EN | AR

7 Security Assessments jobs in Saudi Arabia

Penetration Testing

SAR120000 - SAR240000 Y Zakat, Tax and Customs Authority

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Objective
The Penetration Testing & Vulnerability Management Section Manager is responsible for evaluation and testing to identify weak points, analyze results, and ensure proper communication to confirm effective corrective measures are taken in a timely manner.

This includes supervising penetration testing activities, following up on recommendations, and ensuring the implementation of corrective actions. Additionally, the Section Manager is responsible for preparing and developing penetration testing policies and updating them in cooperation with the cybersecurity team to ensure alignment with international standards and security requirements.

The Section Manager also ensures that recommendations and reports submitted to different departments are followed up, and that the best international practices are applied in the field of penetration testing and vulnerability management.

Roles And Responsibilities

  • Share requirements and needs to develop the information and cybersecurity action plan, and ensure alignment with the Authority's strategy
  • Develop the operational plan of the Vulnerability Management and Testing Department and align it with the Information and Cyber Security Action Plan and the Strategic Plan for Analysis and Risk
  • Implement plans and provide the necessary inputs to be able to achieve the objectives of the Gap Management and Testing Department, which supports the overall strategic objectives of the Authority.
  • Discuss the budget requirements of the Division Management and Testing Gaps with senior management and provide input related to the budgeting process.
  • Ensure optimal use of the Vulnerability Management and Testing Department's budget and provide an accurate report on progress and challenges encountered
  • Validate initiatives and propose the implementation of those that achieve positive financial results for the Vulnerability Management and Testing Department and mitigate financial and operational risks.
  • Lead the assessment of cybersecurity software to detect vulnerabilities and ensure proper communication to secure an effective and timely solution
  • Monitor penetration testing activities to discover results and ensure proper communication to secure an effective and timely solution
  • Oversee the implementation of the reform plan to identify discovered issues and ensure proper assessment of the current technology infrastructure
  • Developing, developing, and updating penetration testing and vulnerability management policies and procedures in collaboration with the cybersecurity team and relevant departments.
  • Manage sophisticated tools and techniques to detect and exploit vulnerabilities in the IT system from the attacker's point of view.
  • Manage and supervise penetration testing activities to assess security effectiveness
  • Document, categorize, and report and make recommendations on penetration test results, identified gaps, actions taken, potential impacts, and corrective and preventive actions.
  • Applying international best practices and standards in the field of penetration testing and vulnerability management.
  • Assess, classify, and approve change requests received from different departments and ensure that they comply with security standards and requirements.
  • Identify and allocate resources, timelines, and responsibilities to implement changes in an orderly and effective manner.
  • Monitor and track the status of changes and resolve issues and risks that may occur during the change process.
  • Participate in the identification and recruitment of key talent
  • Guidance, guidance, and support of direct reports to carry out tasks according to defined processes and policies
  • Develop individual performance goals, provide support, evaluate the team, and provide feedback on performance on an ongoing basis
  • Creating a high-performance work environment and promoting the values of the Authority

Qualifications And Job Requirements

  • 6 years of optimal industry experience (required).
  • A bachelor's degree in computer science or cybersecurity, or equivalent, is required.
  • A Master's degree in Cybersecurity, or equivalent, is preferred.
  • Professional certifications in cybersecurity (preferred).
This advertiser has chosen not to accept applicants from your region.

Penetration Testing Specialist

Zero One Security

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

Perform penetration tests and vulnerability assessments to identify, exploit, and help remediate security weaknesses in the organization’s IT environment. Deliver clear, actionable results for technical and non-technical audiences.

Key Responsibilities
  • Conduct regular penetration tests (internal/external, web, network, applications) and vulnerability assessments.
  • Identify attack paths and prioritize exploitable weaknesses while ensuring service continuity.
  • Produce clear, actionable reports for technical teams and leadership.
  • Develop and test incident response playbooks and remediation guidance.
  • Use SIEM and log analysis to support testing and post‑exploitation investigations.
  • Support SOC operations and continuous monitoring activities.
  • Run periodic IDS/IPS and detection‑control tests and update response procedures.
  • Collaborate with IT teams to validate fixes and improve defenses.
  • Maintain thorough documentation of tests, findings, and remediation steps.
  • Stay current with global threat developments and adjust testing methodologies accordingly.
Minimum Qualifications
  • Bachelor’s degree in Computer Science, Information Technology, or related field.
  • 3–4 years’ experience in penetration testing, red teaming, or offensive security.
Preferred Certifications
  • eJPT
  • OSCP
  • CEH
  • or equivalent
Seniority level
  • Mid‑Senior level
Employment type
  • Full‑time
Job function
  • Quality Assurance
  • IT Services and IT Consulting

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Penetration Testing Specialist

SAR60000 - SAR120000 Y Zero One Security

Posted today

Job Viewed

Tap Again To Close

Job Description

Perform penetration tests and vulnerability assessments to identify, exploit, and help remediate security weaknesses in the organization's IT environment. Deliver clear, actionable results for technical and non-technical audiences.

Key Responsibilities:

  • Conduct regular penetration tests (internal/external, web, network, applications) and vulnerability assessments.

  • Identify attack paths and prioritize exploitable weaknesses while ensuring service continuity.

  • Produce clear, actionable reports for technical teams and leadership.

  • Develop and test incident response playbooks and remediation guidance.

  • Use SIEM and log analysis to support testing and post-exploit investigations.

  • Support SOC operations and continuous monitoring activities.

  • Run periodic IDS/IPS and detection-control tests and update response procedures.

  • Collaborate with IT teams to validate fixes and improve defenses.

  • Maintain thorough documentation of tests, findings, and remediation steps.

  • Stay current with global threat developments and adjust testing methodologies accordingly.

Minimum Qualifications:

  • Bachelor's degree in Computer Science, Information Technology, or related field.

  • 3–4 years' experience in penetration testing, red teaming, or offensive security.

Preferred Certifications:

  • eJPT

  • OSCP

  • CEH

or equivalent.

This advertiser has chosen not to accept applicants from your region.

Penetration Testing Specialist

SAR120000 - SAR240000 Y sirar by stc

Posted today

Job Viewed

Tap Again To Close

Job Description

Company Overview:

Advanced technology and cybersecurity company (sirar) established by stc, the region's ICT and digital services provider, sirar by stc is a cutting-edge cybersecurity provider that empowers organization to take control of their cyber capabilities and digital environments.

As experts in business security and privacy.

We offer a comprehensive range of solutions that help you to operate online safely, securely, and efficiently. The tools we provide help organizations detect and prevent cybersecurity attacks, safeguard their digital future, and provide protection and security from that point forward.

Key Responsibilities:

  • Identifies methods that attackers could use to exploit system and network vulnerabilities.
  • Mimics malicious social engineering techniques that an attacker would use to attempt a system breach to uncover security gaps and vulnerabilities.
  • Gathers information about network topography and usage through technical analysis and open-source research and document findings.
  • Uses security testing and code scanning tools to conduct code reviews.
  • Recommends security controls to mitigate risks identified through testing and review.
  • Conducts required reviews, including reviews of defensive measures, according to the organization's policies.
  • Conducts authorized penetration testing of infrastructure and assets.
  • Performs technical and nontechnical risk and vulnerability assessments of organizational technology environments.
  • Maintains a deployable cyber defense audit toolkit based on industry best practice to support cyber defense audits.
  • Tests for vulnerabilities in web applications, client applications and standard applications.
  • Conducts physical security assessments of servers, systems, and network devices.
  • Reports penetration testing and vulnerability assessment findings including risk level, proposed mitigation, and details necessary to reproduce the test results.
  • Explains business impact of vulnerabilities identified through testing to make case for addressing them.
  • Presents test findings, risks, and conclusions to technical and non-technical audiences.
  • Designs simulated attacks to reflect impact in the organization's business and its users.
  • Supports in collaborating with cybersecurity vendors to drive innovation in Penetration Testing services development and manage overall Penetration Testing service lifecycle.
  • Supports in leading the implementation of go-to-market and roadmap for Penetration Testing services solutions & tools.
  • Supports in developing Penetration Testing Services' lifecycle end-to-end, including Ideation, feasibility analysis, planning, sourcing, business case, toolkits and operating models design, commercialization, launch, performance management, and retirement, in collaboration with other Advisory sections.
  • Contributes to the overall success of the company by performing all other duties and responsibilities as assigned by line manager.

Qualification:

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related discipline.

Professional Certificate:

  • Offensive Security (OSCP, OSWP, OSWE, OSEP, etc)
  • GIAC (GXPN, GCPN, GAWN, GPYC, etc)
  • Pen tester Academy (Red Team Expert)

Years of Experience:

  • 3 – 5 years in relevant experience

Skills:

  • Advance proficiency in conducting vulnerability scans and determine vulnerabilities from the results.
  • Intermediate proficiency in conducting penetration testing in line with the organization's policies and best practice.
  • Advance proficiency in developing insights about an organization's threat environment.
  • Advance proficiency in analyzing vulnerability and configuration data to identify cybersecurity issues
  • Advance proficiency in mimicking threat behaviors.
  • Intermediate proficiency in implementing adversary Tactics, Techniques and Procedures.
  • Basic proficiency in service development.
  • Basic proficiency in user experience knowledge.
  • Basic proficiency in recognizing industry trends & KPIs
This advertiser has chosen not to accept applicants from your region.

Penetration Testing Engineer

SAR120000 - SAR240000 Y SWATX

Posted today

Job Viewed

Tap Again To Close

Job Description

We are seeking a highly motivated and skilled Penetration Testing Engineer to join our cybersecurity team. The ideal candidate will be responsible for conducting comprehensive penetration tests on our systems, networks, and applications to identify and mitigate security vulnerabilities. You will play a crucial role in ensuring the security and integrity of our digital assets by simulating real-world cyberattacks and providing actionable recommendations for remediation.

Responsibilities:

  • Penetration Testing and Vulnerability Assessment:
    • Conduct internal and external penetration tests on web applications, mobile applications, networks, and infrastructure.
  • Perform vulnerability assessments and security audits to identify weaknesses and potential attack vectors.
  • Utilize various penetration testing tools and techniques, including manual and automated methods.
  • Simulate real-world attack scenarios to assess the effectiveness of existing security controls.
  • Perform social engineering assessments, if required.
  • Perform wireless network assessments.
  • Reporting and Remediation:
    • Document and report identified vulnerabilities with clear and concise descriptions, including severity levels and potential impact.
  • Provide detailed recommendations for remediation and mitigation strategies.
  • Present findings to technical and non-technical stakeholders.
  • Track and verify the implementation of remediation efforts.
  • Retest systems after patches are applied.
  • Security Research and Development:

  • Stay up-to-date with the latest security threats, vulnerabilities, and attack techniques.

  • Research and evaluate new penetration testing tools and methodologies.
  • Contribute to the development and improvement of internal security testing processes.
  • Contribute to the creation of security best practices.

  • Compliance and Standards:

    • Ensure all penetration testing activities comply with relevant legal, regulatory, and ethical standards.
  • Adhere to industry best practices and security frameworks (e.g., OWASP, NIST).
  • Maintain confidentiality of sensitive data.

Qualifications:

  • Education: Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience).
  • Experience: 3 years of experience in penetration testing or a related security role.
  • Technical Skills:
    • Proficiency in using penetration testing tools (e.g., Metasploit, Nmap, Burp Suite, Wireshark).
  • Strong understanding of networking protocols, operating systems (Windows, Linux), and web application architectures.
  • Knowledge of common web application vulnerabilities (e.g., OWASP Top 10).
  • Experience with scripting languages (e.g., Python, Bash, PowerShell).
  • Knowledge of cloud security (AWS, Azure, GCP).
  • Knowledge of mobile application security.
  • Certifications (Preferred):
    • Certified Ethical Hacker (CEH)
  • Offensive Security Certified Professional (OSCP)
  • GIAC Penetration Tester (GPEN)
  • CISSP
  • Soft Skills:

  • Strong analytical and problem-solving skills.

  • Excellent communication and interpersonal skills.
  • Ability to work independently and as part of a team.
  • Strong ethical principles and a commitment to confidentiality
This advertiser has chosen not to accept applicants from your region.

Penetration Testing Consultant

SAR90000 - SAR120000 Y Cipher | سايڤر

Posted today

Job Viewed

Tap Again To Close

Job Description

Cipher | سايڤر is a cybersecurity solutions provider based in Riyadh, Saudi Arabia. The company's goal is to simplify the perception of complexity surrounding cybersecurity problems and solutions. Cipher's team of Saudi professionals and experts work tirelessly to develop, customize, and manage digital services and cybersecurity solutions to ensure their peace of mind. Our goal is to provide peace of mind to our clients by making digital security simple and efficient.

Key Responsibilities:

  • Engage with clients to define the scope and objectives of penetration tests, including systems, applications, and environments to be assessed.
  • Plan, design, and execute manual penetration tests across web applications, mobile applications, APIs, cloud services, and enterprise infrastructure.
  • Perform advanced security assessments such as source code reviews, business logic testing, and red team/adversary simulations.
  • Conduct onsite and remote testing to identify vulnerabilities, misconfigurations, and gaps in defensive controls.
  • Simulate real-world attacks to evaluate the effectiveness of detection, prevention, and response mechanisms.
  • Document and communicate findings in detailed technical reports with clear risk ratings, business impact analysis, and actionable remediation steps.
  • Present results and recommendations to both technical and executive-level stakeholders.
  • Provide strategic security advice to clients on hardening systems, reducing attack surface, and improving detection and response.
  • Continuously update knowledge of emerging threats, vulnerabilities, tools, and penetration testing methodologies (e.g., OWASP, MITRE ATT&CK).

Educational Requirements:

Bachelor's degree of Computer Science, Cybersecurity, Information Technology, or a related field.

Certifications:

Preferred Certifications:

  • OSCP (Offensive Security Certified Professional)
  • eWPTX (eLearnSecurity Web Application Penetration Tester eXtreme)
  • CRTP (Certified Red Team Professional)
  • Additional relevant certifications such as OSWE, OSEP, GXPN, CREST CRT, or equivalent.

Required Skills & Competencies:

  • Strong hands-on experience in penetration testing of web, mobile, cloud, and infrastructure environments.
  • Expertise in manual vulnerability discovery and exploitation (excluding exploit development).
  • Experience conducting detailed source code reviews to identify security weaknesses.
  • Familiarity with red team frameworks, adversary simulation techniques, and threat modeling.
  • Proficiency in scripting and automation (e.g., Python, PowerShell, Bash).
  • Strong analytical and problem-solving skills, with the ability to evaluate complex systems.
  • In-depth understanding of technical systems, application architectures, and common attack vectors.
  • Excellent written and verbal communication skills for delivering clear reports and executive presentations.
  • Ability to translate technical findings into meaningful business risk insights.
This advertiser has chosen not to accept applicants from your region.

Penetration Testing Senior Specialist

SAR90000 - SAR120000 Y sirar by stc

Posted today

Job Viewed

Tap Again To Close

Job Description

Company Overview:

Advanced technology and cybersecurity company (sirar) established by stc, the region's ICT and digital services provider, sirar by stc is a cutting-edge cybersecurity provider that empowers organization to take control of their cyber capabilities and digital environments. As experts in business security and privacy. We offer a comprehensive range of solutions that help you to operate online safely, securely, and efficiently. The tools we provide help organizations detect and prevent cybersecurity attacks, safeguard their digital future, and provide protection and security from that point forward.

Key Responsibilities:

  • Participates in reporting penetration testing and vulnerability assessment findings including risk level, proposed mitigation and details necessary to reproduce the test results.
  • Identifies methods that attackers could use to exploit system and network vulnerabilities.
  • Mimics malicious social engineering techniques that an attacker would use to attempt a system breach to uncover security gaps and vulnerabilities.
  • Gathers information about network topography and usage through technical analysis and open-source research and document findings.
  • Uses security testing and code scanning tools to conduct code reviews.
  • Conducts authorized penetration testing of infrastructure and assets.
  • Performs technical and non-technical risk and vulnerability assessments of organizational technology environments.
  • Tests for vulnerabilities in web applications, client applications, and standard applications.
  • Conducts physical security assessments of servers, systems and network devices.
  • Participates in explaining business impact of vulnerabilities identified through testing to make case for addressing them.
  • Presents test findings, risks, and conclusions to technical and non-technical audiences.
  • Participates in designing complex simulated attacks to reflect impact in the organization's business and its users.
  • Contributes to the overall success of the company by performing all other duties and responsibilities as assigned by line manager.

Qualifications:

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related discipline.
  • Master's degree in Cybersecurity, Computer Science/Information Technology or related discipline is preferred.

Professional Certifications Preferred:

  • Relevant certification in technology Security (CISSP, CAP, SSCP, (ISC)2, CCFP, CISM etc.) is preferred. ISO 27001 Lead Implementor, Lead Auditor.

Years of Experience:

  • 3-5 years in relevant experience.

Skills:

  • Intermediate proficiency in data collection and analysis.
  • Intermediate proficiency in reporting skills and recommending actions to be taken.
  • Intermediate proficiency in reviewing and editing cybersecurity related plans.
  • Intermediate proficiency in identifying gaps and limitations in cyber threat intelligence provision.
  • Intermediate proficiency in developing, deploying, and integrating policies that meet organizational system cybersecurity objectives.
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Security assessments Jobs in Saudi Arabia !

 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Security Assessments Jobs