Senior Reverse Engineer, Cyber
Boston, MA - USA
Job Summary
Anduril Cyber is hiring a Reverse Engineer to analyze complex hardware and software systems recover how they work from first principles and turn that understanding into actionable security research. The role is centered on deep technical investigation across firmware embedded Linux applications protocols device interfaces and hardware-adjacent systems.
ABOUT THE JOB
- Reverse engineer firmware binaries embedded software protocols hardware interfaces and system integrations to understand behavior trust boundaries and attack surface.
- Build repeatable analysis workflows using static analysis dynamic instrumentation emulation fuzzing harnesses hardware debug interfaces and custom tooling.
- Recover undocumented formats control flows communication protocols update mechanisms boot chains and security-relevant implementation details.
- Identify weaknesses in software firmware and hardware/software boundaries then document findings clearly enough to drive follow-on vulnerability research mitigation or exploitation work.
- Work with vulnerability researchers embedded software engineers hardware engineers and systems teams to translate reverse-engineering findings into concrete engineering decisions.
- Produce high-quality technical writeups diagrams tooling and reproducible artifacts that other researchers and engineers can build on.
- Perform board-level and component-level reverse engineering including teardown interface discovery instrumentation and protocol analysis across embedded targets.
- Develop software and lab automation to orchestrate experiments collect measurements control instruments and make hardware analysis repeatable.
- Strong experience reverse engineering compiled software firmware embedded Linux systems drivers bootloaders protocols or hardware-adjacent systems.
- Proficiency with reverse-engineering tools such as Ghidra IDA Pro Binary Ninja radare2 gdb/lldb QEMU Unicorn Frida or comparable analysis frameworks.
- Strong programming ability in Python and at least one systems language such as C C or Rust for building analysis tooling and understanding low-level implementation behavior.
- Comfort reading assembly and reasoning about memory layout calling conventions binary formats concurrency and hardware/software interaction.
- Experience analyzing common embedded and systems interfaces such as UART JTAG/SWD SPI I2C Ethernet CAN USB PCIe or comparable buses and protocols.
- Ability to turn ambiguous undocumented systems into structured technical findings diagrams test cases and engineering recommendations.
- Strong written and verbal communication skills for research reviews design reviews and cross-functional engineering collaboration.
- Must be eligible to obtain and maintain a U.S. security clearance.
- Experience with embedded system teardown board-level analysis hardware debug interfaces and circuit/component-level reasoning.
- Understanding of secure boot tamper sensing secure key storage memory encryption or authentication debug interface disablement or comparable embedded protection mechanisms.
- Experience reverse engineering secure boot firmware update flows device identity cryptographic usage anti-tamper controls or hardware-backed trust boundaries.
- Experience with vulnerability discovery exploit development fuzzing symbolic execution taint analysis or other advanced program-analysis techniques.
- Hands-on lab experience using oscilloscopes logic analyzers protocol analyzers JTAG/SWD tooling glitching setups or chip-off / board-level analysis techniques.
- Familiarity with security architectures of embedded aerospace robotic RF or cyber-physical systems.
- Experience building durable internal tools that make reverse engineering faster more reproducible and easier for other researchers to use.
- Experience with PCB netlist recreation X-ray or destructive imaging solder rework chip-off analysis non-volatile memory extraction or high-speed signal probing.
- Experience with side-channel analysis fault injection RF protocol analysis FPGA/SoC security or signal-processing-heavy embedded systems.
- Demonstrated technical leadership mentorship or ownership of complex hardware/software security research efforts.
US Salary Range
$191000 - $253000 USD
The salary range for this role is an estimate based on a wide range of compensation factors inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience education and/or training critical skills and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Andurils total compensation package. Additionally Anduril offers top-tier benefits for full-time employees including:
At Anduril we invest in our people. Our comprehensive competitive benefits package (available at little to no cost to employees) ensures youre supported in health recovery and whatever comes next.For more information Explore Our Benefits.
Anduril is committed to maintaining the integrity of our Talent acquisition process and the security of our candidates. Weve observed a rise in sophisticated phishing and fraudulent schemes where individuals impersonate Anduril representatives luring job seekers with false interviews or job offers. These scammers often attempt to extract payment or sensitive personal information.
To ensure your safety and help you navigate your job search with confidence please keep the following critical points in mind:
No Financial Requests:Anduril will never solicit payment or demand personal financial details (such as banking information credit card numbers or social security numbers) at any stage of our hiring process. Our legitimate recruitment is entirely free for candidates.
- Please always verify communications:
- Direct from Anduril: If you receive an email from one of our recruiters it will only come from an
@address. - Via Agency Partner: If contacted by a recruiting agency for an Anduril role their email will clearly identify their agency. If you suspect any suspicious activity please verify the agencys authenticity by reaching out to .
- Direct from Anduril: If you receive an email from one of our recruiters it will only come from an
Exercise Caution with Unsolicited Outreach:If you receive any communication that appears suspicious contains grammatical errors or makes unusual requests do not engage. Always confirm the senders email domain is @ before providing any personal information or clicking on links.
What to Do If You Suspect Fraud:Should you encounter any questionable or fraudulent outreach claiming to be from Anduril please report it immediately to. Your proactive caution is invaluable in protecting your personal information and upholding the security and trustworthiness of our recruitment efforts.
To view Andurils candidate data privacy policy please visit submitting your application you consent to Anduril Industries using a third-party service provider to conduct pre-employment risk integrity and due diligence screening and assessing potential risks as part of your application process. This third-party service provider provides risk-intelligence services that may include analysis of sanctions and watchlists adverse media public-record information and other lawful open-source or commercial data sources. This third-party service provider does not act as a consumer reporting agency. Use of this provider helps to ensure compliance with applicable laws and protect technology intellectual property and organizational security.
Required Experience:
Senior IC