Ernst & Young - Houston, TX

posted 21 days ago

Full-time - Senior
Houston, TX
Professional, Scientific, and Technical Services

About the position

As a Senior Cybersecurity Consultant specializing in Attack and Penetration Testing at EY, you will lead the implementation of security solutions for clients, helping them protect their businesses against cyber threats. You will work within a global team of cybersecurity specialists, utilizing advanced tools and methodologies to assess and enhance clients' security postures. This role involves conducting penetration tests, simulating attacks, and providing technical leadership to junior team members, all while contributing to the overall resilience of client organizations.

Responsibilities

  • Perform penetration testing including internet, intranet, wireless, web application, social engineering, cloud, and physical penetration testing.
  • Execute red team scenarios to highlight gaps impacting organizations' security postures.
  • Lead a team of technical testers on penetration testing and red team engagements.
  • Provide technical leadership and advise junior team members on attack and penetration test engagements.
  • Identify and exploit security vulnerabilities in a wide array of systems.
  • Perform in-depth analysis of penetration testing results and create reports detailing findings, exploitation procedures, risks, and recommendations.
  • Execute penetration testing projects using established methodologies, tools, and rules of engagement.
  • Convey complex technical security concepts to both technical and non-technical audiences.

Requirements

  • A bachelor's degree and at least 5+ years of related work experience.
  • Experience with manual attack and penetration testing.
  • Scripting/programming skills (e.g., Bash, Python, PowerShell, Java, Perl, Rust, Golang).
  • Familiarity with the latest exploits and security trends.
  • Experience leading a technical team for remote and on-site penetration testing.
  • Knowledge of network penetration testing techniques to avoid detection.
  • Familiarity with cloud security trends and vulnerability remediation.
  • Proficient understanding of attack vectors, exploitation techniques, and vulnerability assessment methodologies.

Nice-to-haves

  • A bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field with at least 3+ years of experience, or a master's degree with at least 2+ years of experience in penetration testing.
  • Contributions to the security community (e.g., research, public CVE disclosures, bug bounty acknowledgments).
  • Knowledge of major operating systems (Windows, Linux, Unix).
  • Deep understanding of TCP/IP network protocols and Active Directory attack techniques.
  • Understanding of web-based application vulnerabilities (OWASP Top 10).
  • Strong analytical and problem-solving abilities.
  • Excellent communication skills, both written and verbal.

Benefits

  • Comprehensive compensation and benefits package based on performance.
  • Medical and dental coverage.
  • Pension and 401(k) plans.
  • Flexible vacation policy allowing employees to decide their vacation time.
  • Paid time off for designated holidays, winter/summer breaks, and personal/family care.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service