GrepJob
Research Innovations

Senior Vulnerability Researcher (Cyber267)

Research Innovations
Apply
5 days ago
St. Petersburg, FL, USA or San Antonio, TX, USASenior

Responsibilities

  • Lead advanced vulnerability research across operating systems, kernels, firmware, hypervisors, embedded platforms, and complex application stacks
  • Scope ambiguous attack surfaces and drive research from hypothesis through validated findings
  • Reverse engineer compiled binaries across x86/x64, ARM, PowerPC, and other architectures and perform in-memory analysis
  • Design and execute novel exploitation techniques and mitigation evaluations
  • Analyze undocumented system behavior and extend internal interfaces or tooling
  • Collaborate with senior researchers to shape technical direction and review complex work
  • Translate low-level findings into actionable insights for internal stakeholders and customers when appropriate
  • Mentor researchers, share knowledge, and improve research tools, methodologies, and workflows

Requirements

  • Active US Top Secret security clearance and ability to upgrade to TS/SCI Special Access Program access
  • High-impact vulnerability research experience on real-world systems with minimal guidance
  • Deep understanding of Windows, Linux, macOS, operating system internals, kernel subsystems, and low-level execution models
  • Experience reverse engineering complex binaries, firmware, or kernel components and analyzing their in-memory behavior
  • Experience developing proof-of-concept exploits or mitigation bypasses demonstrating meaningful impact
  • Understanding of ASLR, DEP/NX, stack canaries, and CFI and their limitations
  • Ability to write research tooling, scripts, or frameworks using Python, C, or C++
  • Strong collaboration and communication skills with technical audiences
  • Preferred experience with hypervisors, virtualization stacks, firmware boot chains, trusted execution environments, embedded systems, RTOS environments, iOS, Android, Wi-Fi, Bluetooth, or cellular security
  • Preferred contributions to the vulnerability research community through publications, talks, or open source
  • Preferred experience with symbolic execution, constraint solving, fuzzing frameworks, advanced program analysis, malware analysis, deobfuscation, behavioral analysis, or adversarial tooling

Benefits

  • Flexible work schedules
  • Health insurance coverage
  • Paid time off
  • 401k with company match
  • Paid parental leave
  • Access to wellness programs
  • Benefits available from day one and paid for by RII
  • Community game room, pantry, massage chair, escape room, community ambassadors, and regular community events

Tech Stack

CC++iOSLinuxmacOSPythonWindows