
Security Research – B2B Contract
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Europe.
• Develop cutting-edge open-source tools aimed at detecting and analyzing software supply chain attacks, which encompass compromised packages, malicious packages, and the exploitation of package vulnerabilities.
• Investigate supply chain attacks and examine the tactics, techniques, and procedures (TTPs) utilized by advanced persistent threat (APT) groups.
• Reverse engineer, analyze, and decompile malware and vulnerabilities, converting findings into detailed whitepapers.
• Independently lead research and development cycles from start to finish, ensuring high-quality execution from concept to delivery.
• Collaborate with internal teams and stakeholders to enhance security measures and methodologies continuously.
• Assist in scanning and safeguarding users and organizations globally against emerging cyber threats.
• Over 5 years of experience as a Cybersecurity Researcher.
• Demonstrated capability to deliver software in a production environment.
• Strong understanding of the Software Development Life Cycle (SDLC) and contemporary Continuous Integration/Continuous Deployment (CI/CD) pipelines.
• Proficient in utilizing AI tools to enhance research and development workflows.
• Familiarity with open-source registry ecosystems (such as npm, PyPI, Maven) and their associated attack vectors.
• A proactive and self-sufficient approach, capable of taking full ownership of projects.
• Active contributions to open-source security tools or research initiatives.
• Practical experience with decompilers, debuggers, and network traffic analysis.
• Extensive experience in malware analysis, including techniques for obfuscation, encryption, anti-analysis, and sandbox evasion.
• Experience in web application penetration testing.
• Published Common Vulnerabilities and Exposures (CVEs), coordinated disclosures, write-ups, blogs, or research articles.
• Experience speaking publicly at major industry events, such as Black Hat, DEFCON, or RSA Conference.
• A genuine passion for cybersecurity, open-source communities, and addressing complex ecosystem threats.
• Opportunity to work on impactful projects that enhance cybersecurity across the globe.
• Collaborative and innovative work environment with a focus on continuous learning.
• Access to cutting-edge tools and resources to support your research and development efforts.
• Flexible work arrangements and a strong emphasis on work-life balance.
NTT
BDR Solutions LLC
ON Partners
Danaher Corporation
Get handpicked remote jobs straight to your inbox weekly.