconfigurations, with the capability to deliver clear remediation strategies to resolve vulnerabilities within the environment.
· Excellent written and verbal communication skills with the ability to convey complex technical concepts to non-technical stakeholders.
· Relevant certifications such as CEH and OSCP/OSWE are highly desirable.
· Ability to work independently and collaboratively in a fast-paced environment, with a strong commitment to delivering high-quality results on time.
· Hand-on experience working with public cloud technologies such as AWS, Azure, and GCP is a bonus.
· Passion for cybersecurity and a continuous learning mindset to stay ahead of emerging threats and technologies.
· A positive, can-do, customer-focused attitude.
· Proficient with the M365 suite of products.
· Demonstrated ability to communicate effectively with team members from various disciplines, cultures, and backgrounds.
· Bonus: Fluency in additional languages enhances your ability to effectively support our international clientele.
Job Types: Full-time, Part-time, Permanent, Casual, Freelance
Benefits:
- Flexible schedule
- Work from home
Application question(s):
- Are you interested in a full-time, part-time or casual position?
- List the security assessment tools and frameworks you are most familiar with
Experience:
- hands-on Penetration Testing: 2 years (required)
Work Location: Remote