At PwC, our cybersecurity professionals are dedicated to protecting organizations from evolving cyber threats by leveraging advanced technologies and strategic approaches. The role focuses on penetration testing, where consultants simulate cyber-attacks to identify and exploit vulnerabilities within computer systems. This proactive assessment helps uncover weaknesses that could be targeted by malicious actors, enabling clients to strengthen their defenses. The position emphasizes building strong client relationships, managing and inspiring teams, and continuously developing technical expertise. Candidates are expected to navigate complex situations with confidence, anticipate the needs of clients and teams, and deliver high-quality results while embracing ambiguity as an opportunity for growth.
Key Responsibilities
- Conduct penetration testing exercises to identify security vulnerabilities across various systems and platforms.
- Assess and exploit weaknesses in applications, networks, and infrastructure to simulate real-world cyber-attacks.
- Build and maintain meaningful client relationships by understanding their security needs and providing tailored solutions.
- Collaborate with team members to manage projects and deliverables effectively.
- Prepare clear, detailed technical documentation and present findings and recommendations to stakeholders.
- Stay updated on emerging cybersecurity trends, threat landscapes, and new technologies.
- Demonstrate adaptability in ambiguous situations and proactively seek opportunities for professional growth.
Required Qualifications
- Bachelor’s degree in Cyber Security, Computer Science, Systems, or a related discipline from a recognized university.
- Up to 3 years of relevant experience in cybersecurity, preferably in vulnerability assessment, penetration testing, or related fields.
- Basic understanding of networking concepts, protocols, and architectures such as TCP/IP, HTTP, and DNS.
- Familiarity with operating systems including Windows, Linux, and Unix.
- Exposure to common security tools like Burp Suite, Nessus, Nmap, Metasploit, OWASP ZAP, or similar tools is preferred but not mandatory.
- Ability to assess different development platforms such as PHP, ASP, NodeJS, and Java.
- Strong knowledge of OWASP Top 10 and SANS Top 20 security risks.
- Commitment to staying current with emerging technology trends and the evolving threat landscape.
Preferred Qualifications and Additional Benefits
- Practical cybersecurity certifications such as CEH, eCCPT, eJPT, eWAPT, OSCP, or OSCE are highly desirable.
- Experience with bug bounty programs, security research, red teaming, or adversary simulation.
- Proven ability to work in client-facing, consulting, or project-based environments.
- Strong analytical and problem-solving skills.
- Excellent communication skills, including the ability to prepare technical documentation and present findings effectively.
- PwC A.F. Ferguson & Co. is an equal opportunity employer committed to diversity and inclusion, fostering an inclusive environment for all employees.
Additional Information
- No travel requirements for this role.
- Work visa sponsorship is not available.
- Government security clearance is not required.
This opportunity is ideal for cybersecurity professionals seeking to deepen their penetration testing expertise while contributing to a leading advisory firm’s security practice.