Clarity Logo

Clarity

Sr. Principal Reverse Engineering/Vulnerability Research Engineer

Posted 21 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in USA
Senior level
Remote
Hiring Remotely in USA
Senior level
Conduct vulnerability research and reverse engineering across diverse systems. Perform static and dynamic analysis using disassemblers, debuggers, and fuzzers; develop exploits; document and communicate findings; and mentor security researchers. The role requires expertise in C and assembly, Linux internals, exploitation techniques, Android and Chrome vulnerability research, and the ability to obtain and maintain a TS/SCI clearance.
The summary above was generated by AI

Clarity Innovations is a trusted national security partner, dedicated to safeguarding our nation’s interests and delivering innovative solutions that empower the Intelligence Community (IC) and Department of Defense (DoD) to transform data into actionable intelligence, ensuring mission success in an evolving world.

Our mission-first software and data engineering platform modernizes data operations, utilizing advanced workflows, CI/CD, and secure DevSecOps practices. We focus on challenges in Information Warfare, Cyber Operations, Operational Security, and Data Structuring, enabling end-to-end solutions that drive operational impact.

We are committed to delivering cutting-edge tools and capabilities that address the most complex national security challenges, empowering our partners to stay ahead of emerging threats and ensuring the success of their critical missions. At Clarity, we are people-focused and set on being a destination employer for top talent, offering an environment where innovation thrives, careers grow, and individuals are valued. Join us as we continue to lead innovation and tackle the most pressing challenges in national security.

Position Summary

As a member of the Security Research team, you will imagine weaknesses in multiple types of systems and then find, demonstrate/document, and exploit those weaknesses. You will be joining a team of mature and extremely competent Security Researchers to breakdown and fully understand how a host of different systems function. You will need to leverage extensive experience performing static and dynamic analysis and must be familiar with multiple classes of vulnerabilities. Additionally, you must be extremely comfortable communicating with team members, technical partners, and non-technical partners alike. The ideal candidate will be comfortable and confident operating at the early phases of a vulnerability research project and have the mettle to see the project through to multiple phases and iterations.

Responsibilities

  • Perform vulnerability research and reverse engineering for customer tasks
  • Perform static and dynamic analysis by applying research tools such as disassemblers, debuggers, and fuzzers
  • Perform exploit development leveraging discovered vulnerabilities
  • Communicate security research findings internally and, when and where appropriate, externally Mentor fellow security researchers

Minimum Qualifications

  • Must be able to obtain and maintain a TS/SCI security clearance (note, only US Citizens are eligible for security clearances)
  • Bachelor's degree in Computer Engineering, Computer Science, Software Engineering, or a related technical discipline and 11  years of professional experience
  • Experience participating in CTFs, hackathons, or other cyber competitions
  • Experience with Ghidra, Binary Ninja, IDA or other reverse engineering/disassembler tools
  • Experience working in Linux fundamentals (understanding sockets, file descriptors, networking, iptables, file systems, kernel, etc.)
  • Ability to read and write C and assembly languages as needed (ARM, MIPS, x86_64)
  • Programming fundamentals; particularly with networking, data structures, and data models
  • Understanding of exploitation techniques such as leveraging arbitrary read-write primitives, shellcoding, and return-oriented programming / jump-oriented programming
  • Proven track record of exploit creation targeting Android operating systems and Chrome web browsers

Preferred Experience

  • Currently possess a Top Secret security clearance
  • OS and kernel reverse engineering
  • Understanding of fuzzers such as AFL++ or libfuzzer
  • Understanding of common exploit mitigation mechanisms such as SELinux, Seccomp, ASLR, and CFI.
  • Strong understanding of dynamic analysis with gdb/gdbserver and similar tools
  • Basic understanding of processor tool chains and the Android NDK
  • Understanding of emulation using Qemu or Unicorn for running code in a non-native environment
  • Experience identifying 0-days and vulnerabilities

Salary Range: $133,000 - $315,000

We are an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.

Similar Jobs

3 Minutes Ago
Remote or Hybrid
169K-281K Annually
Senior level
169K-281K Annually
Senior level
Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Serve as a trusted technical advisor to telecommunications carriers and enterprise customers. Design carrier-grade messaging, voice, identity, and fraud-prevention solutions; translate customer needs into scalable architectures and product enhancements; lead technical workshops and architecture reviews; support RFI/RFP responses; and collaborate with Product, Engineering, Sales, Business Development, and Customer Success teams to drive adoption and successful implementations.
Top Skills: 3GppAtisAWSCarrier Network ArchitectureCi/CdCloud-Native ArchitecturesContainerized ApplicationsDistributed SystemsDockerGsmaIetfInfrastructure AutomationJSONKubernetesMessaging EcosystemsMicroservicesOn-Premises EnvironmentsPrivate CloudPublic CloudRest ApisSignaling FrameworksSipStir/ShakenTelecommunications ProtocolsVoice Communications
4 Minutes Ago
In-Office or Remote
170K-230K Annually
Expert/Leader
170K-230K Annually
Expert/Leader
Insurance • Legal Tech • Social Impact
Lead the launch and operation of Atticus’s personal injury practice in California. Represent severely injured clients through intake, negotiation, mediation, and trial; determine case selection and strategy; and oversee legal operations. Manage attorney and non-attorney staff across intake, case management, and support. Collaborate with marketing, product, engineering, and company leadership to develop scalable processes, client support protocols, branding, and practice operations.
6 Minutes Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
Mid level
Mid level
Legal Tech • Software • Generative AI
Own end-to-end field marketing programs, including customer events, executive briefings, lunch-and-learns, regional ABM campaigns, and localized messaging. Manage budgets, vendors, logistics, content, and cross-functional partnerships with sales, customer success, content, and product marketing. Measure pipeline influence, engagement, and account penetration, using performance insights to improve future programs and generate qualified pipeline. Travel 40–50% of the time.

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account