欢迎来到应届生求职网-中国领先的大学生求职网站

[成都]普华永道商务服务(成都)有限公司2018招聘

(全职,发布于2017-09-12) 相关搜索
说明:

此信息由四川大学计算机学院审核并发布(查看原发布网址),应届生求职网转载该信息只是出于传递更多就业招聘信息,促进大学生就业的目的。如您对此转载信息有疑义,请与原信息发布者四川大学计算机学院核实,并请同时联系本站处理该转载信息。

时间: 2017-09-12 14:13  来源: 计算机学院

PwC Business Services (Chengdu) Co., Ltd 

普华永道商务服务(成都)有限公司

 

PwC Business Services (Chengdu) Co., Ltd (SDC) is operational in Chengdu on 1 July 2012.  The SDC will serve PwC China mainland and Hong Kong area.

普华永道商务服务(成都)有限公司(以下简称服务中心)于2012年7月1日在成都正式投入运营,为普华永道中国以及香港的业务提供支持服务。

 

风险及控制服务 (目标招聘人数 30)

· 支持IT审计相关工作

· IT流程控制

· 数据分析

· 网络安全测试

· 内控、合规审阅

· 支持社会可持续发展相关调研、查阅

 

Role details

 

Position/job title        IT Security-Risk Assurance-SDC-CD

Grade                                Assistant/Senior Assistant

Specialism             Risk Assurance

Type                           Intern/full time


Top of Form

About PwC, LoS & BU

Introduction to PwC

Los specific information / BU or team specific information – (Please provide a brief overview of the LoS/BU scope, business objectives and relevant targets for this position)

PwC Business Services (Chengdu) Co., Ltd (SDC) is operational in Chengdu on 1 July 2012.  The SDC will serve PwC China mainland and Hong Kong area.

普华永道商务服务(成都)有限公司(以下简称服务中心)于201271日在成都正式投入运营。该服务中心将为普华永道中国以及香港的业务提供支持服务。

We are looking for fresh graduates in the information security field to fill the roles of Assistants/Senior Assitant within the SDC team. Those with penetration test or IT security background will be considered first. Assistants/Senior Assistant will be required to understand and execute the process workflow related to work requests from initiation to completion. They need to understand how workflow is managed using the SDCs workflow management tool. They also need to be able to document work performed clearly and according to instructions.

我们目前在招聘优秀应届毕业生加入我们的服务中心,担任助理/高级助理职务。应聘者如具备渗透测试或各大企业IT安全工作经验的,我们将给予优先考虑。作为在服务中心工作的助理/高级助理,需要充分了解并执行预定的工作流程,有效地利用规范的工作流程和管理工具完成日常的工作,并能根据要求合理清晰地完成文件的归档。

What we offer

我们会给你:

· 13 months salary with travel allowance and meal allowance

· Social assurance, housing fund and commercial insurance

· Various holidays such as annual leave, sick leave, other paid and CICPA study leave

· Various staff activities such as PwC Cup, Green week, voluntary plan, team building, staff birthday part

· Professional training

 

· 13个月的工资 午餐交通补贴

· 法定五险一金 补充商业保险

· 丰富的假期(如 带薪年休假、病假、其他带薪假以及CICPA考试假)

· 丰富的员工活动(如普华永道世界杯,植树,志愿者支教,团队建设活动,员工生日会等)

· 完善的培训制度

 


Job Description &   Responsibilities

Main purpose of the job and key background information

Detailed synopsis of the role – use bullet points where appropriate

We are currently looking for individuals with information security technic, information technology risk background.

我们正在寻找具备如下信息安全技能的候选人。

· providing technical assessment on client IT infrastructure and application systems, including vulnerability scanning, penetration testing(Web and Mobile), etc.

· 负责为客户的IT基础设施和应用系统(Web类和移动应用类)完成漏洞扫描、渗透测试服务。

· Analysing client server systems and infrastructure and application systems (including operating system, database, Web server, firewall, IPS/IDS and WAF etc.) for information security purpose;

· 协助项目组完成IT基础设施、应用系统等技术评估,如:操作系统、数据库、Web服务器、防火墙、IPS/IDSWAF

· Could using professional technical and management methods to provide customized information technology security and IT risk consulting services.

· 协助项目组为客户提供IT风险咨询服务。

 

Reporting structure & key relationships

This should include detail on:

Line Manager

Number of reports (if applicable)

Priority team relationships

Key client relationships

Reporting to: Team  Manager

Requirements

These should include essential & desirable requirements such as:

Level of experience

Education/qualifications

Sector experience

Commercial and/or technical expertise required

Sales/BD experience

Consulting experience

· University degree majoring in information security, information systems, computer science, engineering, statistics, and/or information management;

· 本职位要求候选人为本科及以上学历,信息安全、计算机科学,和/或信息管理专业;

· Information security technical requirement:

ü Hands on experience and working knowledge on popular technical security assessment tools, including but not limited to: Nessus, Nmap, Acunitrx, Burp Suite, Sqlmap, Metasploit, Wireshark, Aircrack-ng, etc.

ü 熟练掌握NessusNmapAcunitrxBurp SuiteSqlmapMetasploitWireshark Aircrack-ng等常见安全测试工具使用;

ü Hands on experience and working knowledge in Web penetration Test and Mobile penetration Test (e.g., IOS, Android);

ü 具备Web渗透测试和移动应用渗透测试能力(iOS/Android);

ü Hands on experience and working knowledge in Network Scan and infrastructure design review;

ü 具备网络扫描和基础架构设计审阅的能力;

ü Hands on experience and working knowledge in code review

ü 具备代码审计能力;

· Professional qualifications, such as CISA, CISM, CISSP, CEH, CISP or other security related qualifications is a plus;

· 信息安全相关专业资质证书将会是加分项,如 CISA, CISM, CISSP, CEH, CISP等。

· Practical experience on penetration test such as submitting vulnerabilities to Security Response Centre is a plus.

· 曾在各大SRC或漏洞平台提交过漏洞的将被优先考虑。

· Communication skills in both oral and written English and Chinese (Candidate with excellent security technic and experience can be considered if he/she is not fluent in English);

· 优秀的英文书写、阅读能力和良好的中文沟通能力(如候选人在信息安全技术领域的经验及技能较为出众,可降低英语方面的要求);

· Flexible, self-starter possessing intellectual curiosity;

· 工作灵活主动,具有求知欲;

· Can work under pressure and accept flexible working time according to project’s requirement and can accept frequent travel.

· 抗压能力强,能够适应灵活的工作时间,接受频繁的出差。

 

Contact Details

   sdc.hr.cd@