1

Hardware Vulnerability Research Jobs (NOW HIRING)

You'll work at the level of OS internals and kernel interfaces, optimize for real hardware, and ... Build production systems that drive AI-powered vulnerability research and exploit development

Overview i3 is seeking a Vulnerability Research Engineer to support the Naval Research Laboratory ... Experience with FPGA/DSP-adjacent development, hardware/software integration, or test automation ...

Senior Vulnerability Researcher

MD · Remote

$165K - $200K/yr

If you're passionate about vulnerability research that can make a tangible impact on national ... Identify vulnerabilities and potential attacks across hardware, software, procedures, logistics ...

Vulnerability Researcher

Seattle, WA · On-site

$142K - $263K/yr

... research on Apple software, firmware, and hardware components. Analyzing and exploiting ... vulnerability classes and exploitation techniques Creative & effective problem-solving and ...

Showing results 21-40

Hardware Vulnerability Research information

See salary details

$51K

$146.2K

$196.5K

How much do hardware vulnerability research jobs pay per year?

As of Sep 9, 2026, the average yearly pay for hardware vulnerability research in the United States is $146,230.00, according to ZipRecruiter salary data. Most workers in this role earn between $123,500.00 and $163,000.00 per year, depending on experience, location, and employer.

What is hardware vulnerability research?

Hardware vulnerability research involves identifying, analyzing, and addressing security weaknesses in physical computer components such as CPUs, memory chips, and embedded devices. Researchers in this field use a combination of reverse engineering, side-channel analysis, and testing methodologies to discover flaws that could be exploited by attackers. The goal is to uncover vulnerabilities before malicious actors do and to work with manufacturers to develop patches or mitigations. This research is critical for ensuring the security of devices ranging from servers to IoT products.

What are the key skills and qualifications needed to thrive as a hardware vulnerability researcher?

To thrive as a Hardware Vulnerability Researcher, you need a strong background in computer engineering, embedded systems, and cybersecurity, often supported by degrees in electrical engineering or computer science. Familiarity with hardware description languages (HDL), reverse engineering tools, logic analyzers, and certifications like CISSP or OSCP are commonly required. Analytical thinking, problem-solving, and clear communication are essential soft skills for effectively identifying vulnerabilities and collaborating with cross-functional teams. These competencies are crucial for detecting and mitigating security threats in hardware, ensuring device integrity and protecting sensitive data.

What are some of the common challenges faced by professionals in hardware vulnerability research roles?

Professionals in hardware vulnerability research often encounter challenges such as staying ahead of rapidly evolving attack techniques and understanding complex, proprietary hardware architectures. The role requires regularly reverse-engineering hardware components and firmware, which can be time-consuming and demand a high level of technical expertise. Collaborating with cross-disciplinary teams, such as software security analysts and hardware engineers, is essential to ensure thorough threat assessments and effective mitigation. Researchers must also keep up with the latest academic findings and industry trends to stay effective in identifying and addressing new vulnerabilities.

What is the difference between Hardware Vulnerability Research vs Hardware Security Engineer?

AspectHardware Vulnerability ResearchHardware Security Engineer
CredentialsKnowledge of hardware design, security protocols, certifications like CISSP or CEH beneficialSimilar credentials, often with security certifications and hardware expertise
Work EnvironmentResearch labs, cybersecurity firms, academiaCorporate security teams, product development, hardware manufacturing companies
Industry UsageIdentifying vulnerabilities, analyzing hardware flaws, developing exploitsImplementing security measures, designing secure hardware, mitigating vulnerabilities

Hardware Vulnerability Research focuses on discovering and analyzing hardware flaws, while Hardware Security Engineers work on securing hardware systems and fixing vulnerabilities. Both roles require hardware knowledge and security certifications but differ in their primary objectives and work environments.

Infographic showing various Hardware Vulnerability Research job openings in the United States as of September 2026, with employment types broken down into 1% Internship, 1% As Needed, 88% Full Time, 9% Part Time, and 1% Contract. Highlights an 79% Physical, 3% Hybrid, and 18% Remote job distribution, with an average salary of $146,230 per year, or $70.3 per hour.

Vulnerability Researcher

New York, NY • On-site

Full-time

Posted 21 days ago


Job description

Vulnerability Researcher | New York (in office, 5 days/week) | Full relocation support


A small, well-funded startup is building something new: systems that use AI to find vulnerabilities and develop exploits at scale. The team moves fast and works close to the metal. It's made up of people who've done serious work before, including alumni of frontier AI labs, top US intelligence agencies, elite Israeli intelligence units, and a defense tech unicorn, backed by tier-1 US investors..


This is not a prompt engineering job. You'll work at the level of OS internals and kernel interfaces, optimize for real hardware, and ship production code where performance and correctness genuinely matter. You'll own problems from first idea to running system.


What you'll do

  • Build production systems that drive AI-powered vulnerability research and exploit development
  • Work in OS internals, kernel-level interfaces, and low-level performance optimization
  • Own problems end to end: architecture, implementation, and shipped code
  • Partner with vulnerability researchers and security operators to turn slow manual cyber work into automated, repeatable systems
  • Help set the standards and rhythm of a young team aiming to lead AI-native offensive cyber


What you'll need

  • ~2+ years of engineering experience (exceptional new grads with real low-level work are encouraged to apply)
  • Deep low-level systems experience: OS internals, kernel work, runtime detection, dynamic analysis, dynamic interception, or similar
  • A builder mindset: comfortable owning systems end to end and shipping fast, correct code
  • Real comfort with ambiguity. This is the most important thing
  • Willing to be in person in Washington, D.C. five days a week (full relocation support)


Nice to have

  • Vulnerability research, CTF, or offensive security experience
  • High ranking on ctftime.org or similar
  • Published research or notable CVEs
  • Founder or early-engineer experience
  • Open source contributions to OS-level tooling
  • Experience at a cyber/security startup (runtime detection, dynamic analysis, OS tooling)
  • Exposure to ML or AI systems work



If jumping on a flight across the world on short notice sounds exciting rather than stressful, you'll fit right in. This is for the engineer who doesn't just want to join a great company, but help build one.