VAPT Principal Consultant
Hays- Posted 20 hours ago
- Be among the first 10 applicants
Job Description
Your new company
You will be joining a premier national cybersecurity powerhouse backed by industry leaders, dedicated to protecting Saudi Arabia's critical infrastructure, enterprise ecosystems, and digital transformation initiatives. Operating at the cutting edge of offensive and defensive security, this organization plays a central role in securing the Kingdom's sovereign digital future. With state-of-the-art facilities in Dhahran and Riyadh, they offer an elite, high-performance environment for top-tier security talent.
Your new role
As the VAPT Principal Consultant, you will provide strategic leadership and expert-level technical oversight for the organization's Vulnerability Assessment and Penetration Testing practice. Positioned as a senior subject matter expert, you will shape offensive security methodologies, lead complex red-team operations, and serve as a trusted advisor to C-suite stakeholders and critical infrastructure clients.
Key responsibilities include:
- Strategic Vision: Defining and evolving the long-term VAPT roadmap and governance model aligned with global frameworks (OWASP, PTES, OSSTMM, NIST 800-115).
- High-Impact Operations: Overseeing complex penetration tests across web, mobile, cloud, IoT, OT/ICS, and wireless environments, as well as orchestrating adversary emulation and red-team engagements.
- Technical Excellence: Validating advanced exploitation, lateral movement scenarios, and driving the development of proprietary automation tools and threat modeling methodologies.
- Executive Advisory: Translating deep technical findings into strategic business-risk insights and presenting remediation roadmaps directly to executive leadership.
- Talent Development: Mentoring consultants, fostering a collaborative offensive security culture, and designing advanced training pathways.
What you'll need to succeed
- Nationality: Saudi National (strictly required for this position).
- Experience: 7+ years of progressive, hands-on experience in offensive security, penetration testing, and red-teaming.
- Track Record: Proven success leading large-scale, multi-disciplinary engagements for enterprise or critical infrastructure clients.
- Technical Mastery: Deep expertise across modern attack vectors (Web, Mobile, Cloud, IoT, OT, Wireless) and vulnerability chaining techniques.
- Compliance & Risk: Strong familiarity with regulatory and security frameworks (NIST, ISO 27001, PCI-DSS, GDPR) and the ability to articulate technical risk in business terms.
- Education & Skills: Bachelor's degree in Cybersecurity, Computer Science, or a related field, combined with exceptional C-suite communication and influencing skills.
What you'll get in return
- National Impact: A highly prestigious leadership role directly safeguarding the Kingdom's key assets and digital ecosystem.
- Location Choice: Placement in either Riyadh or Dhahran, Saudi Arabia.
- Career Growth: Unrivaled exposure to high-complexity red-team operations, state-of-the-art security technology, and executive-level thought leadership.
- Package: Highly competitive compensation and benefits package.
What you need to do now
If you are interested in taking on this high-visibility leadership opportunity, click apply now to submit an up-to-date copy of your CV.
More Info
Key Skills
Offensive Security
Red-Team Operations
PCI-DSS
Vulnerability Chaining Techniques
PTES
NIST 800-115
