2 Penetration Testing jobs in Hong Kong

Consultant/Senior Consultant, Cyber Security (Penetration Testing/ Red Teaming), Technology Con[...]

KPMG China

Posted 18 days ago

Job Viewed

Tap Again To Close

Job Description

Consultant/Senior Consultant, Cyber Security (Penetration Testing/ Red Teaming), Technology Consulting (MJ005350)

Join to apply for the Consultant/Senior Consultant, Cyber Security (Penetration Testing/ Red Teaming), Technology Consulting (MJ005350) role at KPMG China

Consultant/Senior Consultant, Cyber Security (Penetration Testing/ Red Teaming), Technology Consulting (MJ005350)

Join to apply for the Consultant/Senior Consultant, Cyber Security (Penetration Testing/ Red Teaming), Technology Consulting (MJ005350) role at KPMG China

KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients’ needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment and community. At KPMG, you’ll translate insights into action and reveal opportunities for all—our teams, our clients and our world.

Service Line Overview

At KPMG's Consulting practice, we do not limit ourselves to either strategy or implementation. We deliver both. Our Hong Kong division is the fastest growing within KPMG China and represents a young and enthusiastic team that always pushes for success. Since our inception, we have acquired in-depth knowledge of an incredibly broad range of sectors and services.

KPMG is the firm that views cyber security as a business enabler, and not just an IT issue. From the boardroom to back office, we help clients through Strategy and Governance, Transformation, Cyber Defense and Cyber Response. So that they are prepared for uncertainty and use cyber security to advance the business, not stand in the way.

Our wide range of projects includes Cyber Strategy, Cyber Digital Transformation, Governance & Risk, as well as a strong presence in Penetration Testing or Ethical Hacking. We are keen to speaking with cyber security specialists with various expertise and experiences to join our growth story.

We are now seeking Consultant/ Senior Consultant candidates for Cyber Defense Team.

Key Responsibilities

  • Perform vulnerability assessment and penetration tests on different platforms and technologies
  • Simulate real-time cyber-attacks using red team / blue team / purple team exercises
  • Conduct social engineering and email phishing attacks to simulate the theft of passwords, infiltrate systems, and download malware / ransomware
  • Conduct source code review to identify software program vulnerabilities and detect malware or malicious embedded code
  • Conduct cloud / server / network / middleware security configuration assessments
  • Conduct architecture review for cloud / on-premise IT environments
  • Prepare reports on identified security vulnerabilities and possible recommendations to remediate the vulnerabilities
  • Assist in continuously enhancing the existing security assessment methodologies
  • Support in developing marketing and training materials to help develop staff awareness within the company and communicate KPMG's capabilities to clients
  • Remain up-to-date on the latest cybersecurity threats, vulnerabilities and regulatory requirements
  • Develop constructive client relationships, both inside and outside of KPMG


Experience & Background

  • Bachelor’s degree in computer science, InformationTechnology, or related field.
  • At least one professionally qualification required: CREST, GXPN, GPEN, GCTI, GWAPT, OSCE3, OSEP, OSWE, OSEP, OSCP, CRTE, eCPTX, CISSP, or other relevant qualifications.
  • 2 years of relevant working experience preferred: Red/Blue/Purple Teaming, Web/Mobile/Network/OT/IoT/other Penetration Tests, Vulnerability Assessment, Source Code Review, Appliance/System/Cloud Configuration Review, Malware development, Social Engineering.
  • Candidate with less experience will be considered as Consultant.
  • Knowledge in threat intelligence, reverse engineering, security products, incident response, SOC operation or other related areas will be an advantage.
  • Experience with at least one scripting language (e.g. Bash, PowerShell) or programming language (e.g. Python, C, Java) preferred.
  • Able to understand basic networking concepts (e.g. routing, ALC, load balancers, SSL/TLS, TCP) is preferred.
  • Understand the industry recognised testing standards and have knowledge of common red teaming tools·
  • Knowledge base in enterprise technologies and operations, enterprise networking, internet application security, database security evaluation and architecture, with self-motivated learning ability.
  • Be able to conduct research and development and solve technical problems independently.
  • Be able to work as part of a team, and at the same time being an independent self-starter·
  • Have strong analytical, problem solving and inter-personal skills·
  • Commands excellent written and oral communication skills with the ability to present ideas and results to technical and non-technical audiences·
  • Possess a recognised Degree in Computer Science, Cyber Security, Computer/Information Engineering, Information Technology or a related discipline (STEM) is preferred·
  • Excellent written and verbal communication skills in English and Chinese (Mandarin or Cantonese)


Benefits we offer:

KPMG is looking for someone who is passionate about helping our clients with their cyber security challenges. In return, we are helping you to develop your skills and career within the KPMG network.

  • Well-structured career development and learning path, 1-to-1 coaching by our cybersecurity professionals
  • Access to various cyber security learning resources
  • Wide exposure to working with leading financial institutions and corporations
  • Continuous sponsorship and support on professional certificate development (i.e. Offensive Security, GIAC, CREST, etc.)
  • Opportunities for secondment / exchange within KPMG Global network based on staff performance and preference
  • Opportunities to attend KPMG overseas Global Cyber Events – such as HackNet / BlackHat
  • One annual professional membership sponsorship on the approved list
  • Work in a passionate team with blended cybersecurity talents


About KPMG

At KPMG China, we are committed to being an equal opportunity employer, with zero tolerance for any form of discrimination against any persons. It is important for us to create an inclusive, diverse and agile workplace for our people to develop and thrive at both a personal and professional level.

We strive to make ESG (environmental, social and governance) a watermark running through our organisation; from empowering our people to become agents of positive change, to providing better solutions and services to our clients to help them achieve their ESG goals. View Our Impact Plan to learn more about our ESG commitments and progress across four key pillars - Governance, People, Planet and Prosperity – and how we make a positive impact on our people, environment and society.

We encourage you to come as you are, and we welcome all qualified candidates to apply, and hope you unlock opportunities with us. Visit KPMG China website for more company information.

You acknowledge and agree that all personal information hereby provided regarding yourself will be used by KPMG China for its candidate selection purposed only. KPMG China collects, uses, processes, and retains your personal information in accordance with KPMG China’s Online Privacy Statement and/or KPMG China Privacy Statement (collectively "Privacy Statement "). During the recruitment process, KPMG China may need to store personal information of candidates in a designated third-party application tracking platform.

If you have any questions regarding the information you provided in the form or your job application in general, please contact KPMG China’s HR personnel in the location where your application is submitted (see here).

Seniority level
  • Seniority level Entry level
Employment type
  • Employment type Full-time
Job function
  • Job function Engineering and Information Technology
  • Industries Professional Services

Referrals increase your chances of interviewing at KPMG China by 2x

Sign in to set job alerts for “Senior Java Consultant” roles. Senior Java Backend Developer - Web3 / Fintech / Financial Services (Senior) Staff Engineer - Java (Compliance Platform) Principal/Senior Engineer - Core - Platform Tool (Java) Senior/Staff Java Trading Developer, Liquidity Platform Principal/Senior Java Engineer - Multi-Language & Localization Lead Software Engineer, Java, Order Management System for Equities Trading Senior Engineer - Compliance Platform(Java) Principal/Senior Java Engineer - Defi - Earn Senior Engineer - Java (Exchange Platform - Financial Product) Lead Software Engineer, Electronic Trading Technology, Java Principal/Senior Engineer - Defi - Explorer(Java)

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Consultant/Senior Consultant, Cyber Security (Penetration Testing/ Red Teaming), Technology Con[...]

Hong Kong, Hong Kong KPMG China

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Consultant/Senior Consultant, Cyber Security (Penetration Testing/ Red Teaming), Technology Consulting (MJ005350)

Join to apply for the Consultant/Senior Consultant, Cyber Security (Penetration Testing/ Red Teaming), Technology Consulting (MJ005350) role at KPMG China

Consultant/Senior Consultant, Cyber Security (Penetration Testing/ Red Teaming), Technology Consulting (MJ005350)

Join to apply for the Consultant/Senior Consultant, Cyber Security (Penetration Testing/ Red Teaming), Technology Consulting (MJ005350) role at KPMG China

KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients’ needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment and community. At KPMG, you’ll translate insights into action and reveal opportunities for all—our teams, our clients and our world.
Service Line Overview
At KPMG's Consulting practice, we do not limit ourselves to either strategy or implementation. We deliver both. Our Hong Kong division is the fastest growing within KPMG China and represents a young and enthusiastic team that always pushes for success. Since our inception, we have acquired in-depth knowledge of an incredibly broad range of sectors and services.
KPMG is the firm that views cyber security as a business enabler, and not just an IT issue. From the boardroom to back office, we help clients through Strategy and Governance, Transformation, Cyber Defense and Cyber Response. So that they are prepared for uncertainty and use cyber security to advance the business, not stand in the way.
Our wide range of projects includes Cyber Strategy, Cyber Digital Transformation, Governance & Risk, as well as a strong presence in Penetration Testing or Ethical Hacking. We are keen to speaking with cyber security specialists with various expertise and experiences to join our growth story.
We are now seeking Consultant/ Senior Consultant candidates for Cyber Defense Team.
Key Responsibilities

  • Perform vulnerability assessment and penetration tests on different platforms and technologies
  • Simulate real-time cyber-attacks using red team / blue team / purple team exercises
  • Conduct social engineering and email phishing attacks to simulate the theft of passwords, infiltrate systems, and download malware / ransomware
  • Conduct source code review to identify software program vulnerabilities and detect malware or malicious embedded code
  • Conduct cloud / server / network / middleware security configuration assessments
  • Conduct architecture review for cloud / on-premise IT environments
  • Prepare reports on identified security vulnerabilities and possible recommendations to remediate the vulnerabilities
  • Assist in continuously enhancing the existing security assessment methodologies
  • Support in developing marketing and training materials to help develop staff awareness within the company and communicate KPMG's capabilities to clients
  • Remain up-to-date on the latest cybersecurity threats, vulnerabilities and regulatory requirements
  • Develop constructive client relationships, both inside and outside of KPMG
Experience & Background
  • Bachelor’s degree in computer science, InformationTechnology, or related field.
  • At least one professionally qualification required: CREST, GXPN, GPEN, GCTI, GWAPT, OSCE3, OSEP, OSWE, OSEP, OSCP, CRTE, eCPTX, CISSP, or other relevant qualifications.
  • 2 years of relevant working experience preferred: Red/Blue/Purple Teaming, Web/Mobile/Network/OT/IoT/other Penetration Tests, Vulnerability Assessment, Source Code Review, Appliance/System/Cloud Configuration Review, Malware development, Social Engineering.
  • Candidate with less experience will be considered as Consultant.
  • Knowledge in threat intelligence, reverse engineering, security products, incident response, SOC operation or other related areas will be an advantage.
  • Experience with at least one scripting language (e.g. Bash, PowerShell) or programming language (e.g. Python, C, Java) preferred.
  • Able to understand basic networking concepts (e.g. routing, ALC, load balancers, SSL/TLS, TCP) is preferred.
  • Understand the industry recognised testing standards and have knowledge of common red teaming tools·
  • Knowledge base in enterprise technologies and operations, enterprise networking, internet application security, database security evaluation and architecture, with self-motivated learning ability.
  • Be able to conduct research and development and solve technical problems independently.
  • Be able to work as part of a team, and at the same time being an independent self-starter·
  • Have strong analytical, problem solving and inter-personal skills·
  • Commands excellent written and oral communication skills with the ability to present ideas and results to technical and non-technical audiences·
  • Possess a recognised Degree in Computer Science, Cyber Security, Computer/Information Engineering, Information Technology or a related discipline (STEM) is preferred·
  • Excellent written and verbal communication skills in English and Chinese (Mandarin or Cantonese)
Benefits we offer:
KPMG is looking for someone who is passionate about helping our clients with their cyber security challenges. In return, we are helping you to develop your skills and career within the KPMG network.
  • Well-structured career development and learning path, 1-to-1 coaching by our cybersecurity professionals
  • Access to various cyber security learning resources
  • Wide exposure to working with leading financial institutions and corporations
  • Continuous sponsorship and support on professional certificate development (i.e. Offensive Security, GIAC, CREST, etc.)
  • Opportunities for secondment / exchange within KPMG Global network based on staff performance and preference
  • Opportunities to attend KPMG overseas Global Cyber Events – such as HackNet / BlackHat
  • One annual professional membership sponsorship on the approved list
  • Work in a passionate team with blended cybersecurity talents
About KPMG
At KPMG China, we are committed to being an equal opportunity employer, with zero tolerance for any form of discrimination against any persons. It is important for us to create an inclusive, diverse and agile workplace for our people to develop and thrive at both a personal and professional level.
We strive to make ESG (environmental, social and governance) a watermark running through our organisation; from empowering our people to become agents of positive change, to providing better solutions and services to our clients to help them achieve their ESG goals. View Our Impact Plan to learn more about our ESG commitments and progress across four key pillars - Governance, People, Planet and Prosperity – and how we make a positive impact on our people, environment and society.
We encourage you to come as you are, and we welcome all qualified candidates to apply, and hope you unlock opportunities with us. Visit KPMG China website for more company information.
You acknowledge and agree that all personal information hereby provided regarding yourself will be used by KPMG China for its candidate selection purposed only. KPMG China collects, uses, processes, and retains your personal information in accordance with KPMG China’s Online Privacy Statement and/or KPMG China Privacy Statement (collectively "Privacy Statement "). During the recruitment process, KPMG China may need to store personal information of candidates in a designated third-party application tracking platform.
If you have any questions regarding the information you provided in the form or your job application in general, please contact KPMG China’s HR personnel in the location where your application is submitted (see here). Seniority level
  • Seniority level Entry level
Employment type
  • Employment type Full-time
Job function
  • Job function Engineering and Information Technology
  • Industries Professional Services

Referrals increase your chances of interviewing at KPMG China by 2x

Sign in to set job alerts for “Senior Java Consultant” roles. Senior Java Backend Developer - Web3 / Fintech / Financial Services (Senior) Staff Engineer - Java (Compliance Platform) Principal/Senior Engineer - Core - Platform Tool (Java) Senior/Staff Java Trading Developer, Liquidity Platform Principal/Senior Java Engineer - Multi-Language & Localization Lead Software Engineer, Java, Order Management System for Equities Trading Senior Engineer - Compliance Platform(Java) Principal/Senior Java Engineer - Defi - Earn Senior Engineer - Java (Exchange Platform - Financial Product) Lead Software Engineer, Electronic Trading Technology, Java Principal/Senior Engineer - Defi - Explorer(Java)

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Penetration testing Jobs in Hong Kong !

 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Penetration Testing Jobs