More jobs:
Sr. Exploit Developer
Remote / Online - Candidates ideally in
San Francisco, San Francisco County, California, 94199, USA
Listed on 2026-10-02
San Francisco, San Francisco County, California, 94199, USA
Listing for:
VulnCheck Inc.
Remote/Work from Home
position Listed on 2026-10-02
Job specializations:
-
Security
Cybersecurity
Job Description & How to Apply Below
Role overview
A senior exploit developer role on an Initial Access Intelligence team, focused on reverse engineering and crafting original exploit code where public proof-of-concept material is missing. Work spans from root-cause analysis through detection engineering and attack surface queries, with opportunities to contribute to an open-source exploit framework. It is a fully remote position, with priority given to candidates based in Massachusetts, Maryland, or Austin, Texas.
Responsibilities- Reverse engineer software to identify the root cause of vulnerabilities.
- Author original exploits for initial access vulnerabilities, particularly when little or no public proof-of-concept code exists.
- Implement network and host detections, such as Suricata/Snort signatures and YARA rules, to identify exploitation on the wire.
- Write Attack Surface Management queries using platforms like Shodan, Censys, FOFA, and Zoom Eye to surface vulnerable systems likely to be targeted.
- Contribute occasionally to local and other exploit types, and to an open-source exploit framework.
- Prior experience writing exploit code for remote-code-execution or other initial access vulnerabilities that do not require authentication to exploit.
- Demonstrated reverse engineering skills and a track record of producing working exploit code.
- Experience working on technical projects remotely, independently, and as part of small teams.
- Ability to share example exploit code as part of the application process.
- Prior cybersecurity work experience at a vendor or in government.
- Familiarity with crafting network and host-based detection rules and ASM queries for finding exposed systems.
- Experience contributing to open-source security tooling or exploit frameworks.
- Fully remote within the United States.
- Unlimited paid time off, generous paid parental leave, and comprehensive healthcare coverage.
- 401(k) plan with company match and reimbursement for cell phone and internet expenses.
- Ongoing professional development and clear career-advancement opportunities within a growing research organization.
- Note:
employment is contingent on the ability to authorize access under applicable U.S. export control regulations.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×