11 часов назад
Threat Researcher II (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Threat Researcher II (Cybersecurity): Researching vulnerabilities and developing, testing, and porting public exploit proof-of-concepts with an accent on threat intelligence, exploit frameworks, and offensive security research. Focus on building vulnerable labs, evaluating CVEs, integrating exploits into Metasploit and Nuclei, and contributing to open-source security projects.
Location: New Delhi, India; on-site
Company
develops an AI-driven platform that provides enterprises with quantified, real-time visibility into their cybersecurity posture.
What you will do
- Research vulnerabilities and evaluate publicly available exploits and proof-of-concepts.
- Use vulnerability and exploit intelligence feeds to identify CVEs with viable exploitation paths.
- Build and operate in-house vulnerable labs for testing exploit proof-of-concepts.
- Port exploits to frameworks such as Metasploit and Nuclei.
- Contribute exploit research to open-source security framework projects.
- Collaborate with Threat Research and Programme Management teams on emerging attacks and security trends.
Requirements
- M.Tech, B.Tech, B.E., or BCA in Computer Science, Information Technology, or a related field.
- Hands-on experience solving CTF challenges on Hack The Box, with at least one fully completed Pro Hacker rank challenge.
- Experience with Hack The Box Pro Labs.
- Practical knowledge of port scanners, vulnerability scanners, exploitation frameworks, and LLMs for vulnerability research.
- Familiarity with MITRE CVE/NVD, CWE, CAPEC, and ATT&CK frameworks.
- Ability to work independently with effective communication and interpersonal skills.
Nice to have
- OSCP, CPTS, or CRTO certification.
Culture & Benefits
- High-intensity, mission-driven environment focused on excellence and rigorous execution.
- Meaningful equity participation for employees.
- Unlimited leave policy.
- Medical insurance and wellness benefits.
- Growth and advancement opportunities in a Series C-funded company.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
15 часов назад
Senior Consultant, Offensive Security (Cybersecurity)
15 часов назад
InfoSec - Application & Cloud Security Engineer (L2)
41 минуту назад
Security Engineer (Cloud Security)
20 часов назад
Enterprise Software Engineer (AppOps Security Engineer) (Cybersecurity)
15 часов назад
AI Security Engineer - Infrastructure Cloud
CyArt
3 дня назад