QNX

Senior Security Researcher - Embedded Systems

QNX

Ottawa, Ontario, Canada · Full Time

Be the first to apply

Experience
Any
Salary
USD 108,750 – USD 152,250 / year
Openings
1
Posted
2 weeks ago
Work mode
In office
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

Overview

QNX is a leading provider of trusted embedded software solutions, powering critical systems in industries such as automotive, medical devices, industrial controls, robotics, aerospace, and defense. With technology deployed in over 275 million vehicles worldwide, QNX focuses on delivering secure operating systems, hypervisors, and middleware that enable software-defined businesses to succeed.

Role Purpose

We are expanding our Product Cybersecurity team and are seeking enthusiastic security researchers passionate about discovering how software can be compromised, identifying hidden vulnerabilities, and advancing offensive security approaches. If you enjoy deep analysis of crash dumps, designing custom fuzzing tools, reverse engineering software internals, or using AI to detect novel attack vectors, this role offers a compelling challenge.

Key Responsibilities

  • Identify vulnerabilities in QNX products and embedded system components proactively before exploitation by attackers.
  • Perform penetration testing and offensive security evaluations on live embedded platforms.
  • Plan, develop, and conduct extensive fuzzing campaigns to detect memory corruptions, logical errors, and new vulnerability types.
  • Analyze software crashes and defects to assess exploit feasibility and security consequences.
  • Conduct in-depth root cause investigations and develop exploits to demonstrate real-world attack scenarios.
  • Utilize AI and machine learning techniques to accelerate discovery of security flaws and refine analysis processes.
  • Create and enhance automated security testing frameworks, fuzzers, scanners, and exploit validation tools.
  • Collaborate closely with engineering teams to reproduce, investigate, and resolve vulnerabilities.
  • Contribute to security research, tools, and methodologies that reinforce organizational security posture.
  • Remain current with emerging threat landscapes and vulnerability research relevant to embedded operating systems.

Qualifications

  • Practical experience in vulnerability research, penetration testing, exploit creation, or offensive security disciplines.
  • Proficiency with fuzzing tools such as AFL, libFuzzer, or comparable frameworks.
  • Solid understanding of low-level software architecture including memory management, process isolation, POSIX APIs, concurrency, and embedded systems principles.
  • Knowledge of common vulnerability categories such as use-after-free, heap corruption, buffer overflows, race conditions, privilege escalation, and logic flaws.
  • Strong programming capabilities in C, C++, and Python.
  • Experience in building automation and tooling for security tests and vulnerability detection.
  • Self-motivated in driving research projects independently from inception through verification.

Desirable Skills

  • Application of AI or machine learning approaches to security research or vulnerability identification.
  • Background in automotive cybersecurity, embedded systems, or working with QNX platforms.
  • Familiarity with industry standards like ISO/SAE 21434 or secure software development lifecycle practices.
  • Experience reverse engineering with tools such as IDA Pro, Ghidra, or Binary Ninja.
  • Working knowledge of operating system internals, kernels, device drivers, or low-level system software.

Why Join Us

  • Opportunity to investigate, analyze, and enhance security of software running critical systems worldwide.
  • Freedom to pursue innovative security research questions and build cutting-edge tools and automation.
  • Experimentation with emerging AI-driven security techniques.
  • Contribute significantly to products deployed at massive scale.
  • Collaborate with expert embedded engineers and security researchers.
  • Transform curiosity and creativity into tangible security improvements.

Work Conditions and Benefits

  • Standard weekly work hours: 40 hours.
  • Competitive base salary range from $108,750 to $152,250.
  • Eligibility for the BlackBerry Variable Incentive Pay (VIP) bonus program that rewards contributions to company success.
  • Comprehensive employee benefits covering medical, dental, vision, life, disability insurance, retirement plans, stock purchase programs, and paid time off based on eligibility.

Additional Information

  • This is a regular full-time position based onsite in Ottawa, Ontario, Canada.
  • The position is actively open and the company seeks immediate hire.
  • There is no use of AI for applicant screening; all evaluations are conducted by the hiring team.

How they work

Teamwork & Collaboration Problem Solving Attention to Detail Creativity

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help
Broxer