1

Binary Exploitation Jobs in Colorado (NOW HIRING)

Senior Manual Ethical Hacker

Denver, CO · On-site

$109K - $148K/yr

... of-concepts for exploitation. • Perform assessments of the security, effectiveness, and ... Binary analysis (disassembly skills) Company : Bank of America is a financial institution that ...

Senior Manual Ethical Hacker

Denver, CO

$102K - $132K/yr

Developing Proof-of-concepts for exploitation. * Perform assessments of the security, effectiveness ... Binary analysis (disassembly skills) Skills: * Advisory * Innovative Thinking * Technical ...

Senior Manual Ethical Hacker

Denver, CO · On-site

$102K - $132K/yr

Developing Proof-of-concepts for exploitation. * Perform assessments of the security, effectiveness ... Binary analysis (disassembly skills) Skills: * Advisory * Innovative Thinking * Technical ...

Binary Exploitation information

What are the key skills and qualifications needed to thrive as a Binary Exploitation Specialist, and why are they important?

To thrive as a Binary Exploitation Specialist, you need deep knowledge of operating systems, computer architecture, low-level programming (such as C and Assembly), and experience with reverse engineering, often supported by a degree in computer science or cybersecurity. Familiarity with tools like GDB, IDA Pro, Radare2, and certifications such as OSCP or GREM is highly valuable. Analytical thinking, persistence, and attention to detail are crucial soft skills for identifying vulnerabilities and devising novel exploits. These skills are vital for effectively discovering security flaws, developing mitigations, and protecting systems from real-world attacks.

What is the difference between Binary Exploitation vs Reverse Engineer?

AspectBinary ExploitationReverse Engineer
Required CredentialsKnowledge of vulnerabilities, exploit development, programming (C, Assembly)Understanding of software architecture, assembly, debugging skills
Work EnvironmentSecurity labs, penetration testing, CTF competitionsSoftware analysis, malware analysis, debugging environments
Industry UsageCybersecurity, penetration testing, bug bounty programsMalware analysis, software development, security research

Binary Exploitation and Reverse Engineering share overlapping skills like programming and understanding of low-level systems. However, Binary Exploitation focuses on identifying and exploiting vulnerabilities to gain control over systems, while Reverse Engineering involves analyzing software to understand its inner workings without necessarily exploiting it. Both roles are vital in cybersecurity but serve different purposes within security assessments and research.

What is binary exploitation?

Binary exploitation is a field within cybersecurity focused on finding and leveraging vulnerabilities in compiled software binaries to alter their intended behavior. This often involves analyzing how programs manage memory, handle user input, or interact with the operating system to identify flaws such as buffer overflows or use-after-free errors. Attackers use these techniques to gain unauthorized access, execute arbitrary code, or escalate privileges. Professionals in this field use a combination of reverse engineering, programming, and security analysis skills.

What are some common challenges faced by professionals working in binary exploitation roles?

Professionals in binary exploitation often encounter challenges such as reverse engineering complex binaries, bypassing modern security mechanisms like ASLR and DEP, and staying updated with evolving exploit mitigation techniques. The work can involve significant problem-solving and persistence, as each target binary may require unique approaches. Additionally, collaboration with security researchers and developers is common, especially when disclosing vulnerabilities or working to patch exploited systems.
What are popular job titles related to Binary Exploitation jobs in Colorado? For Binary Exploitation jobs in Colorado, the most frequently searched job titles are:
What cities in Colorado are hiring for Binary Exploitation jobs? Cities in Colorado with the most Binary Exploitation job openings:
Senior Manual Ethical Hacker

Senior Manual Ethical Hacker

Bank of America

Denver, CO • On-site

$109K - $148K/yr

Full-time

Posted 7 days ago


Bank Of America rating

8.2

Company rating: 8.2 out of 10

Based on 521 frontline employees who took The Breakroom Quiz

51st of 170 rated banks


Job description

Job Summary:
Bank of America is dedicated to enhancing financial lives and fostering an inclusive workplace. The Senior Manual Ethical Hacker will lead ethical hacking assessments to evaluate the security resilience of the bank’s applications and technologies, adapting testing methods to counter emerging threats.
Responsibilities:
• Perform assigned analysis of internal and external threats on information systems and predict future threat behavior.
• Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value vulnerabilities/chained attacks.
• Developing Proof-of-concepts for exploitation.
• Perform assessments of the security, effectiveness, and practicality of multiple technology systems.
• Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
• Prepare and present detailed technical information for various media including documents, reports, and notifications.
• Provide clear and practical advice regarding managing risks.
• Learn and develop advanced technical and leadership skills, mentor Junior and Intermediate assessors in technical tradecraft and soft skills.
• Respond to security incidents and provide technical assistance to leadership across the Information Security organization.
Qualifications:
Required:
• Minimum of 5+ years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
• Detailed technical knowledge in at least 5 of the following areas: security engineering, application architecture, authentication and security protocols, application session management, applied cryptography, common communication protocols, mobile frameworks, single sign-on technologies, exploit automation platforms, Web APIs, Cloud environments, LLM security, Mobile application analysis
• Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
• Experience performing manual web application assessments i.e., must be able to simulate a OWASP Top 10 vulnerabilities without the use of tools
• Experience performing manual code reviews for security relevant issues
• Experience working with DAST and SAST tools to identify vulnerabilities
• Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
• Experience with vulnerability assessment tools and penetration testing techniques
• Solid programming/debugging skills, development frameworks, CVE and CWE research/reproduction
• Threat Analysis, threat modelling and SBOM analysis
• Innovative thinking, threat actor simulation
• Technology Systems Assessment
• Technical Documentation
• Advisory
Preferred:
• CEH, OSCP/OSCE/OSWE/GXPN/GPEN/GWAPT/GMOB/All Practitioner Certs [Port Swigger BSP Academy]/Cloud Cert(s)/ eWPT; eWPTX; eMAPT [INE Pentester Academy]
• Strong programming/scripting skills
• Frida
• Binary analysis (disassembly skills)
Company:
Bank of America is a financial institution that offers credit cards, home loans, and auto loan services. Founded in 1998, the company is headquartered in Charlotte, USA, with a team of 10001+ employees. The company is currently Late Stage.

What Bank Of America employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Bank Of America logo

About Bank Of America

Sourced by ZipRecruiter

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day. One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.

Industry

Finance and insurance

Company size

10,000+ Employees

Headquarters location

Charlotte, NC, US

Year founded

1998

Social media