drjobs Senior Embedded Vulnerability Researcher

Senior Embedded Vulnerability Researcher

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Lowell, MA - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Overview:

Draper is an independent nonprofit research and development company headquartered in Cambridge MA. The 2000 employees of Draper tackle important national challenges with a promise of delivering successful and usable solutions. From military defense and space exploration to biomedical engineering lives often depend on the solutions we provide. Our multidisciplinary teams of engineers and scientists work in a collaborative environment that inspires the crossfertilization of ideas necessary for true innovation. For more information about Draper visit www.draper.

Job Description Summary:

Drapers Offensive Cyber Security Group is looking for dedicated individuals to develop tailored solutions to meet our DoD and IC Sponsor directives. Our organizations notforprofit status ensures a capabilitydriven focus on the United States of Americas national interests that allows us to address some of our Nations most pressing challenges. Due to the variety of USG organizational needs our technical efforts and opportunities vary from conventional cyber operations enablement tooling to embedded vulnerability research and exploit development on a wide range of devices and systems.

Job Description:

  • Assess hardware and software for security vulnerabilities using a breadth of technologies and techniques.

  • Develop software that meets behavior and security requirements for tailored applications.

  • Integrate software capabilities with other tasks or groups to improve performance or behavior requirements.

  • Create new tools and systems to detect and exploit vulnerabilities and system weaknesses.

  • Document nominal application and system functionality in addition to implemented changes.

  • Drive solutions to complex problems with limited direction contribute to requirements. development propose ways forward and adapt appropriately to changes in requirements.

  • Provides insight and suggest design modifications based on analysis outcomes and to apply analysis techniques across a range of technical disciplines.

  • Identifies program/systemlevel technical risks and develop and execute mitigation strategies.

  • Actively mentor less experienced engineers and provide thoughtful constructive feedback.

  • Curiositydriven approach to solving complex customerdriven problems as part of a multidisciplinary team.

  • Collaborate and communicate effectively and openly with multidisciplinary program team members program leadership and nontechnical personnel.

  • Be a team player able to work in a fastpaced environment with the ability to balance multiple competing tasks and demands.


Experience
510 years of experience in Cybersecurity or related field is required.

Additional Job Description:

Program Analysis Reverse Engineering and Vulnerability Research:

  • Proficiency with modern program analysis methodologies and techniques
  • Reverseengineering assessment techniques for firmware or embedded systems
  • Familiarity with binary file and filesystem structures and formats
  • Handson proficiency with reverse engineering tooling such as: Ghidra IDA GDB RR
  • Handson proficiency with physical instrumentation or hardware modification soldering
  • Experience with JTAG/SWD/BDM and eMMC/NAND/SPI flash data extraction
  • Exploitation techniques for embedded devices across platforms and architectures
  • Familiarity of network stack and internals
  • Familiarity of operating system internals throughout user mode kernel mode and during boot processes for at least one of the following: GNU/Linux RTOS
  • Familiarity with architectures and assembly: x86 ARM Hexagon PowerPC

Languages and Development:

  • Proficiency with programming languages such as: C C Python Java
  • Familiarity with scripting languages such as: Bash Powershell
  • Familiarity in development environments for GNU/Linux or Windows

Leadership and Business Development:

  • Successful history in authoring of technical proposals and documents
  • Leadership in advanced R&D initiatives including governmentfunded projects
  • Leadership of critical programs with more than two full time staff members
  • Proficient in teamwork and communication with diverse audiences

Preferred Qualifications:

  • Experience with side channel attacks (glitching) to place components and/or devices into altered states to bypass protections.
  • Familiarity with custom filesystem extraction and modification removal and/or regeneration of OOB/CRC data.
  • Familiarity with bus and protocol analysis.

Applicants selected for this position must be required to obtain and maintain a government TS/SCI security clearance.

Connect With Draper for Future Opportunities! If you dont find the right posting in our Career Opportunities you may submit your resume for future consideration.

Job Location City:

Cambridge

Job Location State:

Massachusetts

Job Location Postal Code:

0

Our work is very important to us but so is our life outside of work. Draper supports many programs to improve worklife balance including workplace flexibility employee clubs ranging from photography to yoga health and finance workshops off site social events and discounts to local museums and cultural activities. If this specific job opportunity and the chance to work at a nationally renowned R&D innovation company appeals to you apply now www.draper/careers.

Draper is committed to creating an inclusive environment. We understand the value of inclusivity and its impact on a highperformance culture. All qualified applicants will receive consideration for employment without regard to race color religion sex disability age sexual orientation national origin veteran status or genetic information. Draper is committed to providing access equal opportunity and reasonable accommodation for individuals with disabilities in employment its services programs and activities. To request reasonable accommodation please contact .


Required Experience:

Senior IC

Employment Type

Full-Time

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.