Reverse Engineer
Company Description Gauntlet Labs is an organization specializing in offensive cybersecurity tool development and security research. The team supports mission-critical projects for public and private sector partners by working with complex, real-world systems and solving their most challenging problems.Role Description The Reverse Engineer at Gauntlet Labs is a full-time, on-site role based in Herndon, VA. This role involves analyzing binaries, firmware, and software systems to understand functionality, identify vulnerabilities, and document technical findings. Day-to-day work includes using disassemblers and debuggers, performing static and dynamic analysis, and developing proof-of-concept tools or exploits to validate discoveries. The role also requires producing clear technical reports, collaborating with security engineers and developers, and contributing to internal tools and methodologies for reverse engineering. The Reverse Engineer will participate in code reviews, research emerging techniques, and help refine best practices for the team.QualificationsStrong understanding of low-level computer architecture, operating systems internals, and network protocols.Experience with reverse engineering tools and techniques (e.g., disassemblers, debuggers, decompilers, dynamic analysis frameworks).Proficiency in one or more programming languages commonly used in security research (such as C, C++, Python, or Assembly).Ability to analyze complex software systems, identify vulnerabilities, and develop proof-of-concept implementations.Solid technical writing skills for documenting analysis, findings, and recommendations in clear, structured reports.Comfort working on-site in a lab environment, collaborating with cross-functional teams, and handling sensitive or proprietary information responsibly.Bachelor’s degree in Computer Science, Computer Engineering, Cybersecurity, or equivalent practical experience.Experience in cybersecurity, malware analysis, or vulnerability research is highly beneficial.Relevant certifications or training in security or reverse engineering (e.g., OSCP, GIAC, or similar) are a plus.