Lead Vulnerability Researcher ($285k+/year + Sign-On Bonus)
Two Six Technologies · Linthicum, Maryland
About this role
**Lead Vulnerability Researcher — Two Six Technologies** ## Compensation & Incentive Highlights - **Target Base Salary:** **$285,000+** (final salary based on qualifications and experience) - **Sign-On Bonus:** Starting at **$25,000** for qualified FSP hires - **Benefits & Flexible PTO:** Comprehensive health/dental/vision, **401(k) matching**, paid professional development, tuition assistance, and flexible PTO (with rollover options and annual payout opportunities) ## Overview of Opportunity Join the **Trusted Electronics & Effects** team at Two Six Technologies and lead vulnerability research across **hardware, software, and operational systems**. You’ll work closely with engineers and security researchers to guide investigations, identify critical vulnerabilities, and develop countermeasures with real operational impact. This role requires **regular on-site support at the Linthicum, Maryland customer site**. ## What You Will Do - Lead identification of vulnerabilities and attacks across **hardware, software, personnel, logistics, procedures, and physical security** - Develop **proof of concept (PoC)** code for identified vulnerabilities - **Reverse-engineer** targeted embedded systems to identify vulnerabilities - Review source code for risks and vulnerabilities - Analyze effects of vulnerabilities on **mission outcomes** and operational effectiveness - Compare system attack techniques and propose **operationally effective countermeasures** - Produce reports, briefings, and perspectives on actual and potential attacks - Provide technical leadership: prioritize investigations, review methodologies, and oversee PoCs - Mentor and guide junior engineers and researchers ## What You Will Need (Basic Qualifications) - **Doctorate** in Computer Science, Computer/Electrical Engineering, or related field + **4 years** relevant experience, **OR** - **Master’s** + **6 years**, **OR** - **Bachelor’s** + **8 years**, **OR** - **Associate’s** + **10 years** - Relevant experience may include: computer/information systems design/development, programming, information/cyber/network security, reverse-engineering, vulnerability analysis, penetration testing, computer forensics, information assurance, or systems engineering - Proficiency in **C/C++**, **Python**, and at least one ISA (e.g., **x86/ARM/MIPS**) - Proficiency in **Linux command-line** environments - Experience using a **decompiler** (e.g., **IDA Pro**, **Binary Ninja**, **Ghidra**) - Experience using vulnerability research tools (e.g., **emulators** or **fuzzers**) - Experience using a software debugger (e.g., **GDB** or **WinDbg**) - Ability to work **on-site in Linthicum, Maryland regularly** ## Nice If You Have (Preferred) - Experience translating vulnerabilities into operationally relevant impact assessments and countermeasures - Experience producing client-facing technical briefings for operational stakeholders - Experience using a **hardware debugger** - Experience with **UART, SPI, I2C** - Familiarity with secure communications such as **TLS** or **SSH** - Familiarity with **embedded firmware, RTOS, or networked systems** - Familiarity with **high-side environments** ## Security Clearance - **Active TS/SCI clearance with Polygraph required** ## Salary Range (Projected) - **$284,999 – $300,000 USD** *Two Six Technologies is an Equal Opportunity Employer. If you need a reasonable accommodation during the application process, email **accommodations@twosixtech.com**. This bus
Listing freshness
CronJobs last confirmed this listing 16m ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.