Principal Security Researcher

Mindbox Sp. z o.o. KRAKÓW 2026-09-14


  • Proven experience in delivering highly sensitive cybersecurity research projects.

  • Deep expertise in:

    • Vulnerability discovery and exploit development (0-day, vulnerability disclosure)

    • Reverse engineering, fuzzing, penetration testing, black-box and source code review

    • Software security, system architecture, and mobile security (Android, iOS)

    • Hardware hacking and wireless technology



  • Strong programming background and automation experience.

  • Familiarity with AI for security research, leveraging and training AI models for discovery/validation of vulnerabilities.

  • Solid understanding of Linux, Windows, Android, and iOS.

  • Exceptional analytical and problem-solving abilities, coupled with clear communication skills.

  • Degree in Computer Science (or equivalent experience).

  • Active participation in cybersecurity industry and vulnerability disclosure programs is a plus.


Preferred Certifications & Skills



  • Offensive Security, CREST, or relevant advanced security certifications.

  • Hands-on experience with security for AI systems, LLM security risks, and GenAI exploitation models.




Joining this project you’ll become part of Mindbox – a tech-driven company where consulting, engineering, and talent meet to build meaningful digital solutions. We’ll back you up every step of the way, accelerate your development, and ensure your skills make a difference. 



At Mindbox we connect top IT talents with technology projects for leading enterprises across Europe. 




 


Join Our Client’s Team as a Principal Security Researcher – Drive Cybersecurity Innovation with Offensive Security


Are you passionate about discovering zero-day vulnerabilities, developing exploits, and innovating security research with AI? Our client, a global leader in financial services, is looking for a Principal Security Researcher to join its Cybersecurity Research & Offensive Security (CROS) team, playing a critical role in identifying risks and building scalable solutions to strengthen resilience against sophisticated cyber threats.


This role demands technical mastery, out-of-the-box thinking, and the ability to operate within highly sensitive projects that directly impact global security posture.




Sounds like your kind of challenge? 



#LI – Hybrid: 6x/msc from the office in Kraków




What you get in return


  • Flexible cooperation model 

  • Hybrid work setup6x/msc from the office in Kraków -  remote days available depending on the client’s arrangements 

  • Collaborative team culture – work alongside experienced professionals eager to share knowledge 

  • Continuous development – access to training platforms and growth opportunities 

  • Comprehensive benefits – including Interpolska Health Care, Multisport card, Warta Insurance, and more 

  • High quality equipment – laptop and essential software provided 


,[Lead security research projects targeting critical systems and services., Perform advanced 0-day vulnerability discovery, exploit development, reverse engineering, and fuzzing., Analyze and interpret the evolving threat landscape, delivering actionable insights., Engage with cybersecurity leads, technology functions, and global business teams to ensure risk reduction., Drive automation, tooling, and AI-driven innovation (e.g., applying GenAI, LLMs, and AI for Security in vulnerability discovery and validation)., Support security testing of emerging technologies, mobile platforms, wireless protocols, and hardware., Maintain strong collaboration with Offensive Security and Cybersecurity Engineering teams., Produce security research outputs and articulate business risk impact to senior stakeholders.] Requirements: Cybersecurity, Testing, Security, Android, iOS, Wireless, AI, Linux, Windows, Communication skills