Security Researcher

Tracebit

City Of London

Hybrid

GBP 70,000 - 90,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

A cybersecurity firm in the UK is looking for a Security Researcher to enhance their research program and improve product security. The role requires a minimum of 5 years in vulnerability research with strong knowledge of cloud platforms. The candidate will conduct technical research, publish findings, and engage with the community. This position can be remote or based in London, with expected quarterly visits to the office.

Qualifications

  • 5+ years in offensive security or vulnerability research.
  • Published researcher with conference talks or blog posts.
  • Technical background including coding and data analysis.

Responsibilities

  • Conduct deep research into cloud services for novel attack vectors.
  • Investigate real-world attacks across various environments.
  • Publish findings and engage with the community.

Skills

Offensive security or vulnerability research
Cloud platforms knowledge (AWS, Azure, GCP)
Technical communication
Coding and scripting
Self-directed work style

Job description

Our product helps security teams quickly and accurately detect intrusions in their cloud environment using canaries - decoys deployed to deceive attackers.

Our research has already made an impact:

  • We've disclosed vulnerabilities in Google's Gemini CLI

We work with some of the world's leading security teams at companies like Snyk, Riot Games, and Docker.

We're at a key stage: we need someone to expand and formalize our research function, turning findings into actionable insights and engaging content while helping Tracebit contribute to the wider security community.

Who we're looking for

5+ years in offensive security or vulnerability research with deep focus on cloud platforms (AWS, Azure, GCP). You've found and disclosed vulnerabilities before.

Published security researcher. Track record of blog posts, conference talks, CVEs, or bug bounty submissions. You know how to communicate technical findings clearly.

Technical. Comfortable writing and reading code, and analysing data. You can write scripts, build tooling, and create detection rules.

Self-directed. You're excited to build a research practice from scratch without perfect processes or large teams.

About the role

Reporting to Sam , our CTO and Co-Founder, you'll expand our security research practice and conduct novel research that directly improves our product.

Your core focus:

  • Conduct deep technical research into complex cloud services to uncover novel attack vectors.
  • Investigate real-world attacks across cloud environments, identity providers (IDPs), and infrastructure-as-a-service (IaaS) platforms.
  • Help our team design new canary types and improve our product based on your research.
  • Publish research through blog posts, conference talks (BlackHat, RSA, BSides, fwd:cloudsec), and community engagement.
  • Monitor the threat landscape and proactively research emerging attack techniques to write detections and blog posts
  • Represent Tracebit at industry conferences globally and build relationships with other researchers.

You’ll find attack vectors, write content, and see our engineering team deploy your findings to protect customers.

FAQs

Where is the office?

The whole team works together in an office right next to Warren Street tube station - there are lots of great places to grab lunch nearby.

Are you doing hybrid/remote?

This role can be based either in our London office or fully remote.

We are an office-first company - all of our team works together in London 5 days a week. However, we're making an exception for this role given the nature of the work and the need to hire the best talent in this space.

If you're based in London, you'll work from our office. If you're remote, we expect you to visit London at least quarterly to collaborate with the team in person.

What are the working hours like?

We think 9am-6pm will bring a great cadence to work. As a Security Researcher there will definitely be times you need to pick up work outside of these hours, we're keen to limit this where we can but also offer flexibility in return.

Can you sponsor visas?

We can support various types of working visas in the UK, including:

  • Skilled Worker Visa (both from within and outside the UK)
  • Intra-Company Transfer Visa

We are keen to support candidates who require visa sponsorship. Please let us know which specific visa type you might need during the initial application or interview process. Our team is committed to helping talented individuals navigate the necessary visa requirements.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Founding Engineer - Early Careers
Founding Engineer - Early Careers

Tracebit • Greater London

On-site
GBP 50,000 - 80,000
Founding Engineer
Founding Engineer

Tracebit • Greater London

On-site
GBP 70,000 - 110,000
Founding Engineer - Relocate to the UK
Founding Engineer - Relocate to the UK

Tracebit • City Of London

On-site
GBP 50,000 - 75,000
Visa sponsorship
£5,000 tax-free relocation package
Founding Security Researcher
Founding Security Researcher

CodeWall • Greater London

Hybrid
GBP 90,000 - 130,000
Hybrid London office
Equity or meaningful equity
Direct access to founders
+2
Experienced Vulnerability Researcher
Experienced Vulnerability Researcher

CoreTech Security Services • Salisbury

Hybrid
GBP 70,000 - 110,000
25 days holiday
Private medical
8% company pension
+3
Senior CSIRT Analyst
Senior CSIRT Analyst

Alastair LLP • Greater London

On-site
GBP 90,000 - 130,000
Lunch provided
Barista bar
35 days leave
+4
Experienced Vulnerability Researcher
Experienced Vulnerability Researcher

CoreTech Security • Salisbury

Hybrid
GBP 70,000 - 110,000
Promotions for technical excellence
25 days holiday plus bank holidays
Relocation support to area
+4
Senior Security Researcher
Senior Security Researcher

Darktrace Ltd • Greater London

Hybrid
GBP 60,000 - 80,000
23 days’ holiday + all public holidays
Private medical insurance
Life insurance
+2
Principal Cyber-Focused Researcher
Principal Cyber-Focused Researcher

Foundry Zero • Cheltenham

On-site
GBP 90,000 - 150,000
Flexible hours
Modern office & research facilities
Competitive salary
+4
Cyber Security Researcher
Cyber Security Researcher

慨正橡扯 • Salisbury

On-site
GBP 60,000 - 80,000
25 days holiday per year
Financial support for relocation
Training and development opportunities
+2