A leading technology firm in Cambridge is seeking a Staff Security Engineer – Fuzzing Specialist to enhance security through advanced fuzzing techniques. The successful candidate will design and develop fuzzing harnesses, triage crashes, and contribute to documentation and reporting. Ideal applicants have 1+ years of relevant experience, proficiency in C/C++ and Python, and expertise with modern fuzzing frameworks. This role supports a hybrid working model, fostering collaboration and innovation in product security.
Qualifications
1+ years in application or product security focusing on fuzzing.
Expertise with fuzzing frameworks (e.g., libFuzzer, AFL++).
Strong skills in programming languages C/C++ and scripting in Python.
Understanding of memory-safety vulnerabilities and compiler instrumentation.
Ability to triage crashes with debugging tools.
Responsibilities
Map and prioritize fuzzing surfaces across different services.
Design and improve fuzzing harnesses to enhance code coverage.
Automate crash reporting and drive resolution of findings.
Develop custom sanitizers for bugs missed by traditional fuzzing.
Document insights and metrics to inform security practices.
Skills
Coverage-guided fuzzing
C/C++ programming
Python scripting
Memory-safety vulnerabilities
Documentation and communication
Tools
libFuzzer
AFL++
Honggfuzz
GDB
IDA
Job description
A leading technology firm in Cambridge is seeking a Staff Security Engineer – Fuzzing Specialist to enhance security through advanced fuzzing techniques. The successful candidate will design and develop fuzzing harnesses, triage crashes, and contribute to documentation and reporting. Ideal applicants have 1+ years of relevant experience, proficiency in C/C++ and Python, and expertise with modern fuzzing frameworks. This role supports a hybrid working model, fostering collaboration and innovation in product security.