Role: Penetration Tester
Location: Riyadh, Saudi Arabia
Duration: 3 months
Overview
Seeking an experienced Penetration Tester and Red Team Specialist to identify vulnerabilities, simulate real-world attack scenarios, and deliver actionable insights to strengthen security posture. The role combines hands-on exploitation with adversarial simulation and clear stakeholder reporting.
Key Responsibilities
- Conduct penetration testing across applications, networks, cloud, and infrastructure.
- Execute red team engagements, including APT simulation, social engineering, and physical security testing.
- Develop threat models and emulate adversary TTPs using frameworks such as MITRE ATT&CK.
- Perform source code security reviews using manual and automated techniques.
- Deliver clear post-engagement reports and recommendations to technical and non-technical stakeholders.
- Collaborate with blue teams on detection, response, and purple team exercises.
- Research and apply emerging offensive security tools and techniques.
Qualifications & Skills
- Bachelor's degree in Computer Science, Cybersecurity, or equivalent experience.
- 4+ years experience in penetration testing and red teaming.
- Strong knowledge of OWASP Top 10, CVEs, CWE, and exploitation techniques.
- Hands-on experience with tools such as Metasploit, Burp Suite, Cobalt Strike, Nmap, BloodHound, and Empire.
- Scripting skills in Python, PowerShell, or Bash.
- Strong understanding of Windows, Linux, Active Directory, and cloud platforms (AWS, Azure, GCP).
- Relevant certifications preferred (OSCP, OSCE, OSEP, CRTO, GPEN, GXPN).
- Strong communication and reporting skills.