
Principal Security Researcher
watchTowr
full-time
Posted on:
Location Type: Remote
Location: United Kingdom
Visit company websiteExplore more
Job Level
About the role
- You will spend your days hacking - or professionally put, “looking for innovative, high-impact vulnerabilities in numerous organisations to fuel our engine”.
- No scope, no time restrictions, no limitations.
- You will be focused on looking for the vulnerabilities that matter — high-impact weaknesses that would have a material impact on our clients.
- Collaborate with other seasoned offensive experts to brainstorm new TTPs and expand our capability to compromise modern infrastructure.
- Conduct cutting-edge offensive research into new attack vectors across cloud, SaaS, modern web stacks, and Internet-exposed infrastructure.
- Work alongside Red Team Engineers to operationalise your discoveries at scale — no need to repeat work when we can build and automate.
- If your dream is to speak at conferences and present your research to the world - we will support you to make it happen!
Requirements
- 5 or more equivalent real-world years of experience
- Strong hands-on red teaming or offensive security experience targeting real-world, modern infrastructure
- A clear understanding of how to compromise organisations without known CVEs
- Ability to look at entire organisation for weaknesses - unclear scopes, thinking outside of the box is your game.
- Basic scripting proficiency (e.g., Python, Go) to automate testing, discovery, or exploit development.
- Hold industry-recognised certifications like CCSAS, CCT, CRT, or OSCP or equivalent real-world skills.
- Driven by your own passion and initiative - you understand the mission, and don’t need someone to guide you.
Benefits
- Competitive compensation
- Meaningful role in a company
- The best tools and powerful kit
- Endless opportunities
- Work with cyber security experts
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
red teamingoffensive securityvulnerability assessmentscriptingPythonGoexploit developmentcloud securitySaaS securityweb application security
Soft Skills
collaborationinnovationproblem-solvinginitiativecritical thinkingcommunicationcreativityindependencepresentation skillsresearch
Certifications
CCSASCCTCRTOSCP