Line of Service
AdvisoryIndustry/Sector
Not ApplicableSpecialism
OperationsManagement Level
Senior AssociateJob Description & Summary
At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard sensitive data.Responsibilities:
● Work with Risk Reviewers to ensure tickets are being processed accurately and efficiently
● Work with Consultation Services Architects to identify gaps in compliance and determine inherent risk, mitigating factors, and residual risk
● Collaborate with other AppSec subpillar teams to ensure relevant processes are completed as necessary and in good standing to support AR disposition
● Interface with customers to provide guidance relevant to AppSec requirements
● Escalate risks and other concerns to Application Readiness Regional Leads, BISOs, CISOs, and other relevant stakeholders
● Interface with a number of other NIS service providers, such as Policy, TPRM, Issues Management, Threat Management
● Provide disposition on tickets and publish other deliverables as applicable
Skills Needed:
● Strong communication skills
● Strong English written and verbal skills
● Customer service skills to create a exceptional customer experience
● Strong organizational and time management skills to support multiple concurrent reviews
● People leadership skills to provide oversight of Risk Reviewers, coaching and mentoring in an informal fashion
● Self- Awareness
● Ability and confidence to exercise professional skepticism with soft skills to do so with diplomacy
● Knowledge of the Information Security Policy, Application Readiness Standard, and applicable supporting Standards
● Ability to assess whether a control is 'met' or 'not met' (black and white)
● Ability to navigate the grey when a control does not meet the letter of the control
● Ability to review documentation analytically, and assess control compliance based on information/ documentation provided.
● Ability to evaluate complex data and determine whether data can be used to support the reviews being conducted
● Ability to pull facts and details related to controls from different types of documentation and diagrams submitted
● An understanding of when and how to escalate
Skill and Experience:
● Good understanding of Application IT Security Standards, on-premise as well as cloud-based.
● Good understanding of risk management and experience with identifying and assessing potential information security risks.
● Good understanding and exposure to technical risk assessment along with vulnerability assessment and penetration testing.
● Strong communication skills and the ability to provide risk guidance, inform management about potential risk issues, and relay information about policy requirements effectively
● Proper Experience in coordination of issue tracking, Follow-Ups, communication skills in a global environment.
Desired Certifications: (not mandatory)
● CISSP / CISM /CISA / CCSK / CCSP / CRISC "
VAPT
Preferred Skill sets:
VAPT
Years of Experience Required:
NA
Education Qualification:
NA
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required:Degrees/Field of Study preferred:Certifications (if blank, certifications not specified)
Required Skills
WAPT ProOptional Skills
Accepting Feedback, Accepting Feedback, Active Listening, Analytical Thinking, Application Security, Application Security Assessment, Azure Data Factory, Cloud Application Development, Cloud Security, Coding Standards, Communication, Creativity, Cybersecurity, DevOps Practices, Embracing Change, Emotional Regulation, Empathy, Endpoint Security, Forensic Investigation, Hosting Controllers, Inclusion, Information Security, Intellectual Curiosity, Learning Agility, LoadRunner (Software Testing Tool) {+ 30 more}Desired Languages (If blank, desired languages not specified)
Travel Requirements
Available for Work Visa Sponsorship?
Government Clearance Required?
Job Posting End Date
April 2, 2026