Назад
Company hidden
5 часов назад

Offensive Cyber Research Engineer (Cybersecurity)

159 000 - 195 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Offensive Cyber Research Engineer (Cybersecurity): Architecting advanced attack path frameworks, offensive tooling, and adversary-emulation capabilities for U.S. and allied cyber operations with an accent on zero-day research, threat intelligence, and scalable automation. Focus on designing multi-domain attack paths, building production-grade security tools and ETL pipelines, and leading technical research for government customers.

Location: On-site in Arlington, Virginia; limited to U.S. citizens and must be eligible to obtain a U.S. Government security clearance.

Salary: $159,000–$195,000 base salary annually; estimated total compensation of $204,000–$263,000 annually.

Company

hirify.global industrializes offensive cyber operations for the United States and its allies, developing technologies intended to strengthen cyber deterrence and national security.

What you will do

  • Architect attack path frameworks that emulate advanced persistent threat behaviors, nation-state tactics, techniques, and procedures.
  • Research emerging adversary techniques, zero-day exploitation strategies, novel attack vectors, and develop proof-of-concept tools.
  • Build reusable production-grade components for credential harvesting, lateral movement, defense evasion, payload development, and automated adversary emulation.
  • Lead the design of ETL pipelines, standardized cyber-operation data schemas, graph-based analysis workflows, and large-scale data enrichment systems.
  • Set engineering standards, conduct code reviews, make technical decisions, and mentor offensive cyber engineers and researchers.
  • Collaborate with government customers, operational teams, data engineering, backend, and intelligence analysis teams to translate mission needs into technical priorities.

Requirements

  • 6–8 years of experience in threat research, offensive cyber operations, and software development.
  • Expertise in offensive security, red teaming, threat intelligence, MITRE ATT&CK, adversary simulation, operational security, and multi-stage attack chains.
  • Advanced programming and software architecture skills in Python and Golang.
  • Experience with Cobalt Strike, Metasploit, custom command-and-control frameworks, payloads, evasion, persistence, counter-forensics, and anti-analysis techniques.
  • Expert Docker and Kubernetes experience, plus graph queries and graph-based analysis using Neo4j or similar databases.
  • U.S. citizenship and eligibility to obtain a U.S. Government security clearance are required. A degree in computer science, software engineering, cybersecurity, or equivalent practical experience is required.

Nice to have

  • Government or military DNEA or EA operations experience and leadership of offensive cyber capability programs.
  • Advanced offensive security certifications such as OSCP, OSCE, OSEE, or GXPN.
  • Experience with AI/ML, malware analysis, reverse engineering, exploit development, vulnerability research, and multi-domain intelligence analysis.
  • Publications, conference presentations, or open-source contributions in offensive security.
  • Experience with cloud security, wireless security, IoT protocols, forensics, incident response, or government acquisition processes.

Culture & Benefits

  • In-office work supporting U.S. and allied cyber missions.
  • Medical, dental, vision, life, AD&D, and disability coverage options.
  • Paid parental leave for eligible full-time employees.
  • Paid holidays and flexible paid time off.
  • 401(k) options, HSA, FSA, and dependent-care FSA.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →