R&D S&E, Cybersecurity (Early/Mid-Career)

Albuquerque, NM 87102

What Your Job Will Be Like:

We are seeking an early career R&D S&E, Cybersecurity Professional!

The Threat Analysis Technologies Department at Sandia National Labs is seeking a cybersecurity professional who is curious about systems and how they really work under the hood to join a hardworking, high-energy team which is analyzing non-traditional cyber systems for vulnerabilities and threats. Are you passionate about analyzing systems at the interface between hardware and software? Do you want to apply your knowledge of computer architecture, operating system internals, common exploitation paths, and modern mitigation techniques in the use of fuzzing, debugging, and decompiling tools for static and dynamic analysis of source code and binaries? Do you excel at identifying system vulnerabilities and crafting proof-of­concept exploits and accompanying mitigations to enable the defense of systems vital to national security? If so, you will want to consider applying for this opportunity to support Sandia's national security missions.

Our cybersecurity scientists and engineers engage in a variety of research areas including:

+ Manual and automated reverse engineering, vulnerability assessment, and malware analysis

+ Network operation, information protection, and resiliency

+ Authentication and authorization

+ Cryptography

+ Threat intelligence

+ Modeling, simulation, and emulation

+ Source Code Auditing

+ Hardware/software trust and assurance

+ Real-time operating systems (RTOS) and embedded systems, including Internet of Things (loT)

+ Virtualization (system and network) and cloud technologies

+ Mobile devices and smart technologies

+ Autonomous systems

Qualifications We Require:

Bachelor’s or higher-level degree in a STEM field, or equivalent combination of relevant education and experience.

Professional, curricular, or extra-curricular experience in one or more of the following:

+ Reverse engineering

+ Vulnerability assessments

+ Malware analysis

+ Operating systems internals and development (Windows, MacOS, Linux, Android, iOS)

+ Computer architecture

+ Software development

+ Ability to obtain and maintain both a Q and SCI Security Clearance, which may require a polygraph

Qualifications We Desire:

Ideally, we would like to see your background include some of the following:

+ Degree(s) in Computer Science/Engineering, Electrical Engineering, Computer Information Systems, Computer Forensics, or Mathematics

+ Experience with programming languages (e.g., C, C++, Java, Go)

+ Experience with an assembly language (e.g., ARM, MIPS, PowerPC, 8051, x86, x64)

+ Experience conducting research resulting in creative technical solutions

+ Experience in reverse engineering, malware analysis, formal methods, deciphering known and unknown file formats, data structures, and network protocols

+ Experience auditing code in C/C++, Java, Python, assembly, or other languages

+ Experience with static or dynamic analysis tools (Ghidra, IDA, GDB, Windbg, etc)

+ Experience in digital forensics and related tools (Autopsy, Volatility, etc)

+ Experience in data analysis on disparate datasets to find commonalities and anomalies

+ Familiarity with secure-system design principles or information assurance principles

+ Familiarity with Hypervisors like VMware's ESX. Microsoft's HyperV or KVM

+ Familiarity with OS internals, common security features enabled at the OS level (page tables, scheduling, privilege levels)

+ Familiarity with security mitigations (DEP, ASLR., etc.) and common vulnerabilities (stack overflow, integer over/under flow, etc.)

+ Software Engineering skills to develop tools in support of vulnerability research

+ Good oral and written communication skills, ability to explain complex ideas clearly and concisely

+ Active SCI clearance

About Our Team:

Department 5631 [Threat Analysis Technologies] is one of five departments in the Cyber Intelligence Research Group and primarily executes work for the Information Operations (IO) program through the cultivation and deployment of ground-breaking cyber capabilities within 5600. IO encompasses multi-disciplinary, high-impact cyber programs, which have decades-long FFRDC-like relationships with their respective United States Government (USG) sponsors. The vision of the IO program is to be the trusted cyber research institution enabling the USG to accomplish critical national security objectives through research, development, and technology transition. The Cyber Intelligence Research group has a highly collaborative management team, which works together to address program, line, and capability requirements, with highly matrixed staff. Areas of emphasis for the group include vulnerability research, reverse engineering, assessments, data analytics, and software development.

About Sandia:

Sandia National Laboratories is the nation’s premier science and engineering lab for national security and technology innovation, with teams of specialists focused on cutting-edge work in a broad array of areas. Some of the main reasons we love our jobs:

+ Challenging work with amazing impact that contributes to security, peace, and freedom worldwide

+ Extraordinary co-workers

+ Some of the best tools, equipment, and research facilities in the world

+ Career advancement and enrichment opportunities

+ Flexible work arrangements for many positions include 9/80 (work 80 hours every two weeks, with every other Friday off) and 4/10 (work 4 ten-hour days each week) compressed workweeks, part-time work, and telecommuting (a mix of onsite work and working from home)

+ Generous vacations, strong medical and other benefits, competitive 401k, learning opportunities, relocation assistance and amenities aimed at creating a solid work/life balance*

World-changing technologies. Life-changing careers. Learn more about Sandia at: http://www.sandia.gov*These benefits vary by job classification.

Security Clearance:

Sandia is required by DOE to conduct a pre-employment drug test and background review that includes checks of personal references, credit, law enforcement records, and employment/education verifications. Applicants for employment need to be able to obtain and maintain a DOE Q-level security clearance and SCI access, both of which require US citizenship. SCI access may also require a polygraph examination. If you hold more than one citizenship (i.e., of the U.S. and another country), your ability to obtain these levels of access may be impacted.

Applicants offered employment with Sandia are subject to a federal background investigation to meet the requirements for access to classified information or matter if the duties of the position require a DOE security clearance. Substance abuse or illegal drug use, falsification of information, criminal activity, serious misconduct or other indicators of untrustworthiness can cause a clearance to be denied or terminated by the DOE, resulting in the inability to perform the duties assigned and subsequent termination of employment.


All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or veteran status and any other protected class under state or federal law.

Job ID: 685832



  • Engineering
Posted: 2022-09-23 Expires: 2022-10-23

 World-changing technologies. Life-changing careers.

National security is our business. We apply science to help detect, repel, defeat, or mitigate threats.

For more than 60 years, Sandia has delivered essential science and technology to resolve the nation's most challenging security issues.

