Question
Full-time
5-10

Security Researcher

3/18/2026

The role involves vulnerability research across open-source projects, low-level binaries, AI applications, and cloud environments, including developing Proof-of-Concepts. Responsibilities also include publishing technical research, presenting findings, and reverse engineering products to support platform development.

Working Hours

40 hours/week

Company Size

51-200 employees

Language

English

Visa Sponsorship

No

About The Company
Zafran is an AI-native exposure management platform that eliminates the manual toil of vulnerability management by cutting through noise, revealing what is truly exploitable, and automating mitigation and remediation using the security controls teams already have. We are a team of practitioners and builders shaped by high-stakes security moments, where clarity and speed mattered, and manual processes came at a real cost. We’re on a mission to proactively stop the exploitation of vulnerabilities, everywhere.
About the Role

Zafran is looking for an experienced Security Researcher to join our growing research team. The team's responsibility is vulnerability research for both PR purposes and research for Zafran’s product. In this role, you will focus on vulnerability research of open-source projects and reverse engineering of low-level binaries. The team also focuses on AI security and low-level product security research.

A key part of your work will include analyzing internal code and identifying security risks to improve Zafran’s overall security posture and support our PR efforts.


About Zafran:

Our Mission: To stop the exploitation of vulnerabilities, everywhere.

What makes us different: Zafran de-risks 90% of critical vulnerabilities overnight across your hybrid environment and utilizes Agentic Capabilities and your existing security tools to rapidly mitigate and remediate the 10% most likely to be exploited.

​​Who’s behind us: Zafran is backed by Menlo Ventures, Sequoia Capital, Cyberstarts, and a deep belief that cybersecurity should move as fast as attackers do. We’re one of the fastest-growing companies in the industry, scaling to meet demand from the world’s most advanced, security-obsessed organizations.

We’re serious about our mission- so expect work that matters, teammates who challenge and inspire you, and plenty of fun along the way!


What you will do:

  • Vulnerability Discovery: Research and discover vulnerabilities across AI applications, low-level products, and cloud environments, including the development of functional Proofs-of-Concept (PoCs).
  • Public Research & PR: Publish technical blogs and present your research at major security conferences.
  • Technical Product Research: Produce in-depth technical research and conduct reverse engineering of security products to directly support the development of Zafran’s product and platform.
  • Stay up to date with newly discovered CVEs, attack techniques, and threat trends
  • Cross-Functional Collaboration: Partner with product and engineering teams to help improve Zafran’s security.

About Zafran

null

What you will do

null

Requirements

  • 5+ years of hands-on experience in security research, including a track record of finding vulnerabilities in complex systems..
  • Strong understanding of vulnerabilities, exploit techniques, and attack vectors.
  • Experience in reverse engineering binaries, security products, and complex low-level systems.
  • Hands-on experience with Linux systems, networking, and cloud environments
  • Ability to analyze complex systems and think like an attacker
  • Strong written communication skills in English, including technical documentation. 
  • Self-driven, curious, and passionate about security research


Experience with the following is a plus

  • Experience contributing to blogs, public research, conference talks, or media-facing security content
  • Familiarity with AI systems, AI security, and model behavior.
  • Experience in software development.

Experience with the following is a plus

null
Key Skills
Vulnerability ResearchReverse EngineeringAI SecurityLow-Level BinariesProof-of-ConceptsTechnical BloggingConference PresentationsLinux SystemsNetworkingCloud EnvironmentsAttacker MindsetWritten CommunicationCVE AnalysisAttack TechniquesThreat Trends
Categories
Security & SafetyScience & ResearchEngineeringSoftware
Apply Now

Please let Zafran.io know you found this job on InterviewPal. This helps us grow!

Apply Now
Prepare for Your Interview

We scan and aggregate real interview questions reported by candidates across thousands of companies. This role already has a tailored question set waiting for you.

Elevate your application

Generate a resume, cover letter, or prepare with our AI mock interviewer tailored to this job's requirements.