Assessments & Exercises Lead - Penetration Testing

5 - 9 years

0 Lacs

Posted:1 day ago| Platform: Shine logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Role Overview: As an Assessments & Exercises Lead in the Cyber and Tech Controls line of business, you will play a crucial role in enhancing the firm's cybersecurity posture. By utilizing industry-standard assessment methodologies and techniques, you will proactively identify risks and vulnerabilities in people, processes, and technology. Your responsibilities will include designing and deploying risk-driven tests and simulations, evaluating controls for effectiveness, and advising cross-functional teams on security strategy and risk management. Key Responsibilities: - Design and execute testing and simulations such as penetration tests, adversary emulation assessments, collaborative technical controls assessments, and cyber exercises - Contribute to the development and refinement of assessment methodologies, tools, and frameworks to ensure alignment with the firm's strategy and compliance with regulatory requirements - Evaluate controls for effectiveness, impact on operational risk, and opportunities to automate control evaluation - Collaborate closely with cross-functional teams to develop comprehensive assessment reports, including detailed findings, risk assessments, and remediation recommendations - Utilize threat intelligence and security research to stay informed about emerging threats, vulnerabilities, industry best practices, and regulations - Apply knowledge to enhance the firm's assessment strategy and risk management - Engage with peers and industry groups that share threat intelligence analytics Qualifications Required: - 5+ years of experience in cybersecurity, with exceptional organizational skills for planning, designing, and coordinating offensive security testing, assessments, or simulation exercises - Knowledge of US financial services sector cybersecurity organization practices, operations risk management processes, principles, regulations, threats, risks, and incident response methodologies - Ability to identify systemic security issues related to threats, vulnerabilities, or risks and provide recommendations for enhancements or remediation - Proficiency in multiple security assessment methodologies (e.g., OWASP Top Ten, NIST Cybersecurity Framework) and offensive security testing tools - Excellent communication, collaboration, and report writing skills - Strong understanding of various technical aspects including operating systems, software vulnerability, exploitation techniques, networking fundamentals, and cloud environments - Experience in manual penetration testing and assessments against a variety of applications and infrastructures Additional Company Details: N/A,

Mock Interview

Practice Video Interview with JobPe AI

Start DevOps Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now