جميع الوظائف

مستشار التقييم الأمني

Security Assessment Consultant

خطّط لتقييمات أمنية مصرّح بها للعملاء ونفّذها واشرح نتائجها بلغة واضحة. ستتفق مع العميل على النطاق، وتجري الاختبارات المتفق عليها، وتكتب تقارير تقود إلى المعالجة.

قدّم الآنيستغرق نحو 3 دقائق

الوصف الكامل متاح باللغة الإنجليزية، ويمكنك التقديم بلغتك.

About the role

Clients ask us to test their applications and infrastructure under contract, often because a regulator, customer or certification scheme requires independent assurance. This role runs those engagements. You agree scope, rules of engagement and timing with the client, carry out the authorised assessment with your team, and write reports that rank findings by business risk. You present results to technical and management audiences and support retests. You work with our architecture and governance consultants so findings feed into longer-term improvements.

What you will do

  • Agree scope, rules of engagement, test windows and contacts with clients before each engagement
  • Carry out authorised assessments of web applications, APIs and internal infrastructure following recognised methodologies
  • Write clear reports with risk ratings, business impact and practical remediation advice
  • Present results to client engineering teams and management and support retesting
  • Contribute to our methodology, report templates and quality reviews

What you bring

  • 3+ years in security assessment, application security or a related technical role
  • Good knowledge of the OWASP Top 10, OWASP ASVS and common infrastructure weaknesses
  • Recognised practical certification such as OSCP, CREST CRT or an equivalent
  • Strong report writing in English; professional German for client meetings
  • Clean record and willingness to undergo security screening for some clients

Good to have

  • Experience with assessments in regulated sectors such as banking or healthcare
  • Knowledge of cloud security reviews for AWS or Azure

Languages

English (C1), German (B2)

Skills

  • Security assessment
  • OWASP ASVS
  • Scoping
  • Report writing
  • Web application security
  • Risk rating
  • Client communication

تُرجمت هذه الصفحة بمساعدة الذكاء الاصطناعي. وفي حال وجود أي غموض، يُعتمد النص الإنجليزي.