IoT / ICS / OT Penetration Tester
Core
Conduct hands-on security assessments of IoT, ICS/OT, and automotive embedded systems, including hardware interaction, firmware reverse engineering, and wireless protocol testing.
Role type
Senior IC IoT/ICS/OT Penetration Tester
Builds
Actionable vulnerability reports and remediation guidance for manufacturers and operators
Domain
Cybersecurity, Embedded Systems, Industrial Control Systems, Automotive
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery
Required skills
Hardware-level security assessment (JTAG/SWD, SPI/I2C/UART, PCB soldering), Firmware reverse engineering (Ghidra, Binary Ninja), Embedded C/C++ source code review, Wireless protocol testing (BLE, Zigbee, Wi-Fi, CAN, LTE/5G), SBOM analysis, Regulatory compliance knowledge (EU CRA, ISO 21434, etc.), Python/Bash scripting, AI-assisted security tooling
Preferred skills
Automotive security (OBD-II, ECU flashing, V2X), ICS/SCADA protocols (Modbus, OPC-UA), Responsible disclosure history, SAST/DAST tooling, ML-based vulnerability detection
Technologies
Ghidra, Binary Ninja, Python, Bash, JTAG, SWD, UART, SPI, I2C, eMMC, NAND flash, BLE, Zigbee, Z-Wave, Wi-Fi, LTE, 5G, CAN bus, LIN, Ethernet, CycloneDX, SPDX
Responsibilities
Plan and execute penetration tests on IoT, ICS/OT, and automotive targets; Perform hardware interaction and firmware extraction; Conduct firmware reverse engineering to identify vulnerabilities; Assess wireless protocols; Perform source code review in C/C++; Conduct supply chain and SBOM analysis; Evaluate compliance with regulations; Produce high-quality written reports; Leverage AI-powered security tooling; Collaborate with engineering teams to improve detection capabilities.
Seniority
Senior, hands-on IC