SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 191,000 - 253,000 / annual
Anduril Industries, a defense technology company, is seeking a Senior Vulnerability Engineer to join Anduril Cyber. The role focuses on discovering novel vulnerabilities in hardware and software systems and transforming that research into rigorous technical artifacts.
You will be responsible for finding vulnerabilities across embedded systems, firmware, applications, protocols, and hardware/software integration boundaries. Your work will involve designing and executing comprehensive vulnerability research plans that combine code review, reverse engineering, fuzzing, emulation, dynamic instrumentation, hardware analysis, and adversarial testing.
Key responsibilities include:
- Discovering novel vulnerabilities in software, firmware, embedded systems, protocols, update paths, device interfaces, and hardware/software boundaries
- Designing custom fuzzers, harnesses, emulators, instrumentation, triage workflows, and proof-of-concept tooling
- Analyzing root cause, exploitability, operational impact, and mitigation options for discovered vulnerabilities
- Partnering with reverse engineers, product security engineers, embedded software engineers, hardware engineers, and systems teams to validate findings and drive remediation
- Writing clear technical reports with evidence, reproduction steps, exploitability assessment, impact analysis, and follow-on research opportunities
- Designing hardware-in-the-loop vulnerability experiments combining software exploitation, protocol analysis, physical interfaces, and lab instrumentation
- Developing tooling to automate experiment orchestration, device interaction, data collection, crash triage, and vulnerability reproduction
The role is based in Boston, MA; Costa Mesa, CA; or Washington, DC, with hybrid flexibility.
REQUIREMENTS:
- Strong experience discovering vulnerabilities in firmware, applications, network services, embedded Linux systems, drivers, protocols, IoT devices, or hardware-adjacent systems
- Proficiency with one or more programming languages used for vulnerability research and tooling (Python, C, C++, Rust, or Go)
- Experience with fuzzing, harness development, crash triage, exploitability analysis, source-code review, binary analysis, or dynamic instrumentation
- Ability to reason about memory corruption, logic flaws, authentication and authorization failures, unsafe parsing, concurrency issues, insecure update flows, and trust-boundary failures
- Hands-on familiarity with Linux, embedded systems, networking, debugging, and common security research tooling
- Ability to communicate vulnerability impact, reproduction steps, and mitigation options clearly to both research and engineering audiences
- Demonstrated bias toward practical, mission-enabling security outcomes rather than purely theoretical findings
- Must be eligible to obtain and maintain a U.S. security clearance
- Experience evaluating vulnerabilities across embedded protection mechanisms such as secure boot, firmware update paths, key storage, memory protection, and debug interface controls
- Comfort working with lab-based vulnerability validation using hardware interfaces, protocol analyzers, debuggers, or instrumented test setups
PREFERRED QUALIFICATIONS:
- Experience finding vulnerabilities in boot chains, firmware update mechanisms, device identity systems, cryptographic integrations, anti-tamper mechanisms, or programmable-logic-backed systems
- Experience with advanced vulnerability research techniques such as coverage-guided fuzzing, symbolic execution, differential testing, fault injection, protocol state modeling, or hardware-in-the-loop testing
- Familiarity with reverse-engineering tools (Ghidra, IDA Pro, Binary Ninja, QEMU, Frida, gdb/lldb, or comparable frameworks)
- Background in embedded, aerospace, robotic, RF, or cyber-physical systems and their threat models
- Track record of producing high-quality vulnerability research artifacts, internal tooling, conference-quality writeups, CVEs, or comparable technical outputs
- Experience applying side-channel analysis, fault injection, black-box testing, or hardware-assisted fuzzing to embedded systems
- Experience with RF protocols, cryptographic protocol analysis, FPGA/SoC security, signal processing, or board-level vulnerability assessment
- Demonstrated technical leadership, mentorship, or ownership of complex vulnerability research efforts from hypothesis through reproducible technical artifact