Demo

Vulnerability Researcher - Security Clearance Required

Chameleon Consulting Group
Herndon, VA Full Time
POSTED ON 1/30/2025
AVAILABLE BEFORE 4/29/2025

Company Overview

CCG is a technology company focused on equipping customers with the capabilities and support to conduct intelligent and successful cyber operations. We do this by finding the most talented engineers and operators in the country, give them some of the most challenging problems facing the US government, and help them unleash their creativity and problem-solving skills. Excellence is our standard and mission success is our metric.

Role

As a member of the Security Research team, you will imagine weaknesses in multiple types of systems and then find, demonstrate / document, and exploit those weaknesses. You will be joining a team of mature and extremely competent Security Researchers to breakdown and fully understand how a host of different systems function. You will need to leverage extensive experience performing static and dynamic analysis and must be familiar with multiple classes of vulnerabilities. Additionally, you must be extremely comfortable communicating with team members, technical partners, and non-technical partners alike. The ideal candidate will be comfortable and confident operating at the early phases of a vulnerability research project and have the mettle to see the project through to multiple phases and iterations.

Responsibilities

  • Perform vulnerability research and reverse engineering for customer tasks
  • Perform static and dynamic analysis by applying research tools such as disassemblers, debuggers, and fuzzers
  • Perform exploit development which leverage discovered vulnerabilities
  • Be able to communicate security research findings internally and, when and where it is appropriate, externally

Minimum Qualifications

  • Must possess TS clearance
  • Bachelors degree in Computer Engineering, Computer Science, Software Engineering, or a related technical discipline. Degree requirement can be met with four years of hands on experience in a software engineer or similar full time position
  • 2 year(s) of experience in software vulnerability research
  • Experience with Ghidra, Binary Ninja, IDA or other reverse engineering / disassembler tools
  • Experience working in Linux fundamentals (strong grasp of sockets, file descriptors, networking, iptables, file systems, kernel, etc.)
  • Ability to read and write C and assembly languages as needed (ARM, MIPS, x86_64) with minimal oversight or supervision
  • Strong programming fundamentals; particularly with networking, data structures, and data models
  • Understanding of exploitation techniques such as leveraging arbitrary read-write primitives, shellcoding, and return-oriented programming / jump-oriented programming
  • Preferred Experience

  • OS and kernel reverse engineering
  • Understanding of fuzzers such as AFL or libfuzzer
  • Understanding of common exploit mitigation mechanisms such as SELinux, Seccomp, ASLR, and CFI.
  • Understanding of dynamic analysis with gdb / gdbserver and similar tools
  • Basic understanding of compiler tool chains
  • Understanding of emulation using Qemu or Unicorn for running code in a non-native environment
  • Experience identifying 0-days and vulnerabilities
  • Develop high quality and reliable code (C, Assembly, Python, and / or JavaScript)
  • If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Vulnerability Researcher - Security Clearance Required?

    Sign up to receive alerts about other jobs on the Vulnerability Researcher - Security Clearance Required career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $76,865 - $99,440
    Income Estimation: 
    $92,729 - $118,963
    Income Estimation: 
    $146,673 - $180,130
    Income Estimation: 
    $176,149 - $220,529
    Income Estimation: 
    $77,657 - $95,021
    Income Estimation: 
    $97,257 - $120,701
    Income Estimation: 
    $97,257 - $120,701
    Income Estimation: 
    $123,167 - $152,295
    Income Estimation: 
    $123,167 - $152,295
    Income Estimation: 
    $146,673 - $180,130
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Chameleon Consulting Group

    Chameleon Consulting Group
    Hired Organization Address Herndon, VA Full Time
    Job Details Clarity Innovations is a trusted national security partner, dedicated to safeguarding our nation's interests...
    Chameleon Consulting Group
    Hired Organization Address Columbia, MD Full Time
    DevOps Engineer Location : Columbia, MD (Hybrid, secure spaces as needed) Company Overview CCG is a technology company f...
    Chameleon Consulting Group
    Hired Organization Address Herndon, VA Full Time
    DevOps Engineer - All Levels Location : Herndon, VA (Hybrid, 3 days in office) Company Overview Clarity Innovations is a...
    Chameleon Consulting Group
    Hired Organization Address Greendale, WI Full Time
    Senior Information System Security Manager CCG delivers solutions to the most challenging problems our nation faces in c...

    Not the job you're looking for? Here are some other Vulnerability Researcher - Security Clearance Required jobs in the Herndon, VA area that may be a better fit.

    Construction Architects for Future Projects - Global Needs - US Government Clearance Required

    Global Needs - US Government Clearance Required - Tetra Tech Careers, Washington, DC

    AI Assistant is available now!

    Feel free to start your new journey!