Purple Teaming Engineer - Embedded Security

Lucid Motors Middle East


Date: 2 weeks ago
City: Riyadh
Contract type: Full time
Leading the future in luxury electric and mobility

At Lucid, we set out to introduce the most captivating, luxury electric vehicles that elevate the human experience and transcend the perceived limitations of space, performance, and intelligence. Vehicles that are intuitive, liberating, and designed for the future of mobility.

We plan to lead in this new era of luxury electric by returning to the fundamentals of great design – where every decision we make is in service of the individual and environment. Because when you are no longer bound by convention, you are free to define your own experience.

Come work alongside some of the most accomplished minds in the industry. Beyond providing competitive salaries, we’re providing a community for innovators who want to make an immediate and significant impact. If you are driven to create a better, more sustainable future, then this is the right place for you.

Job Summary

We are seeking a Purple Teaming Engineer with hands-on experience in both offensive and defensive security, with a focus on embedded systems.

The ideal candidate will have practical experience with SOC operations, adversary simulation, detection engineering, and security testing across embedded or cloud-connected systems.

You will play a key role in executing threat emulation, automating adversary TTPs, and enhancing detection capabilities in collaboration with Red and SOC team.

Experience with vehicle SOC and security operations is a plus.

Key Responsibilities

  • Operationalize Purple Team and Attack Simulation exercises across embedded and cloud-connected systems.
  • Develop and execute adversary simulation plans that align with threat intelligence.
  • Collaborate with Red and Blue teams to identify detection gaps and improve SOC effectiveness.
  • Identify relevant log sources across assets, ECUs, and infrastructure; document the type, location, and format of logs required for effective cybersecurity anomaly detection.
  • Regularly review the availability, completeness, and integrity of logs; highlight gaps and work with asset/ECU owners to ensure alignment with best security logging practices.
  • Share recommendations with system and asset owners on required logging improvements, event visibility, and adherence to secure logging practices.
  • Support offensive testing across RTOS, Linux, Android, and MCU-based systems.
  • Draft and present technical reports and summaries of Purple Team activities to technical and management stakeholders.
  • Communicate findings, detecting weaknesses, meeting the logging requirements and prioritized remediation strategies. Collaborative Objectives:
  • Work closely with SOC & Red teams to convert threat intel into actionable TTPs and test cases.
  • Support SOC operations and help validate detection logic with real-world simulations.
  • Assist in control validation, SIEM optimization, and threat modeling automation.
  • Provide mentorship to junior team members on simulation workflows and embedded systems.
  • Contribute to the ongoing development of the team’s offensive and defensive testing capabilities.

Required Qualifications

  • 3–6 years of combined experience in Red Teaming, SOC, detection engineering, or embedded security testing.
  • Strong knowledge of MITRE ATT&CK, threat simulation tools, and detection principles.
  • Experience working with embedded Linux, Android systems, RTOS, or MCU platforms.
  • Familiarity with SIEM systems (e.g., Splunk, ELK), log analysis.
  • Proficiency in scripting/automation using Python.
  • Exposure to network security, including packet analysis and custom protocol fuzzing.
  • Exposure with vehicle communications (CAN, UDS, DoIP, BLE, MQTT, etc.).
  • Strong technical writing and communication skills for documentation and stakeholder engagement. Preferred Qualifications:
  • Experience in vehicle cybersecurity/SOC or embedded threat detection.
  • Familiar with tools like Burp Suite, Ghidra, Binwalk, or custom fuzzers.
  • Experience simulating or detecting low-level attacks, including firmware tampering, memory corruption, and secure boot bypasses.
  • Understanding of cloud security architecture related to embedded platforms.
  • Working knowledge of SIEM solutions, telemetry pipelines, and threat hunting frameworks.

Additional Compensation and Benefits: Lucid offers a wide range of competitive benefits, including medical, dental, vision, life insurance, disability insurance, vacation, and 401k. The successful candidate may also be eligible to participate in Lucid’s equity program and/or a discretionary annual incentive program, subject to the rules governing such programs. (Cash or equity incentive awards, if any, will depend on various factors, including, without limitation, individual and company performance.)

By Submitting your application, you understand and agree that your personal data will be processed in accordance with our Candidate Privacy Notice. If you are a California resident, please refer to our California Candidate Privacy Notice.

To all recruitment agencies: Lucid Motors does not accept agency resumes. Please do not forward resumes to our careers alias or other Lucid Motors employees. Lucid Motors is not responsible for any fees related to unsolicited resumes.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Senior Sales Manager – Public Sector

Mozn, Riyadh
5 hours ago
About MoznMozn is a rapidly growing technology firm revolutionising the field of Artificial Intelligence and Data Science headquartered in Riyadh, Saudi Arabia and it’s working to realise Vision 2030 with a proven track record of excellence in supporting and growing the tech ecosystem in Saudi Arabia and the GCC region. Mozn is the trusted AI technology partner for some of...

Principal Specialist, Subcontracts Management

Raytheon, Riyadh
2 days ago
Date Posted: 2025-10-09 Country: Saudi Arabia Location: SAU01115: RTN SA Riyadh Front HQ, 9054 King Khaled International Airport Street, S1, King Khaled International Airport District, Riyadh, 01, 13413-3677, Saudi Arabia Position Role Type: Unspecified About Us: At Raytheon, the foundation of everything we do is rooted in our values and a higher calling – to help our nation and allies...

Construction Director (Stadium)

Mace, Riyadh
3 days ago
Mace combines construction expertise with consultancy to unlock potential in every person or project and redefine the boundaries of ambition. Our values shape the way we consult and define the people we want to join us on our journey. The project: Mace is supporting the delivery of a landmark sports and entertainment venue in the Middle East. Designed with sustainability...