Назад
Company hidden
4 дня назад

Vulnerability Researcher

Π€ΠΎΡ€ΠΌΠ°Ρ‚ Ρ€Π°Π±ΠΎΡ‚Ρ‹
onsite
Π’ΠΈΠΏ Ρ€Π°Π±ΠΎΡ‚Ρ‹
fulltime
Π“Ρ€Π΅ΠΉΠ΄
senior
Английский
b2
Π‘Ρ‚Ρ€Π°Π½Π°
Israel
Вакансия ΠΈΠ· списка Hirify.GlobalВакансия ΠΈΠ· Hirify Global, списка ΠΌΠ΅ΠΆΠ΄ΡƒΠ½Π°Ρ€ΠΎΠ΄Π½Ρ‹Ρ… tech-ΠΊΠΎΠΌΠΏΠ°Π½ΠΈΠΉ
Для мэтча ΠΈ ΠΎΡ‚ΠΊΠ»ΠΈΠΊΠ° Π½ΡƒΠΆΠ΅Π½ Plus

ΠœΡΡ‚Ρ‡ & Π‘ΠΎΠΏΡ€ΠΎΠ²ΠΎΠ΄

Для мэтча с этой вакансиСй Π½ΡƒΠΆΠ΅Π½ Plus

ОписаниС вакансии

ВСкст:
/
TL;DR
Vulnerability Researcher (Offensive Security): Investigating modern systems, protocols, and architectures to uncover novel vulnerabilities and exploitation techniques with an accent on reverse engineering, first-principles analysis, and exploitability. Focus on developing proof-of-concept exploits, owning research from hypotheses through disclosure or publication, and advancing identity security through original research and CVEs.

Location: Tel Aviv, Israel; on-site

Company

hirify.global is building an AI-native Identity Operating System for enterprise identity and access management, combining AI connectors, a live identity graph, and AI agents for identity lifecycle governance.

What you will do

  • Research flawed assumptions, implementation gaps, novel vulnerability classes, and exploitation techniques in modern systems.
  • Reverse-engineer systems, protocols, and architectures to understand their implementation-level behavior.
  • Develop hypotheses into working proof-of-concept exploits that demonstrate real-world risk.
  • Own research threads end-to-end, from exploration and experimentation through responsible disclosure or publication.
  • Connect relevant findings to hirify.global’s understanding of identity attack surfaces across human and non-human identities.
  • Advance the security community through original research, CVEs, disclosures, and technical thought leadership.

Requirements

  • 6+ years of hands-on experience in vulnerability research, reverse engineering, or offensive security.
  • Proven ability to find non-trivial flaws and understand the underlying systems, protocols, and architectures.
  • First-principles approach focused on actual system behavior rather than documentation or intended design.
  • Ability to identify overlooked assumptions, untested edge cases, and implementation failure modes.
  • Strong hands-on expertise turning research and theories into working exploit chains and proof-of-concept demonstrations.
  • Track record of significant original discoveries, such as published CVEs, novel vulnerability classes, or new exploitation techniques.

Nice to have

  • Original research presented at Black Hat, DEF CON, OffensiveCon, Hexacon, or a comparable security conference.
  • Significant CVEs rated High or Critical by CVSS.

Culture & Benefits

  • Freedom to pursue research directions wherever the evidence leads.
  • Access to tools and resources supporting deep technical investigation.
  • Opportunities to publish research and build technical authority in the security community.
  • Research can contribute directly to hirify.global’s platform or stand as independent original discovery.

Π‘ΡƒΠ΄ΡŒΡ‚Π΅ остороТны: Ссли Ρ€Π°Π±ΠΎΡ‚ΠΎΠ΄Π°Ρ‚Π΅Π»ΡŒ просит Π²ΠΎΠΉΡ‚ΠΈ Π² ΠΈΡ… систСму, ΠΈΡΠΏΠΎΠ»ΡŒΠ·ΡƒΡ iCloud/Google, ΠΏΡ€ΠΈΡΠ»Π°Ρ‚ΡŒ ΠΊΠΎΠ΄/ΠΏΠ°Ρ€ΠΎΠ»ΡŒ, Π·Π°ΠΏΡƒΡΡ‚ΠΈΡ‚ΡŒ ΠΊΠΎΠ΄/ПО, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡ‚Π΅ этого - это мошСнники. ΠžΠ±ΡΠ·Π°Ρ‚Π΅Π»ΡŒΠ½ΠΎ ΠΆΠΌΠΈΡ‚Π΅ "ΠŸΠΎΠΆΠ°Π»ΠΎΠ²Π°Ρ‚ΡŒΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡˆΠΈΡ‚Π΅ Π² ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΡƒ. ΠŸΠΎΠ΄Ρ€ΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β†’