M9 Solutions is dedicated to providing IT services and solutions to the Federal Government by mobilizing the right people skills clearance levels and technologies to help organizations who desire improved performance and modern sustainable change. M9 has provided quality IT services and support to more than 30 Federal Agencies and multiple commercial customers nationwide. Our capabilities include digital transformation software development cloud migration applications & infrastructure cybersecurity data delivery & analytics and IT talent solutions.
M9 Solutions is seeking a Senior Vulnerability Researcher Windows / CNEto work on-site in support of a government contract for a client located inArlington VA. An activeTS/SCI clearanceis required.
Responsibilities
- Lead advanced vulnerability research on Windows operating systems applications and core OS components (including kernel and drivers).
- Analyze reverse engineer and understand complex vulnerabilities to support CNE/CNO missions.
- Use tools such as IDA Pro Ghidra Binary Ninja and WinDbg/x64dbg for indepth binary analysis and debugging including creating or extending custom tooling when needed.
- Own endtoend research on difficult poorly documented Windows targets with minimal guidance from scoping and experimentation through proofofconcept.
- Develop and document technical approaches findings and PoCs to validate vulnerabilities and exploitation paths.
- Continuously explore and prototype novel techniques for vulnerability discovery and exploitation on modern mitigated Windows platforms.
- Collaborate with mission and engineering teams to translate research into operational capabilities.
- Act as the senior technical point of contact and subjectmatter expert for Windows vulnerability exploitation and OSinternals questions.
Required Skills and Qualifications
- Active TS/SCI clearance.
- 3 years in vulnerability research exploit development or CNEfocused reverse engineering with a sustained focus on Windows (user and kernel mode) rather than general app security or pentesting.
- Deep practical understanding of Windows internals (kernel architecture drivers memory management system calls process/thread models and security mechanisms).
- Strong CNE/CNO background; experience leveraging vulnerabilities in support of realworld operations or mission environments.
- Demonstrated track record solving very hard lowlevel technical problems with minimal guidance including on research efforts where many others have struggled to make progress.
- Demonstrated experience discovering and exploiting nontrivial vulnerabilities in modern mitigated Windows environments (e.g. ASLR DEP CFG virtualizationbased security).
- Handson experience with reverse engineering and debugging tools (IDA Pro Ghidra Binary Ninja WinDbg x64dbg etc.).
- Fluency in x86/x64 assembly and strong C/C skills plus scripting experience (e.g. Python) for automation tooling and PoCs.
- Strong analytical mindset and ability to clearly communicate complex technical findings to both technical and nontechnical stakeholders.
Full-Time Employee Compensation
- M9 Solutions pay range for this position is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include but are not limited to responsibilities of the position education experience knowledge skills abilities as well as internal equity location alignment with market data applicable bargaining agreement (if any) or other law.
- M9 Benefits - Range
$60000 - $180000 USD
M9 Solutions LLC (M9) is aFederalsub-contractorand wecomply withall applicable federal laws prohibiting discrimination in employment including Title VII of the Civil Rights Act of 1964. We also adhere to the affirmative action requirements of the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA) and Section 503 of the Rehabilitation Act ensuring equal opportunity for veterans and individuals with disabilities. Please clickhereto complete M9s Voluntary Self-Identification Form and then email it to. If you need accommodation during the application process or encounter difficulties using our website please contact ourHuman Resources Department ator
M9 Solutions is a proud participant in the Virginia Values Veterans (V3) program and supports the Military Medics and Corpsmen (MMAC) initiative demonstrating our commitment to hiring and supporting veterans transitioning service members military spouses and dependents.
With 15 years of proven delivery andgrowth M9 Solutions is a unique small business with credible past performance and key capabilities offering project management services solution architects business analysts program managers technical architects and technical consultants. M9 was recognized as an Inc. 5000 Fastest-Growing Private Companies inand 2012. M9 Solutions believes that work should be fun rewarding and something everyone can be excited about. We offer a competitive compensation package and valuediverse perspectivesin driving the vision of the company.
Required Experience:
Senior IC
M9 Solutions is dedicated to providing IT services and solutions to the Federal Government by mobilizing the right people skills clearance levels and technologies to help organizations who desire improved performance and modern sustainable change. M9 has provided quality IT services and support to m...
M9 Solutions is dedicated to providing IT services and solutions to the Federal Government by mobilizing the right people skills clearance levels and technologies to help organizations who desire improved performance and modern sustainable change. M9 has provided quality IT services and support to more than 30 Federal Agencies and multiple commercial customers nationwide. Our capabilities include digital transformation software development cloud migration applications & infrastructure cybersecurity data delivery & analytics and IT talent solutions.
M9 Solutions is seeking a Senior Vulnerability Researcher Windows / CNEto work on-site in support of a government contract for a client located inArlington VA. An activeTS/SCI clearanceis required.
Responsibilities
- Lead advanced vulnerability research on Windows operating systems applications and core OS components (including kernel and drivers).
- Analyze reverse engineer and understand complex vulnerabilities to support CNE/CNO missions.
- Use tools such as IDA Pro Ghidra Binary Ninja and WinDbg/x64dbg for indepth binary analysis and debugging including creating or extending custom tooling when needed.
- Own endtoend research on difficult poorly documented Windows targets with minimal guidance from scoping and experimentation through proofofconcept.
- Develop and document technical approaches findings and PoCs to validate vulnerabilities and exploitation paths.
- Continuously explore and prototype novel techniques for vulnerability discovery and exploitation on modern mitigated Windows platforms.
- Collaborate with mission and engineering teams to translate research into operational capabilities.
- Act as the senior technical point of contact and subjectmatter expert for Windows vulnerability exploitation and OSinternals questions.
Required Skills and Qualifications
- Active TS/SCI clearance.
- 3 years in vulnerability research exploit development or CNEfocused reverse engineering with a sustained focus on Windows (user and kernel mode) rather than general app security or pentesting.
- Deep practical understanding of Windows internals (kernel architecture drivers memory management system calls process/thread models and security mechanisms).
- Strong CNE/CNO background; experience leveraging vulnerabilities in support of realworld operations or mission environments.
- Demonstrated track record solving very hard lowlevel technical problems with minimal guidance including on research efforts where many others have struggled to make progress.
- Demonstrated experience discovering and exploiting nontrivial vulnerabilities in modern mitigated Windows environments (e.g. ASLR DEP CFG virtualizationbased security).
- Handson experience with reverse engineering and debugging tools (IDA Pro Ghidra Binary Ninja WinDbg x64dbg etc.).
- Fluency in x86/x64 assembly and strong C/C skills plus scripting experience (e.g. Python) for automation tooling and PoCs.
- Strong analytical mindset and ability to clearly communicate complex technical findings to both technical and nontechnical stakeholders.
Full-Time Employee Compensation
- M9 Solutions pay range for this position is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include but are not limited to responsibilities of the position education experience knowledge skills abilities as well as internal equity location alignment with market data applicable bargaining agreement (if any) or other law.
- M9 Benefits - Range
$60000 - $180000 USD
M9 Solutions LLC (M9) is aFederalsub-contractorand wecomply withall applicable federal laws prohibiting discrimination in employment including Title VII of the Civil Rights Act of 1964. We also adhere to the affirmative action requirements of the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA) and Section 503 of the Rehabilitation Act ensuring equal opportunity for veterans and individuals with disabilities. Please clickhereto complete M9s Voluntary Self-Identification Form and then email it to. If you need accommodation during the application process or encounter difficulties using our website please contact ourHuman Resources Department ator
M9 Solutions is a proud participant in the Virginia Values Veterans (V3) program and supports the Military Medics and Corpsmen (MMAC) initiative demonstrating our commitment to hiring and supporting veterans transitioning service members military spouses and dependents.
With 15 years of proven delivery andgrowth M9 Solutions is a unique small business with credible past performance and key capabilities offering project management services solution architects business analysts program managers technical architects and technical consultants. M9 was recognized as an Inc. 5000 Fastest-Growing Private Companies inand 2012. M9 Solutions believes that work should be fun rewarding and something everyone can be excited about. We offer a competitive compensation package and valuediverse perspectivesin driving the vision of the company.
Required Experience:
Senior IC
View more
View less