Apply Edge Start your job search

Penetration Tester

Managed.sa · Riyadh, Riyadh, Saudi Arabia

Apply & track with Apply Edge
Managed.sa is seeking a hands-on Penetration Tester to conduct security assessments, identify and validate vulnerabilities, and provide practical remediation recommendations across client environments.The ideal candidate has strong offensive-security skills, practical testing experience, and the ability to prepare clear and professional technical reports.Key ResponsibilitiesConduct penetration testing across web applications, APIs, networks, infrastructure, and cloud environmentsPerform manual and automated vulnerability assessmentsSafely exploit identified vulnerabilities to assess their technical and business impactTest authentication, authorization, session management, and application logicParticipate in red-team and adversary-simulation activities when requiredConduct source-code security reviews and identify insecure coding practicesDocument findings with supporting evidence, risk ratings, and remediation recommendationsPresent and explain technical findings to clients and internal stakeholdersConduct retesting to verify that vulnerabilities have been properly remediatedStay updated on emerging vulnerabilities, exploitation techniques, and offensive-security toolsRequirementsBachelor's degree in Cybersecurity, Computer Science, Information Security, or a related field2-3 years of practical experience in penetration testing or offensive securityHands-on experience in web application and network penetration testingStrong knowledge of vulnerability assessment and exploitation techniquesGood understanding of network protocols, including TCP/IP, DNS, and HTTPStrong working knowledge of Linux and Windows environmentsStrong understanding of web technologies, APIs, authentication mechanisms, and the OWASP Top 10Experience with tools such as Burp Suite, Metasploit, Nmap, Wireshark, and NessusScripting skills in Python, Bash, PowerShell, Ruby, or a similar languageStrong technical-reporting and communication skillsAbility to work full-time on-site in RiyadhPreferred ExperienceCloud security assessmentsRed-team operationsSource-code security reviewsClient-facing penetration-testing engagementsPreferred CertificationsOne or more of the following certifications would be an advantage:Offensive Security Certified Professional (OSCP)Certified Ethical Hacker (CEH)GIAC Penetration Tester (GPEN)Offensive Security Experienced Penetration Tester (OSEP)Certified Red Team Professional (CRTP)Certified Red Team Operator (CRTO)