NYSTEC-posted about 1 month ago
$84,497 - $109,846/Yr
Full-time • Mid Level
Albany, NY
101-250 employees
Administrative and Support Services

As a cybersecurity consultant in our Cybersecurity and Data Privacy practice area, you will serve in a client-facing role - responsible for performing security testing and risk assessments and providing expert guidance. As a NYSTEC consultant, you will collaborate with other security professionals, gain exposure to a wide range of environments, and have the opportunity to continuously sharpen your skills while helping clients solve their toughest cybersecurity challenges.

  • Conduct application security testing according to industry standards and using tools such as Burp Suite and WebInspect.
  • Perform penetration testing of web applications, networks, and cloud infrastructure across client environments.
  • Assess and secure cloud environments (Amazon Web Services [AWS] preferred) through configuration reviews, identity/access controls, and compliance validation.
  • Provide advisory services to clients across multiple domains, including: o Identity and Access Management (IAM). o National Institute of Standards (NIST)-based security frameworks. o Vulnerability management programs. o Threat intelligence and monitoring.
  • Prepare and deliver clear reports and presentations that communicate technical findings and recommendations to both technical and non-technical stakeholders.
  • Collaborate with colleagues and client teams to implement and validate remediation efforts.
  • Stay up to date with the latest vulnerabilities, tools, and security practices, and bring that expertise into client engagements.
  • Background in web security testing and penetration testing methodologies and reporting.
  • Familiarity with AWS cloud security practices and controls.
  • Exposure to IAM, NIST, vulnerability management, and/or threat intelligence.
  • Excellent communication skills with the ability to translate technical findings into actionable insights.
  • Client-facing presence, with experience delivering results to both technical and executive-level stakeholders.
  • A bachelor's degree and more than three years of related experience in cybersecurity consulting or related technical role. Experience should include hands-on, dynamic, application security testing with tools such as Burp Suite, WebInspect, and AppScan.
  • An equivalent combination of advanced education, training, and experience will be considered.
  • Applicants must be authorized to work in the United States without the need for visa sponsorship now or in the future.
  • Relevant certifications (e.g., Offensive Security Certified Professional [OSCP], Certified Ethical Hacker [CEH], AWS Security Specialty, Certified Information Systems Security Professional [CISSP]) are a plus.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service