Apply now »

DRSC T&T - Senior Consultant, Cyber Defense & Resilience (VAPT)

Date:  20 Jan 2026
Service Line / Portfolios:  Cyber
Location: 

Kuala Lumpur, MY

Title: DRSC T&T Cyber Defense & Resilience [VAPT] (based in Kuala Lumpur, Malaysia) – Senior Consultant

Are you ready to unleash your potential?

At Deloitte, our purpose is to make an impact that matters for our clients, our people, and the communities we serve.

We believe we have a responsibility to be a force for good, and WorldImpact is our portfolio of initiatives focused on making a tangible impact on society’s biggest challenges and creating a better future. We strive to advise clients on how to deliver purpose-led growth and embed more equitable, inclusive as well as sustainable business practices.

Hence, we seek talented individuals driven to excel and innovate, working together to achieve our shared goals.

We are committed to creating positive work experiences that foster a culture of respect and inclusion, where diverse perspectives are celebrated, and everyone is recognised for their contributions.

Ready to unleash your potential with us? Join the winning team now!

Work you’ll do

As a D&R Senior Consultant at Deloitte, you take on the exciting challenge of simulating real-world cyberattacks to put an organization's security to the test. You’re the mastermind behind creative, sophisticated attack scenarios that push defenses to their limits, revealing hidden vulnerabilities and weaknesses. Working closely with security teams, you help them sharpen their skills and strengthen their defenses, providing actionable insights along the way. You dive deep into the results, always staying one step ahead of emerging threats. You will:

  • Conduct comprehensive penetration testing and vulnerability assessments across various web applications, mobile applications, and network infrastructure.
  • Collaborate with clients to identify security vulnerabilities and propose effective remediation strategies.
  • Perform mobile application security testing and provide insights for securing mobile platforms (iOS and Android).
  • Prepare and present detailed security assessment reports for technical and non-technical stakeholders.
  • Assist in developing and maintaining security standards and best practices for client systems.
  • Work with development teams to advise on secure coding practices and implement security controls.
  • Stay up to date with the latest trends in cybersecurity, emerging threats, and new vulnerabilities.
  • Conduct risk assessments and provide security recommendations in compliance with industry standards.


Your role as a leader

At Deloitte, we believe in the importance of empowering our people to be leaders at all levels. We expect our people to embrace and live our purpose and shared values, challenging themselves every day to identify issues that are most important to our clients, our people and the communities, and to make an impact that matters. Additionally, Manager across our Firm are expected to:

  • Understand objectives for stakeholders, clients and Deloitte whilst aligning own performance to objectives and sets personal priorities.
  • Develop themselves by actively seeking opportunities for growth, shares knowledge and experiences with others, and acts as a strong brand ambassador.
  • Seek opportunities to challenge themselves, collaborate with others to deliver and takes accountability for results.
  • Build relationships and communicates effectively in order to positively influence peers and stakeholders.
  • Work effectively in diverse teams within a highly inclusive team culture where everyone is supported, respected and recognized for their contribution.


Requirements

  • 3+ years of proven experience in security testing domains for example, web, network, mobile, cloud, thick client vulnerability assessments and penetration testing.
  • Bachelor’s degree in information security, Computer Science, or related field (or equivalent experience).
  • Familiarity with mobile application security frameworks and testing tools.
  • Hands-on experience with common security tools such as Burp Suite Pro, Nmap, Wireshark, and Metasploit.
  • Proficient in scripting languages like Python or Bash.
  • Excellent communication skills to convey technical details to both technical and non-technical audiences.
  • Ability to work both independently and as part of a team in a fast-paced environment.


Due to volume of applications, we regret only shortlisted candidates will be notified. Candidates will only be contacted by authorised Deloitte Recruiters via firm’s business contact number or business email address.

Requisition ID:  112325

In Malaysia, the services are provided by Deloitte and other related entities in Malaysia ("Deloitte in Malaysia"), which are affiliates of Deloitte Southeast Asia Ltd. Deloitte Southeast Asia Ltd is a member firm of Deloitte Touche Tohmatsu Limited. Deloitte in Malaysia, which is within the Deloitte Network, is the entity that is providing this Website.

Apply now »