Security Researcher Technical Lead
HybridHaifa, Haifa, Israel
Job Summary
Lead complex vulnerability research across firmware, software, virtualization, and hardware security domains while conducting architecture reviews, threat modeling, and red team assessments. Develop innovative analysis techniques, fuzzing frameworks, and security research tools to drive remediation efforts. Communicate complex technical findings to executives, engineering leaders, and external stakeholders, and mentor security researchers at various experience levels. This role requires a demonstrated attacker's mindset and strong technical leadership to influence product security strategy without direct authority. The position offers a hybrid work model for eligible candidates in Israel, Haifa.
Required Qualifications
- 4+ years of experience in security research, offensive security, or a related field
- Proven track record of identifying significant security vulnerabilities and driving remediation
- Demonstrated experience leading complex security research or offensive security projects
- Degree, or equivalent experience, in Computer Science, Computer Engineering, or a related field
- Extensive hands-on experience in C/C++ software development and security analysis
- Deep understanding of modern security principles, attack techniques, and defensive technologies
- Ability to balance hands-on technical work with strategic leadership responsibilities
- Strong analytical, technical leadership, and communication skills
- Fluency in English
Desired Qualifications
- Passion for security research and a demonstrated attacker's mindset
- Strong technical leadership with the ability to influence without direct authority
- Proven experience leading ambiguous, high-impact technical investigations
- Experience in penetration testing, fuzzing, reverse engineering, exploit development, and static code analysis
- Expertise in embedded software and firmware security
- Deep understanding of OS internals, virtualization technologies, and compiler behavior
- Experience with hardware security, side-channel analysis, or trusted execution environments
- Knowledge of Intel Architecture and virtualization technologies (VMX/TDX)
- Strong understanding of cryptographic principles and secure system design
- Track record of published research, CVEs, conference presentations, or other industry-recognized security contributions
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.