At a Glance
- Tasks: Lead advanced penetration tests and provide actionable security recommendations.
- Company: Join a global company that empowers local teams and values diversity.
- Benefits: Enjoy flexible work options, wellbeing support, and ongoing learning opportunities.
- Why this job: Make a real impact in cybersecurity while working in an inclusive environment.
- Qualifications: 5+ years in penetration testing with strong communication and organisational skills required.
- Other info: Eligibility for SC Clearance and current CREST CRT certification is essential.
The predicted salary is between 43200 - 72000 Β£ per year.
We are seeking a highly skilled and experienced Offensive Security Consultant with a strong focus on threat intelligence and attack methods. The ideal candidate will manage and conduct advanced penetration testing engagements, leveraging threat intelligence to simulate real-world attacks across various environments, including OT, IT, web applications, cloud infrastructure, and APIs. This role requires a deep understanding of adversarial approaches, excellent communication skills, and the ability to provide strategic, actionable recommendations to enhance our clients\’ security posture.
Responsibilities:
- Lead and manage complex penetration testing engagements, applying a threat intelligence-led approach.
- Execute advanced tests across environments such as applications, infrastructure, web, APIs, O365, Azure, AWS, and OT, informed by current threat landscapes.
- Develop and maintain test and execution plans based on threat intelligence analysis.
- Identify and prioritize assets based on criticality and exposure to threats.
- Plan and schedule testing based on threat assessments and client needs.
- Produce detailed reports with technical findings, business impact, and remediation recommendations.
- Communicate complex security concepts and threat insights to diverse audiences.
- Collaborate with client teams to improve security protocols and remediate vulnerabilities.
- Track remediation progress and update stakeholders regularly.
- Conduct security research and contribute to technical content on emerging threats and attack techniques.
- Enhance security monitoring capabilities by providing insights into offensive techniques.
- Drive patching efforts prioritizing threats and potential exploits.
Experience and Skills:
- At least 5 years in penetration testing with emphasis on adversarial tactics and threat intelligence.
- Understanding of OT and IT assets, technologies, and security best practices within the threat landscape.
- Knowledge of network protocols, cryptography, vulnerabilities, and attack vectors.
- Proficiency with penetration testing tools and threat intelligence analysis methodologies.
- Experience in executing complex, threat-informed penetration tests.
- Excellent communication skills for technical and non-technical audiences.
- Strong organizational skills to manage multiple engagements.
- Current CREST CRT certification or higher is required.
- Eligibility for SC Clearance.
- Experience with Breach Attack Simulation tools, Vulnerability Management, and cloud environments (AWS, Azure, GCP).
- Knowledge of Risk Management frameworks and ISO 27001.
- Additional certifications such as CISM, CISSP, ECSA, CREST CCT are advantageous.
About Us:
Weβre a global company empowering local teams with exciting work that impacts the world. Our portfolio includes consulting, applications, cloud, and infrastructure services. We foster an inclusive environment that values mutual respect, accountability, and continuous learning, supporting diversity through various Inclusion Networks.
What We Offer:
We provide benefits supporting your wellbeing, ongoing learning opportunities, and flexible work options. More about NTT DATA UK & Ireland can be found on our website. We are committed to diversity and inclusion, guaranteeing interviews for applicants with disabilities who meet minimum role requirements, and providing reasonable adjustments during recruitment. Join us in building a diverse and empowered team.
#J-18808-Ljbffr
Consultant Penetration Tester employer: NTT
Contact Detail:
NTT Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Consultant Penetration Tester
β¨Tip Number 1
Familiarise yourself with the latest threat intelligence trends and attack methods. This knowledge will not only help you in interviews but also demonstrate your proactive approach to staying updated in the field.
β¨Tip Number 2
Network with professionals in the cybersecurity community, especially those who specialise in penetration testing. Attend relevant conferences or webinars to make connections that could lead to referrals or insider information about our hiring process.
β¨Tip Number 3
Prepare to discuss specific case studies or experiences where you've successfully executed penetration tests. Highlight how you used threat intelligence to inform your strategies, as this aligns closely with what weβre looking for.
β¨Tip Number 4
Showcase your communication skills by practising how to explain complex security concepts in simple terms. This is crucial for the role, as you'll need to convey findings to both technical and non-technical audiences effectively.
We think you need these skills to ace Consultant Penetration Tester
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights your experience in penetration testing, particularly focusing on adversarial tactics and threat intelligence. Use specific examples of past engagements to demonstrate your skills.
Craft a Compelling Cover Letter: Write a cover letter that showcases your understanding of the role and the company. Mention your relevant experience and how it aligns with their needs, especially your ability to communicate complex security concepts effectively.
Highlight Relevant Certifications: Clearly list your certifications such as CREST CRT, CISM, or CISSP in your application. These credentials are crucial for this role and should be prominently featured to catch the employer's attention.
Showcase Communication Skills: In your application, provide examples of how you've communicated technical findings to non-technical audiences. This is essential for the role, so demonstrating this skill will strengthen your application.
How to prepare for a job interview at NTT
β¨Showcase Your Technical Expertise
Be prepared to discuss your experience with penetration testing tools and methodologies. Highlight specific projects where you applied threat intelligence to simulate real-world attacks, as this will demonstrate your hands-on skills and understanding of the role.
β¨Communicate Clearly
Since the role requires explaining complex security concepts to diverse audiences, practice articulating your thoughts clearly. Use simple language when discussing technical details, and be ready to provide examples that illustrate your points effectively.
β¨Demonstrate Strategic Thinking
Prepare to discuss how you prioritise assets based on criticality and exposure to threats. Share your approach to developing test plans and executing them based on threat assessments, showcasing your ability to think strategically about security.
β¨Stay Updated on Threat Landscapes
Familiarise yourself with current trends in cybersecurity and emerging threats. Being knowledgeable about recent attack vectors and vulnerabilities will not only impress your interviewers but also show your commitment to continuous learning in the field.