Zero-Day Security Researcher
- Hiring from
- Singapore
- Work type
- Remote
- Posted
Show job descriptionHide job description
ASTRALOGiQ Solutions is recruiting on behalf of one of our partners seeking talented and passionate individuals to join their Offensive Security team! This position has a strong focus on discovering unknown vulnerabilities in systems and devices.
This position will be based in Singapore. Remote work arrangement is possible for the ideal candidate.
We regret to inform that only shortlisted candidates will be notified.
Job Reference No: 202610-PPS-001
In this role, you will discover, evaluate, and exploit new vulnerabilities across software applications, modern operating systems, and hardware devices. While there are no rigid standard methodologies, your typical activities will include attack surface enumeration, source code review, binary reverse engineering, custom tool development, and debugging. We also welcome unorthodox approaches—whether that means following your gut instincts or refusing to shave until you uncover that unicorn vulnerability. Finally, you will be responsible for delivering clear technical documentation and functional proof-of-concept (PoC) code.
Candidates should possess the following:
- Core Languages: Proficiency in at least one of the following: C, C++, Intel assembly, or ARM assembly.
- Proven Track Record: A demonstrable history (e.g., publications, bug bounty awards, CVEs) of discovering, evaluating, and exploiting vulnerabilities in software, operating systems, or hardware devices.
- Vulnerability Expertise: A deep understanding of a wide spectrum of vulnerability classes.
- Mitigation Mastery: Comprehensive knowledge of modern exploit mitigations and the techniques required to bypass them.
- Drive and Tenacity: Intense motivation and personal persistence to achieve persistent code execution on target systems.
Candidates possessing the following will be given preferential consideration:
- Original Research: A demonstrated ability to author and produce original research related to reverse engineering, vulnerability discovery, evaluation, or advanced exploitation.