Cyber Security Principal Consultant
Role details
Job location
Tech stack
Job description
As a Principal Consultant, specialising in Cyber Security within Technology Risk Assurance, you will be responsible for assisting in managing, delivering and leading cyber engagements across a diverse portfolio of clients across the breadth of the mid-market, ensuring both excellent client service and identification of further work opportunities. The role will involve managing the delivery of agreed work activities with a primary focus on technical security including offensive security services.
You'll make an impact by:
- Delivering cyber security engagements, from scoping through to delivery, debriefs and report writing.
- Contributing towards the development of exciting new market facing cyber security products and services and our internal knowledge sharing hubs.
- Supporting the development of other members of the team.
- Representing RSM in external meetings, including attendance at client workshops, audit committees, and regional networking events.
- Building trusted relationships with senior client stakeholders and identifying client and service opportunities.
What we are looking for:
Are you someone who thrives on variety, loves learning new things, and enjoys connecting with people? If you can spot inefficiencies in everyday life and are passionate about making improvements, this role is perfect for you!
Requirements
- Experience of working in professional services firms.
- Demonstrable experience of delivering and leading cyber security advisory and offensive security testing engagements.
- Demonstrable experience of delivering advisory engagements relevant to security operations and defensive controls.
- Understand technology trends, cyber threats, and industry issues.
- Proficient in report writing.
- Experience with security testing techniques such as threat modelling, reconnaissance, social engineering, enumeration, attack path mapping, exploitation, and clean up from a variety of adversarial perspectives (white/grey/black box testing).
- Proficient in infrastructure and web application testing, with experience in API testing desirable.
- Proficient in using common commercial and open-source penetration testing tool sets including Kali Linux, Metasploit, Nmap, BurpSuite, Nessus and other industry standard tools.
- Hold an industry recognised certification (this can be at any level from Offensive Security Certified Professional (OSCP); CompTIA PenTest+; CHECK, CREST).
- Motivated to lead with purpose, innovate, and make a genuine lasting impact.
- Takes responsibility for work tasks and quality, managing own workload and deadlines under supervision.
Benefits & conditions
We recognise that our people are our most important assets. That's why we offer a flexible reward and benefits package that will help you have fulfilling experience, both in and out of work.
- Hybrid working.
- 26 Days Holiday.
- Lifestyle, Health, and Wellbeing including financial wellbeing benefits such as financial tools, electric car scheme and access to a virtual GP.
- Access to a suite of 300+ courses on demand developed by our inhouse Talent Development team.
LI-AK1 Diversity and Inclusion at RSM At RSM, we want to create a strong sense of belonging so that people of all identities, backgrounds, and cultures feel they can bring their true self to work. Our clients come from all walks of life. We aim to achieve that same diversity of background, experience and perspective in our own teams, so that we can genuinely understand our client's needs. Diverse teams bring a broader range of ideas and insights to work. That's why we're working together to ensure our firm's principles and processes support a firm culture that embraces difference and strengthens inclusion.