Pen Testing Associate
CLA is a top 10 national professional services firm where our purpose is to create opportunities every day, for our clients, our people, and our communities through industry-focused wealth advisory, digital, audit, tax, consulting, and outsourcing services. Even with more than 8,500 people, 130 U.S. locations, and a global reach, we promise to know you and help you.
We are seeking a Penetration Testing Associate. Under general direction, this role acts as an ethical hacker who tests the security of clients' computer systems, networks, and applications. They support efforts to simulate attacks that may identify vulnerabilities and weaknesses in clients' systems that could be exploited by malicious hackers. Assist in making recommendations on how to improve client's systems security.
Essential Job Functions
• Assists with the evaluation, testing, and scanning of client networks to help determine weaknesses in client IT operations, processes, systems, and related controls.
• Support efforts to identify unique issues specific to the client's environment and assist in presenting solutions to the engagement teams based on findings.
• Perform penetration testing such as EPT, phishing & calls, and wireless.
• Assist with internal and external technical security assessments.
• Aid in review of tactics and processes to protect organizations from threats.
• Assists in the interpretation of findings to determine if systems and processes can appropriately react to threats.
• Support efforts to identify security settings that may need to be enhanced.
• Participate in tabletop tests to help clients prepare for disaster events.
• Provide direction, train, and delegate work to interns as needed.
• Assist Seniors, Managers, and Directors with client relationships, practice management, and business development activities.
Requirements
Experience
• None required.
• 1 year of relevant experience preferred.
Education
• Bachelor's degree is required. (Combination of relevant experience, education, and training may be accepted in lieu of degree.)
• Degree in Computer Science, Information Technology or related field preferred.
Certifications / Licenses
• None required.
• The following certifications are preferred:
- OSCP
- OSWP
- CEH
- PNPT
- Sec+
- Net+
Technical Competencies
- Knowledge of penetration testing frameworks such as OSSTMM, OWASP, and PTES required
- Ability to perform testing such as EPT, phishing & calls, and/or wireless.
- Proficiency in Microsoft Outlook and Office products (Word, Excel, PowerPoint, etc) required
Travel Requirements
This position requires frequent local travel to/from client sites and may require occasional non-local or overnight travel for client visits, training, meetings and/or other business-related purposes.
#LI-RC1
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
Click here to learn about your hiring rights.
Wellness at CLA
To support our CLA family members, we focus on their physical, financial, social, and emotional well-being and offer comprehensive benefit options that include health, dental, vision, 401k and much more.
To view a complete list of benefits, click here.