Senior Exploit Developer (United States)

Reposted 5 Days Ago
Easy Apply
Hiring Remotely in United States
Remote
Senior level
Cybersecurity
Outpace Adversaries
The Role
Seeking a Senior Exploit Developer to reverse engineer, write exploits for vulnerabilities, and develop detection mechanisms for initial access intelligence.
Summary Generated by Built In

Company Overview

VulnCheck delivers next-generation exploit and vulnerability intelligence solutions for enterprise, government, and product teams to prevent large-scale remote code execution events with better, faster exploit data, massive-scale real-time monitoring and predictively built detection artifacts. VulnCheck’s 300M+ unique data points from 500+ sources help vulnerability management and response teams outpace adversaries - autonomously. VulnCheck is an RSAC Innovation Sandbox finalist and a Black Hat Startup Spotlight finalist.

Job Summary

VulnCheck is looking for a Senior Exploit Developer with a background in reverse engineering and exploit development. This role is on our Initial Access Intelligence team, which delivers exploits and related artifacts designed to give VulnCheck customers visibility into exploitation from exposure through execution and detection. You’ll work with a seasoned team of hackers and threat researchers to help global enterprises, governments, and intelligence firms defend against emerging threats and get ahead of the attacker curve. 

While initial access vulnerabilities are our main focus area, you’ll also have the opportunity to work on a variety of local and other exploits, as well as our open-source go-exploit framework.

Location

This is a 100% remote role based in the United States, though we are primarily looking for candidates in Massachusetts, Maryland, and Texas.

Why Join VulnCheck?

VulnCheck stands behind its mission to influence how organizations worldwide understand, assess, and remediate security vulnerabilities - and to deliver intelligence-based solutions that change the world. 

You’ll be joining a collaborative, supportive environment that values intellectual curiosity, technical mastery, and personal growth. At VulnCheck, you’ll get to:

  • Leverage your expertise: Work on cutting-edge threat intelligence initiatives that matter, alongside top domain experts in the field.
  • Shape the industry: Influence how vulnerabilities are discovered, classified, scored, mapped, exploited, discussed, and remediated at scale for enterprise customers and for the entire cybersecurity industry.
  • Grow your impact: Collaborate with global partners, lead high-visibility projects, and drive standards across the security community.
  • Innovate and explore: Conduct novel vulnerability research and develop tools that highlight risk in unexpected places, sharing your findings with others to educate and inspire.

Key Responsibilities

  • Reverse engineering software to discover the root cause of both zero-day and n-day vulnerabilities
  • Writing original software exploits for initial access vulnerabilities using VulnCheck’s open-source go-exploit framework, including when there are no public PoCs or vulnerability details
  • Implementing detections (such as Suricata & Snort signatures, YARA rules, etc.) that accurately identify initial access vulnerabilities being exploited on the wire
  • Writing Attack Surface Management (ASM) queries (e.g., Shodan, Census, FOFA, & ZoomEye) to find vulnerable systems likely to be targeted
  • Contributing to technical blogs and/or conference talks (optional) on exploit development and attack trends

Required Qualifications

  • Prior experience with exploit development for RCE / initial access vulnerabilities (that do not require authentication to exploit)
  • Comfort with reverse engineering and patch diffing
  • Experience with Git-based project development 
  • Experience working on technical projects remotely, alone, and on small teams

Preferred Qualifications

  • Prior cybersecurity work experience (at a vendor or in government)
  • Ability to share example exploit code written
  • Some experience with programming / software development is helpful
  • Experience writing technical blogs and/or giving conference talks is a big plus

Benefits

  • Competitive compensation package.
  • Flexible work arrangements with the option to work remotely 100% of the time.
  • Dynamic work environment with opportunities for growth and advancement.
  • Access to continuous learning and development programs.

Ready to move from enabling the ecosystem to leading its evolution? Apply now and help us protect what matters most! 

Top Skills

Git
Snort
Suricata
Yara
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Lexington, Massachusetts
48 Employees
Year Founded: 2021

What We Do

VulnCheck helps organizations outpace adversaries with vulnerability intelligence that predicts avenues of attack with speed and accuracy. The VulnCheck team comprises a who's who of cybersecurity research, with decades of experience uncovering 100s of 0days and 10+ patents. VulnCheck's vulnerability and exploit intelligence equips defenders with the insights they need to focus resources on the vulnerabilities that matter most. That's why VulnCheck has been selected to power government agencies, large enterprises, and the industry's most innovative cybersecurity solutions, covering billions of assets around the world. See what you're missing at www.vulncheck.com.

Similar Jobs

Pfizer Logo Pfizer

Gastroenterology Health & Science Sales Specialist - Seattle S, WA

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
Washington, DC, USA
121990 Employees
109K-251K Annually

Pfizer Logo Pfizer

Dermatology Senior Health and Science Specialist - Beverly Hills, CA

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
California, USA
121990 Employees
115K-222K Annually

AKASA Logo AKASA

Senior Engineering Manager

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Software • Generative AI
Remote
United States
100 Employees
230K-310K Annually

SailPoint Logo SailPoint

Communications Specialist

Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Remote or Hybrid
2 Locations
2461 Employees
45K-76K Annually

Similar Companies Hiring

Rhymetec Thumbnail
Information Technology • Data Privacy • Cybersecurity • Consulting • Cloud
US
33 Employees
MacPaw Thumbnail
Software • Security • Information Technology • Data Privacy • Cybersecurity • App development
Cambridge, MA
550 Employees
Silverfort Thumbnail
Security • Sales • Information Technology • Cybersecurity • Automation
GB
507 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account