Posted 15 days ago
Description
Security Consultant (Assurance)
Locations: Sydney, NSW; Melbourne, VIC; Brisbane, QLD; Home.
Overview
The Security Consultant will assist the Assurance division in performing penetration tests and other assurance related activities and the production of high‑quality deliverables for clients. The role uses a mixture of manual testing and automated tooling to enumerate clients’ systems, identify and exploit vulnerabilities, and produce actionable reports.
Responsibilities
- Hands‑on delivery of assurance projects across multiple penetration testing and assurance disciplines (External, Web/API, Internal, Cloud Audits, Social Engineering).
- Work under the supervision of a Senior consultant or independently.
- Produce high‑quality and actionable reports, drafted and delivered on time.
- Engage in continuous learning – personal and professional development, keeping up to date with the latest tools, tactics and techniques, gaining certifications and cross‑skilling.
- Provide support for internal assurance projects and activities, including maintenance and upgrading of infrastructure and tooling, marketing activities, and pre‑sales support.
- Support junior members of the Assurance team.
- Maintain regular, meaningful and timely communication with customers during engagements.
- Report and expedite issues or roadblocks during engagements.
- Manage time effectively on billable engagements to ensure scope and reports are completed within the allocated period.
Non‑Billable Projects
- Undertake activities that generate improvements, efficiencies, increase revenue or reduce costs.
- Maintain tooling and infrastructure.
- Support development and uplift of policies, procedures, reporting tools and deliverables.
- Keep up with training requirements and share new skills with the team.
Customer Service and Communication is Key
- Use excellent communication and customer‑service skills to build, develop and maintain relationships with clients.
- Communicate internally within Assurance, building and maintaining relationships with peers.
- Exhibit excellent presentation skills and ability to explain technical concepts to a non‑technical audience.
- Design and implement strategies to enhance the customer experience, maintaining frequent contact with customers during engagements to avoid surprises.
- Identify and report any roadblocks that may impact testing.
Career Progression
- Clear, well‑defined and transparent progression from Associate to Senior levels.
- Continued and tailored career development with training, experience and certifications.
- Exposure to diverse environments, systems and testing types for learning new skills.
Key Competencies & Experience
- Minimum 1–2 years’ experience in penetration/ethical hacking.
- Desirable certifications such as CREST, OSCP, OSCE.
- Experience in External, Web Application, API, and Cloud Penetration testing.
- Experience with mobile applications, cloud infrastructure or secure code reviews is highly desirable.
- Experience with IT and cybersecurity strategy, policies, standards, procedures and controls.
- Experience working on projects both with teams and individually.
- Positive, driven, can‑do attitude.
- Practical understanding of Information Security Standards & Frameworks.