KPMG's Advisory practice is rapidly growing, driven by increasing client demand. We are looking for professionals who can adapt to an ever-evolving market environment and thrive in a collaborative, team-oriented culture. At KPMG, our people are our top priority. We offer a wealth of learning and career development opportunities through our world-class training facilities and leading market tools, ensuring continuous professional and personal growth.
If you are seeking a firm where you can connect with your team, express your true self, make an impact, enhance your skills, and explore new inspirations, consider joining our Advisory Services as a Security Testing Specialist.
Responsibilities :
- Conduct automated application / network penetration tests to identify and exploit vulnerabilities in web applications, internal applications, APIs, networks, and mobile applications.
- Execute dynamic application security tests on web applications and static application security tests on source code, including prioritizing findings and identifying false positives.
- Perform vulnerability analysis on internal and external networks using automation techniques.
- Work towards independently executing tasks in either application or network security within your first year of employment.
- Maintain integrity and professionalism, contributing positively to uphold KPMG's respectful work environment.
Qualifications :
Minimum of one year of recent experience in application and / or network penetration testing using tools such as AppScan, NetsSparker, Acunetix, BurpSuite, OWASP ZAP, Tenable Nessus, Qualys, Kali Linux, Metasploit, or similar. Additionally, experience in reporting results to both technical and non-technical audiences is essential.Bachelor's degree from an accredited college or university is required.Experience in mobile application testing, manual code analysis, and / or static analysis with tools like Veracode, Fortify, SonarQube, Checkmarx, or equivalent is a plus.Familiarity with programming languages such as Python, JavaScript, PHP, C / C++, SQL, and others is advantageous.Possession of ethical hacking certifications (e.g., CEH, GWAPT, GPEN, OSCP, OSWA) is preferred.Willingness to travel as necessary.Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future.KPMG is committed to providing a fair and equitable recruitment process. We welcome applicants from all backgrounds and consider all qualified candidates for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable laws. We also consider applicants with arrest and conviction records in compliance with local regulations.