Cheltenham, United Kingdom Remote (Country) Employment

VulnCheck is hiring a Sr. Exploit Developer

Responsibilities

  • Reverse engineering software to discover the root cause analysis (RCA) of vulnerabilities.
  • Authoring original software exploits for initial access vulnerabilities, when little or no publicly-available proof of concept code for exploiting such vulnerabilities exists.
  • Implementing detections (such as Suricata & Snort signatures, YARA rules, etc.) for identifying such initial access vulnerabilities being exploited on the wire
  • Writing Attack Surface Management (ASM) queries (e.g., Shodan, Census, FOFA, & ZoomEye) for finding vulnerable systems likely to be targeted

Requirements

  • Prior experience with writing exploit code for RCE / initial access vulnerabilities (that do not require authentication to exploit)
  • Experience working on technical projects remotely, alone, and on small teams

Nice to Have

  • Prior Cybersecurity work experience (at a vendor or in Government).
  • Able to share example exploit code written.

Benefits

  • Competitive salary with employee equity program
  • Health, dental, and vision coverage
  • Unlimited PTO
  • Pension Contribution
  • Remote friendly environment with flexibility
  • Expense reimbursement for home internet and phone
  • Ongoing professional development, coaching, and learning resources
  • Opportunities for career advancement within a fast-growing team

Team

Structure: Initial Access Intelligence team

Additional Information

  • This position may involve access to technology subject to U.S. export control regulations. Employment is contingent upon the company's ability to authorize access under applicable export control, sanctions, and any other applicable legal or contractual requirements. The company does not guarantee and is under no obligation to seek such authorization if it would be necessary.
Required Skills
writing exploit code for RCE / initial a writing exploit code for RCE / initial a
Your first international client?

Don't lose them over invoicing

Clients ghost freelancers with unprofessional invoicing. Glopay gives you a real EU company partnership so they take you seriously from invoice #1.

Instant EU company partnership
Invoice builder with your branding
Automated payment reminders
Real-time payment tracking
Get EU company now
Ready in 24 hours
About company
VulnCheck

VulnCheck helps organizations outpace adversaries with vulnerability intelligence that predicts avenues of attack with speed and accuracy.

Unprecedented visibility into the vulnerability ecosystem from the eye of the storm. Prioritize response. Finish taking action before the attacks occur.

Exploit Intelligence for Vulnerability Prioritization: Early access to new vulnerability information not found in the NVD, along with dozens of unique fields, in-house developed exploit PoCs, packet captures, and Suricata signatures to defend against initial access vulnerabilities, detection of potentially vulnerable systems, attacker command & control (C2) infrastructure, and honeypots.

All jobs at VulnCheck Visit website
Job Details
Department Initial Access Intelligence
Category security
Posted 2 hours ago