📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة وظائف تناسب سيرتك الذاتيةمجاناً قناة تيليجرام

فورتينت تعلن عن وظيفة مستشار أمن هجومي أول - FortiGuard Proactive Services في الرياض

Senior Offensive Security Consultant - FortiGuard Proactive Services
🏢 فورتينت (Fortinet)
🕒 نُشرت: (منذ 6 أشهر) 📍 الرياض وظائف الهندسة والتقنية

تفاصيل الوظيفة

فورتينت (Fortinet) تعلن عن وظيفة استشاري أمن هجومي أول (Senior Offensive Security Consultant) للانضمام إلى فريق FortiGuard Proactive Services في الرياض، المملكة العربية السعودية.

المهام والمسؤوليات

  • التعاون مع العملاء لفهم احتياجاتهم وأهدافهم الأمنية، وقيادة وتنفيذ عمليات Red Team واختبارات الاختراق وفق أعلى معايير الجودة.
  • تخطيط وتنفيذ عمليات محاكاة متطورة للتهديدات الإلكترونية باستخدام تكتيكات وتقنيات الخصوم (TTPs) لاكتشاف الثغرات واستغلالها في بيئات العملاء.
  • إجراء اختبارات اختراق شاملة على أنظمة العملاء وشبكاتهم وتطبيقاتهم، وتقديم توصيات قابلة للتنفيذ لمعالجة الثغرات المكتشفة.
  • إظهار خبرة تقنية في أدوات وتقنيات الأمن الهجومي، ومواكبة أحدث التوجهات والتهديدات والتطورات في منهجيات الأمن الهجومي.
  • توثيق إجراءات الاختبار والنتائج والتوصيات في تقارير واضحة وموجزة، والتواصل بفعالية مع الجهات المعنية التقنية وغير التقنية مع تقديم إرشادات استباقية لتحسين الوضع الأمني للمؤسسات.

المهارات المطلوبة

  • مهارات ممتازة في التواصل الكتابي والشفوي باللغة الإنجليزية.
  • خبرة في تطوير وتنفيذ عمليات Red Team واختبارات الاختراق.
  • خبرة في إجراء تقييمات أمن التطبيقات.
  • خبرة في التحدث في المؤتمرات الأمنية المعروفة (ميزة إضافية).
  • القدرة على إجراء التقييمات باستخدام أدوات الأمن الهجومية الشائعة، بالإضافة إلى بناء أدوات وحمولات مخصصة.
  • معرفة قوية بلغات البرمجة النصية مثل Python, Perl, PowerShell, Ruby.
  • خبرة تطويرية بلغات C, C++, .NET, Java, Go.
  • فهم قوي لـ Active Directory وAzure AD.
  • خبرة في تنفيذ تقييمات الثغرات والتقييمات المادية والشبكات اللاسلكية وحملات الهندسة الاجتماعية.
  • فهم قوي لداخل أنظمة التشغيل وضوابط الأمن الطرفية مثل EDR وتقنيات التهرب المختلفة.

الشروط والمتطلبات

  • درجة البكالوريوس في هندسة الحاسب، علوم الحاسب، أو مجال ذي صلة، أو خبرة من 8 إلى 10+ سنوات في أدوار اختبار الاختراق والهجوم.
  • شهادات في الأمن الهجومي مثل CREST, OSCP, OSEP, GXPN, GRTP أو ما يعادلها.
عرض النص الأصلي للإعلان

Responsibilities:

Customer Engagements:  Collaborate with clients to understand their security needs and objectives. Lead and deliver Red Team and penetration testing engagements, ensuring high-quality results that align with customer expectations.

Red Team Operations: Plan and execute realistic and sophisticated Red Team operations to simulate advanced cyber threats. Mimic adversary tactics, techniques, and procedures (TTPs) to identify and exploit vulnerabilities in client environments.

Penetration Testing: Conduct thorough penetration tests on client systems, networks, and applications. Provide actionable insights and recommendations for remediation based on identified vulnerabilities.

Technical Expertise: Demonstrate proficiency in a variety of offensive security tools and techniques. Stay current with industry trends, emerging threats, and advancements in offensive security methodologies.

Documentation and Reporting: Document all testing procedures, findings, and recommendations in clear and concise reports. Communicate technical details effectively to both technical and non-technical stakeholders as well as provide proactive guidance on improving an organization’s security posture.

Required Skills:

  • Excellent written and verbal communication skills - English 
  • Experience developing and conducting red team and penetration testing engagements 
  • Experience performing application security assessments 
  • Public speaking experience at known security conferences is a plus
  • Capable of performing assessments with common offensive toolsets as well as the ability to build custom tools and implants 
  • Solid knowledge of scripting languages such as Python, Perl, PowerShell, Ruby 
  • Development experience using C, C++, .NET, Java, Go 
  • Solid understanding of Active Directory and Azure AD 
  • Experience carrying out vulnerability assessments, physical assessments, wireless assessments, and social engineering campaigns.
  • Strong understanding of operating system internals and endpoint security controls such as EDR and various evasion techniques 

Qualifications: 

  • Bachelor’s Degree in Computer Engineering, Computer Science or related field

  • Or 8 - 10+ years’ experience in Attack and Penetration testing roles 

  • Certifications in offensive security such as CREST, OSCP, OSEP, GXPN, GRTP, etc.

#LI-BG1

المصدر: الموقع الرسمي للجهة - أُضيفت للموقع في 3 أكتوبر 2026
رقم الإعلان لدى المصدر: 22621