Senior Security Consultant

USA, US

LRQA

We help businesses evolve by connecting them with tomorrow’s thinking, today.

View company page

About LRQA Nettitude

 At LRQA Nettitude, we are passionate about cybersecurity and managing cyber risk – keeping our clients data and business secure and protected at every stage of its journey. We aim to be ‘their trusted cyber partner’. Founded in 2003, LRQA Nettitude is an award-winning provider of cybersecurity services, bringing innovative thought leadership to the ever-evolving cybersecurity marketplace.

 

Leveraging our tenacious curiosity, we aim to operate at the forefront of the industry. Through our research and innovation centers, LRQA Nettitude provides threat led services that span technical assurance, consulting and managed detection and response offerings.

 

We are driven by a desire to build and deliver the best cybersecurity propositions in the industry and stay abreast of the evolving legislative and regulatory cybersecurity landscape. This helps our clients to prioritize their cybersecurity risks, enabling them to focus on the activities that are core to their business.

 

We provide pragmatic cybersecurity for industries such as Finance & Banking, IT, Technology and Engineering, Maritime, Offshore, Retail, Healthcare, Manufacturing and Critical National Infrastructure.

 

You can find out more about us at www.nettitude.com. If you want to review our research and tooling, then head on over to https://labs.nettitude.com

 

The Role:

 

  • Support the development and maintenance of the client portal by engaging with different stakeholders and translating their business requirements into appropriate software development tickets.
  • Drive development of the client portal by designing additional functions and features that could be added to support different areas of the business.
  • Develop secure software development processes such as unit testing to ensure the portal is built with security from the ground-up.
  • Utilize software development skills to develop tools to assist with performing cybersecurity penetration tests or automating other business tasks.
  • Act as Technical Project Manager, the main technical resource, for key clients by providing scoping, project delivery support, and project tracking for large and complex projects.
  • Identify and implement methods of team improvement, process improvement, and improvement of any other aspect of day-today team delivery.
  • Create and maintain new security assurance services.
  • Deliver penetration testing and other related security activities, for example Cyber Essentials, Cyber Essentials Plus, PCI DSS-ASV scans, CHECK, CBEST, etc.
  • Deliver at least four of the engagement types listed to a high level of quality: web application, internal infrastructure, external infrastructure, API, cloud, mobile application.
  • Perform kick off calls, wash up calls, email responses and debrief for each assigned engagement.
  • Help develop client relationships and to provide professional consultative style engagements.
  • Share knowledge through the publishing of blog posts and presenting at internal or external meetings.
  • Assist account managers by providing insight into a clients’ principal security concerns; identify opportunities for up-selling/cross-selling, understanding client needs and assisting with other pre-sales activities.
  • Demonstrate strong interpersonal skills and to be responsible for one or more strategic areas of business.
  • Provide mentorship support for other security consultants where requested.

 

Skills and Experience:

 

Bachelor’s degree in Cyber Security, Information Systems, Computer Science, or another related field.

 

Four (4) years Software Development, Cybersecurity, Information Security. -Experience with Secure Software Development Lifecycle (SDLC). Experience in project management, specifically around software development projects and the agile framework. Development experience in PHP and Python. Creation of tooling to aid in penetration testing. CREST (CCSAM, CCSAS), Offensive Security (OSCP, OSEP, OSCE), GIAC (GXPN, GPEN) or equivalent level of IT Security related certification.

 

At least 48 months of relevant IT Security industry experience in the past 5 years.

 

At least 36 months of penetration testing experience in the past 5 years with experience in infrastructure and web application testing.

 

Special Requirements           

Must pass technical interview.

 

Travel Requirements

30% domestic travel

 

Location:

  • 810 Seventh Avenue, Suite 1110, New York, NY 10019 (Headquarters)
  • Remote work option available

 

What we offer:

 

We are a people-focused, high-performing, high-trust managed security services team. We truly pride ourselves on our investment in people, meaning you’ll always have opportunities to develop yourself and get involved in developing others.

 

Salary banding:

 

$139,920.00 to $145,000.00 per annum

 

The range of benefits we offer include:

 

  • Medical, Dental & Vision Insurance
  • Generous vacation time and paid holidays
  • 401(k) Plan and Company Matching Contributions
  • Employee Assistance Program (EAP)
  • Flexible Spending Account (FSA) and Commuter Benefits Program Available

 

Apply?

 

Are you interested in this job? Apply now via the ‘apply’ button and upload your C.V. and cover letter 

Diversity and Inclusion at LRQA:

We are on a mission to be the place where we all want to work and we are passionate about embracing different perspectives because we understand the value this brings to our business, our clients and each other. We are all about creating a safer and more sustainable future and our inclusive culture is right at the heart of our business.

Together our employees make our communities better and we want you to be part of our diverse team!

LRQA is a leading global assurance provider.  The integrity and expertise we bring to our partnership with clients support their journey to a safer, more secure and more sustainable future. (Group entities).

Copyright © LRQA 2021. All rights reserved. Terms of use.  Privacy Policy.

 

Apply now Apply later
  • Share this job via
  • or

Tags: Agile APIs Banking C Cloud Computer Science CREST Finance GIAC GPEN GXPN Offensive security OSCE OSCP PCI DSS Pentesting PHP Privacy Python SDLC Web application testing

Perks/benefits: Career development Flexible spending account Flex vacation Health care

Region: North America
Country: United States
Job stats:  5  1  0
Category: Consulting Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.