Embedded Security Consultant

3 weeks ago


Herndon, United States CareerBuilder Full time

What You'll Do

Cisco is at the forefront of securing today's emerging technologies. You'll be part of a highly skilled team hunting for critical security vulnerabilities in third party connected devices that will shape our future. Your primary objective will be identifying, exploiting and documenting vulnerabilities in embedded systems and their associated remote services. Targets will include components from connected vehicles, medical devices, and industrial control systems.
You'll also:
Develop threat models
Review design / architecture documents
Identify and interface with hardware attack vectors. (UART, JTAG, SWD, NVRAM, Flash, USB Peripherals, SD Cards, etc.)
Configure cross-compiler toolchains for obscure targets
Reverse engineer communications protocols
Develop process-specific fuzz testing environments
Reverse engineer firmware targeting ARM & PPC processors
Bus message analysis, instrumentation, and fault injection (e.g. SPI, I2C, USB, CAN, LIN)
Instrument and test communications channels (e.g. Wi-Fi, Bluetooth/BLE, Cellular)
Jailbreak devices (get root)
Write reports which clearly document vulnerabilities and provide context at various levels of detail
Who You'll Work With

You'll be working with a seasoned group of security consultants each with an average of more than 10 years of experience in offensive security roles. Our team represents a broad skill set including expertise in hardware & software reverse engineering, electrical engineering, cryptography, fault injection, side-channel analysis, hardware glitching and RF communications.
Who You Are

You're naturally curious about how devices work and how they can be compromised or subverted. You're a professional who collaborates with colleagues to deliver excellent results. You can communicate and present complex topics to customers clearly. You have a working knowledge of fundamental electronics concepts including passive components and transistors.
Minimum qualifications:
Bachelor's degree in Computer Science, Computer Engineering, or Electrical Engineering
Fluency in C, C++, ARM assembly, x86 assembly and Python
7 years of professional experience penetration testing
5 years experience reverse engineering software with IDA Pro or Ghidra
3 years experience working with embedded systems
Solid understanding of networking concepts and tools (e.g. nmap, scapy, nessus)
Solid understanding of application security concepts
Extensive knowledge of common threats and vulnerabilities affecting devices
Experience identifying and exploiting security vulnerabilities
Exceptional English communication skills, both oral and written
Desired skills (any of the following are a plus but not required):
OSCP or OSCE certifications
Soldering & SMT rework
Solid understand of secure boot and ARM TrustZone concepts
Familiarity with common electrical test equipment
Oscilloscopes, Logic Analyzers, Bus Protocol Analyzers, Multimeters, Spectrum Analyzers
Comfortable working with SBCs such as the Raspberry Pi or BeagleBone
Intimate knowledge of the Linux kernel
Working knowledge of QNX
Practical experience with Software Defined Radio (SDR)
Reading / capturing electrical schematics (e.g. Altium, KiCad)
Verilog / VHDL and FPGA design
Extensive knowledge of on-board and connectivity protocols
SPI, I2C, CAN, LIN, USB
Bluetooth / BLE
Wi-Fi
3G & 4G Cellular
Practical experience identifying and exploiting side channel attacks
Practical experience circumventing device security using clock/power glitching
Experience evaluating cryptography and protection of sensitive information
Why Cisco

We connect everything: people, processes, data, and things. We innovate everywhere, taking bold risks to shape the technologies that give us smart cities, connected cars, and handheld hospitals. And we do it in style with unique personalities who aren't afraid to change the way the world works, lives, plays and learns.
We are thought leaders, tech geeks, pop culture aficionados, and we even have a few purple haired rock stars. We celebrate the creativity and diversity that fuels our innovation. We are dreamers and we are doers.
We Are Cisco.

#J-18808-Ljbffr



  • Herndon, United States Cohere Technology Group LLC Full time

    Job DescriptionJob DescriptionCohere is looking for software engineers with C/C++ and assembly skills, hands-on knowledge of operating system internals including writing device drivers for current, new, and emerging hardware products centered on the ARM, Intel, and Risc-V processors. You will be working with cutting-edge designs and will be encouraged to...


  • Herndon, United States EWA Full time

    This position is for full-time employment that requires experience in signal processing and communications. The work involves algorithm development and C/C++ programming for embedded applications that include software-defined radio (SDR), communication links, sensor networks, and others. Examples include: * Design, development, and testing signal processing...


  • Herndon, United States Two Six Technologies Full time

    Overview of Opportunity:Two Six Technologies is seeking aSenior Firmware Reverse Engineer for our team in Herndon, Virginia. You will expand your reverse engineering and exploit development skills and transition those findings into capabilities supporting national security missions.Job Responsibilities & DutiesCollaborate with team to align capability...


  • Herndon, United States Two Six Technologies Full time

    Overview of OpportunityTwo Six Technologies is seeking a Principal Firmware Reverse Engineer for our team in Herndon, Virginia. You will work with a range of clients supporting national security missions. You will become a trusted advisor while learning and performing valuable technical and industry skills. You will expand your reverse engineering and...


  • Herndon, United States Gridiron IT Solutions Full time

    Title: ITAM Principal Technical Consultant, IT WorkflowsLocation: Reston, VA The RoleA Senior Technical Consultant is a position in our professional services (Customer Outcomes) organization focused on being the technical expert on the ServiceNow ITAM application suite which consists of Hardware Asset Management and Software Asset Management when it comes to...


  • Herndon, United States Cisco Systems, Inc. Full time

    Please note this posting is to advertise potential job opportunities. This exact role may not be open today but could open in the near future. When you apply, a Cisco representative may contact you directly if a relevant position opens. *** The successful applicant will be performing work on US Government classified environments, and therefore, must be a...


  • Herndon, United States GuidePoint Security Full time

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • Herndon, United States Accylerate Full time

    Client: Defense ContractorTitle: Secure Software Assessor Duration: Direct HireLocation: Herndon, VAClearance Required: Top Secret SCI ClearanceCertification(s): IASAE Level 2• Client is seeking an applicant who analyzes the security of new or existing computer applications, software, or specialized utility programs and provides actionable...


  • Herndon, United States Altus Consulting Corp Full time

    Active TS/SCI security clearance with polygraph is required. Altus Consulting Seeks an Information Systems Security Officer to Champion Cybersecurity If you find exhilaration in safeguarding digital assets and possess a deep understanding of cybersecurity frameworks and best practices, Altus Consulting invites you to explore this impactful opportunity. As...


  • Herndon, United States Altus Consulting Corp Full time

    Active TS/SCI security clearance with polygraph is required. Altus Consulting Seeks an Information Systems Security Officer to Champion Cybersecurity If you find exhilaration in safeguarding digital assets and possess a deep understanding of cybersecurity frameworks and best practices, Altus Consulting invites you to explore this impactful opportunity. As...


  • Herndon, United States GuidePoint Security Full time

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • Herndon, United States Altus Consulting Corp Full time

    Altus Consulting is seeking a skilled Information Systems Security Officer (ISSO) to ensure the security and compliance of client systems and networks. You will leverage your deep understanding of industry standards and security best practices to conduct assessments, develop security plans, and advise system administrators on security posture. This role...


  • Herndon, United States Altus Consulting Corp Full time

    Altus Consulting is seeking a skilled Cyber Security Engineer to analyze, design, and implement security solutions across various client environments. You will collaborate with analysts, stakeholders, and internal teams to ensure comprehensive cyber defense and deliver high-quality solutions that meet client needs and exceed security objectives....


  • Herndon, United States Altus Consulting Corp Full time

    Job DescriptionJob DescriptionAltus Consulting is seeking a skilled Cyber Security Engineer to analyze, design, and implement security solutions across various client environments. You will collaborate with analysts, stakeholders, and internal teams to ensure comprehensive cyber defense and deliver high-quality solutions that meet client needs and exceed...


  • Herndon, United States Altus Consulting Corp Full time

    Active TS/SCI security clearance with polygraph is required.Altus Consulting Seeks an Information Systems Security Officer to Champion Cybersecurity If you find exhilaration in safeguarding digital assets and possess a deep understanding of cybersecurity frameworks and best practices, Altus Consulting invites you to explore this impactful opportunity. As our...

  • Marketing Analyst

    4 weeks ago


    Herndon, United States Valiant Integrated Services Full time

    Valiant is seeking Marketing Analysts and Consultants to provide support to an Intelligence Community program in the Northern Virginia area. Job duties may include: • Provide communications consultation to assist in internal and external outreach efforts to promote understanding of mission and operational initiatives. • Develop and integrate consistent...


  • Herndon, United States Altus Consulting Corp Full time

    Job DescriptionJob DescriptionActive TS/SCI security clearance with polygraph is required.Altus Consulting Seeks an Information Systems Security Officer to Champion CybersecurityIf you find exhilaration in safeguarding digital assets and possess a deep understanding of cybersecurity frameworks and best practices, Altus Consulting invites you to explore this...


  • Herndon, United States Boeing Company Full time

    Job Description At Boeing, we innovate and collaborate to make the world a better place. From the seabed to outer space, you can contribute to work that matters with a company where diversity, equity and inclusion are shared values. We're committed to fostering an environment for every teammate that's welcoming, respectful and inclusive, with great...


  • Herndon, United States Nicholson Staffing Solutions Full time

    We are on the hunt for a dynamic DevOps Engineer to join our vibrant team. If you thrive in a fast-paced environment and have a passion for enhancing customer engagement, we would love to hear from you! Key Responsibilities:• Become a vital member of our engineering team, dedicated to resolving operational and troubleshooting issues with a strong emphasis...


  • Herndon, United States Valiant Integrated Services Full time

    Valiant is seeking consulting and analysis professionals with experience in finance, budget, management, program, planning and resource oversight activities for a customer in the Northern Virginia area. Multiple positions are available and candidates will be bid on a contingent basis for task orders that are continually being released by the customer....