yandex
Страна
США
Зарплата
112 064 $ – 168 095 $
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
SeniorВ офисеПолная занятость

Senior Vulnerability Researcher

Оценка ИИ

Высокая оценка обусловлена сложностью задач, работой с передовыми технологиями и конкурентной заработной платой. Однако позиция требует строгого соответствия критериям безопасности США, что ограничивает круг кандидатов.


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Роль требует экспертных знаний в реверс-инжиниринге, низкоуровневом программировании и поиске уязвимостей. Дополнительную сложность создает необходимость наличия действующего допуска к секретной работе (Top Secret).

Анализ зарплаты

Медиана145 000 $
Рынок120 000 $ – 180 000 $
Оценка ИИ

Предложенный диапазон ($112k - $168k) соответствует рыночным стандартам для Senior-позиций в области кибербезопасности в Арлингтоне, штат Вирджиния. Верхняя граница диапазона является конкурентной для специалистов с активным допуском Top Secret.

Сопроводительное письмо

I am writing to express my strong interest in the Senior Vulnerability Researcher position at Two Six Technologies. With a deep background in reverse engineering and embedded systems security, I have spent years honing my skills in static and dynamic analysis to identify critical vulnerabilities in complex hardware and firmware environments. My proficiency with tools like Ghidra and IDA Pro, combined with a solid understanding of low-level programming in C and assembly, aligns perfectly with the mission of the Trusted Electronics & Effects unit.

Throughout my career, I have successfully developed proof-of-concept exploits and navigated modern security mitigations such as ASLR and DEP. I am particularly drawn to Two Six Technologies because of your reputation for solving high-stakes challenges for national security. I am eager to bring my expertise in wireless protocols and embedded security to your team in Arlington and contribute to the development of mission-critical security solutions.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в twosixtechnologies уже сейчас

Присоединяйтесь к элите кибербезопасности и защищайте национальные интересы, взламывая сложнейшие встроенные системы!

Описание вакансии

At Two Six Technologies, we build, deploy, and implement innovative products that solve the world’s most complex challenges today. Through unrivaled collaboration and unwavering trust, we push the boundaries of what’s possible to empower our team and support our customers in building a safer global future.

Overview of Opportunity

Join the Trusted Electronics & Effects business unitat Two Six Technologies in Arlington, Virginia, where we push the boundaries of software and firmware reverse engineering to uncover vulnerabilities in wireless and embedded systems. As part of our elite team of security researchers, you’ll work alongside CNO developers and hardware engineers, conducting cutting-edge vulnerability research on complex, real-world targets.

Our government customers rely on us to deliver mission-critical security solutions, and we’re looking for a Senior Vulnerability Researcher who thrives on reverse engineering embedded systems, discovering security weaknesses, and developing innovative proof-of-concept exploits. If you’re passionate about wireless security, embedded firmware analysis, and making an impact on national security, we want you on our team.

What you will do:

  • Conduct comprehensive reverse engineering on a variety of embedded systems
  • Perform static and dynamic analysis to find security vulnerabilities in embedded systems
  • Develop proof of concept capabilities to show research progress
  • Document research findings to further the team’s understanding of embedded systems
  • Collaborate with other disciplines to deliver solutions to our customers

What you will need (basic qualifications):

  • Bachelor’s degree in Computer Science, Computer Engineering, Electrical Engineering, or a related technical discipline. Equivalent practical experience in security research, reverse engineering, vulnerability research, or exploit development may substitute for a degree.
  • Knowledge of \*nix operating systems
  • Knowledge of common network protocols TCP/IP, UDP, or HTTP
  • Proficiency with at least one modern debugger such as GDB or WinDBG
  • Proficiency in at least one modern decompiler such as Ghidra, IDA, or Binary Ninja
  • Proficiency in at least one native programming language such as C or C++
  • Proficiency in at least one scripting language such as Python
  • Proficiency in at least one assembly language such as x86 or ARM
  • Active US Security clearance of Top Secret level and ability to obtain and maintain TS/SCI

Nice to have (preferred):

  • Experience conducting vulnerability research on embedded systems
  • Experience with defeating modern migrations such as ASLR, DEP, and Stack Canaries
  • Knowledge of cellular standards such as 4G or 5G
  • Knowledge of low bandwidth communications such as RS485, RS232, CAN
  • Knowledge of Wifi, Bluetooth, Zigbee communication
  • Previous experience in a client-facing technical role

Security Clearance:

  • Active US Security clearance of Top Secret level and ability to obtain and maintain TS/SCI

#LI-ZS1

#LI-ONSITE

Two Six Technologies is committed to providing competitive and comprehensive compensation packages that reflect the value we place on our employees and their contributions. We believe in rewarding skills, experience, and performance. Our offerings include but are not limited to, medical, dental, and vision insurance, life and disability insurance, retirement benefits, paid leave, tuition assistance and professional development.

The projected salary range listed for this position is annualized. This is a general guideline and not a guarantee of salary. Salary is one component of our total compensation package and the specific salary offered is determined by various factors, including, but not limited to education, experience, knowledge, skills, geographic location, as well as contract specific affordability and organizational requirements.

Salary Range

$112,064—$168,095 USD

Looking for other great opportunities? Check out Two Six Technologies Opportunities for all our Company’s current openings!

Ready to make the first move towards growing your career? If so, check out the Two Six Technologies Candidate Journey!  This will give you step-by-step directions on applying, what to expect during the application process, information about our rich benefits and perks along with our most frequently asked questions.  If you are undecided and would like to learn more about us and how we are contributing to essential missions, check out our  Two Six Technologies News page!  We share information about the tech world around us and how we are making an impact!  Still have questions, no worries!  You can reach us at Contact Two Six Technologies. We are happy to connect and cover the information needed to assist you in reaching your next career milestone.

Two Six Technologies is an Equal Opportunity Employer and does not discriminate in employment opportunities or practices based on race (including traits historically associated with race, such as hair texture, hair type and protective hair styles (e.g., braids, twists, locs and twists)), color, religion, national origin, sex (including pregnancy, childbirth or related medical conditions and lactation), sexual orientation, gender identity or expression, age (40 and over), marital status, disability, genetic information, and protected veteran status or any other characteristic protected by applicable federal, state, or local law.

If you are an individual with a disability and would like to request reasonable workplace accommodation for any part of our employment process, please send an email to accommodations@twosixtech.com. Information provided will be kept confidential and used only to the extent required to provide needed reasonable accommodations.

Additionally, please be advised that this business uses E-Verify in its hiring practices.

By submitting the following application, I hereby certify that to the best of my knowledge, the information provided is true and accurate.

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • C++
  • Python
  • TCP/IP
  • IDA Pro
  • Ghidra
  • Reverse Engineering
  • WinDbg
  • GDB
  • Vulnerability Research
  • Embedded Systems Security
  • Binary Ninja
  • Exploit Development
  • ARM Assembly
  • x86 Assembly

Возможные вопросы на собеседовании

Проверка навыков работы с инструментами статического анализа и понимания логики работы прошивок.

Опишите ваш типичный процесс реверс-инжиниринга незнакомой бинарной прошивки в Ghidra или IDA Pro. С чего вы начинаете поиск векторов атаки?

Оценка практического опыта обхода современных механизмов защиты.

Какие техники вы используете для обхода защиты стека (Stack Canaries) и ASLR при разработке PoC-эксплойтов для встраиваемых систем?

Проверка знаний специфических протоколов, упомянутых в вакансии.

С какими уязвимостями в беспроводных протоколах (Wi-Fi, Bluetooth или сотовые сети) вы сталкивались в своей практике?

Оценка навыков отладки в условиях ограниченного доступа к системе.

Как вы подходите к динамическому анализу системы, если стандартные отладчики вроде GDB недоступны или аппаратная часть ограничена?

Проверка умения работать в междисциплинарной команде.

Расскажите о случае, когда результаты вашего исследования уязвимостей помогли инженерам по аппаратному обеспечению или разработчикам CNO улучшить конечный продукт.

Похожие вакансии

J
JETLYN
210 000 ₽ – 260 000 ₽

Специалист по защите информации (Mobile Security Engineer)

SeniorУдалённоРоссия
iOS · Cryptography · Jailbreak · HTTPS · REST API · gRPC · TCP · UDP · HTTP · Protobuf · JSON · Avro · MessagePack · Reverse Engineering
+14 навыков
AG
Atom group
4 000 $ – 5 000 $

Senior Information Security (ИБ)

SeniorУдалённоБеларусь
Information Security · DevSecOps · SDLC · Risk Management · Security Policy · DevOps
+6 навыков
S
SDOdev
380 000 ₽ – 500 000 ₽

Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)

SeniorУдалённоРоссия
Android · iOS · TCP/IP · HTTPS · Cryptography · MITM · Frida · Objection · Apktool · Jadx · Hopper · Smali · Hermes · Swift · Dart · Objective-C · C++ · Reverse Engineering · Cybersecurity
+19 навыков
NDA
Не указана

Senior AppSecOps Engineer

SeniorУдалённоБеларусь
AppSec · C++ · Go · Java · SAST · SCA · Svace · CodeScoring · Jira · GitLab · GCC · Make · Linux Kernel
+13 навыков
I
Innostaff
Не указана

Сеньор AppSecOps-инженер

SeniorУдалённоБеларусь
AppSecOps · DevSecOps · SAST · DAST · SCA · CI/CD · Cybersecurity · Kubernetes · Docker
+9 навыков
MW
MTS Web Services
250 000 ₽ – 300 000 ₽

Старший эксперт SIEM

SeniorВ офисеРоссия
SIEM · SoC · Linux · Windows · macOS · CCNA · LPIC-1 · Cybersecurity · Incident Response · Network Security
+10 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

Страна
США
Зарплата
112 064 $ – 168 095 $