09 Aug
|
wNy Consulting
|
Bengaluru
09 Aug
wNy Consulting
Bengaluru
Inspirational, innovative and entrepreneurial - this is how we describe our empowered teams. Combine your passion with purpose and join a culture that is thriving in the face of change.
National in scope and local in focus, MNP is one of Canada’s largest professional service firms providing client-focused accounting, consulting, tax, and digital services to clients. Founded in 1958, MNP today is a CAD 2 billion+ organization with 9600+ employees and 154 offices
across Canada. MNP prides itself on being an ‘advisor’ to its clients (individuals, businesses, and organizations), focusing on their success by delivering personalized strategies and solutions that help clients reach their
full potential — wherever business takes them.
MNP set up MNP SPARK its GCC in Bangalore in May 2025 with a focus on enabling the firm drive growth, efficiency, customer delight and innovation, by leveraging high quality talent in India. MNP Spark is like any other MNP region/office - front facing, client focused but working with all MNP regions in Canada to deliver services.
Make an impact as we look to strengthen our security team with a Senior Consultant, Offensive Security. This diverse team of tech-savvy problem solvers understands clients’ unique needs and embraces the possibilities technology brings to an
evolving business landscape. As a trusted advisor, you’ll enable clients to take a proactive and prepared approach to cyber security resiliency and capitalize on new technologies and innovations to deliver business results as
well as build and maintain customer trust. You will be a key member of a skilled team and will leverage your deep understanding of networks and cloud architecture to conduct penetration tests, vulnerability assessments, and red team exercises while evading detection and
prevention controls and exploit technical and business gaps to access the target’s crown jewels.
Responsibilities
- Work with team members to conduct reconnaissance and intelligence gathering, vulnerability scans and assessments and penetration testing of networks, web and mobile application, APIs, wireless networks, SCADA/ICS and Operational Technology environment, red and purple team assessments, and social engineering
- Support the development and use of scripts and tools by the team to execute engagement work
- Support the development and coordinate the operation of engagement tools and hardware
- Support the design of offensive security capabilities, frameworks, interaction models, operational procedures, and engagement delivery models
- Take part in operational activates in relation to issues and delivery, taking action to coordinate mitigation activities and resources
- Undertake and adapt to unique client requests and project types that cross cyber disciplines and expertise areas
- Support a culture of continuous development of both services and our people
- Communicate engagement activities and technical findings effectively with both client technical SMEs and executive staff, preparing and delivering presentation materials to each
- Provide advice, expertise, counsel to senior leaders as input to business decisions on medium to long term strategic planning
- Provide subject matter expertise of both internal operations and industry approaches in support of bid and proposal for engagement processes
- Develop reports and materials intended for both technical and executive audiences
- Work with both clients and vendors to troubleshoot and resolve issues
- Notify clients of any potential problems in their environment
- Be self-motivated
Requirements
Skills and Experience
- You can demonstrate experience of 5+ years in cybersecurity, with at least 3+ years of offensive security experience
- Posses a post-secondary degree or diploma in cyber security, information security or technology, computer science or related disciplines
- Multiple cyber security certifications from recognized institutions such as CISSP, OSCP, OSCE, BSCP, CEH, CEPT, CRTP, GWAPT, GPEN, GXPN, OSEP, OSWE, OSED, and PenTest+
- Functional knowledge of offensive security technical foundations, theory and terminology (Kill Chain, TTPs, threat actors)
- Solid knowledge of
- Shell scripting of tasks using Perl, Python, PowerShell, and other scripting languages
- Tools and platforms applicable to mobile, network, web application, API, and wireless testing
- Cloud penetration testing and assessment of security posture in Azure, AWS, and GCP
- Evasion techniques
- Kill Chain, TTPs, and threat actor approaches
- Security operations, processes, procedures, and controls
- Working knowledge of
- Network protocols and covert channels
- Source code review
- Exploit development
- Impact of AI on offensive security
- Security and testing of SCADA/ICS and Operational Technology
- Physical security reviews
- Understanding of and applied experience with industry standards and frameworks (e.g. NIST 800-53 and CSF, ISO 27001 and 27002, PCI DSS)
- Experience and working knowledge of multiple information and security domains (e.g., privacy, IT operations, security platform administration and integrations, incident response, threat intelligence, audit and risk)
- Strong presentation skills and ability to communicate effectively to both technical and executive audiences
- Strong problem-solving skills to creatively develop appropriate solutions to complex problems
Consulting experience
📌 Senior Consultant, Offensive Security (Bengaluru)
🏢 wNy Consulting
📍 Bengaluru