Offensive Security Researcher, Kernel & Embedded Security

Apple Inc

Confirmed live 2 days ago High trust

Quick summary

Work type
On-site
Location
New York, NY
Salary
$150,400–$277,600 / yr
Posted
91 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $184k
This role $214k
$121k most similar roles pay here $294k

This role pays more than 72% of similar roles. Most pay $150,000–$217,625 — the shaded band above. At the midpoint, this role pays about $214k versus about $184k for comparable roles.

Based on 240 similar postings.

Employer

About Apple Inc

Apple Inc. is a multinational technology company known for designing and manufacturing consumer electronics, software, and online services, including the iPhone, Mac, iPad, and App Store. Industry: Consumer Electronics & Software

Apple Inc currently has 1984 open roles on FindRole.

Listed pay typically runs $175,000–$277,600 across 1590 roles with salary data.

Most-posted roles

View all roles at Apple Inc

At a glance

TL;DR · Offensive Security Researcher, Kernel & Embedded Security

Offensive Security Researcher, Kernel & Embedded Security joins the Security Engineering & Architecture organization to protect products through proactive vulnerability research and defense. The role focuses on the kernel and embedded layers of platforms, where you will conduct offensive security research across operating system kernels, boot ROMs, firmware, secure enclaves, and other low-level components. You will work in cross-functional teams to evaluate and strengthen privileged layers by performing binary exploitation, fuzzing, and security tooling development. Required skills include experience with memory corruption, race conditions, and use-after-free vulnerabilities, alongside the ability to apply machine learning or LLM techniques for research. Technical proficiency includes C, C++, Python, Swift, or Objective-C, along with reverse-engineering tools like IDA or Ghidra. The work addresses critical security architecture issues within low-level system components and hardware trust anchors.

What you'll do

  • Conduct offensive security research on operating system kernels, boot ROMs, and firmware.
  • Identify and exploit low-level vulnerabilities such as memory corruption, race conditions, and use-after-free.
  • Analyze secure enclaves and other low-level components to strengthen the core security architecture.
  • Develop and utilize custom security tools using languages like C, C++, Python, Swift, or Objective-C.
  • Perform reverse engineering on embedded systems and hardware trust anchors.
  • Apply machine learning and AI techniques to enhance vulnerability research processes.
  • Evaluate and harden the most privileged layers of Apple's product ecosystem.

What we're looking for

  • Proven experience in vulnerability research targeting operating system kernels, firmware, or embedded components.
  • Strong understanding of low-level vulnerability classes and exploitation techniques like memory corruption, race conditions, and use-after-free.
  • Ability to apply AI techniques and tools, such as LLMs or Machine Learning, for security research.
  • Outstanding collaboration skills.
  • Deep knowledge of kernel internals including virtual memory management, system call interfaces, and driver frameworks.
  • Experience with firmware and boot ROM security analysis, including secure boot chains and hardware trust anchors.
  • Familiarity with embedded processors and coprocessors security such as Secure Enclave and DMA-capable peripherals.
  • Fluency in tool development using programming languages like C, C++, Python, Swift, or Objective-C.

More like this

Similar roles

Offensive Hardware Security Researcher

Nvidia

Santa Clara, CA 77 days ago $184,000$287,500
ARM RISCV Verilog C SoC ASIC Firmware SDL Threat Modeling Side-channel Analysis TEE TrustZone Confidential Computing Symbolic Execution Fuzzing JTAG ChipWhisperer IDA Pro Ghidra Machine Learning
6+ yrs exp

Microelectronics Vulnerability Researcher

Booz Allen Hamilton

Huntsville, AL 81 days ago $86,800$198,000
C C++ Python Reverse Engineering IDA Pro Ghidra Embedded Systems Side-channel Analysis Fault Injection Differential Power Analysis Correlation Power Analysis Electromagnetic Analysis Glitching Oscilloscopes Logic Analyzers JTAG i2C FPGA Cryptography Signals Processing
3+ yrs exp

Firmware Security Researcher

Apple Inc

Cupertino, CA 56 days ago $129,300$225,300
Firmware C C++ Code Auditing Reverse Engineering Memory Safe Programming UNIX macOS iOS Security Research System Architecture Circuit Layout Automated Tools

X-Day Offensive Research Vulnerability Researcher

JPMorgan Chase

Jersey City, NJ 70 days ago
Vulnerability Research Reverse Engineering Exploit Development Static Analysis Dynamic Analysis IDA Pro Ghidra Binary Ninja WinDbg GDB Fuzzing LibFuzzer AFL++ Syzkaller LLVM Angr KLEE Frida C/C++ Java .NET Linux Windows Android iOS eBPF OWASP
5+ yrs exp

Product Security Engineer

Apple Inc

Seattle, WA 73 days ago $122,700$214,300
Python Swift C/C++ Reverse Engineering Vulnerability Research Containerization CI/CD AI Frameworks Security Automation Incident Response Security Operations Monitoring Tools

Product Security Engineer

Apple Inc

Seattle, WA 35 days ago $122,700$214,300
Python Swift C/C++ Reverse Engineering Vulnerability Research Containerization CI/CD AI Frameworks Security Automation Incident Response Security Operations Monitoring Tools