We are is seeking a motivated security researcher with excellent technical skills to join the Advanced Research Team (ART). Security Researchers within ART will be expected to apply a broad set of skills to support the Intelligence mission. ART is responsible for researching and publishing on topics related to information security, providing technical expertise to other teams within our Intelligence, developing tools to support analysts in their day-to-day duties, and collecting technical artifacts about adversary activity.
Aside from working on longer-term research and collection projects, ART security researchers will be required to provide unique solutions on short notice to serve ad-hoc needs by other teams within our Intelligence.
What Youll Do:
Develop automated solutions for collecting, processing and analyzing data at scale, e.g.
Vendor patch processing and analysis.
Identification of exploits in large file collections.
Identification of browser exploits.
Identification of malicious infrastructure.
Perform vulnerability research on a wide variety of targets, e.g.
Analyze vendor patches to identify vulnerabilities and develop proof-of-concept exploits.
Review evidence of malicious activities (e.g. log files, payloads) to confirm exploitation of 0-day and n-day vulnerabilities, identify root causes and reproduce exploits.
Identify new vulnerabilities in applications or products.
Collaborate across other teams Intelligence and beyond to.
Reproduce emerging vulnerabilities and provide actionable technical information.
Inform on information security topics.
Satisfy unique technical collection requirements.
Publish research results on the blog or at conferences.
Requirements: What Youll Need:
Proficiency in English, both written and spoken.
Strong information security background with 4+ years experience.
Vulnerability research and exploit development experience
Ability to effectively leverage GenAI/LLMs to aid in software development and perform vulnerability research.
Reverse engineering experience.
Solid understanding of Microsoft Windows and Linux operating system internals.
Solid software development experience (Python preferred).
Excellent problem solving skills, creativity and strong analytical skills to investigate, assess, validate, and think outside the box.
Ability to work independently, with a customer-oriented mindset.
Ability to work remotely, in a collaborative team environment.
Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.
Bonus Points:
Successful participation in CTF competitions.
Experience with mobile platforms and operating systems (e.g. Android, iOS).
Experience with macOS.
Experience with the Go or Rust programming languages.
Threat Intelligence background.
Education:
M.A./M.Sc. or equivalent professional experience in Information Security/Computer Science/Computer Engineering, or a related field.
This position is open to all candidates.