Remote * Preferred Skills: C/C++, Python, assembly, IDA Pro, Ghidra, FPGA, cryptography, hardware, embedded software, hardware security, reverse engineering, side channel attacks, fault injection
Remote * Preferred Skills: C/C++, Python, assembly, IDA Pro, Ghidra, FPGA, cryptography, hardware, embedded software, hardware security, reverse engineering, side channel attacks, fault injection
Remote Our Approach to Office Workplace Type Certain positions outside our branch network may be eligible for a flexible work arrangement. We're combining the best of both worlds: in-office and work ...
Remote Our Approach to Office Workplace Type Certain positions outside our branch network may be eligible for a flexible work arrangement. We're combining the best of both worlds: in-office and work ...
Cyber Operational Technology/ Industrial Control Systems (OT/ICS) Senior Consultant
Indianapolis, IN · Remote
BeyondTrust for privileged secure remote access management * Familiarity with other vendor tools such as Cisco (network security), ServiceNow (ticketing and workflow integration), Splunk (SIEM/log ...
Cyber Operational Technology/ Industrial Control Systems (OT/ICS) Senior Consultant
Indianapolis, IN · Remote
BeyondTrust for privileged secure remote access management * Familiarity with other vendor tools such as Cisco (network security), ServiceNow (ticketing and workflow integration), Splunk (SIEM/log ...
Remote Isso information
What are the key skills and qualifications needed to thrive in the Remote Isso position, and why are they important?
To thrive as a Remote ISSO (Information Systems Security Officer), candidates need a robust understanding of information security principles, risk management frameworks (such as NIST), and compliance requirements, often backed by a degree in cybersecurity or a related field. Familiarity with security tools like vulnerability scanners, SIEM platforms, and certifications such as CISSP or CISM are highly valued. Excellent written communication, analytical thinking, and the ability to work independently are crucial soft skills in this remote context. These attributes enable effective oversight of organizational security, ensure compliance, and facilitate collaboration while working off-site.
What is a Remote ISSO job?
A Remote ISSO (Information Systems Security Officer) job involves managing and ensuring the security of an organization's IT systems while working remotely. Responsibilities include implementing security policies, conducting risk assessments, ensuring compliance with regulations like NIST and FISMA, and responding to security incidents. Remote ISSOs collaborate with IT teams to safeguard sensitive data and maintain system integrity. Strong knowledge of cybersecurity frameworks and federal compliance standards is essential for this role.
What are some common challenges faced by Remote ISSOs and how can they be overcome?
Remote ISSOs often face the challenge of maintaining strong oversight of security protocols and compliance across distributed teams and systems without being onsite. To overcome this, successful ISSOs utilize secure remote access tools, implement robust communication practices, and foster strong relationships with IT and compliance stakeholders. Regular virtual meetings, clear documentation, and proactive incident response planning help ensure security standards are consistently met. Staying updated on evolving cyber threats and engaging in continuous professional development also help remote ISSOs remain effective and adaptable in a dynamic environment.

Full-time
Posted 22 days ago
Job description
Hardware Security and Vulnerability Analyst - Remote
- EndoSec LLC,
- Remote
- Preferred Skills: C/C++, Python, assembly, IDA Pro, Ghidra, FPGA, cryptography, hardware, embedded software, hardware security, reverse engineering, side channel attacks, fault injection
- Travel required up to 20%.
Full Time
Must be able to apply for and maintain a U.S. Government Security Clearance
Job Description
The EndoSec Hardware Security and Vulnerability Analyst is responsible for extracting and analyzing firmware and data at rest, identifying vulnerabilities in software, firmware, and hardware, as well as developing proof of concept exploits. The candidate will collaborate with other engineers and security experts to find and exploit security flaws and vulnerabilities within devices and designs as well as to build secure and efficient systems, contributing to our products and services? ongoing security and privacy. This is a remote position.
Key Responsibilities
- System Analysis: Analyze systems to understand functionality, failure points, and consequences of failure.
- Security Measure Circumvention: Bypass implemented security measures to gain access to sensitive data, including enabling debugging, forging or bypassing signatures, gaining elevated privileges, and simulating environmental and working conditions.
- Binary Code Extraction and Analysis: Extract firmware, executables, and other sensitive data from embedded systems and analyze the extracted code for possible vulnerabilities and sensitive data, e.g. passwords, cryptographic keys, etc.
- Side-Channel Analysis and Fault Injection: Setup and perform side-channel analysis to recover sensitive data, e.g. cryptographic keys, sensitive plaintext, etc. Setup and perform fault injection attacks to bypass security measures and/or recover sensitive data.
- Exploit Development: Develop custom and novel exploits to bypass security measures, recover sensitive data, or gain elevated privileges in embedded systems.
- Documentation: Prepare detailed documentation, including physical setups, testing procedures, and user guides, for reproducibility of found results and maintenance.
- Continuous Learning: Stay current with the latest advancements in reverse engineering and hardware security to continually refine and enhance skills.
About EndoSec
Sourced by ZipRecruiter
Industry
Guided missile and space vehicle manufacturing
Company size
11 - 50 Employees
Headquarters location
Washington, DC, US
Year founded
2013