Experienced Vulnerability Researcher in Cheltenham

Experienced Vulnerability Researcher in Cheltenham

Cheltenham Full-Time 43200 - 72000 £ / year (est.) No working from home possible
C

At a Glance

  • Tasks: Join a team of experts to tackle complex cyber security challenges and develop innovative solutions.
  • Company: CoreTech delivers bespoke products and research for top-tier cyber security clients in the UK.
  • Benefits: Enjoy 25 days holiday, training opportunities, and health benefits including private medical care.
  • Other info: Quick interview process; British citizenship and security clearance needed.
  • Why this job: Make a real-world impact while working in a supportive, friendly environment with talented peers.
  • Qualifications: Experience in reverse engineering, ethical hacking, and familiarity with various programming languages required.

The predicted salary is between 43200 - 72000 £ per year.

Working for CoreTech as a vulnerability researcher will see you join a world-class team of developers and vulnerability researchers whose mission is to deliver bespoke products and research into the most interesting cyber security clients in the UK.
CoreTech is looking for candidates with a bug hunting, ethical hacking or reverse engineering background to join our vulnerability research team. We deliver bespoke and innovative solutions which enable the operational needs of our clients. Our team is highly experienced, deeply technical and has a rich history of blending rapid prototyping, security research and software engineering skills.
Our Research team use Ghidra as our tool of choice for reverse engineering and produce proof of concepts in the most suitable language for the project which could be C, C++, Python or assembly code. The role requires an inquisitive mindset and enthusiasm for solving difficult research tasks.

Typical tasks might include

  • Developing a deep understanding of how Android mobile devices work, from applications to kernel.
  • Reverse engineering proprietary binaries using your knowledge of ARM, ARM64, and MIPS.
  • Auditing C and C++ source code, spotting security flaws that others haven’t.
  • Growing the team’s capabilities by developing novel tools and techniques to enable cutting-edge vulnerability research.
  • Working in tandem with other hugely talented vulnerability researchers and software engineers.
  • Designing and producing niche solutions with immediate real-world impact.

An ideal candidate will

  • Have a passion for cyber security.
  • Thrive on solving difficult and complex problems.
  • Have a genuine interest in bug hunting and be familiar with recent vulnerabilities.
  • Enjoy sharing their knowledge and working with team members.

Your Experience

  • Reverse engineering in IDA Pro or Ghidra.
  • Familiarity with one or more of ARM, AARCH64, x86, x64 and MIPS.
  • Knowledge of bug hunting / vulnerability research.
  • Ethical hacking, including familiarity with web/network technologies.
  • Knowledge of exploitation techniques and mitigations.
  • Experience and knowledge of Linux and its internals.
  • Experience and knowledge of Android or iOS and its internals.
  • A good understanding of the C or C++ language.

This vacancy is for experienced researchers and will require skills and experience in several of the areas listed as well as the ability to lead technical projects. If you do not meet these requirements please check our other vacancies which have different skills requirements.

Work Benefits

  • Promotions are based on technical excellence and reviewed regularly.
  • 25 days holiday per year (with bank holidays on top), option to buy up to 5 days per year.
  • Level up with an extra day of holiday per year, up to an extra 5 days, starting from 2 years' service.
  • We offer financial support to cover HMRC allowable costs of relocating if you’re moving to the area.
  • Training and development opportunities to support your career aspirations
  • O'Reilly books subscription which provides access to huge range of technical books
  • Regular events including internal technical conferences, company socials and pizza-fuelled lunchtime seminars.
  • Free seasonal fruit, tea, coffee, milk, squash and hot chocolate.

Health Benefits - Private medical including access to:

  • Private online GP, and a helpline to speak with various healthcare professionals.
  • Physiotherapists, osteopaths or chiropractors for muscle, bone, and joint pain.
  • Mental health - counselling, and specialist consultations and treatment with psychologists and cognitive behavioural therapists.
  • Annual Health assessment.

Financial Benefits

  • A company bonus scheme so that everybody is rewarded for company success. This is an annual award that is based on the company hitting its targeted forecast. We have achieved this every year to date.
  • 8% company contribution to pension with no minimum requirement for employee contribution.
  • Death in Service cover of 4x base salary.

Lifestyle Benefits

  • Enhanced maternity/paternity/adoption leave: 12 weeks maternity leave at full pay as soon as you join, further enhanced to 20 weeks full pay from 2 years’ service. 2 weeks paternity leave at full pay as soon as you join, further enhanced to 4 weeks full pay from 2 years’ service.
  • Enhanced cycle-to-work scheme including the ability to purchase a bike over £1,000 (e-bikes, specialist cycles and trikes allowed).
Salary
This vacancy is for an experienced Vulnerability Researcher; we are able to support market-leading salaries for every grade within our sector/location. We reward staff based on technical excellence and not years of experience, so it's important to us to speak with you to see which grade you would fit into - it's not always obvious from a CV! Your interviewer will spend time during your first interview speaking with you about how your skills and experience map against our grades, and discuss a salary band so that you know early what you can expect if you receive an offer from us. The technical interview will provide a deeper assessment of your skills against your mapped grade which ultimately determines whether you receive an offer and the exact salary.
Location
We are based in the centre of Cheltenham in a stunning new build contemporary office, 5 minutes walk from the local shops and cafes.
Additional Details
Our interview process is quick and to the point: if you look like a good fit for the role, we'll schedule a brief call to discuss it in more detail and answer any questions you may have. If that goes well, we'll arrange a technical interview to understand your level of experience. We aim to get back to you with an answer within a couple of days of the technical interview.
Please note, due to sensitivity of the role, successful applicants must be British Citizens and willing to undergo extensive background checks to obtain a security clearance.
If you’re looking for a challenging role where you can make a real impact in the world, in a friendly environment and with all the support to advance your career, click apply.

Experienced Vulnerability Researcher in Cheltenham employer: CoreTech Security Services

CoreTech Security is an exceptional employer, offering a vibrant work culture that fosters innovation and collaboration among its world-class team of cyber security experts. With a strong focus on employee growth through the CoreTech Academy, generous benefits including enhanced leave policies, and a supportive environment in the heart of Cheltenham, we empower our staff to thrive both personally and professionally while making a meaningful impact in the field of cyber security.

C

Contact Details:

CoreTech Security Services Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Experienced Vulnerability Researcher in Cheltenham

Tip Number 1

Familiarise yourself with Ghidra and IDA Pro, as these are key tools used in the role. Consider working on personal projects or contributing to open-source projects that involve reverse engineering to showcase your skills.

Tip Number 2

Stay updated on the latest vulnerabilities and exploits in the cybersecurity field. Follow relevant blogs, forums, and social media accounts to engage with the community and demonstrate your passion for bug hunting during interviews.

Tip Number 3

Network with professionals in the cybersecurity industry, especially those who work in vulnerability research. Attend conferences, webinars, or local meetups to build connections that could lead to referrals or insights about the role.

Tip Number 4

Prepare for technical interviews by practising common vulnerability research scenarios and problems. Work through challenges on platforms like Hack The Box or CTFs to sharpen your skills and be ready to discuss your thought process during the interview.

We think you need these skills to ace Experienced Vulnerability Researcher in Cheltenham

Reverse Engineering
Proficiency in Ghidra or IDA Pro
Knowledge of ARM, AARCH64, x86, x64, and MIPS architectures
Bug Hunting Techniques
Ethical Hacking
Understanding of Web and Network Technologies
Exploitation Techniques and Mitigations

Some tips for your application 🫡

Tailor Your CV:Make sure your CV highlights relevant experience in vulnerability research, ethical hacking, and reverse engineering. Emphasise your familiarity with tools like Ghidra and programming languages such as C, C++, and Python.

Craft a Compelling Cover Letter:Write a cover letter that showcases your passion for cyber security and your problem-solving skills. Mention specific projects or experiences that demonstrate your ability to tackle complex challenges in vulnerability research.

Showcase Your Technical Skills:In your application, clearly outline your technical skills related to ARM, AARCH64, x86, and MIPS. Provide examples of how you've applied these skills in previous roles or projects.

Highlight Team Collaboration:CoreTech values teamwork, so mention any experiences where you collaborated with others on technical projects. Discuss how you shared knowledge and contributed to team success in your previous roles.

How to prepare for a job interview at CoreTech Security Services

Showcase Your Technical Skills

Be prepared to discuss your experience with reverse engineering tools like Ghidra or IDA Pro. Highlight specific projects where you've successfully identified vulnerabilities or developed proof of concepts, as this will demonstrate your hands-on expertise.

Demonstrate Problem-Solving Ability

Expect to face complex scenarios during the interview. Prepare to explain your thought process when tackling difficult research tasks, and share examples of how you've approached similar challenges in the past.

Stay Updated on Cyber Security Trends

Familiarise yourself with recent vulnerabilities and trends in cyber security. Being able to discuss current events or notable breaches will show your passion for the field and your commitment to staying informed.

Emphasise Team Collaboration

CoreTech values teamwork, so be ready to talk about your experiences working with others. Share examples of how you've collaborated with colleagues to develop innovative solutions or improve processes, as this will highlight your ability to contribute to their team dynamic.