We are looking for a seasoned Security Researcher to join a team working on some of the most consequential technology challenges in the public interest space. This role sits at the intersection of offensive security thinking, emerging technology risk, and real-world impact — where your findings don't just sit in a report, but shape how organisations and ecosystems operate responsibly.
What You'll Do
Security Research & Vulnerability Analysis
- Conduct in-depth research into system weaknesses, attack surfaces, and evolving threat vectors across complex technical environments
- Evaluate emerging technologies — including AI and quantum computing — for security risks and practical utility
- Design and build prototypes to validate research findings or demonstrate proof-of-concept solutions
Digital Forensics & Incident Analysis
- Lead technical investigations into security incidents and system failures, uncovering root causes across infrastructure and software layers
- Apply advanced forensic methodologies to surface insights that inform both immediate response and longer-term risk mitigation
Standards, Guidance & Engagement
- Translate research findings into practical technical guidance for organisations navigating complex compliance and security landscapes
- Represent the organisation at technical forums and contribute to the development of industry and international standards
- Communicate highly technical findings clearly to senior leadership and non-technical stakeholders
What You Bring
- 5+ years in a senior technical role such as security research, digital forensics, vulnerability assessment, or privacy engineering
- Deep grounding in Computer Science, Computer Engineering, or equivalent technical discipline
- Hands-on, builder's approach to research — you validate ideas by building, not just analysing
- Genuine curiosity about how emerging technologies work, fail, and can be exploited or safeguarded
- Strong ability to distil complex technical concepts for diverse audiences
- Advanced certifications such as CHFI, CIPT, CDPSE, or SANS credentials are advantageous
Think this sounds like you We'd love to hear from you.