
Cybersecurity Research Expert – Offensive Security, Vulnerability Research
Posted 6 days ago

Posted 6 days ago
This is a fully remote position, open to applicants in United States.
• Assess AI-generated evaluations of intricate cybersecurity scenarios, exploits, and vulnerability reports.
• Analyze technical documentation for accuracy, exploitability, and the quality of mitigation strategies.
• Confirm root-cause analysis of vulnerabilities spanning software, operating systems, networking, cloud, and web applications.
• Offer constructive feedback on security reasoning, exploit chains, and defensive strategies.
• Participate in the development of benchmarks for advanced AI security capabilities.
• Engage with cutting-edge AI models addressing real-world cybersecurity challenges.
• Collaborate with top researchers on sophisticated security evaluation projects.
• Influence the evolution of the next generation of AI systems in the cybersecurity domain.
• Exceptional expertise in cybersecurity research.
• Proven history in offensive security research along with publicly acknowledged technical contributions.
• Multiple relevant credentials, such as membership in a leading CTF team, CVE discovery or co-authorship, recognized bug bounty research, experience in security laboratories or academic research, or high-quality security research publications and technical documentation.
• Solid understanding of exploit development, reverse engineering, binary analysis, vulnerability research, operating systems, networking, web security, or cryptography.
• Preferred professional experience in offensive security, application security, vulnerability research, product security, or security engineering.
• Experience with reverse engineering tools like IDA Pro, Ghidra, Binary Ninja, or Radare2 is preferred.
• Familiarity with fuzzing, symbolic execution, static analysis, or dynamic analysis frameworks is preferred.
• Experience with Linux internals, Windows internals, browser security, cloud security, embedded security, or mobile security is preferred.
• Strong programming skills in C/C++, Rust, Python, Go, or Java are preferred.
• Excellent written communication skills with the ability to clearly explain complex security concepts are preferred.
• Hall of Fame recognition from major bug bounty programs is a plus.
• Presentations or publications at Black Hat, DEF CON, USENIX Security, IEEE S&P, ACM CCS, NDSS, or similar conferences are advantageous.
• Being a maintainer or significant contributor to well-known open-source security tools is a nice addition.
• Offensive Security certifications such as OSCP, OSEP, OSCE3, GIAC certifications, or equivalent credentials are a plus.
• Unable to sponsor H1-B or STEM OPT candidates.
• Fully remote position.
• Flexible working hours; manage your own schedule.
• Weekly payments via Stripe or Wise based on services rendered.
• Project durations may be adjusted or concluded early based on needs and performance.
• Competitive salary.
• Opportunity to collaborate with leading researchers.
• Referral rewards of 20% of a referral's earnings across all their projects on Mercor, subject to restrictions and an earnings cap.
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.