Senior Offensive Security Consultant – FortiGuard Proactive Services

at  Fortinet

Riyadh, منطقة الرياض, Saudi Arabia -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate21 Nov, 2024Not Specified23 Aug, 202410 year(s) or aboveComputer Engineering,Ruby,Security Controls,English,Python,Powershell,Application Security Assessments,Perl,Computer Science,Communication Skills,Red Team,C,C++,Scripting Languages,Edr,Active Directory,OscpNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

OFFENSIVE SECURITY SERVICES – SENIOR RED TEAM AND PENETRATION TESTING EXPERT

We are seeking a highly skilled and motivated Offensive Security SME to join our FortiGuard Security Consulting Team. As a SME, you will work directly with members in our Global Security Consulting team comprised of individuals with strong knowledge in attack and penetration methods, malware hunting and analysis, reverse engineering, multiple scripting languages, forensics, assessments and frameworks, and threat actor TTPs. In this very hands-on, customer-facing role, your primary responsibilities will be to lead and conduct advanced Red Team engagements both full-scope and objective-lead and penetration tests to identify weaknesses in an organization’s countermeasures ultimately enhancing their overall security posture. In addition, the SME from time to time, will participate in pre-sales activities as well as provide thought leadership and information exchange through events such as speaking at security conferences and or producing blogs and whitepapers.

QUALIFICATIONS:

  • Bachelor’s Degree in Computer Engineering, Computer Science or related field
  • Or 8 - 10+ years’ experience in Attack and Penetration testing rolesCertifications in offensive security such as OSCP, OSEP, GXPN, GRTP, etc.

  • LI-hybri

Required Skills :

  • Excellent written and verbal communication skills – English
  • Experience developing and conducting red team and penetration testing engagements
  • Experience performing application security assessments
  • Public speaking experience at known security conferences is a plus
  • Capable of performing assessments with common offensive toolsets as well as the ability to build custom tools and implants
  • Solid knowledge of scripting languages such as Python, Perl, PowerShell, Ruby
  • Development experience using C, C++, .NET, Java, Go
  • Experience carrying out vulnerability assessments, physical assessments, wireless assessments, and social engineering campaigns.
  • Strong understanding of operating system internals and endpoint security controls such as EDR and various evasion techniques
  • Solid understanding of Active Directory and Azure A

Responsibilities:

Customer Engagements : Collaborate with clients to understand their security needs and objectives. Lead and deliver Red Team and penetration testing engagements, ensuring high-quality results that align with customer expectations.
Red Team Operations : Plan and execute realistic and sophisticated Red Team operations to simulate advanced cyber threats. Mimic adversary tactics, techniques, and procedures (TTPs) to identify and exploit vulnerabilities in client environments.
Penetration Testing : Conduct thorough penetration tests on client systems, networks, and applications. Provide actionable insights and recommendations for remediation based on identified vulnerabilities.
Technical Expertise: Demonstrate proficiency in a variety of offensive security tools and techniques. Stay current with industry trends, emerging threats, and advancements in offensive security methodologies.
Documentation and Reporting : Document all testing procedures, findings, and recommendations in clear and concise reports. Communicate technical details effectively to both technical and non-technical stakeholders as well as provide proactive guidance on improving an organization’s security posture.

Required Skills :

  • Excellent written and verbal communication skills – English
  • Experience developing and conducting red team and penetration testing engagements
  • Experience performing application security assessments
  • Public speaking experience at known security conferences is a plus
  • Capable of performing assessments with common offensive toolsets as well as the ability to build custom tools and implants
  • Solid knowledge of scripting languages such as Python, Perl, PowerShell, Ruby
  • Development experience using C, C++, .NET, Java, Go
  • Experience carrying out vulnerability assessments, physical assessments, wireless assessments, and social engineering campaigns.
  • Strong understanding of operating system internals and endpoint security controls such as EDR and various evasion techniques
  • Solid understanding of Active Directory and Azure AD


REQUIREMENT SUMMARY

Min:10.0Max:15.0 year(s)

Information Technology/IT

IT Software - Network Administration / Security

Software Engineering

Graduate

Computer engineering computer science or related field

Proficient

1

Riyadh, Saudi Arabia