Job Description
Senior Vulnerability Researcher Mobile / Browser / OS
Location: Fully Remote U.S.
Employment: Full-Time
About The Role
We are looking for an experienced Vulnerability Researchers to join an elite security research team focused on discovering zero-day vulnerabilities and developing advanced exploitation techniques across mobile platforms, browsers, operating systems, and applications.
This is a hands-on research role for someone who enjoys reverse engineering, vulnerability discovery, exploit development, patch analysis, and working at the edge of modern security mitigations.
Primary Research Areas
Experience In One Or More Of The Following
- iOS / Android
- Mobile applications
- Browser security
- Windows
- JavaScript engines and browser runtimes
- Kernel security
- Zero-click attack surfaces
What You'll Do
Discover and analyze previously unknown vulnerabilities and zero-days.
- Perform original vulnerability research and CVE analysis.
- Reverse engineer binaries, software, and vendor patches.
- Reproduce and analyze publicly disclosed vulnerabilities.
- Identify vulnerability root causes and develop working Proof-of-Concept (PoC) exploits.
- Research modern exploitation techniques and mitigation bypasses.
- Develop detection and mitigation strategies.
- Document technical findings and communicate research results.
Why Join Us
- Fully remote within the United States
- Cutting-edge zero-day vulnerability research and exploit development
- Work alongside highly experienced security researchers
- Research-focused environment with minimal bureaucracy
- Opportunity to work on challenging mobile, browser, and OS security problems
- Competitive compensation
- Up to 25% annual bonus
- Meaningful equity with near-founder-level upside
- Comprehensive benefits
Qualifications
Required Qualifications
- Proven experience in vulnerability research and exploit development.
- Experience performing original vulnerability research and/or analyzing complex CVEs, with a strong interest in zero-day discovery.
- Strong understanding of memory corruption and exploitation techniques.
- Experience with reverse engineering, binary analysis, and patch diffing.
- Strong understanding of operating system internals and modern exploit mitigations.
- Experience with one or more of:
- Android
- iOS
- Windows
- macOS
- Browser engines / JavaScript runtimes
- Experience with IDA Pro, Ghidra, Binary Ninja, or similar tools.
- Experience with debuggers, disassemblers, binary instrumentation, and dynamic analysis.
- Strong programming skills in C/C++ and Python.
- Ability to read and analyze x86/x64 and ARM assembly.
- Experience with techniques such as fuzzing, static analysis, dynamic analysis, root cause analysis, and kernel vulnerability research.
- Ability to obtain a U.S. Department of Defense Security Clearance.
Browser / JavaScript Research Preferred
For Candidates Focused On Browser Security
- Experience researching V8/Chromium, JavaScriptCore/WebKit, or similar runtimes.
- Understanding of JavaScript engine internals, including JIT and interpreter behavior.
- Experience researching Use-After-Free, type confusion, object lifetime, re-entrancy, and related vulnerabilities.
- Familiarity with browser exploitation and modern mitigation bypass techniques.
Why Is This a Great Opportunity
- Fully remote within the United States
- Cutting-edge zero-day vulnerability research and exploit development
- Work alongside highly experienced security researchers
- Research-focused environment with minimal bureaucracy
- Opportunity to work on challenging mobile, browser, and OS security problems
- Competitive compensation
- Up to 25% annual bonus
- Meaningful equity with near-founder-level upside
- Comprehensive benefits
Salary Type: Annual Salary
Salary Min: $ 275000
Salary Max: $ 330000
Currency Type: USD