Security Consultant (Assurance)

Security Consultant (Assurance)

Infotrust (AU) | Council of the City of Sydney, NSW, AU

Posted 15 days ago

Apply Now

Description

Security Consultant (Assurance)

Locations: Sydney, NSW; Melbourne, VIC; Brisbane, QLD; Home.

Overview

The Security Consultant will assist the Assurance division in performing penetration tests and other assurance related activities and the production of high‑quality deliverables for clients. The role uses a mixture of manual testing and automated tooling to enumerate clients’ systems, identify and exploit vulnerabilities, and produce actionable reports.

Responsibilities

  • Hands‑on delivery of assurance projects across multiple penetration testing and assurance disciplines (External, Web/API, Internal, Cloud Audits, Social Engineering).
  • Work under the supervision of a Senior consultant or independently.
  • Produce high‑quality and actionable reports, drafted and delivered on time.
  • Engage in continuous learning – personal and professional development, keeping up to date with the latest tools, tactics and techniques, gaining certifications and cross‑skilling.
  • Provide support for internal assurance projects and activities, including maintenance and upgrading of infrastructure and tooling, marketing activities, and pre‑sales support.
  • Support junior members of the Assurance team.
  • Maintain regular, meaningful and timely communication with customers during engagements.
  • Report and expedite issues or roadblocks during engagements.
  • Manage time effectively on billable engagements to ensure scope and reports are completed within the allocated period.

Non‑Billable Projects

  • Undertake activities that generate improvements, efficiencies, increase revenue or reduce costs.
  • Maintain tooling and infrastructure.
  • Support development and uplift of policies, procedures, reporting tools and deliverables.
  • Keep up with training requirements and share new skills with the team.

Customer Service and Communication is Key

  • Use excellent communication and customer‑service skills to build, develop and maintain relationships with clients.
  • Communicate internally within Assurance, building and maintaining relationships with peers.
  • Exhibit excellent presentation skills and ability to explain technical concepts to a non‑technical audience.
  • Design and implement strategies to enhance the customer experience, maintaining frequent contact with customers during engagements to avoid surprises.
  • Identify and report any roadblocks that may impact testing.

Career Progression

  • Clear, well‑defined and transparent progression from Associate to Senior levels.
  • Continued and tailored career development with training, experience and certifications.
  • Exposure to diverse environments, systems and testing types for learning new skills.

Key Competencies & Experience

  • Minimum 1–2 years’ experience in penetration/ethical hacking.
  • Desirable certifications such as CREST, OSCP, OSCE.
  • Experience in External, Web Application, API, and Cloud Penetration testing.
  • Experience with mobile applications, cloud infrastructure or secure code reviews is highly desirable.
  • Experience with IT and cybersecurity strategy, policies, standards, procedures and controls.
  • Experience working on projects both with teams and individually.
  • Positive, driven, can‑do attitude.
  • Practical understanding of Information Security Standards & Frameworks.
#J-18808-Ljbffr