Manager - Offensive Security Specialist

4 weeks ago


Johannesburg, South Africa KPMG-SouthAfrica Full time
Job title/position:

Manager - Offensive Security Specialist

Number of positions:

Johannesburg: 1

Function and Business Unit:

Advisory - Risk Consulting: Technology Assurance (Cyber Security)

Description of the role and purpose of the job:

KPMG is currently seeking a Manager to join our Cyber Security consulting and assurance practice based in Johannesburg.

The KPMG Cyber Security practice is one of our fastest growing units. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, world-class training and market leading tools, we make sure our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Technology Assurance.

Working with KPMG you will consult on client projects, translating business and customer needs into innovative business and technology solutions. You will identify changes and recommend solutions that will typically involve a combination of cyber strategy and security excellence outcomes. You will be exposed to a range of exciting projects across industry sectors and service lines including:

- Driving the linkage between business strategy and cyber security (and vice versa), to deliver meaningful outcomes

- Defining the technology strategy to create new streams of value in a business, and defining associated technology execution roadmaps

- Designing innovative technology solutions for improving cyber security posture and advise on reducing cyber risk

- Identify and assist client in meeting compliance requirement for and through cyber security

- Working closely with the local team and member firms to bring innovation to our existing capabilities to help KPMG remain at the forefront of strategy, operational excellence and technology practices and thinking

As part of the role you will be expected to have detailed knowledge of security technologies and their application to addressing business challenges. The focus will be on delivering high quality engagement outcomes for our clients and maintaining productive client relationships that allow you to build strong professional networks over time.

We believe in diversity of thought background and unique experience. You need to have a solid background in technology as well as consulting. You're passionate about technology and innovation, finding novel approaches to solve problems. You thrive in a collaborative and innovative culture and want to join a firm that values problem solvers, the kind of people who reimagine the possible for their clients and key stakeholders.

We are looking for people in this role with a passion for and / or experience in the following areas:

- Play a key role as subject matter expert in the business for offensive security services

- Perform Vulnerability assessments of Web applications, APIs, Networks, Mobile applications, Desktop, and Cloud infrastructure based on leading security frameworks such as OWASP and CREST

- Perform Penetration testing, red team and purple team assessments including infrastructure, wireless and applications. This includes related activities such as Malware Analysis, Social Engineering, Reverse Engineering, Database Security, Network Security and Threat Modelling.

- Perform security architecture assessments and configuration reviews on on-premise and cloud environments.

- Provide guidance on security architecture, assisting clients with reducing their attack surface and optimizing their cyber defensive capabilities to adapt to modern threats.

- Take responsibility for delivering high quality deliverables and outcomes for our clients. Ability to work as well as an individual and in a broader team environment, in line with our KPMG values.

- Analyse, workshop and present insights and recommendations enabled by strategic thinking, technical knowledge and strong and clear communication skills.

- Demonstrate an ability to translate complex technical results into business language through professional report writing.

- Knowledge of current and emerging IT security technologies.

- Maintain awareness of latest and common security threats, attack vectors and TTPs.

- Ability to diagnose and troubleshoot deep technical issues.

Key responsibilities:

- Take responsibility for leading technology based consulting/ assurance engagements, managing the day-to-day delivery effort and work of the delivery team.

- Provide subject matter expertise in the business for specific technical security domains.

- Engage in planning, design, implementation, testing, and operation of cyber breach resilience processes and systems on client networks and applications.

- Support recovery efforts at impacted clients, helping them to minimize operational impact and resolve immediate defensive gaps.

- Develop next generation offensive security service offerings.

- Analyse, workshop and present insights and recommendations enabled by strategic thinking, technical knowledge and strong and clear communication skills.

- Support business development activities including the creation of compelling and differentiated value propositions in opportunity pursuits.

- Lead and coach others in engagements, and mentoring staff as they grow their capabilities, careers and client service impact. Performance management of colleagues to aid in their career growth.

- Extend the teams technical capabilities, toolsets and methodologies to ensure quality and efficiency.

- Maintain awareness of latest and common security threats, attack vectors and TTPs.

Minimum requirements to apply for the role (including qualifications and experience):

- A minimum of 5 - 8 years of experience in Information Security or in a technology related field. At least 2 years' experience in leading a team in related subject matter.

- Bachelor's degree from an accredited college/university or equivalent experience.

- Advanced security related certifications such as CISSP, OSCP, OSCE or equivalent

- Strong experience in leading and conducting penetration tests, red team, purple team and technical vulnerability assessments.

- Experience in infrastructure, operating system (including AD) and application security assessments against leading benchmarks.

- Experience in conducting cloud security assessments (Azure, AWS, Google)

- Experience in Operational Technology security assessments will be advantageous.

- Demonstratable track record in security research and attendance/ presenting at cybersecurity conferences.

- Excellent written and verbal communication, facilitation, leadership, business development, and presentation skills

- Ability to travel

- Consulting experience from a well-established consulting practice preferred

  • Johannesburg, South Africa Kontak Recruitment SA Full time

    Woodmead, Johannesburg - Information Technology **Microsoft Security Specialist (JB3842)** **Woodmead, Johannesburg** R95 000 per month **Duration**: Permanent **Overview** **Minimum Requirements**: At least 5 years of experience in IT security or a related field. Strong technical expertise in Microsoft security solutions, including Microsoft Defender...


  • Johannesburg, South Africa HeadHunters Full time

    **Reference** - PE002262/VD**Location** - Gauteng, JHB - Central**Salary Interval** - Monthly**Package** - None-negotiable**Description** **Our client, a market leader in the IT Industry, based Bryanston, Johannesburg, is currently looking to employ an experienced IT Security Specialist.** **An exciting new job opportunity awaits...


  • Johannesburg, South Africa Exclusively Remote Full time

    Experienced IT Support Specialists skilled Cyber Security We are seeking skilled Cyber Security Support Specialists to join our clients dynamic team. As a Cyber Security Support Specialist, you will be responsible for providing technical support and assistance to ensure then integrity, confidentiality, and availability of our organization's information...


  • Johannesburg, South Africa BankservAfrica Full time

    **Do you see a future that includes more?** **More exposure to innovative technologies, more personal growth, more experience?** **Look at the position we have available and see how, together we can shape your future, so that you can give more and include more.**: - Job Title- Information Security Specialist- Location- Selby - Johannesburg, GP 2001 ZA...


  • Johannesburg, South Africa Exclusively Remote Full time

    Experienced IT Support Specialists skilled Cyber SecurityWe are seeking skilled Cyber Security Support Specialists to join our clients dynamic team. As a Cyber Security Support Specialist, you will be responsible for providing technical support and assistance to ensure then integrity, confidentiality, and availability of our organization's information...


  • Johannesburg, South Africa Impactful Specialist Solutions Full time

    Unemployment remains one of the country’s greatest challenges, which is why at Impactful we’re compelled to work with the unemployed youth in local and rural communities, as well as people with disabilities, to assist them in developing useful skills that will make them much more attractive to potential employers.As Impactful Specialist...


  • Johannesburg, South Africa Transnet Full time

    **_ Equity Statement :Preference will be given to suitably qualified Applicants who are members of the_** **_designated groups in line with the Employment Equity Plan and Targets of the Organisation/Operating_** **_Division._** **_ Alternative Application Methods: (Completed Curriculum Vitae to be submitted)_** Post: E-mail: Fax: before the closing date of...


  • Johannesburg, South Africa FirstRand Full time

    Job Description To ensure that the design of IT security architecture as well as appropriate security controls are in line with FRG policies, processes, standards and procedures The incumbent will also ensure that proper and adequate IT technology and tools are in place to enforce these controls - Increase operational efficiency and suggest solutions to...


  • Johannesburg, South Africa Transnet Full time

    **_ Equity Statement :Preference will be given to suitably qualified Applicants who are members of the_** **_designated groups in line with the Employment Equity Plan and Targets of the Organisation/Operating_** **_Division._** **_ Alternative Application Methods: (Completed Curriculum Vitae to be submitted)_** Post: E-mail: Fax: before the closing date of...


  • Johannesburg, South Africa MTN Nigeria Full time

    **Context** MTN is entering a new phase in its lifecycle where operational and commercial excellence has become critical for success. The urgency for change has become more heightened amidst increased competitive intensity across all markets in which MTN operates. The Group’s Information Security function must therefore ensure the successful delivery in...

  • Senior Specialist

    4 weeks ago


    Johannesburg, South Africa MTN Nigeria Full time

    **Mission/ **Core purpose of the Job Deliver specialist technical knowledge on the Technology Enterprise Systems within the TCoE(Technology Centre of Excellence) in line with the business requirements of MTN SA and all other OPCOs. Provide thought leadership and direction on the different technologies pertaining to Cyber Security.


  • Johannesburg, South Africa Hollard Recruitment Full time

    **Job Advert Summary**: **Required Knowledge and Experience**: **Knowledge** - Risk based auditing methodology - IIA standards - Computer infrastructure, networks and security - Basic business and financial understanding - Basic insurance knowledge (an advantage) - Sound understanding of IT, data and privacy related legislation and regulation **Skills** -...


  • Johannesburg, South Africa SUBHUJO TECHNOLOGIES Full time

    **Title of job: Senior Specialist: Security Solutions Sales** **1. Mission/ Core purpose of the Job** To lead demand-generating sales activities for Security Solutions, from new and existing clients in the enterprise space, through consultative selling of the full scope of Security software and services offering, tailoring solutions to address client...

  • Security Supervisor

    4 weeks ago


    Johannesburg North, South Africa Securitas SA (Pty) Ltd ( Security Industry) Full time

    Duties: All Security related aspects. - Property and assets protection. - Client liaison. - Manages all site security functions, within area of responsibility. - Optimum maintenance of client service levels and retention of business. - Self-discipline and adherence to company values: Integrity, Vigilance and Helpfulness. - Must be able to do investigation of...


  • Johannesburg, South Africa Edge Executive Search Full time

    Senior Security Architect - 2023-02-21 - 2023-03-02 - Permanent - Tea000018 - Banking- Business- Gauteng, JHB - Northern Suburbs - R 1200000 - R 1400000 Annually Cost To Company (Market related)- Our client is seeking to employ a Senior Security Architect at their Head-Office, you will be responsible for ensuring that there is alignment of all enterprise...


  • Johannesburg, South Africa Recru-it Full time

    Key Roles and Responsibilities: Determine who requires access to which information & Plan, coordinate, and implement information security programs. Help protect against Web threats that facilitate cyber-crime like malware, phishing, viruses, denial-of service attacks, and hacking. Ensure you know and follow the incident and change processes, Perform Problem...


  • Johannesburg, South Africa Adzuna ZA B C2 Full time

    Key Roles and Responsibilities:Determine who requires access to which information & Plan, coordinate, and implement information security programs.Help protect against Web threats that facilitate cyber-crime like malware, phishing, viruses, denial-of service attacks, and hacking.Ensure you know and follow the incident and change processes, Perform Problem...

  • Senior Lead, Security

    4 weeks ago


    Johannesburg, South Africa Kyndryl South Africa (Pty) Limited Full time

    **Why Kyndryl** Kyndryl is a market leader that thinks and acts like a start-up. We design, build, manage, and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our...


  • Johannesburg, South Africa Transnet Full time

    **_ Equity Statement :Preference will be given to suitably qualified Applicants who are members of the_** **_designated groups in line with the Employment Equity Plan and Targets of the Organisation/Operating_** **_Division._** **_ Alternative Application Methods: (Completed Curriculum Vitae to be submitted)_** Post: E-mail: Fax: before the closing date of...


  • Johannesburg, South Africa Risingsun Softsol Full time

    **Job Title: Technical Product Owner - Kubernetes Security Specialist** **Duration**: 6 Months **More about the project**: Container Security in a Kubernetes Environment **Job Description / Responsibilities**: - has strong technical skills and rich industry experience in engineering roles to be able to meet job requirements. The position demands a mix...