Draper Logo

Draper

Senior Offensive Threat Researcher

Reposted 16 Days Ago
Be an Early Applicant
In-Office
2 Locations
82K-220K Annually
Senior level
In-Office
2 Locations
82K-220K Annually
Senior level
The role involves assessing vulnerabilities in systems, developing secure software, creating detection tools, mentoring engineers, and collaborating across teams for complex problem-solving in cyber security.
The summary above was generated by AI

Overview:

Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. The 2,000+ employees of Draper tackle important national challenges with a promise of delivering successful and usable solutions. From military defense and space exploration to biomedical engineering, lives often depend on the solutions we provide. Our multidisciplinary teams of engineers and scientists work in a collaborative environment that inspires the cross-fertilization of ideas necessary for true innovation. For more information about Draper, visit www.draper.com.

Job Description Summary:

Draper’s Offensive Cyber Security Group is looking for dedicated individuals to develop tailored solutions to meet our DoD and IC Sponsor directives. Our organization's not-for-profit status ensures a capability-driven focus on the United States of America's national interests that allows us to address some of our Nation's most pressing challenges. Due to the variety of USG organizational needs, our technical efforts and opportunities vary from conventional cyber operations enablement tooling to embedded vulnerability research and exploit development on a wide range of devices and systems.

Job Description:

  • Assess hardware and software for security vulnerabilities using a breadth of technologies and techniques.

  • Develop software that meets behavior and security requirements for tailored applications.

  • Integrate software capabilities with other tasks or groups to improve performance or behavior requirements.

  • Create new tools and systems to detect and exploit vulnerabilities and system weaknesses.

  • Document nominal application and system functionality, in addition to implemented changes.

  • Drive solutions to complex problems with limited direction – contribute to requirements. development, propose ways forward, and adapt appropriately to changes in requirements.

  • Provides insight and suggest design modifications based on analysis outcomes, and to apply analysis techniques across a range of technical disciplines.

  • Identifies program/system-level technical risks and develop and execute mitigation strategies.

  • Actively mentor less experienced engineers and provide thoughtful, constructive feedback.

  • Curiosity-driven approach to solving complex, customer-driven problems as part of a multi-disciplinary team.

  • Collaborate and communicate effectively and openly with multi-disciplinary program team members, program leadership, and non-technical personnel.

  • Be a team player able to work in a fast-paced environment with the ability to balance multiple competing tasks and demands.

Experience
5-10 years experience in Cybersecurity or related field is required.

Additional Job Description:

Forensics and Anomaly Detection:

  • Proficiency with static and dynamic analysis techniques for forensic analysis and anomaly detection

  • Proficiency in techniques that prevent reverse engineering and employ obfuscation or diversification.

  • Experience conducting in-depth technical threat analysis and research

  • Hands-on proficiency with forensic analysis tools such as: FTK Imager, X-Ways, Autopsy, Volatility

  • Proficiency in identifying persistence mechanisms, hidden processes, and malicious host-based and network-based activity

  • Proficiency in capturing and analyzing memory dumps, network logs, crash reports, and runtime logs from OS and hypervisor environments.

Program Analysis, Reverse Engineering, and Vulnerability Research:

  • Proficiency with modern program analysis methodologies and techniques 

  • Reverse-engineering assessment techniques for software, firmware and/or embedded systems

  • Hands-on proficiency with reverse engineering tooling such as: Ghidra, IDA, GDB, RR

  • Familiarity with binary file and filesystem structures and formats

  • Familiarity with architectures and assembly: x86, ARM, Hexagon, PowerPC

  • Proficiency with core workings of operating systems (user mode, kernel mode, boot processes), particularly in Windows and GNU/Linux

  • Familiarity of network stack and internals

Languages and Development:

  • Proficiency with programming languages such as: C, C++, Python, Java

  • Familiarity with scripting languages such as: Bash, Powershell

  • Familiarity in development environments for GNU/Linux or Windows
     

Leadership and Business Development:

  • Successful history in authoring technical proposals and documents

  • Leadership in advanced R&D initiatives, including government-funded projects

  • Leadership of critical programs with more than two full-time staff members

  • Proficient in teamwork and communication with diverse audiences

Applicants selected for this position must be required to obtain and maintain a government TS/SCI security clearance.

Connect With Draper for Future Opportunities! If you don't find the right posting in our Career Opportunities, you may submit your resume for future consideration.

Job Location - City:

Cambridge

Job Location - State:

Massachusetts

Job Location - Postal Code:

02139-3563

The US base salary range for this full-time position is

$82,300.00 - $220,000.00

Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Union ranges will be in compliance with the collective bargaining agreement's approved rates by location and role. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.  Please note that the compensation details listed in US role postings reflect the base salary only, and does not include bonuses or benefits.

Our work is very important to us, but so is our life outside of work. Draper supports many programs to improve work-life balance including workplace flexibility, employee clubs ranging from photography to yoga, health and finance workshops, off site social events and discounts to local museums and cultural activities. If this specific job opportunity and the chance to work at a nationally renowned R&D innovation company appeals to you, apply now www.draper.com/careers.

Draper is committed to creating an inclusive environment. We understand the value of inclusivity and its impact on a high-performance culture. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, national origin, veteran status, or genetic information. Draper is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation, please contact [email protected].

Top Skills

Autopsy
Bash
C
C++
Ftk Imager
Gdb
Ghidra
Ida
Java
Powershell
Python
Rr
Volatility
X-Ways
HQ

Draper Cambridge, Massachusetts, USA Office

555 Technology Square, Cambridge, MA, United States, 02139

Similar Jobs

3 Hours Ago
Remote or Hybrid
United States
64K-80K Annually
Mid level
64K-80K Annually
Mid level
Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
The consultant assesses claimants' return-to-work potential, develops rehabilitation plans, and coordinates with employers and healthcare providers to support disability claim operations.
Top Skills: MS Office
3 Hours Ago
Remote or Hybrid
United States
164K-219K Annually
Senior level
164K-219K Annually
Senior level
Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
The role leads the ERP transformation to Workday, aligning technology with business needs, managing offshore teams, and overseeing data migration.
Top Skills: .NetAPIsAWSAzureAzure DevopsDatabricksGCPGithub CopilotJavaMicrosoft Azure StackOpenaiPeoplesoftWorkday
3 Hours Ago
Remote or Hybrid
United States
96K-175K Annually
Senior level
96K-175K Annually
Senior level
Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
The role involves leading enterprise transformation initiatives, optimizing processes with technology, building business cases, and ensuring sustainability through effective measurement and management.
Top Skills: AIData Driven Decision Making

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account