Senior Security Researcher

8 hours, 42 minutes ago
Full-time
Senior
Cybersecurity
Veracode

Veracode

Veracode is a top provider of software security solutions, enabling continuous identification and resolution of security flaws in the software development lifecycle to empower innovation with confidence.

Internet Software & Services
251-1K
Founded 2006
$114M raised

Description

  • Conduct research to identify weaknesses and security vulnerabilities in C/C++, C#, .NET, and other applications as needed.
  • Describe vulnerabilities and potential exploits and create proofs of concept and representative examples for engineering teams.
  • Perform binary and source static analysis and reverse-engineering of applications.
  • Research ways to improve automation, accuracy, and efficiency of detection techniques and related systems using proprietary and open-source tools.
  • Contribute to customer-facing and public-facing documentation to keep technical guidance current, accurate, and actionable.
  • Mentor developers and researchers and provide technical guidance.
  • Participate in the software security community through conferences, presentations, publications, and blog contributions.

Requirements

  • 2+ years of practical reverse-engineering or binary static-analysis experience.
  • Familiarity with Abstract Syntax Trees (AST), reflection, code transformation approaches, compilers, decompilers, disassemblers, and/or debuggers.
  • 1+ years of practical application security experience such as source code auditing, penetration testing, product assessment, or vulnerability research.
  • Ability to adopt an offensive 'breaker' mindset and assess software attack surfaces.
  • Comfort producing quick prototypes or 'quick and dirty hacks' to demonstrate concepts or solve one-off problems.
  • Strong attention to detail and commitment to quality.
  • Strong analytical and organizational skills for independently advocating, planning, and executing projects.
  • Ability to understand technical and security issues from a customer point of view.
  • Strong written and verbal communication skills in English, especially technical writing for a developer audience.

Benefits

  • Outstanding medical, dental, and vision coverage.
  • Wellness benefits to support employee well-being.
  • 'Take What You Need' time off policy.
  • Extensive development and training offerings.
  • Generous 401(k) match.
  • A professional community that takes pride in its work.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security Engineer - Product & Production Infrastructure

Wiz 251-1K IT Services

Wiz is hiring a Security Engineer for Product & Production Infrastructure to secure its cloud products, CI/CD, and production environments through security reviews, vulnerability management, and detection and response work.

AWS Azure CI/CD GCP Go Helm Kubernetes Python Rust Terraform
6 hours, 27 minutes ago

Product Security Engineer

ClickHouse 51-250 IT Services

ClickHouse is hiring a Security Engineer to support its cloud and open-source platforms in strengthening product and infrastructure security, incident response, and security process maturity.

AWS Azure C++ GCP Kubernetes Penetration Testing
6 hours, 27 minutes ago

Product Security Engineer

ClickHouse 51-250 IT Services

ClickHouse is hiring an experienced Security practitioner to support engineering and product teams in strengthening the security posture of its cloud and open-source platforms.

AWS Azure C++ GCP Kubernetes Penetration Testing
8 hours, 27 minutes ago

Senior Application Security Engineer

Abnormal AI Internet Software & Services

Abnormal AI is hiring a Senior Application Security Engineer to secure its AI-powered cybersecurity applications by embedding application security into development, architecture, and incident response across engineering teams.

Burp Suite CI/CD Encryption Git Go Java JavaScript Linux Microservices Python SonarQube TypeScript
8 hours, 57 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers