Offensive Cybersecurity Engineer

ViaSat Inc.Carlsbad, CA
51d

About The Position

As a Viasat Offensive Security Engineer, you will be responsible for simulating real-world cyberattacks against Viasat's hardware, service network infrastructure, satellite ground stations and related systems. The ideal candidate has deep expertise in both traditional network penetration testing and hardware-specific techniques, including firmware reverse engineering and physical device analysis. You will conduct comprehensive technical cybersecurity risk assessments and report your findings to technical and executive teams, providing clear, actionable improvements to team practices and activities.

Requirements

  • 5+ years of experience in offensive cybersecurity engineering, network penetration testing, threat emulation development, embedded systems testing.
  • Experience with low-level and memory-safe languages such as C, C++, Rust, and Python.
  • Familiarity with embedded system development or hardware reverse engineering.
  • Strong communications skills, the ability to write detailed reports, and deliver technical briefings
  • US Citizenship required with the ability to obtain a US Top Secret Clearance.
  • Ability to travel up to 10%.

Nice To Haves

  • Bachelor's degree in Cybersecurity or related engineering discipline
  • The ability to manage competing priorities and timelines
  • The ability to work effectively with ambiguity
  • Strong self-motivation and independent work ethic
  • The ability to work across a geographically distributed team

Responsibilities

  • Hardware and Embedded Systems Testing: Conduct comprehensive security assessments of proprietary Viasat hardware, including satellite terminals, satellite gateways, and related devices. This includes firmware analysis, reverse engineering, and interacting with hardware interfaces like JTAG and UART.
  • Network Penetration Testing: Perform gray-box and black-box penetration tests on the Viasat network infrastructure, encompassing customer-facing networks, firewalls, and core ISP systems.
  • Vulnerability Exploitation: Develop and execute custom exploits to demonstrate the impact of identified vulnerabilities and combine multiple weaknesses into chained attack scenarios.
  • Reporting and Communication: Create high-quality, comprehensive reports that detail vulnerabilities, risk levels, and recommendations for engineering teams.
  • Threat Research: Stay current with the latest security trends, exploits, and methodologies, particularly in the telecommunications and embedded systems fields.
  • Tool Development: Develop custom scripts and tools to automate testing processes and improve the efficiency of security assessments.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service