CACI International

Junior Vulnerability Researcher (Cloud & Containers)

CACI International$66K — $133K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 1+ years of experience in vulnerability research or systems-level software development.
  • Familiarity with Kubernetes and OCI runtime specifications.
  • Working knowledge of Linux kernel internals related to container isolation.
  • Proficiency in software development and strong scripting skills.
  • Hands-on experience with GDB and packet analysis tools like Wireshark.
  • Ability to conduct independent technical research and document findings.

Responsibilities

  • Execute research into OCI runtimes and Linux kernel primitives to identify privilege escalation paths.
  • Perform static and dynamic analysis on binaries to identify potential security vulnerabilities.
  • Develop and maintain custom fuzzing harnesses to stress-test gRPC interfaces.
  • Use symbolic and concolic execution tools to automate complex execution path discovery.
  • Analyze containerized environments to identify potential attack surfaces.
  • Write custom Python scripts to automate research workflows, including firmware unpacking.
  • Generate detailed reports and documentation for vulnerabilities and research methodologies.

Benefits

  • Comprehensive healthcare and wellness benefits.
  • Financial and retirement benefits.
  • Family support programs.
  • Opportunities for continuing education and professional development.
  • Generous time off policies.
Full Job Description
Job Title: Junior Vulnerability Researcher (Cloud & Containers)

Job Category: Engineering

Time Type: Full time

Minimum Clearance Required to Start: None

Employee Type: Regular

Percentage of Travel Required: None

Type of Travel: None

* * *

The Opportunity:
We are seeking a Vulnerability Researcher with a strong background in systems-level engineering and a passion for cloud security. This role is for a practitioner who has moved beyond the basics and is ready to take ownership of research tasks within the "DNA of the cloud." You will apply your knowledge of container internals and binary analysis to hunt for escapes and logic flaws in Kubernetes environments. You will work as part of a high-performing team, executing complex vulnerability research and developing automated tools to secure national cybersecurity infrastructure.

Responsibilities:

  • Execute research into OCI runtimes (runc, crun) and Linux kernel primitives (namespaces, cgroups) to identify breakout and privilege escalation paths.
  • Perform static and dynamic analysis on compiled binaries (Go, Rust, or C++) to map logic and identify potential security vulnerabilities.
  • Develop and maintain custom fuzzing harnesses (e.g., AFL++, libFuzzer) to stress-test gRPC interfaces and microservice components.
  • Use symbolic and concolic execution tools (e.g., Angr, Manticore) to automate the discovery of complex execution paths.
  • Analyze containerized environments and system initialization logic to identify and document potential attack surfaces.
  • Write custom Python3 scripts to automate research workflows, including firmware unpacking and memory analysis.
  • Generate detailed technical reports and documentation for discovered vulnerabilities and research methodology.


Qualifications:
Required: 

  • 1+ years of professional experience in vulnerability research, reverse engineering, or systems-level software development.
  • Familiarity with container orchestration (Kubernetes) and the OCI runtime specification.
  • Working knowledge of Linux kernel internals, specifically regarding container isolation (namespaces/cgroups).
  • Proficiency in software development and strong scripting skills.
  • Hands-on experience with debugging tools like GDB and packet analysis tools like Wireshark.
  • Demonstrated ability to conduct independent technical research and document complex findings.
  • Must be a US Citizen and able to obtain/maintain a security clearance


Desired:

  • An active TS SCI clearance.
  • Experience with disassembly and decompilation tools such as IDA Pro, Ghidra, or Binary Ninja.
  • Previous experience with fuzzing frameworks and vulnerability discovery in distributed systems.
  • Understanding of x86 or ARM assembly language.
  • Experience with cloud provider security (AWS, Azure, or GCP).
  • Relevant security certifications or a history of participation in advanced CTF competitions.

-

Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is:

$66,700 - $133,300

About CACI International

CACI International Inc is a multinational professional services and information technology company. It provides services to many branches of the federal government including defense, homeland security, intelligence, and healthcare. CACI has approximately 23,000 employees worldwide. The company's mission is to provide enterprise and mission technology services and solutions that best fit the needs of its customers. CACI has been named a Fortune World's Most Admired Company, a Washington Post Top Workplace, and a Forbes Best Employer for Diversity.
Learn more about CACI International
Size
22,000 employees
Market Cap
$7.1 billion
Industry
Net Income
$374.4 million
Founded
1962
5 Year Trend
+7.3%
Revenue
$5.8 billion
NASDAQ

Similar Jobs

More Jobs at CACI International

More Information Technology Jobs

Find similar Junior Vulnerability Researcher (Cloud & Containers) jobs: