Cyber Security Engineer (Red Team)

Scientific Research Corporation

Patuxent Highland (MD)

On-site

USD 111,100 - 185,100

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Scientific Research Corporation seeks a Red Team member to independently establish vulnerability research environments, assess root causes, and design PoC mitigations for Navy cyber operations. You will perform static/dynamic analysis, code reviews, and develop PoC exploits to validate vulnerabilities and help implement robust patches.

The role requires a Bachelor’s in a related field, 5 years of cyber security experience or a master’s/advanced cert, Python proficiency, and TS/SCI clearance.

Qualifications

  • Bachelor's degree or higher in a STEM field relevant to cyber security.
  • 5 years of experience in cyber security vulnerability work, or a master’s degree/certifications in lieu of experience.
  • DCWF qualification or within 60 days of on-boarding.
  • Experience programming in Python and using GHIDRA/IDA Pro or similar tools.
  • Strong technical communication and organizational skills.
  • Active TS/SCI clearance required.

Responsibilities

  • Establish vulnerability research environments and design PoC mitigations.
  • Conduct threat intelligence research and maintain internal vulnerability databases.
  • Perform static and dynamic analysis and code reviews to identify vulnerabilities.
  • Develop functional PoC exploits and triage crash reports for exploitability/DoS.
  • Prepare technical reports detailing vulnerability, root cause, impact, and reproduction steps.
  • Collaborate with developers to design and implement patches.

Skills

Python programming
Reverse engineering tools
Technical communication
Security clearance

Education

Bachelor's degree in CS/Engineering/Software Engineering or related
Master's degree or advanced certifications in lieu of 5 years experience

Tools

GHIDRA
IDA Pro

Job description

Estimated Starting Salary Range: USD $111,100.00/Yr. - USD $185,100.00/Yr. Salary to be determined by the education, experience, knowledge, skills, and abilities of the applicant, internal equity, and alignment with market data.

Description

Supports the United States Navy, Naval Air Warfare Center, Aircraft Division, Cyber Warfare Engineering Services. As a Red Team member, work independently to establish vulnerability research environments, assess the operational impact and understand the root-cause, and design proof-of-concept (PoC) mitigations.

  • Threat intelligence and research synthesis: Research open-source intelligence, web forums, and security advisories to track adversarial tactics, techniques, and procedures. Develop and contribute to internal vulnerability databases to ensure threat signatures and severity metrics are accurate.
  • Vulnerability discovery and analysis: Conduct static and dynamic analysis on applications and system components. Perform source code reviews to locate logical flaws, memory corruption vulnerabilities, and cryptographic weaknesses.
  • Mitigation and remediation support: Use debugging, disassembling, and binary analysis tools to reverse-engineer compiled binaries. Develop functional, stable PoC exploits to validate the severity and reachability of discovered flaws. Triage crash reports generated by automated testing tools to determine if a vulnerability is exploitable or a denial-of-service (DoS) state. Collaborate with software developers and engineering teams to design and implement robust, long-term patches.
  • Technical documentation and reporting: Prepare comprehensive, clear, and actionable technical reports detailing the vulnerability, root cause, impact, and reproduction steps. Translate complex binary and code-level findings into clear risk assessments for stakeholders and system administrators.
  • Other duties consistent with the statement of work.
  • This is an on-site position but may be eligible for a compressed work schedule.
Funding

Filling this position is contingent upon funding.

Requirements
  • Bachelor’s degree from an accredited college or university in Computer Science, Engineering, Software Engineering or related technical discipline.
  • 5 years of experience working in the area of cyber security vulnerability, or a master’s degree and/or advanced certifications in lieu of 5 years of experience.
  • Qualified in at least one of the DoD Cyber Workforce Framework (DCWF) roles listed at https://www.cool.osd.mil/usn/cswf/indes.htm.?CWFModel , or obtain a DCWF qualification within 60 days of on-boarding.
  • Experience programming in Python and using GHIDRA, IDA Pro, or other reverse engineering tools.
  • Strong technical communication skills.
  • Strong organizational skills, ability to capture, distill, and centralize pertinent information for informed decision making using existing communication tools.
  • Active Top Secret security clearance and SCI access.
Desired Skills
  • Knowledge of adversarial threat tactics, techniques, and procedures.
  • Knowledge of naval aviation acquisition programs.
  • Knowledge of/experience with aviation platforms.
  • Certified in Microsoft or Linux operation.
Clearance Information

SRC is a contractor for the U.S. government. This position will require U.S. citizenship as well as a U.S. government security clearance at the Top Secret / SCI level.

Travel Requirements
  • Less than 10%.
EEO

Scientific Research Corporation is an equal opportunity employer that does not discriminate in employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other protected characteristic under federal, state or local law.

Scientific Research Corporation endeavors to make www.scires.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact jobs@scires.com for assistance. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer (Red Team)
Cyber Security Engineer (Red Team)

Scires • Maryland

On-site
USD 111,000 - 186,000
Cyber Security Engineer (Red Team)
Cyber Security Engineer (Red Team)

Scientific Research Corporation • Maryland

On-site
USD 111,000 - 186,000
Senior Cyber Security Engineer / CSET
Senior Cyber Security Engineer / CSET

Scientific Research Corporation • Orlando (FL)

On-site
USD 100,000 - 140,000
Cyber Security Analyst
Cyber Security Analyst

Scientific Research Corporation • Colorado Springs (CO)

On-site
USD 87,000 - 145,000
Medical benefits
401(k) matching
Paid time off
+1
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Scires • North Charleston (SC)

On-site
USD 100,000 - 160,000
Medical, dental, and vision plans
401(k) with company match
Tuition reimbursement
Cyber Security Vulnerability Researcher, Intermediate (Security Engineering, Senior Analyst)
Cyber Security Vulnerability Researcher, Intermediate (Security Engineering, Senior Analyst)

RPMGlobal • Lexington Park (MD)

On-site
USD 115,000 - 170,000
Health insurance
Tuition assistance
Paid time off
Red Team Cybersecurity Engineer: Vulnerability Research
Red Team Cybersecurity Engineer: Vulnerability Research

Scientific Research Corporation • Maryland

On-site
USD 111,000 - 186,000
Cyber Security Analyst I
Cyber Security Analyst I

Scientific Research Corporation • San Antonio (TX)

On-site
USD 95,000 - 130,000
Medical, dental, and vision plans
401(k) with company match
Life insurance
+1
Cyber Vulnerability Manager
Cyber Vulnerability Manager

Scientific Research Corporation • San Antonio (TX), Northern (KY)

Hybrid
USD 85,000 - 120,000
Medical plans
Dental plans
Vision plans
+4
CNO Developer
CNO Developer

Redhorse • Herndon (VA)

On-site
USD 125,000 - 300,000