freehire launches on Product Hunt on 26 August.

Follow →

Cyber Security Researcher

Summary

Researcher performs security assessments, penetration testing, and vulnerability discovery on IoT, embedded systems, and software using reverse engineering and fuzzing tools.

The Security Researcher is responsible for conducting security research, vulnerability discovery, penetration testing, and security evaluations of IoT devices, embedded systems, networking equipment, and software applications. The role involves identifying security weaknesses, developing proof-of-concept demo, performing root cause analysis, and contributing to product security certifications and compliance assessments.

Key Responsibilities:

  • Conduct security research on IoT devices, embedded systems, networking equipment, mobile devices, cloud services, and software platforms.

  • Perform security assessments and penetration testing using black-box, grey-box, and white-box methodologies.

  • Discover, analyse, and validate security vulnerabilities through reverse engineering, fuzzing, protocol analysis, and proof-of-concept development.

  • Develop testing methodologies, tools, and automation to improve security assessment capabilities.

  • Prepare technical reports and communicate findings to clients, vendors, and stakeholders.

Minimum Requirements:

  • Basic understanding of networking, operating systems, and common security concepts.

  • Experience with security testing, reverse engineering, vulnerability analysis, Capture-The-Flag (CTF) competitions, bug bounty programs, academic research, or personal security projects.

  • Familiarity with security assessment tools such as Burp Suite, Wireshark, Nmap, Ghidra, Binwalk, Frida, IDA Pro, or equivalent.

  • Ability to analyse technical problems and independently investigate security issues.

  • Ability to prepare clear and concise technical documentation and reports.

  • Ability to communicate technical findings to both technical and non-technical stakeholders.

Desirable Requirements:

  • Experience discovering, validating, or responsibly disclosing security vulnerabilities.

  • Experience developing proof-of-concept demonstrations or security research tooling.

  • Experience participating in bug bounty programs, security research projects, or security competitions.

  • Experience assessing IoT devices, embedded systems, networking equipment, mobile devices, or cloud-connected products.

  • Familiarity with firmware extraction, firmware analysis, and reverse engineering techniques.

  • Knowledge of embedded architectures such as ARM, MIPS, or RISC-V.

  • Experience performing web application, API, mobile application, wireless, network, or firmware security assessments.

  • Experience with fuzzing, protocol analysis, threat modelling, or proof-of-concept development.

  • CVE assignments, vulnerability acknowledgements, technical publications, conference presentations, or open-source security contributions.

Why Join Us?

  • Work on cutting-edge security research, IoT security assessments, and emerging cybersecurity certification programmes.

  • Collaborate with industry experts and government regulatory bodies.

  • Access to state-of-the-art security testing environments and tools.

  • Opportunities for professional development and certifications.

See also