Jobiglo

No results.

Consultant / Senior Consultant – VAPT (Cybersecurity)

EY · Ébène

Mid 🇬🇧 English
Burp Suite Nmap Nessus OpenVAS Metasploit Kali Linux MITRE ATT&CK Framework Cyber Kill Chain OWASP Top 10 SANS Top 25

Job description

About the role

Join EY's Technology Consulting team to help clients strengthen their security posture through vulnerability assessments, penetration testing, Red Teaming and secure architecture reviews. You will work on a variety of web, network, API, cloud and infrastructure engagements, applying offensive security techniques and emerging AI security knowledge.

Key responsibilities

  • Conduct vulnerability assessments and penetration tests on web applications, networks, APIs, cloud environments and infrastructure.
  • Apply OWASP Top 10, SANS Top 25 and common attack vectors to identify security weaknesses.
  • Use tools such as Burp Suite, Nmap, Nessus, OpenVAS, Metasploit and Kali Linux to support assessments and validate remediation.
  • Support Red Team and adversary simulation activities, leveraging the MITRE ATT&CK Framework and Cyber Kill Chain.
  • Identify indicators of compromise across phishing, credential attacks, privilege escalation, lateral movement and command‑and‑control activities.
  • Review application, infrastructure and cloud architectures to pinpoint design weaknesses and control gaps.
  • Provide practical recommendations aligned with industry standards and security‑by‑design principles.
  • Contribute to continuous improvement initiatives and EY cybersecurity capability development.

Required profile

  • Strong analytical, investigative and problem‑solving abilities.
  • Clear communication skills to explain technical risks to non‑technical stakeholders.
  • Interest in offensive security, threat detection, cloud security and emerging AI security domains.
  • Ability to understand attack techniques, assess risks and propose actionable remediation.

Required skills

  • Burp Suite
  • Nmap
  • Nessus
  • OpenVAS
  • Metasploit
  • Kali Linux
  • MITRE ATT&CK Framework
  • Cyber Kill Chain
  • OWASP Top 10
  • SANS Top 25

What we offer

  • Access to EY’s global network and resources.
  • Opportunities to work on diverse, high‑impact cybersecurity projects.
  • Supportive, inclusive culture focused on professional growth.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec EY.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

Apply now →

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 1 month ago

Expires 2 weeks from now

57 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

EY

Ébène