About The Client:
KPMG is one of the world’s leading skilled services firms and the fastest growing Big Four accounting firm
Essential Job Functions:
Defines and leads the execution of highly technical penetration tests and security assurance engagements that deliver value by independently performing hands-on, detailed technical tests without requiring supervision.
Owns the design of current technical testing engagements to best serve the current and future needs of the organization, being able to adapt industry best practices to the local technical and cultural workplace.
Owns the responsibility to ensure that the budget allocated to pentesting activities performed by external vendors delivers the necessary value and results in a good return on investment.
Actively contributes to the mid- and long-term security assurance strategic plan definition by introducing domain expertise insights and ensuring the plan is effective and impactful.
Grows the security assurance area of focus within security by understanding the current and target security posture of the business and identifying the skills and resources needed to effectively deliver on those needs.
Mentors junior and core penetration testers, driving their career growth within this highly specialized technical craft.
Provides deep technical expertise to the business in the following highly specialized domains:
Threat Modeling
Web Application / API Penetration Testing
Mobile Application Penetration Testing
Infrastructure and Cloud Penetration Testing
Purple Team Assessments
AI/ML-Powered Systems (including LLMs and AI-assisted developer tooling)
Identifying and exploiting AI-specific threats such as Prompt Injection, Data Poisoning, and Model Abuse
Provides guidance and recommendations to teams, taking into account the current state of their technical environment, their future roadmap and strategy, and the risk associated with the underl