
researcher Remote
Job description
- Bachelors Degree required
- Minimum 10+ years of work experience in the Cyber Security industry.
- Current Vulnerability researcher, not a pen tester looking to be a researcher.
- Track record of Vulnerability Research (based on products developed, conference presentations, CVEs reported, having held research positions at prominent research organizations.
- Azure, Oracle Cloud, web platforms (specifically Java and Node/React...on the research side)
- Published research or presented at a conference on web application security (e.g., OAuth, SAML, web platform security bugs), and/or enterprise product vulnerability research (Cisco, VPN concentrators, F5 devices, WAFs, Proofpoint, Exchange, AD, EDR, etc.)
- Understanding of all phases of adversary emulation operations including reconnaissance, social engineering, exploitation, post-exploitation, covert techniques, lateral movement, and data exfiltration.
- Extensive experience in offensive cybersecurity roles.
- Demonstrated abilities to reverse engineer binaries, enumerate vulnerabilities in compiled software, and provide working exploits (e.g., CVEs, public acknowledgements, or ability to demonstrate on demand).
- Demonstrated ability to discover vulnerabilities via static analysis and source code review.
- Experience coding and testing in multiple languages.
