Schellman is a Top 50 CPA firm and a leading provider of attestation and compliance services. Our professional services focus on security and privacy audits, assessments, and certifications. Schellman has become one of the largest cybersecurity assessment firms in the United States without providing any traditional accounting services. We are an accredited multi-framework ISO Certification Body for security, privacy, business continuity, and quality; a globally licensed PCI Qualified Security Assessor and a top provider to clients serving the federal DoD space as a leading FedRAMP 3PAO and the first assessment firm authorized as a CMMC C3PAO. Our specialty and expertise remain in providing best in class Cybersecurity and IT Audits and Attestations. Our culture, approach with clients, and dedication to our values has led us to consistently be a Great Places to Work certified company and rated as a Best Firms to Work For by Accounting Today and a Glassdoor Best Places to Work. We deeply appreciate our employees, as shown by our first core value – People Come First. This is demonstrated in our culture, benefits, and how we handle business. Come see what makes Schellman special!
JOB SUMMARY
Senior associates are primarily responsible for hands-on project execution. Experienced senior associates have, or are working towards, specialization in one or more service lines and are assigned to projects accordingly. Senior associates are assigned to a specific service delivery principal that is responsible for supervising the associate’s career development. Additionally, senior associate’s daily activities are closely supervised by the management teams of their assigned projects. Senior associates may supervise associates and/or senior associates when serving as a member of a project management team.
Schellman created our Penetration Tester role with the goal of giving talented technical IT professionals, who have at least 2 years of security experience and hands-on security certifications (e.g. OSCP), a structured plan to elevate their expertise. This is a rare opportunity to transition to a focused penetration testing position to build on your offensive skillset while working on engagements with our team, whose unrivaled knowledge and experience will provide guidance and mentorship throughout. What do we ask from you? Unwavering commitment to learn as much as possible to be a contributing member of the team, and to always be up for a new challenge.
There is no typical day for our Pen Test team. Our clients rely on us to find and exploit a myriad of vulnerabilities across their on premise and cloud-based networks and applications. The benefit of being exposed to so many different situations is that you are constantly building your knowledge base and skillset while keeping up with the latest technologies. Our team is remote yet extremely collaborative and works together to utilize their different backgrounds and experience to solve these problems.
Want to learn more about what it takes to solve penetration testing problems at scale with Schellman?
Check out this blog: 6 Problems Penetration Testers Face (& How Schellman Is Solving Them)
Essential Functions:
Knowledge, Skills, and Abilities:
Education, Work Experience and Certifications
Our ideal candidate has:
Schellman is an equal opportunity employer (EOE) and strongly supports diversity in the workplace; therefore, providing equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law. Schellman uses E-Verify in our hiring process.
At Schellman, we strive to provide a flexible and balanced environment and therefore offer the opportunity to work remotely, unless otherwise stated in the job requirements. Connecting, collaborating and continuous education are also highly valued and therefore we require some travel annually, which can include in-person training, team meet-ups, and strategy meetings. Service Delivery team members will also be required to travel based on business and client needs.