Draper · 1 day ago
Senior Offensive Threat Researcher
Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. They are seeking a Senior Offensive Threat Researcher to develop tailored solutions for the Department of Defense and Intelligence Community, focusing on addressing national security challenges through innovative cyber security practices.
Defense & Space
Responsibilities
Assess hardware and software for security vulnerabilities using a breadth of technologies and techniques
Develop software that meets behavior and security requirements for tailored applications
Integrate software capabilities with other tasks or groups to improve performance or behavior requirements
Create new tools and systems to detect and exploit vulnerabilities and system weaknesses
Document nominal application and system functionality, in addition to implemented changes
Drive solutions to complex problems with limited direction – contribute to requirements development, propose ways forward, and adapt appropriately to changes in requirements
Provides insight and suggest design modifications based on analysis outcomes, and to apply analysis techniques across a range of technical disciplines
Identifies program/system-level technical risks and develop and execute mitigation strategies
Actively mentor less experienced engineers and provide thoughtful, constructive feedback
Curiosity-driven approach to solving complex, customer-driven problems as part of a multi-disciplinary team
Collaborate and communicate effectively and openly with multi-disciplinary program team members, program leadership, and non-technical personnel
Be a team player able to work in a fast-paced environment with the ability to balance multiple competing tasks and demands
Qualification
Required
5-10 years experience in Cybersecurity or related field is required
Proficiency with static and dynamic analysis techniques for forensic analysis and anomaly detection
Proficiency in techniques that prevent reverse engineering and employ obfuscation or diversification
Experience conducting in-depth technical threat analysis and research
Hands-on proficiency with forensic analysis tools such as: FTK Imager, X-Ways, Autopsy, Volatility
Proficiency in identifying persistence mechanisms, hidden processes, and malicious host-based and network-based activity
Proficiency in capturing and analyzing memory dumps, network logs, crash reports, and runtime logs from OS and hypervisor environments
Proficiency with modern program analysis methodologies and techniques
Reverse-engineering assessment techniques for software, firmware and/or embedded systems
Hands-on proficiency with reverse engineering tooling such as: Ghidra, IDA, GDB, RR
Familiarity with binary file and filesystem structures and formats
Familiarity with architectures and assembly: x86, ARM, Hexagon, PowerPC
Proficiency with core workings of operating systems (user mode, kernel mode, boot processes), particularly in Windows and GNU/Linux
Familiarity of network stack and internals
Proficiency with programming languages such as: C, C++, Python, Java
Familiarity with scripting languages such as: Bash, Powershell
Familiarity in development environments for GNU/Linux or Windows
Successful history in authoring technical proposals and documents
Leadership in advanced R&D initiatives, including government-funded projects
Leadership of critical programs with more than two full-time staff members
Proficient in teamwork and communication with diverse audiences
Applicants selected for this position must be required to obtain and maintain a government TS/SCI security clearance
Benefits
Draper supports many programs to improve work-life balance including workplace flexibility, employee clubs ranging from photography to yoga, health and finance workshops, off site social events and discounts to local museums and cultural activities.
Company
Draper
We Engineer Solutions for the Nation’s Toughest Problems As an independent nonprofit engineering innovation company, Draper provides engineering services directly to government, industry, and academia.
Funding
Current Stage
Late StageLeadership Team
Recent News
Business Journals
2024-03-28
2024-02-28
Company data provided by crunchbase