Staff Vulnerability Researcher
Bitsight is a cyber risk management leader transforming how companies manage exposure, performance, and risk for themselves and their third parties. Companies rely on Bitsight to prioritize their cybersecurity investments, build greater trust within their ecosystem, and reduce their chances of financial loss.
Built on over a decade of technological innovation, its integrated solutions deliver value across enterprise security performance, digital supply chains, cyber insurance, and data analysis.
We invented the cyber ratings industry in 2011
Over 3000 customers trust Bitsight
Over 750 teammates are dispersed throughout Boston, Raleigh, New York, Lisbon, Singapore, and remote
The Vulnerability Research team within Bitsight’s Security Research department develops and deploys techniques to remotely detect the presence of recently disclosed vulnerabilities. These techniques are integrated into the company’s Internet scanning infrastructure which enables Bitsight to measure the rate at which organizations patch and remediate vulnerabilities. This function is a critical input into Bitsight’s capability to assess the effectiveness of organizational security programs as well as the ability to identify third party vulnerability exposures in organizations’ digital supply chains. The team also enables a unique form of “vulnerability epidemiology” research in tracking the scale, impact, and organizational response for
- profile vulnerabilities. This role will work alongside an international team of vulnerability researchers in the research and development of new vulnerability detection and inference tools and techniques as well as the integration and operationalization of those techniques within Bitsight’s telemetry collection infrastructure.
Objectives & Responsibilities
Research and analyze emerging threats as well as newly published,
- profile vulnerabilities and contribute to the development of vulnerability intelligence tooling
Conduct
- depth assessments of vulnerabilities to assess viability of remote,
- based detection methods
Reverse engineer software and software patches to identify new detection methods
Develop plugins, tools, and techniques to implement newly researched vulnerability detection and product fingerprinting capabilities
Drive innovation by researching and developing new tools and techniques
Provide technical leadership on research projects to include mentoring junior researchers and providing regular updates to stakeholders
Identify opportunities for automation and process improvement within Bitsight workflows
Develop vulnerability detection techniques, and communicate potential techniques, and the associated risk, with senior leadership
Qualifications:
Bachelors degree in Computer Science or related field; Master’s degree preferred
Experience in vulnerability research, penetration testing, and exploit development
In depth knowledge of tactics, techniques, and procedures commonly used by threat actors
Proven track record of innovation in the field of vulnerability research
Experience in leading technical projects and mentoring junior team members
Broad knowledge of information security principles and network protocols
Experience in
- based vulnerability detection capability development
Experience in source code analysis
Familiarity software reverse engineering and patch diffing
Strong communication and interpersonal skills
Strong analytical and problem solving skills and a track record of solving ambiguous problems
Machine learning experience is a plus
Ownership mindset
Proficient in python programming
- Informações detalhadas sobre a oferta de emprego
Empresa: Bitsight Localização: Lisboa
Lisboa, Lisboa, PortugalPublicado: 31. 5. 2025
Vaga de emprego atual
Seja o primeiro a candidar-se à vaga de emprego oferecida!