Senior Information Security Consultant
Core
Plans, leads, and delivers authorized, independent, risk-based penetration testing and offensive security assessments for Westpac New Zealand technology services.
Role type
Senior Information Security Consultant (Penetration Testing)
Builds
Security assurance activities, remediation guidance, and testing methodologies for enterprise technology services
Domain
Financial services, Information Security, Offensive Security
Deliverable
client delivery
Required skills
penetration testing, offensive security assessments, web/API/network/cloud/mobile security testing, secure coding principles, security-focused code reviews, Windows/Linux/Active Directory security, TCP/IP/DNS/HTTP/S/API security, attack path analysis, exploitability determination, risk assessment, technical reporting, scripting/automation (Python, PowerShell, Bash), public cloud platform knowledge
Preferred skills
financial services experience, Kubernetes/Docker/OpenShift container security, CI/CD/DevSecOps security testing, AI/LLM system assessment, automated penetration-testing platforms, OSCP/OSWE/OSEP/OSCE3/CREST/HTB/GXPN/GPEN/SANS certifications
Technologies
Python, PowerShell, Bash, Kubernetes, Docker, OpenShift
Responsibilities
identify and validate exploitable weaknesses, demonstrate credible attack paths, explain business impact, provide root-cause remediation guidance, verify remediation with stakeholders, evolve testing methodologies and automation
Seniority
Senior, hands-on IC