Job description
Cyber Defence Services - Senior Consultant - 104650
Base Location: UK (Hybrid)
The KPMG Connected Technology function is a cornerstone of our business. We do work that matters to our local business and communities - supporting technical innovation and adoption of cutting-edge solutions across the UK. Working on complex engagements in Identity & Access Management this team is responsible for the delivery of cutting-edge technical solutions and trusted to get it right first time.
KPMG is one of the world's largest and most respected consultancy businesses, we've supported the UK through times of war and peace, prosperity and recession, political and regulatory upheaval. We've proudly stood beside the institutions and businesses which make the UK what it is.
Why Join KPMG Technology and Engineering as a Cyber Security Operations - Assistant Manager?
At KPMG we are looking for a Senior Consultant who lives and breathes hacking and information security. You will have earned your stripes doing CHECK work in data centres and be ready to, or already skilled in leading teams of talented testers.
In return we will provide some of the UK's most unique government and commercial engagements for you to cut your teeth on and a friendly, passionate team to develop and grow.
The KPMG's Cyber Defence (CDS) Team conducts client facing technical assurance and penetration testing and has a long and successful history in KPMG. Our clients are diverse and we cover many sectors with particular specialisms in Financial Services, High-end Defence Assurance and Telecommunications. We work closely with the NCSC developing new schemes such as Cross Domain Solutions Testing ( and are members of all current NCSC and CREST testing schemes - as a result we conduct interesting and challenging work that isn't on offer elsewhere.
Our team is made up of skilled individuals at different stages in their careers, centred around three locations in Leeds, Bristol and London, therefore we are able to offer flexibility in base location, as well as embracing remote working.
What will you be doing?
As this is a senior role, we want your business brain as well as your technical hacking skills. You will have ideas of how to drive the business forward, and be skilled in the commercial aspects of security testing, above all you will know what clients are looking for when they buy security testing and how to deliver it.
Aspects of the role include:
1. Delivery of testing and the oversight of junior testers
2. Peer review of deliverables (QA)
3. Knowledge sharing
4. Continuous development of self, including gaining client feedback.
5. Developing constructive client relationships, both inside and outside of KPMG.
6. Developing an understanding of KPMG's broader offerings
7. Contributing to proposals and participating in client presentations.
What will you need to do it?
8. Passion for Hacking!
9. Clear and demonstrable understanding of penetration testing and red-teaming including NCSC and CREST accredited schemes.
10. Proven experience of successfully delivering testing
11. Proven experience working within the UK cyber security industry
12. Demonstrable understanding and practical application of information security principles
13. Strong technical background in computing, networks, and programming.
14. Proven experience of producing high quality deliverables working alone and as part of a team.
15. Excellent communication skills (written and verbal)
16. A genuine interest and desire to work with large multi-national clients in the information security field.
Qualifications/Certifications:
17. Bachelor degree in Information Security, Computer Science, Engineering, Technology or a similar degree
18. Minimum of 3 years of experience in this area
19. Any SecOps related certifications, including security vendor certifications
20. Good to have - at least one of the following certifications - CISSP, CISM, CCSP, GIAC certifications or an equivalent security certifications
Amazing Extras
21. Knowledge of working in secure environments (List X facilities) and accredited labs (ISO17025)
22. Research and Development experience
23. Threat Intelligence experience
24. Application testing experience
Qualifications and Skills
Qualifications are a good way to demonstrate knowledge but are not the be all and end all, our team is made up of a large number of individuals with diverse backgrounds who all share the "hacker mindset".
If you have the experience then we want you to apply. Didn't do a degree in information security? A-Levels weren't as good as you hoped. Haven't attended every SANS course going, we don't mind!
For this role we only have two formal requirements.
25. NCSC CHECK Team Member
26. UK Government Security Clearance - the ability to apply for and hold SC is required, DV is advantageous.
Above all, KPMG is looking for someone who is passionate about helping our clients (including the UK Government) with their cyber security challenges. In return, we are committed to helping you enjoy the role and develop your skills and career within the KPMG network.
To discuss this or wider Consulting roles with our recruitment team, all you need to do is apply, create a profile, upload your CV and begin to make your mark with KPMG.
Find out more:
Within Consulting we have a range of divisions and specialisms. Click the links to find out more below:
27. Consulting at KPMG:
28. ITs Her Future Women in Tech programme:
29. KPMG Workability and Disability confidence:
For any additional support in applying, please click the links to find out more:
30. Applying to KPMG:
31. Tips for interview:
32. KPMG values:
33. KPMG Competencies:
34. KPMG Locations and FAQ: