Senior Offensive Security Consultant – FortiGuard Proactive Services
at Fortinet
Riyadh, منطقة الرياض, Saudi Arabia -
Start Date | Expiry Date | Salary | Posted On | Experience | Skills | Telecommute | Sponsor Visa |
---|---|---|---|---|---|---|---|
Immediate | 21 Nov, 2024 | Not Specified | 23 Aug, 2024 | 10 year(s) or above | Computer Engineering,Ruby,Security Controls,English,Python,Powershell,Application Security Assessments,Perl,Computer Science,Communication Skills,Red Team,C,C++,Scripting Languages,Edr,Active Directory,Oscp | No | No |
Required Visa Status:
Citizen | GC |
US Citizen | Student Visa |
H1B | CPT |
OPT | H4 Spouse of H1B |
GC Green Card |
Employment Type:
Full Time | Part Time |
Permanent | Independent - 1099 |
Contract – W2 | C2H Independent |
C2H W2 | Contract – Corp 2 Corp |
Contract to Hire – Corp 2 Corp |
Description:
OFFENSIVE SECURITY SERVICES – SENIOR RED TEAM AND PENETRATION TESTING EXPERT
We are seeking a highly skilled and motivated Offensive Security SME to join our FortiGuard Security Consulting Team. As a SME, you will work directly with members in our Global Security Consulting team comprised of individuals with strong knowledge in attack and penetration methods, malware hunting and analysis, reverse engineering, multiple scripting languages, forensics, assessments and frameworks, and threat actor TTPs. In this very hands-on, customer-facing role, your primary responsibilities will be to lead and conduct advanced Red Team engagements both full-scope and objective-lead and penetration tests to identify weaknesses in an organization’s countermeasures ultimately enhancing their overall security posture. In addition, the SME from time to time, will participate in pre-sales activities as well as provide thought leadership and information exchange through events such as speaking at security conferences and or producing blogs and whitepapers.
QUALIFICATIONS:
- Bachelor’s Degree in Computer Engineering, Computer Science or related field
- Or 8 - 10+ years’ experience in Attack and Penetration testing rolesCertifications in offensive security such as OSCP, OSEP, GXPN, GRTP, etc.
LI-hybri
Required Skills :
- Excellent written and verbal communication skills – English
- Experience developing and conducting red team and penetration testing engagements
- Experience performing application security assessments
- Public speaking experience at known security conferences is a plus
- Capable of performing assessments with common offensive toolsets as well as the ability to build custom tools and implants
- Solid knowledge of scripting languages such as Python, Perl, PowerShell, Ruby
- Development experience using C, C++, .NET, Java, Go
- Experience carrying out vulnerability assessments, physical assessments, wireless assessments, and social engineering campaigns.
- Strong understanding of operating system internals and endpoint security controls such as EDR and various evasion techniques
- Solid understanding of Active Directory and Azure A
Responsibilities:
Customer Engagements : Collaborate with clients to understand their security needs and objectives. Lead and deliver Red Team and penetration testing engagements, ensuring high-quality results that align with customer expectations.
Red Team Operations : Plan and execute realistic and sophisticated Red Team operations to simulate advanced cyber threats. Mimic adversary tactics, techniques, and procedures (TTPs) to identify and exploit vulnerabilities in client environments.
Penetration Testing : Conduct thorough penetration tests on client systems, networks, and applications. Provide actionable insights and recommendations for remediation based on identified vulnerabilities.
Technical Expertise: Demonstrate proficiency in a variety of offensive security tools and techniques. Stay current with industry trends, emerging threats, and advancements in offensive security methodologies.
Documentation and Reporting : Document all testing procedures, findings, and recommendations in clear and concise reports. Communicate technical details effectively to both technical and non-technical stakeholders as well as provide proactive guidance on improving an organization’s security posture.
Required Skills :
- Excellent written and verbal communication skills – English
- Experience developing and conducting red team and penetration testing engagements
- Experience performing application security assessments
- Public speaking experience at known security conferences is a plus
- Capable of performing assessments with common offensive toolsets as well as the ability to build custom tools and implants
- Solid knowledge of scripting languages such as Python, Perl, PowerShell, Ruby
- Development experience using C, C++, .NET, Java, Go
- Experience carrying out vulnerability assessments, physical assessments, wireless assessments, and social engineering campaigns.
- Strong understanding of operating system internals and endpoint security controls such as EDR and various evasion techniques
- Solid understanding of Active Directory and Azure AD
REQUIREMENT SUMMARY
Min:10.0Max:15.0 year(s)
Information Technology/IT
IT Software - Network Administration / Security
Software Engineering
Graduate
Computer engineering computer science or related field
Proficient
1
Riyadh, Saudi Arabia