Protiviti Middle East Member Firm
Associate Consultant / Consultant - Cyber Security (VAPT, OSCP and OWASP)
Protiviti Middle East Member FirmOman22 hours ago
Full-timeConsulting

Role Summary


Looking for consultants to join the S&P team at Protiviti for Cyber Risk and Compliance. The role involves executing and managing various client engagements in Muscat, Oman.

The applicant will be responsible for assessing the security posture of client systems, platforms, and processes to improve the confidentiality, integrity, and availability of information systems in line with client's business objectives, regulatory requirements, and strategic goals.


Responsibilities


  • Provide innovation within the Vulnerability and Penetration Testing (VAPT) program regarding both process and technology.
  • Perform authorized attack surface reviews, penetration tests, and red team assessments.
  • Provide assessment reports that are understandable by the target audience and include practical recommendations based on sound risk management principles.
  • Update standards and procedures to continually improve security posture.
  • Assess the sufficiency of policies, standards, and procedures relative to security best practices.
  • Contribute to security-related information repositories and other business development activities.


Background Requirements


  • Bachelor’s Degree in Computer Science or substantial equivalent.
  • 1-2 years of professional experience in information security with a focus on technical assessments.
  • Knowledge of cyber security risk assessment and methodology aligned to ISO 27001, ISO 31000 and NIST
  • Experience with conducting gap assessments, risk assessments, developing policies and procedures.
  • Understanding common application platforms and technologies to evaluate complex application assessments using manual techniques and tools such as proxies and browser plugins.
  • In-depth understanding of OWASP, CVE, general security controls, and topics like the latest application and operating system exploits.
  • Knowledge of scripting and programming languages like Python, shell script, etc.
  • Preferable certifications: CEH / OSCP


Personal Skills


  • Ability to maintain critical thinking and composure under pressure.
  • Strong written and oral communication skills in English, able to convey complex concepts to a business audience.
  • Ability to be productive and focused with minimal supervision.
  • Understands VAPT in the context of risk management and organizational priorities.

Key Skills

Ranked by relevance