Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Embedded Vulnerability Researcher

$82.3k - $205.75k

Draper

Overview:

Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. The 2,000+ employees of Draper tackle important national challenges with a promise of delivering successful and usable solutions. From military defense and space exploration to biomedical engineering, lives often depend on the solutions we provide. Our multidisciplinary teams of engineers and scientists work in a collaborative environment that inspires the cross-fertilization of ideas necessary for true innovation. For more information about Draper, visit

Job Description Summary:
Draper's Offensive Cyber Security Group is looking for dedicated individuals to develop tailored solutions to meet our DoD and IC Sponsor directives. Our organization's not-for-profit status ensures a capability-driven focus on the United States of America's national interests that allows us to address some of our Nation's most pressing challenges. Due to the variety of USG organizational needs, our technical efforts and opportunities vary from conventional cyber operations enablement tooling to embedded vulnerability research and exploit development on a wide range of devices and systems.

Job Description:

Duties/Responsibilities
  • Assess hardware and software for security vulnerabilities using a breadth of technologies and techniques.
  • Develop software that meets behavior and security requirements for tailored applications.
  • Integrate software capabilities with other tasks or groups to improve performance or behavior requirements.
  • Create new tools and systems to detect and exploit vulnerabilities and system weaknesses.
  • Document nominal application and system functionality, in addition to implemented changes.
  • Help define the analysis approach for a particular problem and independently execute assignments
  • Contribute high quality content for technical reports and presentations with minimal guidance
  • Proactively identify needs and concerns associated with design decisions and communicate them to project leadership
Skills/Abilities
  • Curiosity-driven approach to solving complex, customer-driven problems as part of a multi-disciplinary team.
  • Collaborate and communicate effectively and openly with multi-disciplinary program team members, program leadership, and non-technical personnel.
  • Be a team player able to work in a fast-paced environment with the ability to balance multiple competing tasks and demands.
Experience
5-10 years experience in Cybersecurity or related field is required.

Additional Job Description:

Program Analysis, Reverse Engineering, and Vulnerability Research:
  • Proficiency with modern program analysis methodologies and techniques
  • Reverse-engineering assessment techniques for firmware or embedded systems
  • Familiarity with binary file and filesystem structures and formats
  • Hands-on proficiency with reverse engineering tooling such as: Ghidra, IDA, GDB, RR
  • Hands-on proficiency with physical instrumentation or hardware modification, soldering
  • Experience with JTAG/SWD/BDM, and eMMC/NAND/SPI flash data extraction
  • Exploitation techniques for embedded devices across platforms and architectures
  • Familiarity of network stack and internals
  • Familiarity of operating system internals throughout user mode, kernel mode, and during boot processes for at least one of the following: GNU/Linux, RTOS
  • Familiarity with architectures and assembly: x86, ARM, Hexagon, PowerPC
Languages and Development:
  • Proficiency with programming languages such as: C, C++, Python, Java
  • Familiarity with scripting languages such as: Bash, Powershell
  • Familiarity in development environments for GNU/Linux or Windows
Leadership and Business Development:
  • Successful history in authoring of technical proposals and documents
  • Leadership in advanced R&D initiatives, including government-funded projects
  • Leadership of critical programs with more than two full time staff members
  • Proficient in teamwork and communication with diverse audiences
Preferred Qualifications:
  • Experience with side channel attacks (glitching) to place components and/or devices into altered states to bypass protections.
  • Familiarity with custom filesystem extraction and modification, removal and/or regeneration of OOB/CRC data.
  • Familiarity with bus and protocol analysis.

Applicants selected for this position must be required to obtain and maintain a government TS/SCI security clearance.

Connect With Draper for Future Opportunities! If you don't find the right posting in our Career Opportunities, you may submit your resume for future consideration.

Job Location - City:
Cambridge

Job Location - State:
Massachusetts

Job Location - Postal Code:
02139-3563

The US base salary range for this full-time position is
$82,300.00 - $205,750.00
Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Union ranges will be in compliance with the collective bargaining agreement's approved rates by location and role. Your recruiter can share more about the specific salary range for your preferred location during the hiring process. Please note that the compensation details listed in US role postings reflect the base salary only, and does not include bonuses or benefits.

Our work is very important to us, but so is our life outside of work. Draper supports many programs to improve work-life balance including workplace flexibility, employee clubs ranging from photography to yoga, health and finance workshops, off site social events and discounts to local museums and cultural activities. If this specific job opportunity and the chance to work at a nationally renowned R&D innovation company appeals to you, apply now

Draper is committed to creating an inclusive environment. We understand the value of inclusivity and its impact on a high-performance culture. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, national origin, veteran status, or genetic information. Draper is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation, please contact View email address on click.appcast.io.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Senior Embedded Vulnerability Researcher in Reston, VA vacancy
  •  ...Vulnerability Researcher (Android) / Software Engineer (VR), Senior-Level Location: Chantilly VA. At REDLattice, we are a global leader in delivering cutting...  ...hardware components Understanding of moble/embedded systems concepts Exposure to C/C++ in low-... 
    Senior

    REDLattice

    Sterling, VA
    5 days ago
  •  ...the Role We need Linux VRers to conduct reverse engineering, vulnerability research, and exploitation on Linux applications. Focus on native...  ...developing and testing applications on Windows, Mac, Linux, Mobile, or Embedded platforms. #J-18808-Ljbffr Stech Technology UK Limited
    Suggested

    Stech Technology UK Limited

    Mc Lean, VA
    3 days ago
  • Stech Technology UK Limited is seeking Linux VRers to engage in reverse engineering and vulnerability research on Linux applications. The role emphasizes identifying and mitigating security risks while working with native apps across ARM and MIPS architectures. Applicants... 
    Suggested

    Stech Technology UK Limited

    Mc Lean, VA
    3 days ago
  • Red Cell Partners in McLean, VA is seeking a Principal AI Researcher to lead research in autonomous systems and AI infrastructures. This pivotal role focuses on defining long-term research directions and translating AI innovations into scalable systems. The candidate should... 
    Senior
    Remote job

    Red Cell Partners

    Mc Lean, VA
    1 day ago
  • $104k - $166k

     ...Vulnerability Analyst, Senior Job Locations US-VA-Herndon Requisition ID 2026-165332 Position Category Intel and Threat Analysis Clearance Top Secret/SCI Responsibilities We are seeking a highly skilled and innovative... 
    Senior
    Contract work
    Shift work

    Peraton

    Herndon, VA
    5 days ago
  • $104k - $166k

     ...Vulnerability Assessment Specialist, Senior Job Locations US-VA-Herndon Requisition ID 2026-165336 Position Category Intel and Threat Analysis Clearance Top Secret/SCI Responsibilities We are seeking a highly skilled... 
    Senior
    Contract work
    Shift work

    Peraton

    Herndon, VA
    5 days ago
  • $191k - $253k

     ...software ecosystem supporting next-generation hardware platforms powered by cutting-edge System-on-Chip devices. Help secure our embedded system devices. Develop and maintain automated tests to ensure proper functionality of embedded system REQUIRED... 
    Senior
    Full time
    Work experience placement
    Immediate start

    Anduril Industries

    Reston, VA
    3 days ago
  •  ...Embedded Systems Security Engineer Why choose between doing meaningful work and having...  ..., hardware security, and applied research to design, prototype, evaluate, and transition...  ..., compiler- and analysis-assisted vulnerability mitigation, implementation security, trusted... 
    Senior
    Work experience placement
    Internship
    Local area
    Immediate start

    MITRE

    McLean, VA
    2 days ago
  •  ...Principal Embedded SWE - Image Signal Processing Location: Dever, CO Duration: Long term 1. Principal embedded SWE - DSP / EM...  ...updates. Skillsets: 7+ years of experience and working at a Senior or Principal level Proficiency in designing, implementing,... 

    Kasmo Global

    Herndon, VA
    5 days ago
  • A technology services provider is seeking a Senior Cyber Vulnerability Analyst in Falls Church, VA. The ideal candidate will have over 10 years of experience in cyber vulnerability analysis, with a strong knowledge of the Risk Management Framework. Responsibilities include... 
    Senior

    Koniag Government Services, LLC

    Falls Church, VA
    3 days ago
  • A leading government services provider in Falls Church, VA, is seeking a Senior Cyber Vulnerability Analyst with a TOP SECRET clearance. The role involves conducting cyber vulnerability analysis, managing communications with various stakeholders, and producing quality... 
    Senior

    Koniag Government Services

    Falls Church, VA
    4 days ago
  •  ...Chemical Weapons Analyst - Senior Founded in 1989, SOSi is among the largest private...  ...technical capabilities, security, and vulnerabilities to Chemical Weapons programs, to...  ...production, stockpile, logistics and security, research and development, testing, Chemical... 
    Senior
    Work at office
    Worldwide

    SOSi

    Reston, VA
    2 days ago
  • $170k - $200k

     ...Current Job Openings Principal Embedded Linux Engineer Principal Embedded Linux Engineer Summary Title: Principal Embedded Linux Engineer ID: SPA-25-04-ISR Team: Space & Ground Systems Location: Herndon, VA More about this job Description HawkEye 360... 
    Work experience placement
    Worldwide

    HawkEye 360

    Herndon, VA
    5 days ago
  •  ...Role: Senior Embedded Linux Engineer Location: San Francisco, CA - Onsite Duration: 6-12 months Job Summary: Participate in design, development, verification, troubleshooting, and delivery of high quality firmware Deliver resilient and robust designs... 
    Senior
    Work at office
    Remote work

    Kasmo Global

    Ashburn, VA
    4 days ago
  •  ...SOC Vulnerability Management AESS Lead - Senior ECS is seeking a SOC Vulnerability Management AESS Lead - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. Supporting Task 3 — Cybersecurity Operations... 
    Senior
    Contract work

    ECS

    Fairfax, VA
    2 days ago
  •  ...Senior Principal Human Resources Business Partner (HRBP) Herndon, VA or Columbia, MD Clarity Innovations is a trusted national...  ...Deep experience in handling complex Employee Relations cases, embedding employment law principles and risk mitigation General knowledge... 
    Senior
    Work at office
    Remote work

    Clarity LLC

    Herndon, VA
    5 days ago
  • $311.9k - $356k

     ...Sr. Distinguished Applied Researcher Overview: At Capital One, we are creating trustworthy and reliable AI systems, changing banking for good. For years, Capital One has been leading the industry in using machine learning to create real-time, intelligent, automated... 
    Senior
    Full time
    Part time
    Local area
    Flexible hours

    Capital One

    McLean, VA
    4 days ago
  •  ...SOC Vulnerability Management ACAS Lead - Senior ECS is seeking a SOC Vulnerability Management ACAS Lead - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In this senior Task 3 Cybersecurity Operations... 
    Senior
    Contract work

    ECS

    Fairfax, VA
    2 days ago
  •  ...SOC Vulnerability Management Team Lead - Senior ECS is seeking a SOC Vulnerability Management Team Lead - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In this Task 3 role, the selected candidate... 
    Senior
    Contract work

    ECS

    Fairfax, VA
    2 days ago
  •  ...A leading federal contracting firm is seeking a Contracts Senior Principal to manage contract activities with U.S. Government agencies. This role requires over 15 years of experience in federal contracts management, with responsibilities including proposal preparation... 
    Senior
    Contract work
    Remote work

    SAIC

    Reston, VA
    3 days ago
  • $165k

     ...Virginia, is seeking a SME Cloud/Security Engineer. The candidate will ensure security across cloud and enterprise environments, lead vulnerability management, and implement Zero Trust architectures. Candidates should possess a Master’s degree and have significant experience... 
    Senior

    Yakshna Solutions

    Herndon, VA
    3 days ago
  • Our vision aims to empower our clients by actively leveraging our broad range of services. With our global presence, we have career opportunities all across the world which can lead to a unique, exciting and fulfilling career path. Pick your path today! To see what career...
    Senior
    Contract work
    Work experience placement
    Overseas

    Janus Global

    Reston, VA
    5 days ago
  •  ...Senior Research Assistant The Senior Research Assistant supports the research team and projects by coordinating study activities, collecting and analyzing data, maintaining documentation, and assisting with publications. This role typically involves greater responsibility... 
    Senior
    Full time
    Work at office
    Monday to Friday

    VIRGINIA THERAPY & FITNESS CENTER

    Reston, VA
    5 days ago
  • We are a Koniag Government Services company seeking a Senior Cyber Vulnerability Analyst with a TS/SCI clearance to support KITS and our government customer in Falls Church, VA. Competitive compensation and benefits include health, dental and vision insurance, 401K with... 
    Senior
    Local area
    Flexible hours

    Koniag Government Services, LLC

    Falls Church, VA
    3 days ago
  • $217.4k - $326k

     ...storage, and configuration concepts Container image management, vulnerability scanning, runtime security, and secure deployment practices...  ...management skills with the ability to influence across senior leaders, technical teams, federal customers, vendors, and delivery... 
    Senior
    Work at office
    Remote work
    Home office
    Flexible hours

    Workday

    Reston, VA
    1 day ago
  •  ...Position Title: Senior Software Systems Engineer (Embedded Flight Systems) Requisition ID: 1742 Position Location: Fairfax, VA Position Reports To: Director, Software Engineering Supervises Others: No At Trident Systems Space Electronic Systems (SES... 
    Senior
    Temporary work
    For contractors
    Local area

    Trident Systems

    Fairfax, VA
    5 days ago
  • Core Full Stack JAVA Developer This is a core full stack JAVA developer. Candidates must absolutely have JAVA, Springboot, Microservices, Redis and for the front end Angular or React, either will work, but hands on experience with front end Angular or React is a must...
    Senior

    Samprasoft

    Reston, VA
    1 day ago
  •  ...management and authorization processes to support informed risk decisions and system authorization outcomes. As a Senior Cyber Risk and Vulnerability Assessor , you will lead comprehensive security control assessments for complex, high‑impact, and enterprise systems... 
    Senior
    Temporary work
    Flexible hours

    Guidehouse

    McLean, VA
    5 days ago
  • $262.5k - $299.6k

    Applied Researcher II Overview At Capital One, we are creating trustworthy and reliable AI systems, changing banking for good. For...  ...AI Safety discourse, with the ability to document technical vulnerabilities and their direct impact on model privacy, alignment, and organizational... 
    Full time
    Part time
    Local area
    Flexible hours

    Capital One National Association

    Mc Lean, VA
    2 days ago
  • $209k - $238.5k

     ...Overview Senior Manager, Cyber Threat Researcher, Cyber Intelligence (Remote Eligible) The mission of Capital One’s Cyber Intelligence service is to leverage cyber threat intelligence for good. The team’s mission is to counter, disrupt and mitigate cyber adversaries... 
    Senior
    Full time
    Part time
    H1b
    Local area
    Remote work

    Capital One

    McLean, VA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Embedded Vulnerability Researcher. Be the first to apply!