hero

Canada's Talent Marketplace

Find your next role at Canada's fastest-growing tech companies

Senior Consultant - Cyber Defense

KPMG Canada

KPMG Canada

Toronto, ON, Canada
Posted on Oct 11, 2025
Overview

At KPMG, you’ll join a team of diverse and dedicated problem solvers, connected by a common cause: turning insight into opportunity for clients and communities around the world.

Are you a talented individual with a proven track record on executing project deliverables.

This is a key role within the Cyber Defense Team at KPMG, where the candidate will serve as a subject matter expert primarily in web application security, and also perform infrastructure vulnerability assessment and penetration testing, red/purple team assessment and social engineering exercises. The selected candidate will work on client projects to understand requirements, conduct manual and automated penetration tests, draft reports and provide detailed walkthroughs of the reports to relevant client stakeholders.


What you will do

  • Perform manual and automated application security assessments on web applications, mobile applications and network infrastructure using industry standards. This includes controlled exploitation of identified vulnerabilities, simulating real-world attacks through manual penetration testing.
  • Define and execute test cases to identify and exploit vulnerabilities and weaknesses.
  • Analyze the impact and severity of exploits, determining the associated risks and potential consequences.
  • Document findings and provide pragmatic recommendations. Clearly and effectively communicate the findings to client stakeholders.
  • Stay updated with the latest security vulnerabilities, techniques, and industry best practices.

What you bring to the role

  • Bachelor’s degree in Computer Science, Information Security, or a related field.
  • Minimum of 1 year of experience in application security testing.
  • Knowledge of performing infrastructure vulnerability assessment and penetration testing, red team assessment and social engineering.
  • Expertise in security testing frameworks, including:
    • Open Web Application Security Project (OWASP)
    • Open-Source Security Testing Methodology Manual (OSSTMM)
    • Penetration Testing Execution Standard (PTES)
  • Programming knowledge (python, java)
  • Relevant certifications, such as:
    • Offensive Security Certified Professional (OSCP)
    • Burp Suite Certified Practitioner (BSCP)
    • HTB Certified Penetration Testing Specialist (HTB CPTS)

Providing you with the support you need to be at your best


Our Values, The KPMG Way

Integrity, we do what is right | Excellence, we never stop learning and improving | Courage, we think and act boldly | Together, we respect each other and draw strength from our differences | For Better, we do what matters

KPMG in Canada is a proud equal opportunities employer and we are committed to creating a respectful, inclusive and barrier-free workplace that allows all of our people to reach their full potential. A diverse workforce is key to our success and we believe in bringing your whole self to work. We welcome all qualified candidates to apply and hope you will choose KPMG in Canada as your employer of choice.

Adjustments and accommodations throughout the recruitment process

At KPMG, we are committed to fostering an inclusive recruitment process where all candidates can be themselves and excel. We aim to provide a positive experience and are prepared to offer adjustments or accommodations to help you perform at your best. Adjustments (informal requests), such as extra preparation time or the option for micro breaks during interviews, and accommodations (formal requests), such as accessible communication supports or technology aids, are tailored to individual needs and role requirements. You will have an opportunity to request an adjustment or accommodation at any point throughout the recruitment process. If you require support, please contact KPMG’s Employee Relations Service team by calling 1-888-466-4778.