OverviewUKI Technology Consulting- Penetration Tester, Manager at EY. Location: Dublin. Availability for Work Visa Sponsorship: NO. Business Area: Cyber Security. Contract Type: Full-Time – Permanent.EY’s Cyber Security practice is one of the fastest growing areas of the business with an immediate requirement for security consultants with a diverse range of skills and experience. As a leader on our Cyber team you will be providing advisory and technical leadership to help our clients improve their cyber security posture to respond to the dynamic Cyber Security threats. You will provide security domain expertise and utilise your business insight to work closely with our clients to advise, design, build, deploy and test pragmatic security solutions that will give real and tangible benefits and security enhancement.The opportunityYou will be a lead member of a highly skilled and rapidly growing team of Technical Security specialists. Your role will consist of leading and supporting global penetration testing and offensive security teams and carrying out offsite and onsite penetration tests and vulnerability assessments against a wide range of systems and environments, in addition to advancing red teaming and DevSecOps capabilities. As a member of the team, you will have the opportunity to grow your career in leading the delivery of penetration testing and offensive security, with a significant opportunity for leadership experience and career progression.ResponsibilitiesLead and support remote teams in performing complex penetration tests in a variety of environments, managing several teams across different client sites.Simulate real-world attacks on an organization\'s systems, networks, and applications to identify vulnerabilities and weaknesses.Analyse potential threats and attack vectors to understand the risk landscape.Deliver penetration test results to technical and non-technical colleagues and clients.Maintain a deep understanding of technical security requirements and conduct research to grow knowledge within technology.Independently perform technical responsibilities and deliver results to a high standard.Stay up-to-date on advancements in the penetration testing domain.Collaborate with colleagues across other relevant teams to enhance service quality.Maintain compliance with regulations and standards related to penetration tests, audits, and reporting formats.Take ownership of penetration test projects from testing through to reporting and recommendations.Mentor junior team members and grow on-shore and off-shore capabilities.Hands-on internal and external infrastructure and application testing.Experience with a variety of security testing tools and exploit techniques.Stay informed about current security threats, trends and solutions.Articulate business risk from vulnerabilities with strong reporting, writing and client presentation skills.Familiarity with OSSTMM, OWASP, NIST SPs, Tigerscheme SST, and CESG Check.Consultative, customer-facing skills with ability to communicate with stakeholders at all levels and advise on best practices.Curiosity and tenacity to overcome technical challenges, with an ability to approach problems from multiple perspectives.Experience and attributes for successExperience7-10+ years in a penetration testing role across various sectors.Experience in Big 4 or similar consultancy in the Irish market.Track record delivering a broad range of cyber security projects.Desirable: Government, Utilities, Manufacturing, Financial Services and Pharma experience.Leadership experience with a focus on mentorship.Onsite and Offsite Penetration Testing.OSCP qualification and red team experience.OT pen testing experience.Driven cyber security professional with passion for information security.Strong analytical and multi-tasking skills.AttributesExcellent communication and project management skills, both verbal and written.Strong organizational, problem-solving, and attention to detail.Experience drafting proposals, bids and tender responses.Proficient in Microsoft Office tools and online research.Strong collaboration skills with global and multi-functional teams.Ability to prioritise and meet tight deadlines and manage own caseload.Quick learner, resilient under pressure, and able to explain complex issues concisely to clients.Shows leadership and can manage consultancy projects.Experience implementing or deploying new tools, processes and best practices to improve knowledge sharing and security awareness among teams.You will also have focused on some of these areas in the past:Application, Mobile, IoT, Cloud, Infrastructure and Network SecurityApplication development background with DevSecOps processes (VA, SAST, DAST, RASP, secure code design review)CI/CD, container concepts, agile project management, deployment, automation and orchestrationProgramming/scripting (PowerShell, ASP, .NET, Python, Perl)OT Security knowledge or ISA/IEC 62443 certification an advantageCloud Security (Azure AZ900/AZ500, AWS Security an advantage)Security Engineering or Architecture background (SABSA an advantage)QualificationsMSc degree in information security, computer science, computer engineering, information systems, cloud computing or related fieldOSCP certifiedIdeally, you’ll also haveCISSP or CISM (an advantage)GPEN, GWAPT, GXPN, CEH, EC-Council LPT, CompTIA PenTest+ (desirable)What Working At EY OffersWe offer a competitive remuneration package. Our comprehensive Total Rewards package includes support for flexible working and career development, and with FlexEY you can select benefits that suit your needs, covering holidays, health and well-being, insurance, savings and a wide range of discounts, offers and promotions. Plus, we offer:Support and coaching from engaging colleaguesOpportunities to develop new skills and progress your careerThe freedom and flexibility to handle your role in a way that’s right for youAll our employees are given a benefits package which they can tailor to suit their individual preferences. Our range of benefits include: Pension, Maternity & Paternity leave, Discounted health insurance, Bike to work Scheme, Web Doctor - Free unlimited online GP consultations for you and your family, Recognition Awards, The purchase of additional annual leave, Cash incentives for referrals, Hybrid Working, Work Mobile, Free Gym membership, EY Tech MBA paid by EY, Travel Pass, Wellness rooms available in some offices.EY is committed to being an inclusive employer and we are happy to consider flexible working arrangements. We strive to achieve the right balance for our people, enabling us to deliver excellent client service whilst allowing you to build your career without sacrificing your personal priorities. While our client-facing professionals can be required to travel regularly, and at times be based at client sites, our flexible working arrangements can help you to achieve a lifestyle balance.Diversity and InclusionWe hold a collective commitment to foster an environment where all differences are valued and respected, practices are equitable and everyone experiences a sense of belonging: Inclusion, diversity, and equity are part of who we are at EY. We welcome applications from people of all backgrounds and offer reasonable accommodations at every stage of recruitment.Join us in building a better working world. That’s Why, EY. Apply now.Important: Where agency assistance is required, our Talent Team will engage directly with suppliers. CVs / Profiles should not be shared directly with Hiring Managers. Unsolicited CVs / Profiles supplied to EY by Recruitment Agencies will not be accepted for this role.
#J-18808-Ljbffr