VulnCheck Logo

VulnCheck

Senior Exploit Developer (United States)

Posted 13 Days Ago
Easy Apply
Remote
Hiring Remotely in United States
Senior level
Easy Apply
Remote
Hiring Remotely in United States
Senior level
Seeking a Senior Exploit Developer to reverse engineer, write exploits for vulnerabilities, and develop detection mechanisms for initial access intelligence.
The summary above was generated by AI

Company Overview

VulnCheck delivers next-generation exploit and vulnerability intelligence solutions for enterprise, government, and product teams to prevent large-scale remote code execution events with better, faster exploit data, massive-scale real-time monitoring and predictively built detection artifacts. VulnCheck’s 300M+ unique data points from 500+ sources help vulnerability management and response teams outpace adversaries - autonomously. VulnCheck is an RSAC Innovation Sandbox finalist and a Black Hat Startup Spotlight finalist.

Job Summary

VulnCheck is looking for a Senior Exploit Developer with a background in reverse engineering and exploit development. This role is on our Initial Access Intelligence team, which delivers exploits and related artifacts designed to give VulnCheck customers visibility into exploitation from exposure through execution and detection. You’ll work with a seasoned team of hackers and threat researchers to help global enterprises, governments, and intelligence firms defend against emerging threats and get ahead of the attacker curve. 

While initial access vulnerabilities are our main focus area, you’ll also have the opportunity to work on a variety of local and other exploits, as well as our open-source go-exploit framework.

Location

This is a 100% remote role based in the United States, though we are primarily looking for candidates in Massachusetts, Maryland, and Texas.

Why Join VulnCheck?

VulnCheck stands behind its mission to influence how organizations worldwide understand, assess, and remediate security vulnerabilities - and to deliver intelligence-based solutions that change the world. 

You’ll be joining a collaborative, supportive environment that values intellectual curiosity, technical mastery, and personal growth. At VulnCheck, you’ll get to:

  • Leverage your expertise: Work on cutting-edge threat intelligence initiatives that matter, alongside top domain experts in the field.
  • Shape the industry: Influence how vulnerabilities are discovered, classified, scored, mapped, exploited, discussed, and remediated at scale for enterprise customers and for the entire cybersecurity industry.
  • Grow your impact: Collaborate with global partners, lead high-visibility projects, and drive standards across the security community.
  • Innovate and explore: Conduct novel vulnerability research and develop tools that highlight risk in unexpected places, sharing your findings with others to educate and inspire.

Key Responsibilities

  • Reverse engineering software to discover the root cause of both zero-day and n-day vulnerabilities
  • Writing original software exploits for initial access vulnerabilities using VulnCheck’s open-source go-exploit framework, including when there are no public PoCs or vulnerability details
  • Implementing detections (such as Suricata & Snort signatures, YARA rules, etc.) that accurately identify initial access vulnerabilities being exploited on the wire
  • Writing Attack Surface Management (ASM) queries (e.g., Shodan, Census, FOFA, & ZoomEye) to find vulnerable systems likely to be targeted
  • Contributing to technical blogs and/or conference talks (optional) on exploit development and attack trends

Required Qualifications

  • Prior experience with exploit development for RCE / initial access vulnerabilities (that do not require authentication to exploit)
  • Comfort with reverse engineering and patch diffing
  • Experience with Git-based project development 
  • Experience working on technical projects remotely, alone, and on small teams

Preferred Qualifications

  • Prior cybersecurity work experience (at a vendor or in government)
  • Ability to share example exploit code written
  • Some experience with programming / software development is helpful
  • Experience writing technical blogs and/or giving conference talks is a big plus

Benefits

  • Competitive compensation package.
  • Flexible work arrangements with the option to work remotely 100% of the time.
  • Dynamic work environment with opportunities for growth and advancement.
  • Access to continuous learning and development programs.

Ready to move from enabling the ecosystem to leading its evolution? Apply now and help us protect what matters most! 

Top Skills

Git
Snort
Suricata
Yara
HQ

VulnCheck Lexington, Massachusetts, USA Office

Lexington, Massachusetts, United States, 02420

Similar Jobs

53 Seconds Ago
In-Office or Remote
Seattle, WA, USA
163K-184K Annually
Senior level
163K-184K Annually
Senior level
Artificial Intelligence • Fintech • Information Technology • Logistics • Payments • Business Intelligence • Generative AI
The Senior Solutions Consultant provides technical expertise during the sales process, creating presentations, demonstrations, and materials to drive Coupa's revenue. This role requires strong experience in selling SaaS solutions and managing customer accounts, alongside delivering high-quality technical presentations.
Top Skills: AribaConcurCoupaIvaluaNetSuiteOracleSAP
2 Minutes Ago
Remote or Hybrid
United States
171K-318K Annually
Senior level
171K-318K Annually
Senior level
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
The Principal Product Manager will define and execute the product roadmap for the Data and AI Platform, collaborating with engineering and sales to develop AI-powered identity security solutions.
Top Skills: AIBig Data TechnologiesCloud-Based Software SolutionsIdentity And Access ManagementMlSnowflake
4 Minutes Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
Mid level
Mid level
Fintech • Mobile • Software • Financial Services
The Lending Senior Fraud Specialist conducts thorough fraud investigations, supports fraud-related tasks, and ensures compliance and collaboration across multiple product lines while safeguarding against financial losses.
Top Skills: Google Workspace

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account