Security Researcher Job at Metalware, San Francisco, CA

U1BPTWNXdEdXQjFjdW1qbk9zcTA3Mno5dmc9PQ==
  • Metalware
  • San Francisco, CA

Job Description

Security Researcher

Metalware is a startup dedicated to protecting cyber-physical systems in critical industries. We develop advanced firmware security solutions for industries where failure isn't an optionranging from aerospace/defense, automotive, and industrial controls to telecom and healthcare.

We are seeking a Security Researcher with deep embedded security expertise to challenge and secure firmware. In this role, you'll deploy advanced reverse engineering, fuzzing, and offensive security, and penetration testing techniques to uncover vulnerabilities in complex firmware systems.

Who You Are

  • You possess extensive experience in analyzing and exploiting firmware, with a comprehensive understanding of low-level hardware/software interactions.
  • You are passionate about applying advanced techniques like symbolic execution, memory corruption analysis, and custom exploit development to real-world embedded challenges.
  • You enjoy engaging directly with cutting-edge customersfrom drone and electric vehicle manufacturers to humanoid robot, nuclear reactor, and satellite companiesto understand their challenges and deliver rapid, effective solutions.
  • You're comfortable gathering user feedback, understanding requirements, and quickly shipping code.
  • You want to work side-by-side with the founders to shape product direction and technical roadmap.
  • You're passionate about developing high-quality embedded software and own every aspect of the development lifecyclefrom design and coding to testing and ongoing support.

Responsibilities

  • Utilize tools like Ghidra, Binary Ninja, and IDA Pro to reverse engineer firmware binaries, dissecting their structure to reveal hidden vulnerabilities and exploitation vectors.
  • Design and execute targeted fuzzing campaigns, integrating dynamic analysis techniques to stress-test firmware under real-world conditions.
  • Engineer custom exploit chains to validate discovered vulnerabilities, leveraging techniques such as ROP chain crafting, heap spraying, and memory corruption exploitation.
  • Collaborate with our engineering and AI teams to translate technical findings into improved product interfaces, detailed vulnerability reports, and intuitive security dashboards that enable rapid remediation.
  • Stay ahead of emerging threats and attack methodologies by continuously researching cutting-edge techniques in binary analysis, symbolic execution, and adversarial testing, contributing to both internal R&D and external security communities.
  • Develop prototypes to validate design concepts, quantify technical constraints, and iterate on new ideas.
  • Gather and incorporate user feedback to continuously improve product features and performance.

Minimum Qualifications

  • Proficient in C, C++, or Rust programming languages.
  • Demonstrated expertise in reverse engineering and penetration testing within embedded systems.
  • Hands-on experience with firmware analysis, including the use of tools like Ghidra, Binary Ninja, or IDA Pro.
  • Bachelor's degree in Computer Science, Engineering, Mathematics, or a related STEM discipline with 3+ years of professional software engineering experience; OR 5+ years of professional software engineering experience in lieu of a degree.

Ideal Qualifications

  • Active participation in CTF competitions or similar high-caliber security challenges.
  • In-depth knowledge of exploit development techniques, including ROP, heap exploitation, and memory corruption attacks.
  • Experience integrating security findings into product development, with a keen eye for refining UI and report outputs for clarity and actionability.
  • A robust understanding of cybersecurity best practices, vulnerability management, and embedded system architectures.

Additional Requirements

  • Must be willing to work extended hours and weekends as needed to meet project deadlines and deliverables.

Benefits

  • Competitive salary and equity package.
  • Full health, vision, and dental benefits.
  • Opportunities for continuous professional development, including training and conference participation.
Metalware

Job Tags

Weekend work,

Similar Jobs

ROCS Grad Staffing

Executive Assistant Job at ROCS Grad Staffing

 ...heard and understood. About the Role: We are seeking an Executive Assistant to provide high-level administrative and operational support...  ...(with the potential to increase to full-time) and is fully remote, with preference for candidates based in the Washington, DC... 

The Post Oak Hotel

Spa Massage Therapist (Houston) Job at The Post Oak Hotel

Overview: The Post Oak Hotel is seeking a Massage Therapist to join the only double Forbes Five-Star Hotel in Texas. We hire passionate...  ...treatments and services as trained and required by the standards of the Spa and Hotel. Responsibilities: Greet guests and welcome... 

Home Instead

Caregiver / Home Care Aide Job at Home Instead

 ...relationships with clients through companionship and compassionate caregiving. \n Assist with meal preparation and perform light housekeeping duties. \n Provide personal care services, including assistance with grooming, bathing, restroom use, and managing... 

Harper College

Adjunct Faculty - Economics Dept. Job at Harper College

Adjunct Faculty - Economics Dept. role at Harper CollegeOverview Starting Pay Rate: Per Adjunct Faculty Pay ScaleThe pay rates are...  ...applications will be reviewed for possible interviews.Seniority levelEntry levelEmployment typeOtherJob functionEducation and... 

WHIT RAVEN ADULT CARE HOME

Certified Medication Aide (CMA) Job at WHIT RAVEN ADULT CARE HOME

 ...Job Description Job Description Job Summary The Medication Aide is responsible for safely and accurately administering medications to residents in accordance with physician orders, facility policies, and North Carolina state regulations. This position plays a vital...