TC-CS-CTM-VM-Staff
EY
EY
Join EY's Cyber Security team as a Vulnerability Management Staff member. This role offers a unique opportunity to shape a growing service offering within a leading global firm. You will be instrumental in enhancing our clients' security posture through expert vulnerability analysis and reporting.
This position is perfect for individuals seeking to build a distinguished career, leveraging global scale, supportive culture, and advanced technology. Your unique perspective will contribute to EY's continuous improvement and our mission to build a better working world.
As a key member of the Cyber Security team, you will manage comprehensive Vulnerability Management processes for large enterprises, utilizing leading solutions like Qualys, Nexpose, or Tenable. Your expertise will extend to understanding and implementing exception processes for cloud-hosted systems, databases, and web services.
You will lead the analysis of current environments to identify critical deficiencies and propose effective solutions. This includes reviewing findings, identifying root causes, and recommending sustainable improvements. Furthermore, you will possess the capability to identify and exploit security vulnerabilities across diverse systems and stay abreast of the latest advancements in the vulnerability management lifecycle. You will also facilitate knowledge sharing with clients and contribute to EY's thought leadership initiatives.
To excel in this role, candidates must have a strong background in managing Vulnerability Management processes for enterprise clients, proficiency with tools such as Qualys, Nexpose, or Tenable, and a deep understanding of vulnerability management and exception processes for cloud environments, databases, and web services. The ability to lead teams and provide technical guidance is essential.
Key skills include understanding web-based application vulnerabilities (OWASP Top 10), TCP/IP network protocols, network security, and common attack vectors. A strong command of technical writing, including report generation and presentation development, is also required. Candidates must hold a graduate or postgraduate degree in Computer Science, Information Systems, Engineering, Business, or a related field, coupled with a minimum of 3 years of experience in penetration testing and vulnerability assessment. Relevant certifications such as CEH, Qualys Certified Specialist, or CISM are highly desirable.
EY Global Delivery Services ( EY GDS)
Information Technology & Services