CACI International

Junior Vulnerability Researcher (Cloud & Containers)

CACI International$79K — $162K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3–5 years of experience in vulnerability research or systems-level software development.
  • Familiarity with container orchestration (Kubernetes) and OCI runtime specification.
  • Knowledge of Linux kernel internals, particularly container isolation techniques.
  • Proficient in software development with strong scripting skills.
  • Hands-on experience with GDB and Wireshark for debugging and packet analysis.
  • Ability to independently conduct technical research and document findings.
  • Must be a US Citizen able to obtain/maintain security clearance.

Responsibilities

  • Execute research on OCI runtimes and Linux kernel primitives to identify vulnerabilities.
  • Perform analysis on compiled binaries to discover security flaws.
  • Develop custom fuzzing harnesses to test gRPC and microservices.
  • Use symbolic execution tools for automated path discovery in software.
  • Analyze container environments and system logic for attack surface identification.
  • Write Python scripts to automate research workflows and analyses.
  • Generate detailed reports on vulnerabilities and methodologies.

Benefits

  • Comprehensive healthcare and wellness options.
  • Financial and retirement benefits support.
  • Family support services.
  • Continuing education and professional development opportunities.
  • Time off benefits to encourage work-life balance.
Full Job Description
Job Title: Junior Vulnerability Researcher (Cloud & Containers)

Job Category: Engineering

Time Type: Full time

Minimum Clearance Required to Start: None

Employee Type: Regular

Percentage of Travel Required: None

Type of Travel: None

* * *

The Opportunity:
We are seeking a Vulnerability Researcher with a strong background in systems-level engineering and a passion for cloud security. This role is for a practitioner who has moved beyond the basics and is ready to take ownership of research tasks within the "DNA of the cloud." You will apply your knowledge of container internals and binary analysis to hunt for escapes and logic flaws in Kubernetes environments. You will work as part of a high-performing team, executing complex vulnerability research and developing automated tools to secure national cybersecurity infrastructure.

Responsibilities:

  • Execute research into OCI runtimes (runc, crun) and Linux kernel primitives (namespaces, cgroups) to identify breakout and privilege escalation paths.
  • Perform static and dynamic analysis on compiled binaries (Go, Rust, or C++) to map logic and identify potential security vulnerabilities.
  • Develop and maintain custom fuzzing harnesses (e.g., AFL++, libFuzzer) to stress-test gRPC interfaces and microservice components.
  • Use symbolic and concolic execution tools (e.g., Angr, Manticore) to automate the discovery of complex execution paths.
  • Analyze containerized environments and system initialization logic to identify and document potential attack surfaces.
  • Write custom Python3 scripts to automate research workflows, including firmware unpacking and memory analysis.
  • Generate detailed technical reports and documentation for discovered vulnerabilities and research methodology.


Qualifications:
Required: 

  • 3–5 years of professional experience in vulnerability research, reverse engineering, or systems-level software development.
  • Familiarity with container orchestration (Kubernetes) and the OCI runtime specification.
  • Working knowledge of Linux kernel internals, specifically regarding container isolation (namespaces/cgroups).
  • Proficiency in software development and strong scripting skills.
  • Hands-on experience with debugging tools like GDB and packet analysis tools like Wireshark.
  • Demonstrated ability to conduct independent technical research and document complex findings.
  • Must be a US Citizen and able to obtain/maintain a security clearance


Desired:

  • An active TS SCI clearance.
  • Experience with disassembly and decompilation tools such as IDA Pro, Ghidra, or Binary Ninja.
  • Previous experience with fuzzing frameworks and vulnerability discovery in distributed systems.
  • Understanding of x86 or ARM assembly language.
  • Experience with cloud provider security (AWS, Azure, or GCP).
  • Relevant security certifications or a history of participation in advanced CTF competitions.

This position is contingent on funding and may not be filled immediately. However, this position is representative of positions within CACI that are consistently available. Individuals who apply may also be considered for other positions at CACI.

Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is:

$79,400 - $162,700

About CACI International

CACI International Inc is a multinational professional services and information technology company. It provides services to many branches of the federal government including defense, homeland security, intelligence, and healthcare. CACI has approximately 23,000 employees worldwide. The company's mission is to provide enterprise and mission technology services and solutions that best fit the needs of its customers. CACI has been named a Fortune World's Most Admired Company, a Washington Post Top Workplace, and a Forbes Best Employer for Diversity.
Learn more about CACI International
Size
22,000 employees
Market Cap
$7.1 billion
Industry
Net Income
$374.4 million
Founded
1962
5 Year Trend
+7.3%
Revenue
$5.8 billion
NASDAQ

Similar Jobs

More Jobs at CACI International

More Information Technology Jobs

Find similar Junior Vulnerability Researcher (Cloud & Containers) jobs: