Senior Security Researcher

🔥 15 minutes ago

🇺🇸 United States – Remote

💵 $120k - $150k / year

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

info
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Cobalt

Cobalt

201 - 500 employees

🔐 Security

☁️ SaaS

Security • SaaS

Cobalt is a leading provider of offensive security services, specializing in modern pentesting solutions. They offer a comprehensive platform that includes dynamic application security testing, network security, and cloud security. Known as the pioneers of Pentest as a Service (PtaaS), Cobalt allows organizations to efficiently scale their security efforts with on-demand access to a pool of expert pentesters. Their services are designed to help businesses identify risks and secure their infrastructure efficiently while ensuring compliance with industry standards. Cobalt's innovative approach and proven experience help companies reduce security risks and improve their overall security posture.

📋 Description

• Conduct deep-dive vulnerability research, reverse engineering, and threat analysis across Web/API platforms, mobile operating systems, low-level OS stacks, cloud infrastructures, and critical enterprise software systems • Identify high-impact vulnerabilities and novel attack surfaces; develop proof-of-concept exploit techniques to demonstrate real-world risk • Research emerging threat vectors and maintain testing guidelines across cloud environments, APIs, mobile platforms, and AI/ML technologies • Collaborate with Product and Engineering teams to turn research findings into scalable security assessment capabilities, automated testing workflows, and platform intelligence • Partner with engineering, product, and operations teams to translate security research into customer value and platform improvements • Provide technical guidance, benchmarking, mentorship, and quality assurance for junior researchers and community members • Represent Cobalt through technical blog posts, advisories, whitepapers, and conference presentations

🎯 Requirements

• 5+ years of dedicated experience in offensive security, vulnerability research, penetration testing, red teaming, or reverse engineering, or 3+ years with a proven track record of published research, CVE disclosures, or open-source security tooling • Expertise in modern application stacks including Node.js, Go, Python, Java, and Rust • Knowledge of Linux, Windows, and macOS internals and operating system security fundamentals • Experience with containerized cloud environments including Docker, Kubernetes, AWS, and GCP • Ability to analyze binary, source code, or bytecode and construct reliable proof-of-concept exploits • Experience with complex vulnerability classes such as memory corruption, deserialization, auth bypass, SSRF/RCE, and cloud privilege escalation • Proficiency in Python, Go, Bash, or Rust for custom research tools, scripts, and testing utilities • Ability to document complex technical findings as actionable remediation guidance • Must reside in the United States; EST or CST time-zone alignment preferred • Nice-to-have: familiarity with AI/ML security concepts, LLM risk models, and novel software integrations • Nice-to-have: experience with Ghidra, IDA Pro, Binary Ninja, or GDB/LLDB • Nice-to-have: published CVEs, security advisories, or bug bounty recognition • Nice-to-have: active OSCP, OSEP, OSWE, OSEE, GXPN, or AWS Certified Security Specialist certifications • Nice-to-have: open-source security tooling or research contributions

🏖️ Benefits

• Earn competitive compensation and an attractive equity plan • Save for the future with a 401(k) program (US) or pension (EU) • Benefit from medical, dental, vision and life insurance (US) or statutory healthcare (EU) • Wellness stipend • Work-from-home equipment and wifi stipend • Learning and development stipend • Flexible, generous paid time off • Paid parental leave • Ongoing mentorship opportunities

Apply Now

Similar Jobs

🔥 32 minutes ago

US Foods

10,000+ employees

📦 Logistics

🍽️ Food & Beverage

🛍️ eCommerce

Business Information Security Lead securing US Foods’ digital technology value stream. Managing cybersecurity risk, compliance, vulnerabilities, and security governance for a leading foodservice distributor.

🔥 34 minutes ago

Fifth Third Bank

10,000+ employees

🛡️ Insurance

💼 Consulting

📦 Logistics

Lead vulnerability management engineer reducing Fifth Third Bank’s cyber attack surface across infrastructure, endpoints, and applications. Driving remediation, risk analysis, dashboards, and security collaboration across on-premises and cloud environments.

🔥 44 minutes ago

KPA

201 - 500

🚘 Automotive

🏗️ Construction

📦 Logistics

Senior cloud security engineer securing KPA's workplace safety software infrastructure across cloud, identity, endpoint, and DevOps environments. Leading security automation, incident response, compliance, and technical modernization initiatives.

🔥 1 hour ago

Zeta Global

1001 - 5000

💼 Consulting

📦 Logistics

✈️ Travel

Senior Product Manager owning application security for Zeta Global’s AI-powered marketing cloud. Driving AppSec strategy, AI-assisted threat modeling, secure SDLC tooling, risk governance, and remediation at enterprise scale.

🔥 1 hour ago

Habitat Health

1 - 10

🏥 Healthcare

⚕️ Healthcare Insurance

🧘 Wellness

Information Security Manager securing Habitat Health’s integrated PACE healthcare services. Leading HIPAA/NIST controls, incident response, audits, risk management, and access governance for California-based remote operations.