Clarity Logo

Clarity

Sr. Principal Reverse Engineering/Vulnerability Research Engineer

Posted 19 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in USA
Senior level
Remote
Hiring Remotely in USA
Senior level
Conduct vulnerability research and reverse engineering across diverse systems. Perform static and dynamic analysis using disassemblers, debuggers, and fuzzers; develop exploits; document and communicate findings; and mentor security researchers. The role requires expertise in C and assembly, Linux internals, exploitation techniques, Android and Chrome vulnerability research, and the ability to obtain and maintain a TS/SCI clearance.
The summary above was generated by AI

Clarity Innovations is a trusted national security partner, dedicated to safeguarding our nation’s interests and delivering innovative solutions that empower the Intelligence Community (IC) and Department of Defense (DoD) to transform data into actionable intelligence, ensuring mission success in an evolving world.

Our mission-first software and data engineering platform modernizes data operations, utilizing advanced workflows, CI/CD, and secure DevSecOps practices. We focus on challenges in Information Warfare, Cyber Operations, Operational Security, and Data Structuring, enabling end-to-end solutions that drive operational impact.

We are committed to delivering cutting-edge tools and capabilities that address the most complex national security challenges, empowering our partners to stay ahead of emerging threats and ensuring the success of their critical missions. At Clarity, we are people-focused and set on being a destination employer for top talent, offering an environment where innovation thrives, careers grow, and individuals are valued. Join us as we continue to lead innovation and tackle the most pressing challenges in national security.

Position Summary

As a member of the Security Research team, you will imagine weaknesses in multiple types of systems and then find, demonstrate/document, and exploit those weaknesses. You will be joining a team of mature and extremely competent Security Researchers to breakdown and fully understand how a host of different systems function. You will need to leverage extensive experience performing static and dynamic analysis and must be familiar with multiple classes of vulnerabilities. Additionally, you must be extremely comfortable communicating with team members, technical partners, and non-technical partners alike. The ideal candidate will be comfortable and confident operating at the early phases of a vulnerability research project and have the mettle to see the project through to multiple phases and iterations.

Responsibilities

  • Perform vulnerability research and reverse engineering for customer tasks
  • Perform static and dynamic analysis by applying research tools such as disassemblers, debuggers, and fuzzers
  • Perform exploit development leveraging discovered vulnerabilities
  • Communicate security research findings internally and, when and where appropriate, externally Mentor fellow security researchers

Minimum Qualifications

  • Must be able to obtain and maintain a TS/SCI security clearance (note, only US Citizens are eligible for security clearances)
  • Bachelor's degree in Computer Engineering, Computer Science, Software Engineering, or a related technical discipline and 11  years of professional experience
  • Experience participating in CTFs, hackathons, or other cyber competitions
  • Experience with Ghidra, Binary Ninja, IDA or other reverse engineering/disassembler tools
  • Experience working in Linux fundamentals (understanding sockets, file descriptors, networking, iptables, file systems, kernel, etc.)
  • Ability to read and write C and assembly languages as needed (ARM, MIPS, x86_64)
  • Programming fundamentals; particularly with networking, data structures, and data models
  • Understanding of exploitation techniques such as leveraging arbitrary read-write primitives, shellcoding, and return-oriented programming / jump-oriented programming
  • Proven track record of exploit creation targeting Android operating systems and Chrome web browsers

Preferred Experience

  • Currently possess a Top Secret security clearance
  • OS and kernel reverse engineering
  • Understanding of fuzzers such as AFL++ or libfuzzer
  • Understanding of common exploit mitigation mechanisms such as SELinux, Seccomp, ASLR, and CFI.
  • Strong understanding of dynamic analysis with gdb/gdbserver and similar tools
  • Basic understanding of processor tool chains and the Android NDK
  • Understanding of emulation using Qemu or Unicorn for running code in a non-native environment
  • Experience identifying 0-days and vulnerabilities

Salary Range: $133,000 - $315,000

We are an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.

Similar Jobs

10 Minutes Ago
Remote or Hybrid
California, USA
27K-41K Hourly
Junior
27K-41K Hourly
Junior
Fintech • Financial Services
Manages teller-line operations, schedules, customer service, compliance, risk controls, and issue resolution for a bank branch. Leads, coaches, and develops branch employees; allocates resources; supports hiring and talent development; interprets banking regulations and escalates concerns. The role also engages customers, refers dwelling-secured product inquiries to qualified team members, and maintains regulatory compliance under Loan Originator requirements.
12 Minutes Ago
Remote or Hybrid
United States
65K-81K Annually
Senior level
65K-81K Annually
Senior level
Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Oversee DHMO quality management and utilization management governance, regulatory committees, audit readiness, corrective action monitoring, compliance reporting, and quality improvement. Analyze operational, financial, regulatory, satisfaction, grievance, and performance data to identify risks and trends. Develop governance processes, policies, reporting frameworks, and documentation standards. Partner with cross-functional stakeholders and leadership to improve compliance, organizational performance, member experience, and provider outcomes.
Top Skills: ExcelMicrosoft PowerpointMicrosoft SharepointMicrosoft TeamsMicrosoft Word
4 Hours Ago
In-Office or Remote
145K-228K Annually
Senior level
145K-228K Annually
Senior level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Lead a global onboarding team for Atlassian's Teamwork Collection, driving early customer outcomes in the first 60–90 days through change management, success planning, technical guidance, risk mitigation, scaling onboarding programs, and cross-functional collaboration while maintaining operational excellence in Gainsight.
Top Skills: ConfluenceGainsightJIRASalesforceSuccess-AiTableau

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account