تفاصيل الوظيفة
تعلن شركة Group-IB، الرائدة عالمياً في مجال الأمن السيبراني ومقرها سنغافورة، عن توفر وظيفة أخصائي فريق الاختراق (Red Team Specialist) في مدينة الرياض، المملكة العربية السعودية.
نبذة عن الوظيفة
بصفك أخصائي فريق الاختراق، ستلعب دوراً حيوياً في حماية عملائنا من خلال تحديد الثغرات ومحاكاة الهجمات الواقعية. صُممت هذه الوظيفة لمحترف متمرس يتقن تقنيات الهجوم السيبراني الممنهج ويزدهر في البيئات الصعبة. ستنضم إلى فريق ديناميكي يدفع حدود الأمن السيبراني، وتعمل عن كثب مع العملاء لتعزيز وضعهم الأمني عبر اختبارات الاختراق المتقدمة وأنشطة الفريق الأحمر.
المهام والمسؤوليات
- المشاركة في مهام الفريق الأحمر (Red Team engagements).
- تطوير وتحسين الأدوات الداخلية والنصوص البرمجية والحمولات (payloads).
- البحث عن تقنيات هجومية جديدة وثغرات وطرق إخفاء التتبع (evasion methods).
- المساهمة في إعداد تقارير المهام.
الشروط والمتطلبات
- فهم عميق لكيفية عمل الأنظمة تحت الواجهة: أنظمة التشغيل (نواة Windows و/أو Linux)، شبكات الحاسب والبروتوكولات.
- مهارات برمجة بلغة واحدة على الأقل (Python, Go, C/C++, C#, Rust أو ما يشابهها) تكفي لكتابة أدواتك الخاصة بدلاً من الاكتفاء باستخدام الأدوات الجاهزة.
- مهارات هجومية مثبتة في الأمن السيبراني: أبحاث منشورة، برامج مكافآت الثغرات (bug bounty)، خبرة في مسابقات CTF وغيرها.
- فهم تقنيات الهجوم الشائعة ضد Active Directory أو تطبيقات الويب أو البنية التحتية للشبكات.
- الفضول وعادة التعمق حتى تفهم سبب عمل الشيء.
المهارات المطلوبة (ما يميزك)
- مهارات برمجة منخفضة المستوى (C/C++, Asm, Rust, Nim).
- خبرة مع أطر عمل C2 أو تطوير البرمجيات الخبيثة أو تجاوز أنظمة AV/EDR حتى في بيئة مختبرية.
- خبرة في الهندسة العكسية أو استغلال الثغرات (binary exploitation).
- اكتشاف ثغرات والحصول على CVEs أو تقارير صالحة في برامج مكافآت الثغرات.
- فهم كيفية كشف الفرق الزرقاء (Blue Teams) للهجمات والاستجابة لها.
- مشاركة نشطة في مسابقات CTF معروفة.
- كتابات عامة أو منشورات مدونة أو أدوات مفتوحة المصدر أو محاضرات في مؤتمرات.
- شهادات مثل OSCP، CRTP أو ما يشابهها.
المزايا
- العمل في بيئة ذات تأثير حقيقي: تحقق Group-IB في جماعات الجريمة الإلكترونية النشطة، وتستجيب للثغرات التي تمس البنية التحتية الحيوية، وتطور تقنيات تستخدمها وكالات إنفاذ القانون بما فيها الإنتربول واليوروبول والأفريبول في أكثر من 60 دولة.
- نفذت الشركة أكثر من 1,550 تحقيقاً في الجرائم الإلكترونية إلى جانب أكثر من 600 عميل مؤسسي عالمياً، مما يجعل عملك يسهم مباشرةً في تعطيل الجريمة الرقمية.
- مسار نمو مرن: اختر مسارك الخاص - التعمق التقني، أو الانتقال إلى القيادة، أو التنقل بين الفرق، أو الانتقال إلى أحد مراكز مقاومة الجريمة الرقمية (DCRCs) حول العالم.
- تمويل الشهادات المهنية على نفقة الشركة (مثل CEH, CISSP, OSCP وغيرها).
- العمل إلى جانب قادة الصناعة: منصة Unified Risk Platform معترف بها من Gartner, Forrester وغيرها، وحصلت الشركة على جائزة الابتكار التقني العالمي لعام 2025 من Frost & Sullivan.
- تحديات حقيقية وخبرة حقيقية مع باحثين وخبراء استجابة للحوادث عبر ست قارات، مع 21+ عاماً من القياسات الخاصة.
- فريق دولي حقيقي من جنسيات وثقافات مختلفة، يجمعهم هدف مشترك: مكافحة الجرائم الإلكترونية وجعل العالم أكثر أماناً.
عرض النص الأصلي للإعلان
Group-IB’s Digital Crime Resistance Centers (DCRCs) are located in the Middle East, Europe, Central Asia, and Asia-Pacific to help critically analyze and promptly mitigate regional and country-specific threats. These mission-critical units help Group-IB strengthen its contribution to global cybercrime prevention and continually expand its threat-hunting capabilities.
About The Role
As a Red Team Specialist, you will play a crucial role in safeguarding our clients by identifying vulnerabilities and simulating real-world attacks. This role is designed for a seasoned professional who excels in offensive security techniques and thrives in challenging environments. You will be part of a dynamic team that pushes the boundaries of cybersecurity, working closely with clients to enhance their security posture through advanced penetration testing and red teaming activities.
YOUR MISSION
- Take part in red team engagements
- Develop and improve internal tools, scripts, and payloads
- Research new attack techniques, vulnerabilities and evasion methods
- Contribute to engagement reports
- Solid understanding of how things work under the hood: operating systems (Windows and/or Linux internals), computer networks and protocols
- Programming skills in at least one language (Python, Go, C/C++, C#, Rust or similar), enough to write your own tools rather than only use existing ones
- Proven offensive security skills: published research, bug bounty, CTF experience etc
- Understanding of common attack techniques against Active Directory, web applications or network infrastructure
- Curiosity and the habit of digging until you understand why something works
- Low-level programming skills (C/C++, Asm, Rust, Nim)
- Experience with C2 frameworks, malware development or AV/EDR evasion, even in a lab setting
- Reverse engineering or binary exploitation experience
- Discovered vulnerabilities, CVEs, or valid bug bounty reports
- Understanding of how blue teams detect and respond to attacks
- Active participation in known CTFs
- Public writeups, blog posts, open-source tools or conference talks
- Certifications such as OSCP, CRTP or similar
Group-IB is a global leader in cybersecurity technologies that investigate, predict, prevent, and fight digital crime. We help organizations reduce risk and protect trust. Trusted by governments, major industries, and law enforcement, we deliver adversary-focused, predictive threat intelligence and cyber fraud fusion solutions that detect, analyse, and mitigate regional and country-specific digital crimes.
- Work with real stakes. Group-IB investigates active cybercriminal groups, responds to breaches affecting critical infrastructure, and develops technologies used by law enforcement agencies including INTERPOL, Europol, and Afripol across 60+ countries. We've conducted 1,550+ cybercrime investigations alongside 600+ enterprise customers globally. When you join Group-IB, your work directly disrupts digital crime.
- Grow your way. Choose your own path: deepen your craft as a technical expert, step into leadership, move across to another team, or relocate to one of our Digital Crime Resistance Centers across the Americas, Europe, the Middle East & Africa, Central Asia, and the Asia-Pacific. Your growth is our growth - Group-IB's expansion across 60+ active country operations means real career acceleration.
- We fund professional certifications at company expense - whether you're pursuing CEH, CISSP, OSCP, or specialized certifications in forensics and penetration testing. You don't have to choose between doing the job and advancing your credentials.
- Work alongside industry leaders. Our Unified Risk Platform - Threat Intelligence, Digital Risk Protection, Attack Surface Management, Managed XDR, and more - is recognized by Gartner, Forrester, KuppingerCole, and Datos Insights. Frost & Sullivan named us a 2025 Global Technology Innovation Leader. When you work here, you're building technologies that set the industry standard.
- Real challenges, real expertise. You'll take on complex, real-world problems alongside adversary-centric researchers and incident response experts spread across six continents. We've built 21+ years of proprietary telemetry through 1,500+ joint investigations. No two threats look alike - and neither do the skills you'll develop.
- A team that is genuinely international. Our people come from different countries, speak different languages, and bring different perspectives. What connects us is a shared mission: fighting cybercrime and making the world safer. We care about your wellbeing and happiness as much as your output.
رقم الإعلان لدى المصدر: 4476540346