Clarity Logo

Clarity

Sr. Principal Reverse Engineering/Vulnerability Research Engineer

Posted 21 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in USA
Senior level
Remote
Hiring Remotely in USA
Senior level
Conduct vulnerability research and reverse engineering across diverse systems. Perform static and dynamic analysis using disassemblers, debuggers, and fuzzers; develop exploits; document and communicate findings; and mentor security researchers. The role requires expertise in C and assembly, Linux internals, exploitation techniques, Android and Chrome vulnerability research, and the ability to obtain and maintain a TS/SCI clearance.
The summary above was generated by AI

Clarity Innovations is a trusted national security partner, dedicated to safeguarding our nation’s interests and delivering innovative solutions that empower the Intelligence Community (IC) and Department of Defense (DoD) to transform data into actionable intelligence, ensuring mission success in an evolving world.

Our mission-first software and data engineering platform modernizes data operations, utilizing advanced workflows, CI/CD, and secure DevSecOps practices. We focus on challenges in Information Warfare, Cyber Operations, Operational Security, and Data Structuring, enabling end-to-end solutions that drive operational impact.

We are committed to delivering cutting-edge tools and capabilities that address the most complex national security challenges, empowering our partners to stay ahead of emerging threats and ensuring the success of their critical missions. At Clarity, we are people-focused and set on being a destination employer for top talent, offering an environment where innovation thrives, careers grow, and individuals are valued. Join us as we continue to lead innovation and tackle the most pressing challenges in national security.

Position Summary

As a member of the Security Research team, you will imagine weaknesses in multiple types of systems and then find, demonstrate/document, and exploit those weaknesses. You will be joining a team of mature and extremely competent Security Researchers to breakdown and fully understand how a host of different systems function. You will need to leverage extensive experience performing static and dynamic analysis and must be familiar with multiple classes of vulnerabilities. Additionally, you must be extremely comfortable communicating with team members, technical partners, and non-technical partners alike. The ideal candidate will be comfortable and confident operating at the early phases of a vulnerability research project and have the mettle to see the project through to multiple phases and iterations.

Responsibilities

  • Perform vulnerability research and reverse engineering for customer tasks
  • Perform static and dynamic analysis by applying research tools such as disassemblers, debuggers, and fuzzers
  • Perform exploit development leveraging discovered vulnerabilities
  • Communicate security research findings internally and, when and where appropriate, externally Mentor fellow security researchers

Minimum Qualifications

  • Must be able to obtain and maintain a TS/SCI security clearance (note, only US Citizens are eligible for security clearances)
  • Bachelor's degree in Computer Engineering, Computer Science, Software Engineering, or a related technical discipline and 11  years of professional experience
  • Experience participating in CTFs, hackathons, or other cyber competitions
  • Experience with Ghidra, Binary Ninja, IDA or other reverse engineering/disassembler tools
  • Experience working in Linux fundamentals (understanding sockets, file descriptors, networking, iptables, file systems, kernel, etc.)
  • Ability to read and write C and assembly languages as needed (ARM, MIPS, x86_64)
  • Programming fundamentals; particularly with networking, data structures, and data models
  • Understanding of exploitation techniques such as leveraging arbitrary read-write primitives, shellcoding, and return-oriented programming / jump-oriented programming
  • Proven track record of exploit creation targeting Android operating systems and Chrome web browsers

Preferred Experience

  • Currently possess a Top Secret security clearance
  • OS and kernel reverse engineering
  • Understanding of fuzzers such as AFL++ or libfuzzer
  • Understanding of common exploit mitigation mechanisms such as SELinux, Seccomp, ASLR, and CFI.
  • Strong understanding of dynamic analysis with gdb/gdbserver and similar tools
  • Basic understanding of processor tool chains and the Android NDK
  • Understanding of emulation using Qemu or Unicorn for running code in a non-native environment
  • Experience identifying 0-days and vulnerabilities

Salary Range: $133,000 - $315,000

We are an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.

Similar Jobs

5 Minutes Ago
Remote or Hybrid
111K-169K Annually
Entry level
111K-169K Annually
Entry level
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Strategic Account Executive responsible for selling identity security solutions to Fortune 500 customers. Owns the full sales cycle, including prospecting, discovery, demonstrations, RFPs, negotiations, forecasting, and closing. Develops territory and account plans, builds partner relationships, leads virtual sales teams, collaborates with marketing and technical resources, maintains Salesforce accuracy, and drives pipeline growth and quota attainment.
Top Skills: ClariHighspotIdentity SecurityMicrosoftOktaSalesforceSaviynt
9 Minutes Ago
In-Office or Remote
167K-204K Annually
Senior level
167K-204K Annually
Senior level
Fintech • Real Estate • PropTech
Develop and maintain scalable, resilient web applications using React, Java, and PostgreSQL. Lead significant engineering projects, balance infrastructure investments with pragmatic solutions, collaborate with technical and non-technical stakeholders, mentor engineers, and support reliable production systems through possible on-call participation.
Top Skills: JavaPostgresReactTwilio
9 Minutes Ago
Remote
Florida, USA
Entry level
Entry level
Fintech • Real Estate • PropTech
Conduct home showings, host open houses, and attend inspections as an independent contractor. Set your own schedule and workload while serving customers throughout Seminole County. The role requires a state real estate license, exclusive affiliation with Redfin, reliable transportation, and the ability to use a smartphone, laptop, GPS, and local MLS resources. No transaction closings or sales contracts are required.
Top Skills: GpsMls

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account