Vulnerability Researchers / Security Researchers

1 month ago
Full-time
Senior
Cybersecurity
SevenPro

SevenPro

SevenPro is a top-tier software development and technology consulting company that offers comprehensive services for startups and businesses, specializing in high-end web and mobile applications.

Internet Software & Services
51-250
Founded 2015

Description

  • Detect, analyze, and exploit vulnerabilities.
  • Conduct vulnerability research across browsers, kernels, mobile and desktop operating systems, and other complex software.
  • Assess the technical details and real-world impact of discovered vulnerabilities.
  • Develop exploits, proof-of-concept code, scripts, and software modules to validate vulnerabilities.
  • Perform reverse engineering and binary analysis as part of research work.
  • Reverse-engineer security patches to better understand vulnerabilities.
  • Use fuzzing and other research techniques to discover vulnerabilities.
  • Communicate vulnerability findings and their technical impact clearly.
  • Assist in developing tools for vulnerability and security research.

Requirements

  • Proven hands-on experience in vulnerability research and vulnerability exploitation.
  • Experience in exploit development.
  • Experience finding vulnerabilities in complex systems.
  • Experience with reverse engineering.
  • Knowledge of OS internals.
  • Knowledge of modern exploitation techniques.
  • Experience researching at least one of: browsers, kernels, mobile OSes, desktop OSes, or embedded systems.
  • Experience with platforms such as Windows, Linux, macOS, iOS, or Android.
  • Ability to work independently in a remote environment.
  • Availability for full-time work.
  • Published CVEs or other proven records of discovered vulnerabilities (preferred).
  • Experience finding and exploiting vulnerabilities in browsers or OS kernels (preferred).
  • Experience with fuzzing (preferred).
  • Participation in CTFs, security competitions, or security conferences (preferred).
  • Bug bounty or independent vulnerability research experience (preferred).
  • Published security research, technical write-ups, PoCs, or research tools (preferred).
  • Offensive security background (preferred).
  • Academic degree in Computer Science, Mathematics, or Physics (preferred).

Benefits

  • Full-time remote work.
  • Relocation opportunities to Barcelona.
  • Flexible working hours depending on productivity and time zones.
  • Real opportunity to influence the product, architecture, and technical decisions.
  • Direct communication with C-level management without unnecessary bureaucracy.
  • Long-term cooperation.
  • 20 paid working days of vacation per year.
  • 5 paid undocumented sick days.
  • Official public holidays off.
  • Personal legal support.
  • English classes.
  • Team-building events and a friendly, supportive atmosphere.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Lead Security Engineer - Penetration Testing & AI Security

HighLevel 251-1K Internet Software & Services

HighLevel is seeking a Lead Security Engineer to secure its SaaS platform and AI-enabled products through application security leadership, secure development practices, and adversarial testing of AI systems.

Bash CI/CD Cybersecurity DevSecOps Docker Go JavaScript JWT Kubernetes Microservices OpenID Connect OWASP Penetration Testing Python SAML
2 days, 15 hours ago

Principal Consultant - ICS/OT Cybersecurity

Dragos 251-1K Professional Services

Dragos is seeking a Singapore-based Principal Consultant to lead high-impact OT/ICS cybersecurity engagements and shape long-term security strategies for critical infrastructure organizations across APAC.

Cybersecurity SIEM
5 days, 14 hours ago

Cybersecurity, Incident Response & Hands-On Training Contract IT Instructor (Onsite and virtual live classes) (copy)

Pluralsight 1K-5K Internet Software & Services

Pluralsight is seeking independent contract cybersecurity instructors and scenario developers worldwide to deliver remote and onsite incident-response training, tabletop exercises, and Capture the Flag events for enterprise clients.

Bash Burp Suite Cybersecurity Docker Metasploit Penetration Testing Python Splunk Wireshark
6 days, 15 hours ago

Professional Services Consultant, GRC

Mitratech 1K-5K Professional Services

Mitratech is seeking a Services Consultant in Mexico to support client implementations of its GRC suite through requirements analysis, configuration, testing, training, and go-live support.

SQL
1 week, 1 day ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers