Role: Vulnerability Consultant
Location: Taguig City, Metro Manila - Hybrid
Hybrid set up - 3 days onsite
Thanks for checking out our job opening; we are excited that YOU are interested in learning more about NCC Group.
We are on a mission to make society a safer and more secure place. Our people are the ones who make that possible; a global community of talented individuals working together towards a safer future.
We aim to create an environment where everyone can reach their full potential. We work together, we are brilliantly creative, we embrace difference, and we want you to join in our mission, to make the world safer and more secure.
Take a look at our website here to learn more about why we’re one of the leading global Cyber Security and Risk Mitigation business…
https://www.nccgroup.com/uk/
The Opportunity:
This is an exciting opportunity to join a dynamic security solutions team in which you will be responsible for the management and delivery of client security programs as well as playing a vital part in the development of the team and its services. As part of a passionate delivery team, you must have a passion for IT security as well as a determination to deliver a high-quality service to our client base.
This is an opportunity to join a technically advanced and talented team and help NCC Group build and deliver world class Vulnerability Exposure Management services through our Attack Surface Management portfolio, to our customers.
This role is ideal for a seasoned Vulnerability Consultant with expertise in the Vulnerability Exposure Management/ASM technology space and who also possesses team leader abilities and a passion for delivering exceptional customer experiences.
Your expertise in Vulnerability Exposure Management, collaborative and proactive approach, and a customer-centric approach will be crucial in driving customer satisfaction, team success, and business growth.
Key Accountabilities:
This is an opportunity to work in a fun and challenging environment, using market leading security testing tools and platforms to provide security testing services to our large client base. You will play a key role in delivering and managing client security programs all year round, as well as building relationships with clients and ensuring that our services are meeting their needs. You will also have responsibility of working within the senior TAM team to support the direction and development of new service lines offered by the company.
- Line Management of a small Vulnerability Management team
- Setting up security programs with clients based on their requirements
- Running and verifying network and application vulnerability scans
- Writing and delivering client reports
- Analysis of external and internal attack surface outputs, to identify and communicate risk
- Work directly with customers to provide prioritization for remediation
- Providing support and answering queries from clients
- Act as the customer advocate within the Attack Surface Management Team
- Own the operational relationships with your customers
- Identifying efficiency and process improvements to the operational teams.
- Act as the SME to customers to improve the quality of service they are receiving and maintain a roadmap for those customers
- Assist with the onboarding of new customers, building an understanding of customers
business risks
- Lead and mentor more junior consultants and analysts, providing guidance and support in delivering exceptional service to our clients.
- Foster a collaborative and positive team culture, promoting knowledge sharing and continuous improvement.
- Work with the Departmental Leadership team, as a SME, to ensure success
Requirements:
Technical Skills & Knowledge
- Excellent understanding of basic cyber security principles
- Excellent understanding and experience of Linux and Windows operating systems
- Excellent understanding and exposure to network and web application security
- Strong experience using network and application scanning tools and utilities, such as Nexpose Rapid 7, Qualys, HP WebInspect, IBM AppScan , Tenable Nessus, Burp, NMAP etc
- Good understanding how vulnerabilities can be linked and the impact on risk
- Strong understanding of how to identify vulnerabilities that may be higher risk than their score indicates
- Experience of EASM platforms such as Cycognito
- Experience of ITSM’s such as Service Now
- Strong interpersonal and communication skills
- Ability to work, and manage time and tasks independently
- Ability to communicate with customers in a clear and concise manner
- Strong customer handling skills
- Good consultancy skills
Client Relationship Management
- Build and maintain strong relationships with key clients, serving as their trusted advisor for a range of ASM solutions.
- Conduct regular meetings with clients to understand their evolving requirements, address concerns, and identify opportunities for improvement.
- Collaborate with the sales team to identify upsell and cross-sell opportunities based on clients' ASM needs.
Desired Skills:
- Degree in Computer Science / Engineering or equivalent experience
- Strong Experience in Information Security
- CRT and/or IASME Vulnerability assessment Plus certification
- Understanding of web services architecture and commonly employed technologies
- Exposure to software development and understanding of secure code development
- Knowledge and understanding of PCI DSS requirements, in particular PCI ASV testing
- Knowledge and understanding of Cyber Essentials requirements
- Understanding of DDoS Mitigation
- Experience with Python
- Experience with Java
- Understanding of Service Now
- UK Security Check (SC) clearance is desirable but not essential
Behaviours:
- Focusing on Clients and Customers
- Working as One NCC
- Always Learning
- Being Inclusive and Respectful
- Delivering Brilliantly
About NCC Group
The NCC Group family has over 2,200 members located all around the world, providing a trusted advisory service to 15,000 customers. Born in the UK, we have now have offices in North America, Canada, Europe, Asia- Pacific and United Arab Emirates.
We are passionate about helping our customers to protect their brand, value and reputation against the ever-evolving threat landscape. We fuel that passion with investment in our people and our business.
Our values and code of ethics are at the heart of how we operate – we work together, we are brilliantly creative and we embrace difference. We treat everyone and everything with equal respect.
We want to create an environment where all colleagues feel psychologically, emotionally and physically safe to be authentic, sharing their personal experiences to represent the diversity of the world they live in, and have equal opportunity to achieve their best.
About your application
We review every application received and will get in touch if your skills and experience match what we’re looking for. If you don’t hear back from us within 10 days, please don’t be too disappointed – we may keep your CV on our database for any future vacancies and we would encourage you to keep an eye on our career opportunities as there may be other suitable roles.
If you do not want us to retain your details, please email global.ta@nccgroup.com. All personal data is held in accordance with the NCC Group Privacy Policy. We are committed to diversity and flexibility in the workplace. If you require any reasonable adjustments to support you during the application process, please tell us at any stage.
Please note that this role involves mandatory pre-employment background checks due to the nature of the work NCC Group does. To apply, you must be willing and able to undergo the vetting process.