All jobs

Hardware Security and Vulnerability Analyst (Reverse Engineer) - Remote (TX, Austin)

100% Remote Full-time Open now

Hardware Security and Vulnerability Analyst (Reverse Engineer) - Remote

  • EndoSec LLC,
  • Remote
  • Preferred Skills: C/C++, Python, assembly, IDA Pro, Ghidra, FPGA, cryptography, hardware, embedded software, hardware security, reverse engineering, side channel attacks, fault injection
  • Travel required up to 20%.

Full Time

Must be able to apply for and maintain a U.S. Government Security Clearance

Job Description

The EndoSec Hardware Security and Vulnerability Analyst is responsible for extracting and analyzing firmware and data at rest, identifying vulnerabilities in software, firmware, and hardware, as well as developing proof of concept exploits. The candidate will collaborate with other engineers and security experts to find and exploit security flaws and vulnerabilities within devices and designs as well as to build secure and efficient systems, contributing to our products and services’ ongoing security and privacy. This is a remote position.

Key Responsibilities

  1. System Analysis: Analyze systems to understand functionality, failure points, and consequences of failure.
  2. Security Measure Circumvention: Bypass implemented security measures to gain access to sensitive data, including enabling debugging, forging or bypassing signatures, gaining elevated privileges, and simulating environmental and working conditions.
  3. Binary Code Extraction and Analysis: Extract firmware, executables, and other sensitive data from embedded systems and analyze the extracted code for possible vulnerabilities and sensitive data, e.g. passwords, cryptographic keys, etc.
  4. Side-Channel Analysis and Fault Injection: Setup and perform side-channel analysis to recover sensitive data, e.g. cryptographic keys, sensitive plaintext, etc. Setup and perform fault injection attacks to bypass security measures and/or recover sensitive data.
  5. Exploit Development: Develop custom and novel exploits to bypass security measures, recover sensitive data, or gain elevated privileges in embedded systems.
  6. Documentation: Prepare detailed documentation, including physical setups, testing procedures, and user guides, for reproducibility of found results and maintenance.
  7. Continuous Learning: Stay current with the latest advancements in reverse engineering and hardware security to continually refine and enhance skills.
Apply To This Job

You might also like

Software Development Engineer in Test (Multiple Opportunities)

100% Remote Full-time

IT Security Operations Manager

100% Remote Full-time

Senior Associate, Strategic Finance

100% Remote Full-time

Economic Development Program Manager

100% Remote Full-time

Editorial Intern, Audubon Magazine

100% Remote Full-time

Accounts Receivable Specialist I

100% Remote Full-time

Senior Manager, Data Science

100% Remote Full-time

Kubernetes Platform Architect

100% Remote Full-time

Authorization Specialist - Remote

100% Remote Full-time

Supervisor of Medical Group Coding Audit & Provider Education (REMOTE)

100% Remote Full-time

Experienced Full Stack Customer Support Specialist – Remote Live Chat Agent Earning $25-$35/Hour

100% Remote Full-time

Hiring Now: Research Manager REMOTE FROM ANYWHERE IN THE USA

100% Remote Full-time

[Remote] Program Business Analyst (Vermont REMOTE)

100% Remote Full-time

Policy Advisor, Data Management &Analysis

100% Remote Full-time

Experienced Full Stack Data Entry Specialist – Remote Work Opportunities in Arenaflex

100% Remote Full-time

Work From Home Customer Service Representative – Delivering Exceptional Experiences for arenaflex Members

100% Remote Full-time

Welder II

100% Remote Full-time

Experienced Full Stack Customer Support Agent – Live Chat and Remote Work Opportunity with arenaflex

100% Remote Full-time

Experienced Social Media Customer Support Representative – Work From Home Opportunity at arenaflex

100% Remote Full-time

Audio Designer - Talent Pool (N Americas)

100% Remote Full-time