Offensive Security Researcher - Server Platform & Secure Computing, SEAR

Apple

Paris

Hybride

EUR 150 000 - 190 000

Plein temps

Il y a 3 jours
Soyez parmi les premiers à postuler
Générateur de candidature

Obtenez une réponse de cet employeur — un CV et une lettre de motivation adaptés exactement à ce qu’on recherche pour ce poste.

Passez les filtres ATS

Résumé du poste

Apple’s Security Engineering & Architecture team seeks researchers to probe vulnerability surfaces across firmware, boot, kernel, and user space. You will conduct end-to-end offensive security on Apple platforms and work with cross-functional teams to push fixes rapidly.

Ideal candidates bring a strong background in exploitation, knowledge of security mechanisms, and experience applying AI/Machine-Learning techniques to security research.

Qualifications

  • Proven track record in full-stack vulnerability research across firmware, secure boot, kernel, and user space.
  • Strong understanding of vulnerability classes and exploitation techniques for boot, cryptographic flaws, and logic attacks.
  • Fluency in applying AI techniques and tools, such as LLMs, to security research.

Responsabilités

  • Conduct end-to-end offensive research against Apple platform servers and infrastructure.
  • Identify vulnerabilities and coordinate with cross-functional teams to deploy fixes quickly.
  • Collaborate with researchers to broaden coverage of the security ecosystem.

Connaissances

Full-stack vulnerability research
Exploitation techniques
AI in security research

Description du poste

Summary

Apple's Security Engineering & Architecture organization keeps the users of over 2.35 billion active devices around the world safe. That mission is at the heart of everything we do, and our team approaches it from the offensive side by finding and helping eliminate vulnerabilities in one of the most sophisticated ecosystems ever built, before adversaries can exploit them.

You would be joining an extraordinary group of researchers who bring a range of backgrounds and perspectives to the work, and who are driven by curiosity, passion, and genuine engagement with what they do. If you think you can make a difference at this scale, join us in protecting all Apple users.

Description

You will join a team whose work spans vulnerability research, binary exploitation, security tooling development, fuzzing, machine learning, and much more. By harnessing state-of-the-art technologies, and developing new ones where they don't yet exist, we amplify our impact on the security of Apple products.

In this role, your primary focus will be on the infrastructure attack surface of Apple platforms and services. You will conduct end-to-end offensive research against the custom server platforms behind those services, from coprocessor firmware and bootrom, through the operating system and its multiple layers of defense-in-depth and privacy protections, up to the user space applications running on top. These systems are built to stay trustworthy even against an attacker with privileged access, and represent some of the most security-critical infrastructure we operate. Knowledge of Apple operating systems such as iOS or macOS is a plus, but not required.

This role is for individuals with outstanding technical skills, grit, and a genuine passion for breaking systems in order to make them stronger. You will work alongside other researchers to identify vulnerabilities and partner with cross-functional teams to get fixes deployed quickly.

In-office roles in Paris, Zurich, Cupertino, and other locations. Remote considered for experienced candidates.

Minimum Qualifications
  • Proven track record in full-stack vulnerability research, from low-level platform components such as firmware, secure boot, and hardware roots of trust to kernel and user space attack surfaces.
  • Strong understanding of vulnerability classes and exploitation techniques relevant to these systems, such as memory corruption, parsing and state-machine flaws in boot and certificate handling, cryptographic-protocol flaws and authentication weaknesses, and rollback or logic attacks.
  • Fluency in applying AI techniques and tools, such as LLMs and Machine Learning, to security research.
Preferred Qualifications
  • Deep knowledge of remote and local attestation protocols, HSM and key management architecture, and platform trust boundaries.
  • Hands-on Linux security experience, from the kernel to user space, and familiarity with server platform internals such as baseboard management controllers (BMC), remote management planes, and confidential computing technologies.
  • Experience with datacenter and cloud infrastructure, including orchestration, network fabric, and provisioning systems.

At Apple, we're not all the same. And that's our greatest strength. We draw on the differences in who we are, what we've experienced, and how we think. Because to create products that serve everyone, we believe in including everyone. Therefore, we are committed to treating all applicants fairly and equally. We will work with applicants to make any reasonable accommodations.

At Apple, we believe accessibility is a fundamental human right. You'll find that idea reflected in everything here - in our culture, our benefits and our digital tools. By welcoming as many perspectives as possible, we help you build a career where you feel like you belong.

Learn about accessibility in Apple's workplace

Role Number: 200683450-2911

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Offensive Security Researcher - Server Platform & Secure Computing, SEAR
Offensive Security Researcher - Server Platform & Secure Computing, SEAR

Apple Inc. • Paris

Hybride
EUR 95 000 - 150 000
Offensive Security Research Manager
Offensive Security Research Manager

Lex • Paris

Sur place
EUR 150 000 - 210 000
Offensive Security Research Manager
Offensive Security Research Manager

Apple • Paris

Sur place
EUR 100 000 - 130 000
Vulnerability Researcher, SEAR
Vulnerability Researcher, SEAR

Lex • Paris

Sur place
EUR 65 000 - 110 000
Vulnerability Researcher, SEAR
Vulnerability Researcher, SEAR

Apple • Paris

Sur place
EUR 95 000 - 140 000
Vulnerability Researcher, SEAR
Vulnerability Researcher, SEAR

Apple Inc. • Paris

Sur place
EUR 110 000 - 170 000
Vulnerability Researcher
Vulnerability Researcher

Apple • Paris

Sur place
EUR 60 000 - 90 000
Offensive Security Researcher, SEAR
Offensive Security Researcher, SEAR

Apple • Paris

Sur place
EUR 65 000 - 90 000
Offensive Security Researcher: Server Platforms (Remote)
Offensive Security Researcher: Server Platforms (Remote)

Apple • Paris

Hybride
EUR 150 000 - 190 000
Security Tooling - Senior Software Engineer, SEAR
Security Tooling - Senior Software Engineer, SEAR

Apple • Paris

Sur place
EUR 70 000 - 90 000