Lead Vulnerability Researcher
$175,000–$220,000 year
On-siteHerndon, Virginia, United States
Job Summary
Lead vulnerability identification and attack analysis across hardware, software, personnel, logistics, and physical security systems. Develop proof of concept code, reverse-engineer embedded systems, and review source code for risks. Analyze vulnerability effects on mission outcomes and propose operationally effective countermeasures. Produce reports, briefings, and perspectives on actual and potential attacks while providing technical leadership on research efforts. Mentor junior engineers and researchers by reviewing technical approaches and fostering skill development. Requires TS/SCI clearance, polygraph, and on-site support at Linthicum, Maryland, or Herndon, VA. Doctorate in CS or related field with four years experience, or equivalent Master's, Bachelor's, and Associate's degrees with six, eight, or ten years respectively.
Required Qualifications
- Doctorate in Computer Science, Computer/Electrical Engineering, or a related field and 4 years of relevant experience
- Master's degree and 6 years of relevant experience
- Bachelor's degree and 8 years of relevant experience
- Associate's degree and 10 years of relevant experience
- Relevant experience: computer/information systems design/development, programming, information/cyber/network security, reverse-engineering, vulnerability analysis, penetration testing, computer forensics, information assurance, or systems engineering
- Proficiency in C/C++, Python, and at least one ISA (e.g. x86/ARM/MIPS)
- Proficiency in Linux command-line environments
- Experience using a decompiler such as IDA Pro, Binary Ninja, or Ghidra
- Experience using vulnerability research tools such as emulators or fuzzers
- Experience using a software debugger such as GDB or WinDbg
- Active TS/SCI clearance ( Herndon) with Polygraph required at customer site in Maryland
- Regular on-site support at the Linthicum, Maryland customer site or our headquarters in Herndon VA
Desired Qualifications
- Experience translating vulnerabilities into operationally relevant impact assessments and countermeasures
- Experience producing client-facing technical briefings for operational stakeholders
- Experience using a hardware debugger
- Experience with UART, SPI, I2C
- Experience with common secure communications such as TLS or SSH
- Familiarity with embedded firmware, RTOS, or networked systems
- Familiarity with high-side environments
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.