Risk Services - Cybersecurity Testing Associate (July 2027 Intake)

Line of Service

Assurance

Industry/Sector

TMT X-Sector

Specialism

Cybersecurity & Privacy

Management Level

Associate

Job Description & Summary

At PwC, we help clients build trust and reinvent so they can turn complexity into competitive advantage. We're a tech-forward, people-empowered network with more than 364,000 people in 136 countries and 137 territories. Across audit and assurance, tax and legal, deals and consulting, we help clients build, accelerate, and sustain momentum. Find out more at www.pwc.com.

About Risk Services

Our Risk Services Practice provides an invaluable safeguard in today’s complex operating environment with insights and independent assurance. We work with clients to deliver business control to help them to protect and strengthen every aspect of their business from people to performance, systems to strategy, business plans to business resilience. We help clients manage, mitigate and control risks from potential cybersecurity breaches to possible breaks in the supply chain. We assess and prepare businesses by looking into their technology, finance, data analytics, regulatory requirements, data security and privacy, internal audit, and the third parties our clients rely on, to help clients deliver quality results and meet their strategic objectives.

Key responsibilities

As an Associate, you'll be exposed to a diverse and technically challenging scope of work across. Your responsibilities include but are not limited to:

  • Penetration Testing you'll learn to identify and exploit vulnerabilities, helping clients secure their assets and protect sensitive data, all while gaining hands-on experience and growing professionally.
  • Red Teaming – Simulate adversary tactics, techniques, and procedures to test organizational defenses, focusing on achieving specific objectives, conducting covert operations, and maintaining long-term access to compromised systems.
  • Cybersecurity Assessment – Assess clients’ security posture through the performance of host configuration review against industry benchmarks, source code reviews, architecture review and cybersecurity risk assessment.

    What we are looking for

    • Final-year student or recent graduate in Computer Science, Computer Engineering, and Information Technology students from reputable local and overseas universities
    • Strong fundamental knowledge of information technology and cyber security
    • Knowledge of security testing tools (e.g. Kali Linux, Covenant, Metasploit, nmap, burp suite etc.)
    • Are keen to develop themselves in the profession.
    • Are highly motivated, enthusiastic, confident, and creative.
    • Critical thinking & problem solving.
    • Possess strong interpersonal and communication skills.
    • Committed to teamwork and excellence.
    • Knowledge of scripting programming languages (e.g. bash, python
    • Penetration testing specific certification such as CEH, CRT, OSCP etc. is an advantage.
    • Participation in CTF, publicly discovered information security flaws and acknowledged CVE, published research or tool within offensive security domain is an advantage

    Application Notes

    • Please indicate your first-choice role and, where applicable, a second-choice role, based on your skills, interests, and career aspirations.
    • Only shortlisted candidates will be notified due to the high volume of applications.
    • Kindly upload both your resume and academic transcript/degree audit in PDF format

    There have been reports of scammers impersonating PwC HR professionals contacting individuals about fraudulent job opportunities using non-PwC domain email addresses and an overseas number. Please note that genuine communications from our HR team will only come from "@pwc.com" email addresses.

    Education (if blank, degree and/or field of study not specified)

    Degrees/Field of Study required:

    Degrees/Field of Study preferred:

    Certifications (if blank, certifications not specified)

    Required Skills

    Optional Skills

    Accepting Feedback, Accepting Feedback, Active Listening, Bash (Programming Language), Common Vulnerability Scoring System (CVSS), Communication, Cybersecurity, Emotional Regulation, Empathy, Encryption, Ethical Hacking, Firewall (Network Security), Inclusion, Information Security, Information Security Management System (ISMS), Information Security Risk Assessments, Intellectual Curiosity, Intrusion Detection System (IDS), IT Infrastructure, Kali Linux, Microsoft Active Directory, MITRE ATT&CK Framework, Network Security Assessment, Network Security Penetration Testing, Offensive Security {+ 20 more}

    Desired Languages (If blank, desired languages not specified)

    Travel Requirements

    Not Specified

    Available for Work Visa Sponsorship?

    Yes

    Government Clearance Required?

    No

    Job Posting End Date