Working for CoreTech as a vulnerability researcher will see you join a world-class team of developers and vulnerability researchers whose mission is to deliver bespoke products and research into the most interesting cyber security clients in the UK.
CoreTech is looking for candidates with a bug hunting, ethical hacking or reverse engineering background to join our vulnerability research team. We deliver bespoke and innovative solutions which enable the operational needs of our clients. Our team is highly experienced, deeply technical and has a rich history of blending rapid prototyping, security research and software engineering skills.
Our Research team use Ghidra as our tool of choice for reverse engineering and produce proof of concepts in the most suitable language for the project which could be C, C++, Python or assembly code. The role requires an inquisitive mindset and enthusiasm for solving difficult research tasks.
Typical tasks might include
- Developing a deep understanding of how Android mobile devices work, from applications to kernel.
- Reverse engineering proprietary binaries using your knowledge of ARM, ARM64, and MIPS.
- Auditing C and C++ source code, spotting security flaws that others haven’t.
- Growing the team’s capabilities by developing novel tools and techniques to enable cutting-edge vulnerability research.
- Working in tandem with other hugely talented vulnerability researchers and software engineers.
- Designing and producing niche solutions with immediate real-world impact.
An ideal candidate will
- Have a passion for cyber security.
- Thrive on solving difficult and complex problems.
- Have a genuine interest in bug hunting and be familiar with recent vulnerabilities.
- Enjoy sharing their knowledge and working with team members.
Your Experience
- Reverse engineering in IDA Pro or Ghidra.
- Familiarity with one or more of ARM, AARCH64, x86, x64 and MIPS.
- Knowledge of bug hunting / vulnerability research.
- Ethical hacking, including familiarity with web/network technologies.
- Knowledge of exploitation techniques and mitigations.
- Experience and knowledge of Linux and its internals.
- Experience and knowledge of Android or iOS and its internals.
- A good understanding of the C or C++ language.
This vacancy is for experienced researchers and will require skills and experience in several of the areas listed as well as the ability to lead technical projects. If you do not meet these requirements please check our other vacancies which have different skills requirements.
Work Benefits
- Promotions are based on technical excellence and reviewed regularly.
- 25 days holiday per year (with bank holidays on top), option to buy up to 5 days per year.
- Level up with an extra day of holiday per year, up to an extra 5 days, starting from 2 years' service.
- We offer financial support to cover HMRC allowable costs of relocating if you’re moving to the area.
- Training and development opportunities to support your career aspirations
- O'Reilly books subscription which provides access to huge range of technical books
- Regular events including internal technical conferences, company socials and pizza-fuelled lunchtime seminars.
- Free seasonal fruit, tea, coffee, milk, squash and hot chocolate.
Health Benefits - Private medical including access to:
- Private online GP, and a helpline to speak with various healthcare professionals.
- Physiotherapists, osteopaths or chiropractors for muscle, bone, and joint pain.
- Mental health - counselling, and specialist consultations and treatment with psychologists and cognitive behavioural therapists.
- Annual Health assessment.
Financial Benefits
- A company bonus scheme so that everybody is rewarded for company success. This is an annual award that is based on the company hitting its targeted forecast. We have achieved this every year to date.
- 8% company contribution to pension with no minimum requirement for employee contribution.
- Death in Service cover of 4x base salary.
Lifestyle Benefits
- Enhanced maternity/paternity/adoption leave: 12 weeks maternity leave at full pay as soon as you join, further enhanced to 20 weeks full pay from 2 years’ service. 2 weeks paternity leave at full pay as soon as you join, further enhanced to 4 weeks full pay from 2 years’ service.
- Enhanced cycle-to-work scheme including the ability to purchase a bike over £1,000 (e-bikes, specialist cycles and trikes allowed).
hackajob is partnering with CoreTech Security to fill this position. Create a profile to be automatically considered for this role—and others that match your experience.