Carnegie Mellon University

Associate Reverse Engineer Researcher

Carnegie Mellon University$88K — $105K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • BS in Computer Science or related with 3 years of experience; OR MS with 1 year of experience.
  • Analytical mindset with a passion for malware analysis and reverse engineering.
  • Strong technical writing skills for documenting findings.
  • Ability to manage competing priorities effectively.
  • Willingness to travel occasionally (15%) for work purposes.
  • Experience with reverse engineering software binaries across various architectures.

Responsibilities

  • Reverse engineer malicious code for high-impact clients and develop new analysis tools.
  • Document and present findings through reports and technical exchanges.
  • Investigate the use of AI in reverse engineering processes.
  • Design and prototype innovative analysis methods.
  • Identify and document emerging security threats within the tech landscape.
  • Engage with the security community through collaboration and knowledge-sharing.

Benefits

  • Access to a collaborative research environment at a leading university.
  • Opportunities for professional growth and development in cutting-edge security research.
  • Involvement in the broader security community through conferences and presentations.
Full Job Description
About the role

The CERT Division of the Software Engineering Institute (SEI) is seeking an applicant for the role of a Reverse Engineer Researcher for the Threat Analysis directorate. The SEI is a federally funded research and development center at Carnegie Mellon University.

What you'll do
  • Reverse engineer malicious code in support of high-impact customers, design and develop new analysis methods and tools, work to identify and address emerging and complex threats, and effectively participate in the broader security community
  • Perform in-depth reverse engineering of malicious code, document and transition results in reports, presentations, and technical exchanges
  • Explore ways to use artificial intelligence to support of reverse engineering and apply reverse engineering practices to artificial intelligence systems
  • Design, prototype, and transition new analysis methods and tools
  • Identify and document emerging and complex active security threats
  • Participate in the broader security community through collaboration, papers, and presentations


Who you are
  • You have BS in Computer Science or related discipline with three (3) years of experience; OR MS in the same fields with one (1) year of experience.
  • You enjoy working on emerging and complex malware analysis and reverse engineering problems.
  • You have an analytical mindset and deep curiosity about how software works.
  • You have the ability to balance rapid prototyping with maintainable tool development.
  • You have strong technical writing experience.
  • You recognize and deal appropriately with confidential and sensitive information.
  • You are able to handle continual shifting priorities.
  • You enjoy mentoring and training others as well as sharing knowledge.
  • You communicate effectively with technical and non-technical audiences.
  • You have a willingness to travel to various locations to support the SEI's overall mission This includes sponsor sites, conferences, and offsite meetings on occasion. Moderate Travel (15%)
  • You will be subject to a background check and obtain and maintain an active Department of War security clearance


You have experience with or knowledge of
  • Reverse engineering software binaries for a variety of architectures, both at the user level and kernel level
  • Static analysis tools (e.g. IDA Pro, NSA Ghidra, Binary Ninja)
  • User-level and kernel-level debuggers (e.g. x32dbg, x64dbg, gdb, WinDbg)
  • Native programminglanguages(e.g. C/C++).
  • High-level programming languages (e.g. Java, Python, GoLang, etc.)
  • Software engineering and design concepts
  • Firmware and device driver development
  • Malware tradecraft and threat actor tactics, techniques, and procedures (TTPs)
  • Malware signature creation and use, independent of detection technology
  • Operating system concepts and internals and binary file formats (e.g. PE, ELF, Mach-O, etc.)
  • Internet Protocols and network analysis tools (e.g. Wireshark, netcat, etc.)
  • Compiler theory, cryptography, and malware deobfuscation techniques.
  • Mobile device development and reverse engineering
  • Malware sandboxes or instrumentation frameworks (e.g., Frida, QEMU, Unicorn Engine).
  • General understanding and experience in artificial intelligence and machine learning and using artificial intelligence to support reverse engineering and malware analysis


Location
Pittsburgh, PA
Job Function
Software/Applications Development/Engineering
Position Type
Staff - Regular
Full Time/Part time
Full time
Pay Basis
Salary
More Information:

  • Please visit "Why Carnegie Mellon" to learn more about becoming part of an institution inspiring innovations that change the world.
  • Click here to view a listing of employee benefits

About Carnegie Mellon University

Carnegie Mellon University is a private research university that was founded in 1900. The university is located in Pittsburgh, Pennsylvania and is known for its programs in computer science, engineering, and the arts. Carnegie Mellon has a diverse student body and offers undergraduate and graduate programs in a variety of fields. The university has a strong focus on research and has partnerships with a number of companies and organizations. Carnegie Mellon is consistently ranked among the top universities in the United States.
Learn more about Carnegie Mellon University
Size
14,000 employees
Industry

Similar Jobs

More Jobs at Carnegie Mellon University

More Information Technology Jobs

Find similar Associate Reverse Engineer Researcher jobs: