Padmi
PwC logo
PwC

M&A transaction services · financial due diligence

Associate VAPT GCC Advisory

BangalorePosted 3 months ago
CybersecurityMid-levelFull Time; Regular
Apply at PwC

Opens the source posting on shine.com

Source description

About the role

View original

Role Overview: At PwC, as a cybersecurity professional focusing on threat intelligence and vulnerability management, your role will involve identifying and analyzing potential threats to organizations' security, managing vulnerabilities to prevent cyber attacks, and playing a crucial role in safeguarding sensitive information. You will be instrumental in enabling the resilience of digital infrastructure by developing secure systems and providing proactive solutions. Key Responsibilities: - Conduct in-depth analyses of computer networks to identify vulnerabilities and security gaps. - Administer and manage various security products including firewalls, IDS/IPS, Firewall Analyzers, Azure Firewalls, NSGs, Application Gateways, and WAFs. - Oversee the administration of firewalls, routers, VPNs, and other security tools to ensure robust network security. - Utilize scripting languages like Python to automate security tasks and enhance operational efficiency. - Support and enhance security measures by working with Linux and/or Windows Operating Systems, coding languages, and network environments. - Apply knowledge of networking concepts including LAN, WAN, TCP/IP, web protocols, and network-related cyber-attacks. - Use network assessment and reconnaissance tools like nmap, Angry IP, and Metasploit for comprehensive security assessments. - Perform penetration testing activities emphasizing manual and stealthy techniques within client environments. - Execute stealthy penetration testing, advanced red team, or adversary simulation engagements using offensive security tools. - Identify security-critical vulnerabilities without relying on vulnerability scanning tools. - Compromise Active Directory environments and demonstrate business impact by accessing critical assets and information. - Conduct social engineering and phishing activities including reconnaissance, campaign development, and malicious payload creation. - Participate in client discussions, communicate potential add-on services based on identified weaknesses, and actively engage in meetings. - Manage engagements with junior staff, prepare concise and accurate project deliverables, and balance project economics with unexpected issues. - Create a positive team environment by monitoring workloads, meeting client expectations, and respecting team members' work-life quality. - Proactively seek guidance, clarification, and feedback, and keep leadership informed of progress and issues. Qualifications Required: - In-depth knowledge of technical concepts such as application security, network segregation, access controls, IDS/IPS devices, physical security, and information security risk management. - Hands-on experience with networking protocols, TCP/IP stack, systems architecture, and operating systems. - Ability to perform penetration testing activities using manual stealthy techniques and advanced red team engagements. - Capability to identify security-critical vulnerabilities without using a scanning tool. - Experience in compromising Active Directory environments and demonstrating business impact. - Skills in social engineering/phishing activities, including reconnaissance, developing phishing campaigns, and creating malicious payloads. - Effective participation in client discussions and meetings, and communicating potential add-on services based on identified weaknesses. - Proven record of preparing concise and accurate documents and project deliverables. - Ability to balance project economics with unanticipated issues and create a positive work environment for the team. Role Overview: At PwC, as a cybersecurity professional focusing on threat intelligence and vulnerability management, your role will involve identifying and analyzing potential threats to organizations' security, managing vulnerabilities to prevent cyber attacks, and playing a crucial role in safeguarding sensitive information. You will be instrumental in enabling the resilience of digital infrastructure by developing secure systems and providing proactive solutions. Key Responsibilities: - Conduct in-depth analyses of computer networks to identify vulnerabilities and security gaps. - Administer and manage various security products including firewalls, IDS/IPS, Firewall Analyzers, Azure Firewalls, NSGs, Application Gateways, and WAFs. - Oversee the administration of firewalls, routers, VPNs, and other security tools to ensure robust network security. - Utilize scripting languages like Python to automate security tasks and enhance operational efficiency. - Support and enhance security measures by working with Linux and/or Windows Operating Systems, coding languages, and network environments. - Apply knowledge of networking concepts including LAN, WAN, TCP/IP, web protocols, and network-related cyber-attacks. - Use network assessment and reconnaissance tools like nmap, Angry IP, and Metasploit for comprehensive security assessments. - Perform penetration testing activities emphasizing manual a

One address, no account. We’ll tell you when matching roles go live.

More at PwC

Related open roles

View all roles