Principal Embedded Vulnerability Researcher
$95k - $237.5kDraper Labs
Overview:
Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. The 2,000+ employees of Draper tackle important national challenges with a promise of delivering successful and usable solutions. From military defense and space exploration to biomedical engineering, lives often depend on the solutions we provide. Our multidisciplinary teams of engineers and scientists work in a collaborative environment that inspires the cross-fertilization of ideas necessary for true innovation. For more information about Draper, visit
Job Description Summary:
Draper's Offensive Cyber Security Group is looking for dedicated individuals to develop tailored solutions to meet our DoD and IC Sponsor directives. Our organization's not-for-profit status ensures a capability-driven focus on the United States of America's national interests that allows us to address some of our Nation's most pressing challenges. Due to the variety of USG organizational needs, our technical efforts and opportunities vary from conventional cyber operations enablement tooling to embedded vulnerability research and exploit development on a wide range of devices and systems.Job Description:
Duties/Responsibilities
* Assess hardware and software for security vulnerabilities using a breadth of technologies and techniques.
* Develop software that meets behavior and security requirements for tailored applications.
* Integrate software capabilities with other tasks or groups to improve performance or behavior requirements.
* Create new tools and systems to detect and exploit vulnerabilities and system weaknesses.
* Document nominal application and system functionality, in addition to implemented changes.
* Independently drive solutions to complex problems - develop requirements, propose ways forward when customer requirements are unclear or incomplete, and adapt appropriately to changes in requirements.
* Subject Matter Expert (SME) in cyber security, able to plan, design, and execute large scale technical software and hardware solutions.
* Able to provide insight and suggest design modifications based on analysis outcomes, and to apply analysis techniques across a range of technical disciplines.
* Identify program/system-level technical risks and develop and execute mitigation strategies.
* Develop, document, and teach best practices to less experienced engineers; Demonstrate strong organization, planning, and time management skills to achieve program goals.
* Performs other related duties as assigned.
* Curiosity-driven approach to solving complex, customer-driven problems as part of a multi-disciplinary team.
* Collaborate and communicate effectively and openly with multi-disciplinary program team members, program leadership, and non-technical personnel.
* Be a team player able to work in a fast-paced environment with the ability to balance multiple competing tasks and demands. Education
Requires a bachelor's in computer science, computer engineering, or related field. Experience
10-15 years experience in Cybersecurity or related field is required.
Additional Job Description:
Program Analysis, Reverse Engineering, and Vulnerability Research:
- Proficiency with modern program analysis methodologies and techniques
- Reverse-engineering assessment techniques for firmware or embedded systems
- Familiarity with binary file and filesystem structures and formats
- Hands-on proficiency with reverse engineering tooling such as: Ghidra, IDA, GDB, RR
- Hands-on proficiency with physical instrumentation or hardware modification, soldering
- Experience with JTAG/SWD/BDM, and eMMC/NAND/SPI flash data extraction
- Exploitation techniques for embedded devices across platforms and architectures
- Familiarity of network stack and internals
- Familiarity of operating system internals throughout user mode, kernel mode, and during boot processes for at least one of the following: GNU/Linux, RTOS
- Familiarity with architectures and assembly: x86, ARM, Hexagon, PowerPC
Languages and Development:
- Proficiency with programming languages such as: C, C++, Python, Java
- Familiarity with scripting languages such as: Bash, Powershell
- Familiarity in development environments for GNU/Linux or Windows
Leadership and Business Development:
- Successful history in authoring of technical proposals and documents
- Leadership in advanced R&D initiatives, including government-funded projects
- Leadership of critical programs with more than two full time staff members
- Proficient in teamwork and communication with diverse audiences
Preferred Qualifications:
- Experience with side channel attacks (glitching) to place components and/or devices into altered states to bypass protections.
- Familiarity with custom filesystem extraction and modification, removal and/or regeneration of OOB/CRC data.
- Familiarity with bus and protocol analysis.
Applicants selected for this position must be required to obtain and maintain a government TS/SCI security clearance.
Connect With Draper for Future Opportunities! If you don't find the right posting in our Career Opportunities, you may submit your resume for future consideration.
Job Location - City:
CambridgeJob Location - State:
MassachusettsJob Location - Postal Code:
02139-3563The US base salary range for this full-time position is
$95,000.00 - $237,500.00Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Union ranges will be in compliance with the collective bargaining agreement's approved rates by location and role. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.Please note that the compensation details listed in US role postings reflect the base salary only, and does not include bonuses or benefits.
Our work is very important to us, but so is our life outside of work. Draper supports many programs to improve work-life balance including workplace flexibility, employee clubs ranging from photography to yoga, health and finance workshops, off site social events and discounts to local museums and cultural activities. If this specific job opportunity and the chance to work at a nationally renowned R&D innovation company appeals to you, apply now
Draper is committed to creating an inclusive environment. We understand the value of inclusivity and its impact on a high-performance culture. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, national origin, veteran status, or genetic information. Draper is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation, please contact View email address on click.appcast.io.
Required
Preferred
Job Industries
- Other
$40 per hour
...UK, Ireland, Australia, and New Zealand Responsibilities Evaluate AI-generated cybersecurity content, including threat analysis, vulnerability assessments, and offensive security techniques Design and solve security-focused technical problems used to train AI systems...SuggestedHourly payFull timePart timeRemote work- ...for patients worldwide. Job Description The successful Embedded Software Engineer's responsibilities will include but not be... ...experience in real-time embedded software development for the Principal role ~5+ years of related experience in real-time embedded software...PrincipalLocal areaWorldwide
- ...Job Title: Principal Software or Systems Engineer (Embedded Systems) Location: Greater Boston, MA (5 days onsite - relocation offered) Employment... ...related technical field. Advanced coursework or research in embedded systems, real-time systems , or...PrincipalFull timeRelocation
$75k - $156k
...Overview: Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. The 2,000+... ...vary from conventional cyber operations enablement tooling to embedded vulnerability research and exploit development on a wide range of devices...SuggestedFull timeLocal area$95k - $245k
...Overview: Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. The 2,000+ employees... ...information about Draper, visit Job Description Summary: The Embedded Software Engineer (PMTS) provides technical expertise and...PrincipalFull timeLocal area- ...As a Principal Embedded Software Engineer, you'll play a pivotal role in the development and enhancement of the software that powers our robotic lifting solutions. You'll collaborate with cross-functional teams, contribute to the design and implementation of critical...PrincipalWork at officeFlexible hours
$40 per hour
A leading cybersecurity company is seeking experienced cybersecurity professionals to train AI models. In this remote role, you will evaluate AI-generated content and provide essential feedback to improve the accuracy of cybersecurity tools. Ideal candidates will have 2...Hourly payRemote work- ...Department is seeking a highly skilled individual to join our software team where you will employ Agile development techniques on embedded targets to continuously develop and deploy critical capabilities to the warfighter. We strive for technical excellence by drawing...PrincipalFor subcontractor
- ...Job Title: Principal Embedded Developer Location: Waltham, MA (Onsite- 5 days a week) Duration: 12+ Months Job Description: We are seeking an experienced Principal Engineer. The current architecture has highly complex make files, making development...Principal
$180k - $200k
...organization with deep robotics experience. Come join the company who will put 'beauty robotics' on the map! Introduction: As a Principal Embedded Software Engineer at 10Beauty, you will play a critical role in architecting and delivering the embedded systems that power...PrincipalFull time$75k - $156k
...Overview: Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. The 2,000+ employees... ...Job Description Summary: Draper's Perception and Embedded Machine Learning Group seeks an engineer to help develop, integrate...Full timeLocal area- ...Associates has been engaged by a company at the forefront of embedded technology to identify an accomplished Senior Embedded Security... ...dive reviews of system code to identify and resolve security vulnerabilities. Contribute to the selection and deployment of...Flexible hours
- ...Principal Embedded Software Engineer Waltham, MA Third Pole is on a mission to expand the lifesaving benefits of Nitric Oxide inhalation therapy, making it accessible to millions of respiratory challenged newborns and adults around the world. This is a rare opportunity...PrincipalFull time
- .... Job Description The suitable Principal Software Cybersecurity Engineer's responsibilities... ...to determine customer needs for secure embedded and digital software application... ...activitie Perform threat modeling, vulnerability assessments, pen tests, and static/...PrincipalLocal areaWorldwide
$108.5k - $201.5k
...Job Description Summary The Principal Scientist, ADPKD Biology Lead is a senior, lab-embedded scientific leader responsible for shaping and executing ADPKD... ...postdoctoral and/or industry experience in kidney disease research, typically 8-10+ years, with meaningful drug...Principal$120.1k - $251.6k
...Description We are seeking an exceptional Principal Applied Scientist with deep expertise in... ...calling, RAG (retrieval, chunking, embedding selection), fine-tuning/PEFT where appropriate... ...and observability. Own the path from research POC to production by establishing MLOps...PrincipalTemporary workWork experience placementFlexible hours$95k - $245k
...Draper is an independent, nonprofit research and development company headquartered... ...Summary: Draper is actively seeking a Principal Cyber Software Engineer that will... ...cyber operations enablement tooling to embedded vulnerability research and exploit development on a...PrincipalFull timeLocal area- ...Job Description Join our team as a Principal Systems Software Engineer to lead the development of advanced for Class III medical devices... ...0+ years of experience with ideally bare-metal and RTOS-based Embedded C, and a strong electrical engineering background. Must...Principal
$250k
...cybersecurity to guide future roadmaps. Title: Group Lead - Senior Principal Principal Architect Location: Work locations for... ..., and simulation. RTL design (Verilog/SystemVerilog) Embedded security and secure firmware. Analog-digital partitioning...PrincipalH1bRelocation package$160k - $220k
...food production, and industrial equipment. Who we are looking for A player-coach who is passionate about teaching complex embedded systems concepts and product development to less experienced engineers. A product development engineer who enjoys the fast...PrincipalContract work$107.5k - $204.5k
...Department is seeking a highly skilled individual to join our software team where you will employ Agile development techniques on embedded targets to continuously develop and deploy critical capabilities to the warfighter. We strive for technical excellence by drawing...PrincipalTemporary workWork experience placementFor subcontractorWork at officeRemote workFlexible hours$172.8k - $233.8k
...teams pushing the boundaries of what's possible in robotic manipulation, locomotion, and human-robot interaction. The Principal UX Design Researcher role is responsible for defining and evaluating the customer experience for our products from the Industrial Design...PrincipalWork at officeFlexible hours- ...Job Title: Generative AI Engineer (Senior / Lead / Principal)- Multiple openings Experience Level: 8+ to 13+ Years... ...hallucinations using FAISS , Pinecone , and other vector stores. Embedding & Similarity Search Fine-tune embeddings, implement...PrincipalWork at officeRemote work
$125k - $165k
...seeking an experienced and forward-thinking Principal Quality Engineer to serve as the... ...criteria, and risk‑based decision‑making. Embedded Agile Quality Leadership Act as an... ...aligned testing, API security validation, vulnerability discovery), with the ability to...PrincipalPermanent employmentFull timeTemporary workFlexible hours- ...Senior Principal Security Architect Are you ready to make an impact at DTCC? Do you want to work on innovative projects, collaborate... ...senior IT and business leaders to ensure that security is embedded by design across modernized platforms, cloud services, and enterprise...Principal
- ...Overview of Job Function: As a Principal Engineer, you will be the... ...constraints, and security vulnerabilities; drive their resolution... ...Partner with Verint's AI research teams to translate research... ...engineering, RAG architectures, and embedding AI-powered features into production...PrincipalLocal areaShift work
- ...Requirements We are seeking ambitious, inventive, and talented students to join the Broad Institute of MIT and Harvard as early career researchers! In the role of a Research Associate I, you will have access to the best technologies and sharpest minds that biomedical...Local areaFlexible hours
- A leading semiconductor company is looking for a Sr Staff Embedded Processing Business Development Manager. This fully remote position involves defining the strategy and product roadmap for MCU and MPU embedded software. The ideal candidate will have a BS in Electrical...Remote work
- ...Description: Job Summary We are seeking a highly skilled Principal Cybersecurity Analyst to lead advanced threat hunting,... ...cybersecurity experience across incident response, forensics, vulnerability management, and cloud security ~ Strong expertise in threat...Principal
- A leading firms in embedded security technology is seeking a Senior Embedded Software Engineer to design and develop high-performance software. The ideal candidate has a strong background in C programming, networking, and security. Responsibilities include optimizing software...Full timeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Embedded Vulnerability Researcher. Be the first to apply!
- court researcher Cambridge, MA
- data collection researcher Cambridge, MA
- security researcher Cambridge, MA
- researcher Cambridge, MA
- machine learning researcher Cambridge, MA
- field researcher Cambridge, MA
- design researcher Cambridge, MA
- music researcher Cambridge, MA
- human factors researcher Cambridge, MA
- principal Cambridge, MA


