KPMG Ukraine

Assistant Manager - Application Security Testing/ Red Teaming

KPMG Ukraine  •  Mumbai, IN (Onsite)  •  1 month ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

About KPMG in India

KPMG entities in India are professional services firm(s). These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993. Our professionals leverage the global network of firms, and are conversant with local laws, regulations, markets and competition. KPMG has offices across India in Ahmedabad, Bengaluru, Chandigarh, Chennai, Gurugram, Jaipur, Hyderabad, Jaipur, Kochi, Kolkata, Mumbai, Noida, Pune, Vadodara and Vijayawada.

KPMG entities in India offer services to national and international clients in India across sectors. We strive to provide rapid, performance-based, industry-focused and technology-enabled services, which reflect a shared knowledge of global and local industries and our experience of the Indian business environment.

  • Strong understanding of security risks in networks and application platforms
  • Strong understanding of network security, infrastructure security and application security,
  • Strong understanding of OSI, TCP/IP model and network basics
  • Demonstrate technical penetration testing skills on IT infrastructure, web applications, mobile platforms and Red teaming
  • Strong technical skills: Information security, network security, Windows security, UNIX/Linux security, web and mobile application security, Cloud platforms.
  • Good knowledge on web,Thick client,API, Mobile (Android,iOS) VAPT and Penetration testing assessments.
  • Broad knowledge of security technologies for applications, databases, networks, servers, and desktops.
  • Ability to perform manual penetration testing.
  • Experience in Application Security Testing, or related functions Vulnerability Assessment, Penetration testing.
  • Perform penetration testing of various thick client software, web applications, and communications infrastructure to assist in hardening the cybersecurity posture against malicious actors
  • Perform technical writing to communicate the preparation, testing, and recommendation phases for various security tests. Work with stakeholders to remediate system vulnerabilities.
  • Expertise in the phases of penetration testing. Familiarity with Kali Linux distribution and the associated penetration testing tools suite. Experience in penetration testing simulations like Hack the Box or Capture the Flag exercises considered a plus.
  • Good Understanding of OWASP top 10 and mitigation techniques
  • Experience in performing web application security assessments using hands on techniques for identifying SQL injections, XSS, Security Misconfiguration, CSRF, authentication/ authorization issues
  • Experience on both commercial, open source tools and frameworks but not limited: Burpsuite, Checkmarx, Metasploit, Core-Impact, Kali-Linux, AppScan, WebInspect, SSLScan, Soap UI Pro, SonarQube, Qualys, Nikto, Nessus, nmap, sqlmap, OWASP ZAP .
  • Conduct Source code(SAST/SCA) Analysis manually.
  • Knowledge on scripting language like Python, Shell is an add-on.
  • Strong expertise in network, OS (Windows/Linux), and Active Directory security.
  • Hands-on experience with tools such as Cobalt Strike, Metasploit, Empire, BloodHound, Nmap, Impacket.
  • Proficiency in scripting and programming (Python, PowerShell, Bash, C/C++).
  • Experience with cloud attacks (Azure AD, AWS IAM abuse is a strong plus).
  • Understanding of EDR/XDR bypass techniques.
  • Plan and execute red team engagements simulating real‑world threat actors. Perform advanced attack simulations including phishing, social engineering, privilege escalation, lateral movement, and persistence. Conduct network, application, cloud, and Active Directory exploitation.
  • Use MITRE ATT&CK framework to design and map adversary techniques. Develop custom scripts, payloads, and exploits to bypass detection controls.
  • Collaborate with Blue Team and SOC for purple team exercises.

Equal employment opportunity information

KPMG India has a policy of providing equal opportunity for all applicants and employees regardless of their color, caste, religion, age, sex/gender, national origin, citizenship, sexual orientation, gender identity or expression, disability or other legally protected status. KPMG India values diversity and we request you to submit the details below to support us in our endeavor for diversity. Providing the below information is voluntary and refusal to submit such information will not be prejudicial to you.

KPMG Ukraine

About KPMG Ukraine

KPMG – це міжнародна мережа фірм, що надають аудиторські, податкові та консультаційні послуги. В офісах KPMG у 143 країнах світу працюють понад 273,000 співробітників (FY23). Кожна фірма KPMG є незалежною юридичною особою і представляє себе як таку.

KPMG працює в Україні з 1992 року. KPMG в Україні надає аудиторські, податкові, бухгалтерські та консультаційні послуги для місцевих і міжнародних компаній. Нашою метою завжди було використання глобального інтелектуального потенціалу фірми в поєднанні з практичним досвідом наших українських професіоналів, щоб допомогти провідним компаніям досягти своїх цілей.

Офіси компанії знаходяться у Києві та Львові.

______________

KPMG is a global network of professional services firms providing audit, tax and advisory services. We operate in 143 countries and territories, and in FY23, collectively employed more than 273,000 people working in member firms around the world.

KPMG in Ukraine provides audit, tax, accounting and advisory services to local and international businesses. KPMG has been working in Ukraine since 1992, and our goal has always been to use the firm's global intellectual potential, combined with the practical experience of our Ukrainian professionals, to help leading companies to achieve their goals.

In Ukraine KPMG has its offices in Kyiv and Lviv.

Industry
Consulting & Advisory
Company Size
201-500 employees
Headquarters
Kyiv, UA
Year Founded
1992
Website
kpmg.com
Social Media