Senior Associate, Offensive Security

Rsm Us Llp

Bengaluru

On-site

INR 1,800,000 - 2,400,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible schedule
Total rewards

Job summary

RSM US LLP is seeking a Senior Associate in Offensive Security to lead application security testing engagements. You will supervise security assessments, perform manual and automated testing, and collaborate with clients across diverse tech stacks including cloud platforms.

Ideal candidates bring 5+ years in web security, strong coding skills, and certification potential in OSWA/OSWE/OSCP. This role offers a challenging environment with mentorship and opportunities to advance security expertise.

Qualifications

  • BS in Computer Science, Engineering, or related field or equivalent work experience.
  • Advanced expertise in web security and vulnerability exploitation techniques.
  • 5+ years of experience in code review, application security testing, or web app development.
  • Excellent written and verbal communication skills; proficient programming in Java, Python, Ruby, or JavaScript.
  • Experience with cloud platforms such as AWS and knowledge of cloud security best practices.
  • Familiarity with Docker, CDK, Terraform, React, GraphQL, JSON, REST; strong security mindset.

Responsibilities

  • Supervise and lead security assessments including SAST and DAST.
  • Conduct manual penetration testing of web apps and networked systems.
  • Collaborate with clients across multiple stacks, including cloud and development technologies.
  • Develop, enhance, and interpret security standards and guidance.
  • Promote secure development and cloud security practices; provide remediation guidance.
  • Articulate findings clearly to senior management and clients, in writing and presentation.
  • Identify improvement opportunities for client engagements and stay updated on trends.
  • Lead, mentor, and supervise junior staff on engagements.

Skills

Web security
Code review
Application security testing
Programming: Java/Python/JavaScript
AWS cloud
Docker/CDK/Terraform

Education

BS in Computer Science or related field

Tools

Docker
CDK
Terraform
AWS
React
GraphQL

Job description

## Senior Associate, Offensive SecurityApplylocations: Bengalurutime type: Full timeposted on: Posted Todayjob requisition id: JR120212We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, inclusive culture and talent experience and our ability to be compelling to our clients. You’ll find an environment that inspires and empowers you to thrive both personally and professionally. There’s no one like you and that’s why there’s nowhere like RSM.# Application Penetration Tester – Offensive Security Testing (Sr. Associate)RSM is seeking an experienced application penetration tester with expertise in both manual and automated testing to join our Security and Privacy Risk Consulting group. The ideal candidate will have a strong understanding of various testing methodologies and tools, as well as a passion for uncovering vulnerabilities and identifying potential security risks. This position will play a critical role in helping our clients prevent, detect, and respond to security threats affecting their critical systems and data. As a member of the Security, Privacy, and Risk Consulting team, you will oversee application security testing for our clients and train team members. Our team's goal is to empower both development and security teams with accurate security findings at the highest standards of quality in order to identify and eliminate risk across our clients' application portfolios. Join our team of more than 150 professionals dedicated to serving the cybersecurity needs of our diverse client base within a variety of industries.**Role Responsibilities:*** Supervise and lead security assessments, including static and dynamic application security testing* Conduct manual penetration testing on web applications, network devices, and other systems* Collaborate with our clients in a fast-paced environment across many technology stacks and services, including cloud platforms and development technologies* Develop, enhance, and interpret security standards and guidance* Demonstrate and promote security best practices, including secure development and cloud security* Assist with the development of remediation recommendations for identified findings* Identify and clearly articulate (written and verbal) findings to senior management and clients* Help identify improvement opportunities for assigned clients* Stay up-to-date with the latest security trends, technologies, and best practices* Lead and foster teamwork and open communication to deliver successful outcomes* Supervise, mentor, and manage the engagement of other staff working on assigned engagements**Qualifications and Experience:*** BS in Computer Science, Engineering, or related field or equivalent work experience* Advanced expertise in web security, with comprehensive knowledge of vulnerabilities and effective exploitation techniques* 5+ years of experience in code review, application security testing, or web application development* Excellent written and verbal communication skills* Proficient programming skills (e.g. Java, Python, Ruby, JavaScript)* Experience with cloud platforms, such as AWS, and knowledge of cloud security best practices* Familiarity with development technologies like Docker, CDK, Terraform, Java, Python, React, GraphQL, JSON, REST, etc.* Must possess a high degree of integrity and confidentiality, as well as the ability to adhere to both company policies and best practices* Technical background in application development, networking/system administration, security testing, or related fields* Experience with both static application security testing (SAST) and dynamic application security testing (DAST) using various tools and techniques* Preferred, but not required - one or more relevant certifications such as Offensive Security Web Assessor (OSWA), Offensive Security Web Expert (OSWE), Offensive Security Certified Professional (OSCP), Burp Suite Certified Practitioner, or AWS Certified Security Specialist.Shift Timing: - Rotational ShiftAt RSM, we offer a competitive benefits and compensation package for all our people. We offer flexibility in your schedule, empowering you to balance life’s demands, while also maintaining your ability to serve clients. Learn more about our total rewards at https://rsmus.com/careers/india.html.RSM does not tolerate discrimination and/or harassment based on race; colour; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender (including gender identity and/or gender expression); sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the Indian Armed Forces; Indian Armed Forces Veterans, and Indian Armed Forces Personnel status; pre-disposing genetic characteristics or any other characteristic protected under applicable provincial employment legislation. Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership. RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please send us an email at careers@rsmus.com.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Assurance Sr Associate 1 - Nonprofit & Education
Assurance Sr Associate 1 - Nonprofit & Education

Rsm Us Llp • Bengaluru

On-site
INR 650,000 - 900,000
Assurance Sr Associate 1 - Insurance
Assurance Sr Associate 1 - Insurance

Rsm Us Llp. • Bengaluru

On-site
INR 600,000 - 900,000
Assurance Sr Associate 1- Insurance
Assurance Sr Associate 1- Insurance

Rsm Us Llp • Bengaluru

On-site
INR 800,000 - 1,100,000
Assurance Manager 1 - Nonprofit & Education
Assurance Manager 1 - Nonprofit & Education

Rsm Us Llp. • Bengaluru

On-site
INR 1,200,000 - 1,600,000
Competitive benefits and compensation package
Flexible schedule
Assurance Sr Associate 1- Investment Funds
Assurance Sr Associate 1- Investment Funds

Rsm Us Llp. • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Assurance Sr Associate 1- Insurance
Assurance Sr Associate 1- Insurance

Rsm Us Llp. • India

On-site
INR 700,000 - 900,000
Flexible working schedule
Competitive benefits package
Assurance Supervisor 1 - TMT
Assurance Supervisor 1 - TMT

Rsm Us Llp • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Assurance Supervisor 1 - PE Funds
Assurance Supervisor 1 - PE Funds

Rsm Us Llp. • Bengaluru

On-site
INR 700,000 - 900,000
Assurance Supervisor 1- Investment Funds
Assurance Supervisor 1- Investment Funds

Rsm Us Llp. • India

On-site
INR 800,000 - 1,200,000
Assurance Sr Associate 1 - Retail
Assurance Sr Associate 1 - Retail

Rsm Us Llp. • Bengaluru

On-site
INR 600,000 - 800,000
Competitive benefits and compensation package
Flexibility in schedule