Jobs · Analyst

Experienced Vulnerability Researcher

Breakpoint Research · Falls Church, VA · 2 wk ago
RemoteRemoteAnalystFull-time

Vulnerability research

We’re looking for experienced vulnerability researchers to join our team. Your responsibilities will include:

  • Mobile, operating systems, firmware, and embedded systems vulnerability research.
  • Reliable exploit development demonstrating real mission impact.
  • Low-level engineering for the toughest customer problems.

How We Work

VRED is a tough game. We are relentless in our curiosity, unafraid to try new things, and we own our failures alongside our wins. We act with honesty, integrity, humility, and kindness. Our capabilities come from a culture of deep collaboration, and we strive to maintain it.

About You

We're particularly interested in hearing from researchers who've taken their work through to deployable products or capabilities, though this isn't a requirement. You should be comfortable working at the low level (kernels, firmware, embedded systems, etc.), with strong reverse engineering skills and a fluent toolkit including C/C++, assembly (ARM/AArch64), fuzzing, static and dynamic analysis, exploit primitive development, and modern mitigation bypass. You take pride in the quality of your work and encourage others to do the same. You approach VR as a team sport, sharing knowledge, asking questions, and supporting each other.

While much of the best work in this field can’t be discussed publicly, a track record without public artifacts is not an obstacle for us. We welcome candidates with non-traditional backgrounds.

Nice to have:

  • Experience leading technical projects or mentoring researchers.
  • Depth in platforms relevant to our work: mobile (Android/iOS), browsers, hypervisors, embedded RTOS, kernel internals.
  • Public research, CVEs, or conference talks.

Where you'll work

Remote, globally. We consider applicants from any country and any background. The team works in English, so you'll need to be fluent. We have a particular interest in UK-based candidates; holding or being eligible for Developed Vetting is a positive but not a requirement.

What We Offer

  • Salaries are benchmarked for each local market we hire from — whether UK, US, Australia, or elsewhere.
  • 25 days annual leave plus your local public, bank, or federal holidays.
  • Bonus scheme — when the business does well, everyone shares in it.
  • Training and conference budgets — go to the cons that matter, wherever they’re happening.
  • Employee assistance program giving you and your immediate family confidential access to counseling, mental health support, and financial and legal advice.
  • Regular get-togethers — seasonal parties, technical workshops, and an annual offsite that brings the whole team into one place.
  • Depending on where you're based:
    • UK: Annual leave rises by 1 day per year up to 28 days.
    • Australia: Minimum 12% superannuation.

Equal Opportunity Employer

We celebrate diversity and are committed to creating an inclusive environment for all employees. We aim to respond to all candidates via email within a week of their application. Please note that emails may go to your spam or junk folder.

Similar jobs

Vulnerability Researcher

The Applied Research Laboratory at Penn State UniversityReston, VA· 1 mo ago
Information Technology$127k–$277k/yrapply on psu.wd1.myworkdayjobs.com

Vulnerability Researcher

Two Six TechnologiesDayton, OH· 1 mo ago
Information Technology$84k–$127k/yrapply on app.greenhouse.io

Vulnerability Researcher

Penn State UniversityReston, VA· 1 mo ago
Information Technology$127k–$277k/yrapply on psu.wd1.myworkdayjobs.com