Enable job alerts via email!

Director - Tech Consulting - Cybersecurity - Pen. Testing - KSA

Ernst & Young Advisory Services Sdn Bhd

Riyadh

On-site

SAR 374,000 - 563,000

Full time

Yesterday
Be an early applicant

Job summary

A leading global consulting firm is seeking a visionary leader for their Cyber Technology Consulting team in Riyadh. The role focuses on leading offensive security practices and engaging with C-suite clients to oversee complex security risks. Candidates should have extensive cybersecurity experience and a strong background in red teaming. The firm promotes a diverse culture and offers competitive compensation based on performance.

Benefits

Competitive compensation package
Continuous learning opportunities
Transformative leadership coaching
Diverse and inclusive culture

Qualifications

  • 12–15+ years in cybersecurity, especially in offensive security and red teaming.
  • Proven track record in leading an offensive security/red team practice.
  • Experience managing adversary simulation for sectors like government or financial services.

Responsibilities

  • Define the vision and growth plan for the Red Team.
  • Lead engagements in red team and adversarial simulation.
  • Act as a trusted advisor to executives on offensive security risks.
  • Ensure alignment with local regulatory frameworks and best practices.

Skills

Visionary leadership
Business acumen
Exceptional communication skills
Deep understanding of adversary simulation methodologies
Ability to inspire high-performing cybersecurity talent
Innovative mindset for R&D

Education

Bachelor’s or Master’s degree in Cybersecurity or related field
Recognised certifications (OSCP, OSCE, etc.)
Job description

Location: Riyadh

The opportunity

We’re looking for a visionary leader with proven expertise in building and leading offensive security and red team practices to join our Cyber Technology Consulting team. This is a unique opportunity to shape the future of adversarial simulation, guide strategic client programs at the highest level, and be part of a leading firm driving cybersecurity excellence across the region.

Your key responsibilities
  • Define and drive the vision, strategy, and growth plan for the Red Team and Offensive Security practice across the region.
  • Lead high-impact client engagements, including red team, purple team, adversarial simulation, and advanced penetration testing.
  • Act as a trusted advisor to C‑suite and board‑level executives, translating complex offensive security risks into business‑relevant strategies.
  • Develop go‑to‑market strategies, build long‑term client relationships, and drive significant business growth and revenue.
  • Oversee technical excellence in delivery, including adversary tradecraft, C2 infrastructure, malware development, and EDR/AV evasion.
  • Ensure alignment with local regulatory frameworks (e.g., NCA ECC/DCC, ISO, PCI DSS) and global best practices (e.g., MITRE ATT&CK, Cyber Kill Chain, Diamond Model).
  • Accountable for assigned accounts, client relationship management, account growth, revenue, timely project execution, invoice collection, and maintain margins, etc.
  • Represent the firm as a thought leader at conferences and industry forums.
  • Mentor and grow a world‑class team of offensive security professionals, from consultants to senior managers.
  • Collaborate with cross‑functional practices (e.g., Threat Intelligence, SOC, Cloud Security, Defensive Security) to deliver integrated cyber resilience solutions.
Skills and attributes for success
  • Visionary leadership with the ability to scale and globalise an offensive security practice.
  • Strong business acumen with proven P&L ownership, pipeline management, and sales execution.
  • Exceptional communication and presentation skills; able to engage both technical and executive stakeholders.
  • Deep understanding of adversary simulation methodologies, attacker TTPs, and threat modelling frameworks.
  • Ability to inspire, mentor, and retain high‑performing cybersecurity talent.
  • Innovative mindset with passion for R&D, automation, and scaling red team operations.
To qualify for the role, you must have
  • 12–15+ years of progressive experience in cybersecurity, with significant leadership experience in offensive security and red teaming.
  • Proven track record of building and leading a regional or global offensive security/red team practice.
  • Demonstrated experience managing large‑scale adversary simulation and red team programs for government, defence, critical infrastructure, or financial services sectors.
  • Strong technical foundation with exposure to advanced offensive tradecraft (C2 frameworks, malware development, social engineering, physical intrusion, BAS tools).
  • Bachelor’s or Master’s degree in Cybersecurity, Computer Science, or related field.
  • Recognised certifications such as OSCP, OSCE, OSWE, OSEP, OSEE, GXPN, CRTO, SANS GWAPT, GPEN.
Ideally, you’ll also have
  • Experience in driving sector‑wide or national‑level offensive security initiatives, including cyber ranges, red team labs, or defence‑sector accreditation programmes.
  • Strong network within the global cybersecurity community, enabling strategic partnerships and alliances.
What we offer

We offer a competitive compensation package where you’ll be rewarded based on performance and recognised for the value you bring to our business. Plus, we offer:

  • Continuous learning: You’ll develop the mindset and skills to navigate whatever comes next.
  • Success as defined by you: We’ll provide the tools and flexibility, so you can make a meaningful impact, your way.
  • Transformative leadership: We’ll give you the insights, coaching and confidence to be the leader the world needs.
  • Diverse and inclusive culture: You’ll be embraced for who you are and empowered to use your voice to help others find theirs.
If you can demonstrate that you meet the criteria above, please contact us as soon as possible.

Contact us at careers@ey.com or call +966 11 123 4567.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.