Senior Consultant - Financial Services, Advanced Security Centre
EY
- Location
- Sydney, NSW, AU, 2000
- Work model
- On-Site
- Level
- Senior
Skills
About this role
At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. Senior Consultant - Financial Services, Advanced Security Centre The opportunity As a Senior Consultant, you'll join EY Advanced Security Centre (ASC) which is a well-established, dedicated and vibrant offensive security team. Our vision is to build and bring the strongest, most diverse and highly skilled team to the market. We strive to be the market leaders in security testing services, ready to tackle any challenge that comes our way. The ASC provides the following services to our clients:
Web, Web services, mobile and thick client penetration testing Internal/External network penetration testing Red Team/Purple Team assessments Social Engineering assessments Application Security Consulting and Secure Code Review Cloud security assessments Wireless assessments Security configuration reviews
Your key responsibilities
Deliver offensive security assessments across web, mobile, cloud, network, wireless and application environments to help clients strengthen their cyber security posture. Work alongside experienced security professionals on penetration testing, red team, purple team and social engineering engagements across a diverse client portfolio. Contribute to the growth of EY's Advanced Security Centre by continuously developing technical capabilities and helping solve complex security challenges.
Skills and attributes for success
A minimum of 3+ years cybersecurity experience, with a majority being offensive security related (e.g. penetration testing or application security experience), beyond the use of automated tools. Show us that you know what’s happening behind the tooling. Strong project management and interpersonal skills. A commitment to build and grow your technical cybersecurity career to the next level. Experience in web and mobile application security testing and specialisation in one other domain would be favourable (thick application, red team/purple team or internal/external network)
Demonstrable proficiency of at least 2 following security assessment methodologies:
Web, Web services, mobile and thick client penetration testing Internal/External network penetration testing Application Security consulting and secure code review Wireless assessments Social engineering/red team assessments
Demonstrable technical understanding or certifications of at least 2 of following domains:
Common web technologies and frameworks Application architecture Cloud experience Networking and Network protocols DevOps methodology and pipelines
Relevant (or be willing and able to pursue) professional certifications such as OSCP, SANS, CREST, PJPT, PNPT, PWPT, PJWT, CPTS, etc.
What we offer you At EY, we’ll fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. We’re proud to be recognised as the #1 WORK180 Endorsed Employer in the Top 101 Employers for Women 2026. Learn more .
Career development: At EY, your career is yours to shape! We’ll develop you with future-focused skills and equip you with world-class experiences ey.com/au/careerdevelopment Flexible work arrangements: Our flexible work policies empower you to balance your professional and personal life, fostering a culture of trust and autonomy. A comprehensive benefits package: From a yearly wellness incentive, to access to additional 8 weeks of flex leave per year, and family-friendly policies, including up to 26 weeks of gender-neutral paid parental leave, we cater to your diverse needs to help you thrive both personally and professionally www.ey.com/au/benefits Salary: We offer a competitive salary which is open to negotiation pending on