KPMG Advisory

Red Team Cyber Security, Associate/ Senior Associate

KPMG Advisory
BusinessSingaporeFull-time1 weeks ago

About the role

AI summarised

KPMG is seeking an Associate/Senior Associate for its Red Team Cyber Security practice. The role involves leading red teaming engagements, conducting security assessments across various domains, and supporting business development. Candidates should have at least 2 years of consulting experience in red teaming/pentesting and relevant certifications.

BusinessFull-timeGeneral

Key Responsibilities

  • Identify and resolve complex issues and develop innovative solutions for high profile clients on a variety of local and international engagements
  • Actively identify and support business development opportunities which includes supporting the team with sales activities such as proposal writing and client presentations
  • Coach and develop team members as part of the firm's overall Performance Management process or on specific engagements

Requirements

  • Minimum 2 years of consulting experience in Red Teaming/Pentesting
  • Possesses industry recognised certifications such as Offensive Security Certified Professional (OSCP), CREST Registered Penetration Tester (CRT), Certified Penetration Testing Specialist (CPTS), and Certified Bug Bounty Hunter (CBBH) / Certified Web Exploitation Specialist (CWES) are highly desirable
  • Passionate and able to demonstrate strong interest in the field of cyber security, in particular technical assessments/reviews
  • Experienced and well versed in security testing domains. For example, red teaming and threat intelligence, web/network/mobile/cloud/thick client vulnerability assessments and penetration testing
  • Exposure to cloud computing environments like AWS, Azure, or Google Cloud, and comprehensive understanding of cloud security best practices
  • Understanding of large language models (LLMs) and their applications in cybersecurity
  • Experienced and demonstrates strong understanding and capability to lead/execute red teaming engagements encompassing intel-led approach, from planning to execution of red team exercises, create/develop/implement TTPs based on profiles of specific threat actors against industry frameworks and best practices, and to exercise closure
  • Ability to lead, manage, oversee cyber multiple engagements across multi security testing disciplines independently and cohesively with the engagement team
  • Able to demonstrate strong project management skills in areas such as meeting requirements, timelines, documentations, overseeing risk management aspects in a project lifecycle
  • Possesses strong understanding of IT risks and its business context/impact
  • Possesses excellent written and communication skills to translate and communicate with C-Suite clients, direct reports and team members
  • Self-driven, possesses strong desire to learn and identify new technologies and services, and willingness to share knowledge with the team