Principal Zero-Day Vulnerability Researcher

6 Months ago • 10 Years + • Cyber Security • $161,000 PA - $230,000 PA

Job Summary

Job Description

Zscaler is seeking a Principal Zero-Day Vulnerability Researcher to join its Security Research team. This individual will lead advanced vulnerability research projects, conduct in-depth research to identify zero-day vulnerabilities in popular software applications, develop proof-of-concept exploits, mentor junior researchers, and document findings in detailed technical reports. They will also present research at industry conferences. The successful candidate will have 10+ years of experience in vulnerability research and exploit development, a strong understanding of software vulnerabilities and binary exploitation, and experience with debuggers, disassemblers/decompilers, and automated fuzzing tools. They should also have professional writing and public speaking skills.
Must have:
  • 10+ years vulnerability research experience
  • Experience with debuggers and disassemblers
  • Proficient in common software vulnerabilities
  • Experience building automated fuzzing tools
  • Professional writing and public speaking skills
Good to have:
  • Bachelor's or graduate degree in computer science or related field
  • Experience responsible disclosure with documented CVEs for Microsoft products
  • Knowledge of Windows operating system internals
  • Familiarity with Windows security features
Perks:
  • Various health plans
  • Time off plans
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks

Job Details

About Zscaler

Serving thousands of enterprise customers around the world including 40% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world’s largest security cloud, Zscaler accelerates digital transformation so enterprises can be more agile, efficient, resilient, and secure. The pioneering, AI-powered Zscaler Zero Trust Exchange™ platform protects thousands of enterprise customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. 

Named a Best Workplace in Technology by Fortune and others, Zscaler fosters an inclusive and supportive culture that is home to some of the brightest minds in the industry. If you thrive in an environment that is fast-paced and collaborative, and you are passionate about building and innovating for the greater good, come make your next move with Zscaler. 

Our Engineering team built the world's largest cloud security platform from the ground up, and we keep building. With more than 100 patents and big plans for enhancing services and increasing our global footprint, the team has made us and our multitenant architecture today's cloud security leader, with more than 15 million users in 185 countries. Bring your vision and passion to our team of cloud architects, software engineers, security experts, and more who are enabling organizations worldwide to harness speed and agility with a cloud-first strategy.

Zscaler is looking for a technical researcher with experience discovering zero-day vulnerabilities. You will be responsible for reverse engineering popular software applications to discover zero-day security flaws that can be exploited. The results will be used to mitigate security vulnerabilities, present at conferences, and publish research blogs.

We're looking for an experienced Principal Zero-Day Vulnerability Researcher to join our Security Research team. Reporting to the Sr. Director, Threat Intelligence, you'll be responsible for:

  • Lead advanced vulnerability research projects to enhance our security solutions.
  • Conduct in-depth research to identify zero-day vulnerabilities in popular software applications.
  • Develop proof-of-concept exploits to demonstrate the potential impact of zero-day vulnerabilities.
  • Mentor junior researchers to foster a culture of learning and new ideas.
  • Document findings and provide detailed technical reports and present research at industry conferences.

What We're Looking for (Minimum Qualifications)

  • Required 10+ years in vulnerability research and exploit development.
  • Experience with debuggers (OllyDbg, WinDbg, or x64dbg) and disassemblers/decompilers (IDA Pro or Ghidra).
  • Proficient in common software vulnerabilities and binary exploitation.
  • Experience building automated fuzzing tools to discover new vulnerabilities.
  • Professional English writing experience drafting blogs, technical reports and have public speaking skills.

What Will Make You Stand Out (Preferred Qualifications)

  • Bachelor's or graduate degree from a four-year college or university (preferably in computer science, engineering, or a related discipline), or equivalent security industry work experience.
  • Experience responsible disclosure with documented CVEs for Microsoft products and services.
  • Knowledge of Windows operating system internals such as the kernel architecture and related components. as well as familiarity with Windows security features such as ASLR, DEP, and Control Flow Guard and evasion techniques.

#LI-JM1

#LI-Remote

Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.

The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits.

Base Pay Range
$161,000$230,000 USD

At Zscaler, we believe that diversity drives innovation, productivity, and success. We are looking for individuals from all backgrounds and identities to join our team and contribute to our mission to make doing business seamless and secure. We are guided by these principles as we create a representative and impactful team, and a culture where everyone belongs. For more information on our commitments to Diversity, Equity, Inclusion, and Belonging, visit the Corporate Responsibility page of our website.

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is proud to be an equal opportunity and affirmative action employer. We celebrate diversity and are committed to creating an inclusive environment for all of our employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status or any other characteristics protected by federal, state, or local laws.

See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules. For additional information about the federal requirements, click here.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

Similar Jobs

Trend Micro - Inside Regional Account Manager

Trend Micro

North Sydney, New South Wales, Australia (On-Site)
8 Months ago
PwC - IN-Associate _ Hybrid Platform Modernization_OneCloud_Advisory_Bangalore

PwC

Bengaluru, Karnataka, India (Hybrid)
8 Months ago
Saviynt - Enterprise Sales Director - Germany

Saviynt

Germany (Remote)
7 Months ago
Google - Senior Staff Software Engineer, Regulated Cloud

Google

Bengaluru, Karnataka, India (On-Site)
6 Months ago
Axinous - Account Executive, Data Protection - Remote - East

Axinous

New York, New York, United States (Remote)
6 Months ago
PwC - IT Audit Associate

PwC

Makati, Metro Manila, Philippines (On-Site)
8 Months ago
PwC - IN-Associate–ERP Controls- ITRA– Advisory – Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
7 Months ago
Deliveroo - Software Engineer, Security

Deliveroo

Hyderabad, Telangana, India (On-Site)
7 Months ago
PwC - Cybersecurity -Data Loss Prevention Senior Associate - Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
7 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Axinous - Sales Engineer - Ohio

Axinous

Ohio, United States (Remote)
6 Months ago
Optiv - End Game - Sr. Engineer | Onsite, Bangalore

Optiv

Bengaluru, Karnataka, India (On-Site)
10 Months ago
Axinous - Partner Business Manager, Distribution

Axinous

Tokyo, Japan (On-Site)
6 Months ago
Saviynt - Sr. Solutions Engineer

Saviynt

Singapore (Remote)
7 Months ago
PwC - IN-Senior Associate – Cloud Security- Cloud Security  – Advisory– Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
8 Months ago
Palo Alto Networks - Prisma Cloud Solutions Architect - Healthcare

Palo Alto Networks

Phoenix, Arizona, United States (Remote)
6 Months ago
Hasbro - Director of Cyber Security Operations

Hasbro

Pawtucket, Rhode Island, United States (Hybrid)
7 Months ago
Axinous - Staff Software Development Engineer - Front-End

Axinous

Bengaluru, Karnataka, India (On-Site)
6 Months ago
Axinous - Staff Business Systems Analyst - Salesforce & LMS

Axinous

San Jose, California, United States (Remote)
6 Months ago
Zscaler - People Consultant(HR)

Zscaler

Bengaluru, Karnataka, India (Hybrid)
8 Months ago

Get notifed when new similar jobs are uploaded

Jobs in San Jose, California, United States

Google - Program Manager III, Environmental Metrics Strategy, Google Sustainability

Google

San Francisco, California, United States (On-Site)
6 Months ago
Glean - Enterprise Account Executive - Texas

Glean

Texas, United States (Remote)
6 Months ago
Entrata - Deal Desk Analyst II

Entrata

Lehi, Utah, United States (Hybrid)
7 Months ago
Fabric - Digital Design Verification Consultant

Fabric

Austin, Texas, United States (On-Site)
7 Months ago
Dun & Bradstreet - Implementation Analyst (R-16906)

Dun & Bradstreet

Jacksonville, Florida, United States (Hybrid)
7 Months ago
Google - Technical Curriculum Developer III, Data, Cloud Learning Services

Google

Austin, Texas, United States (On-Site)
6 Months ago
Starkflow - Civil Engineer

Starkflow

Indianapolis, Indiana, United States (On-Site)
7 Months ago
WebFX - Jr. Paid Social Media Marketing Specialist

WebFX

Harrisburg, Pennsylvania, United States (On-Site)
7 Months ago
World Relief - Grant Writer - Specialist

World Relief

Kent, Washington, United States (Hybrid)
7 Months ago
PlayStation Global - Staff Technical Program Manager

PlayStation Global

San Diego, California, United States (Remote)
8 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - External Audit Senior Associate

PwC

Montreal, Quebec, Canada (On-Site)
8 Months ago
Google - Program Manager, CISO Remediations

Google

Warsaw, Masovian Voivodeship, Poland (On-Site)
6 Months ago
PwC - Technology Strategy and Transformation Manager – Financial Services

PwC

Toronto, Ontario, Canada (On-Site)
7 Months ago
PwC - Cyber Manager

PwC

Bangkok, Bangkok, Thailand (On-Site)
8 Months ago
Lulalend - Senior Security Operations Engineer

Lulalend

Cape Town, Western Cape, South Africa (On-Site)
7 Months ago
Palo Alto Networks - Solutions Consultant - FSI

Palo Alto Networks

Madrid, Community Of Madrid, Spain (Remote)
6 Months ago
Interactive Brokers - Senior Cloud Security Engineer

Interactive Brokers

Fort Lauderdale, Florida, United States (Hybrid)
7 Months ago
PwC - Insurance Enabling Technologies - Guidewire Developer - Senior Associate

PwC

Bengaluru, Karnataka, India (On-Site)
7 Months ago
PwC - IN-Associate _ Control Testing_Internal Audit Service_ Advisory _Pune

PwC

Pune, Maharashtra, India (On-Site)
8 Months ago
PwC - Cyber Security SOC - Senior Manager

PwC

Bangkok, Bangkok, Thailand (On-Site)
7 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Axonius gives customers the confidence to control complexity by mitigating threats, navigating risk, automating response actions, and informing business-level strategy. With solutions for both cyber asset attack surface management (CAASM) and SaaS management, Axonius is deployed in minutes and integrates with hundreds of data sources to provide a comprehensive asset inventory, uncover gaps, and automatically validate and enforce policies. Cited as one of the fastest-growing cybersecurity startups, with accolades from CNBC, Forbes, and Fortune, Axonius covers millions of assets, including devices and cloud assets, user accounts, and SaaS applications, for customers around the world. For more, visit Axonius.com.

Sahibzada Ajit Singh Nagar, Punjab, India (On-Site)

Hyderabad, Telangana, India (Remote)

North Carolina, United States (Remote)

Hyderabad, Telangana, India (Remote)

Hyderabad, Telangana, India (Remote)

Hyderabad, Telangana, India (Remote)

View All Jobs

Get notified when new jobs are added by Axinous

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug