Penetration Testing Consultant

Posted 5hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Penetration Testing Consultant at BMO conducting extensive manual security assessments for critical financial applications. Collaborating with stakeholders to enhance security strategies and practices.

Responsibilities:

  • Provides information security consulting services for BMO overall and businesses/groups
  • Liaises with stakeholders to understand problems and opportunities and enables BMO to meet its goals by understanding business vision, objectives and KPIs
  • Understands and can explain to others the core processes, risks and mitigation techniques for designated areas
  • Develops and champions information security best practices, including staying abreast of industry information security and business trends through benchmarking and/or participation in professional associations
  • Facilitates discussions and follows a disciplined approach to plan, elicit, analyse, document, communicate and manage initiatives and issues with stakeholders by applying a variety of elicitation techniques to probe, challenge and understand associated risks

Requirements:

  • Typically between 4 - 7 years of relevant experience
  • post-secondary degree in Information Security, Computer Science, Engineering, and/or Information Systems or a related field of study or an equivalent combination of education and experience
  • Preference for candidates who have at least one certification in a related field, with strong preference for Information security certifications from a well-recognized institution (e.g. (ISC)2, ISACA, SANS)
  • Understanding of industry standards and frameworks e.g. NIST Cyber Security Framework (CSF), ISO 27001 and 27002, Payment Card Industry (PCI) Data Security Standard (DSS), etc. - In-depth
  • Experience in information security concepts and methodology
  • Knowledge of business analysis, project delivery practices and standards across the project lifecycle - In-depth
  • Knowledge of information security processes, procedures and controls - In-depth
  • Understanding of and problem solving ability for information security issues within their business group - Working
  • Understanding of information security risk and regulatory requirements - Working

Benefits:

  • Health insurance
  • Tuition reimbursement
  • Accident and life insurance
  • Retirement savings plans