Assessments & Exercises Lead - Penetration Testing

5 - 9 years

0 Lacs

Posted:5 days ago| Platform: Shine logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

As an Assessments & Exercises Lead in the Cyber and Tech Controls line of business, you will play a significant role in enhancing the firm's cybersecurity posture. You will utilize industry-standard assessment methodologies and techniques to proactively identify risks and vulnerabilities in people, processes, and technology. Your responsibilities will include designing and deploying risk-driven tests and simulations, evaluating controls and incident response processes, and advising cross-functional teams on security strategy and risk management. **Key Responsibilities:** - Design and execute testing and simulations such as penetration tests, adversary emulation assessments, collaborative technical controls assessments, and cyber exercises - Contribute to the development and refinement of assessment methodologies, tools, and frameworks - Evaluate controls for effectiveness and impact on operational risk, as well as opportunities to automate control evaluation - Collaborate closely with cross-functional teams to develop comprehensive assessment reports **Qualifications Required:** - 5+ years of experience in cybersecurity with exceptional organizational skills - Knowledge of US financial services sector cybersecurity practices, operations risk management processes, regulations, threats, risks, and incident response methodologies - Ability to identify systemic security issues and proficiency in multiple security assessment methodologies - Excellent communication, collaboration, and report writing skills - Strong understanding of operating systems, software vulnerability and exploitation techniques, offensive security tools, networking fundamentals, DevOps, incident response, and threat hunting - Experience in manual penetration testing and assessments against various applications The company is seeking individuals with a strong background in cybersecurity and offensive testing methodologies. Preferred qualifications include relevant industry certifications such as CISSP, CISM, or those offered by Offensive Security, CREST, or SANS, showcasing advanced expertise in cybersecurity. Technical knowledge or experience in developing proof of concept exploits, scripting languages, and security tools is highly desirable. Experience in Intelligence Community/Security Services background and knowledge of malware techniques would be advantageous. Experience with large centralized logging platforms like Splunk or Elastic is also a plus.,

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
JPMC Candidate Experience page logo
JPMC Candidate Experience page

Financial Services

New York

RecommendedJobs for You