We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
Quick apply
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
Quick apply
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
$60.25 - $80.25/hr
Triage security findings received through a public bug bounty program, communicating with both the developers and independent security researchers * Perform Security Assessments & Assist in ...
$60.25 - $80.25/hr
Triage security findings received through a public bug bounty program, communicating with both the developers and independent security researchers * Perform Security Assessments & Assist in ...
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
Quick apply
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
Quick apply
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
Quick apply
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
We are seeking security researchers to independently explore and exploit complex systems, from kernels to embedded platforms, to solve the unsolvable. This role combines deep technical problem ...
... Research Lab (AFRL) in Rome, NY. The Independent Security Assessor will report directly to the Authorizing Officer (AO) while conducting independent, comprehensive assessments of the management ...
... Research Lab (AFRL) in Rome, NY. The Independent Security Assessor will report directly to the Authorizing Officer (AO) while conducting independent, comprehensive assessments of the management ...
... Research Lab (AFRL) in Rome, NY. The Independent Security Assessor will report directly to the Authorizing Officer (AO) while conducting independent, comprehensive assessments of the management ...
... Research Lab (AFRL) in Rome, NY. The Independent Security Assessor will report directly to the Authorizing Officer (AO) while conducting independent, comprehensive assessments of the management ...
OR · Remote
$102K - $180K/yr
Conduct independent security research, explore new attack vectors, and deliver actionable insights. * Design, develop, and maintain internal security tools and frameworks to strengthen our security ...
Quick apply
OR · Remote
$102K - $180K/yr
Conduct independent security research, explore new attack vectors, and deliver actionable insights. * Design, develop, and maintain internal security tools and frameworks to strengthen our security ...
Conduct independent security research, explore new attack vectors, and deliver actionable insights. * Design, develop, and maintain internal security tools and frameworks to strengthen our security ...
Conduct independent security research, explore new attack vectors, and deliver actionable insights. * Design, develop, and maintain internal security tools and frameworks to strengthen our security ...
... System Security Plan in support of DAF CLOUDworks at the Air Force Research Lab (AFRL) in Rome, NY. The Independent Security Assessor will report directly to the Authorizing Officer (AO ...
... System Security Plan in support of DAF CLOUDworks at the Air Force Research Lab (AFRL) in Rome, NY. The Independent Security Assessor will report directly to the Authorizing Officer (AO ...
... Independent Verification and Validation (IV&V), Quality Assurance (QA), Compliance, and Research ... You must have security controls and OSCAL experience in both U.S. Government and Commercial ...
Quick apply
... Independent Verification and Validation (IV&V), Quality Assurance (QA), Compliance, and Research ... You must have security controls and OSCAL experience in both U.S. Government and Commercial ...
About the Role As our Cybersecurity Researcher, you will own the intersection of AI and cyber ... Run independent security audits and penetration tests across systems and infrastructure * Identify ...
New
About the Role As our Cybersecurity Researcher, you will own the intersection of AI and cyber ... Run independent security audits and penetration tests across systems and infrastructure * Identify ...
New
... Independent Verification and Validation (IV&V), Quality Assurance (QA), Compliance, and Research ... You must have security controls and OSCAL experience in both U.S. Government and Commercial ...
... Independent Verification and Validation (IV&V), Quality Assurance (QA), Compliance, and Research ... You must have security controls and OSCAL experience in both U.S. Government and Commercial ...
The Research Architect for Dynamic Application Security Testing (DAST) is responsible for ... independent research, posting on the Veracode blog, and other means.
The Research Architect for Dynamic Application Security Testing (DAST) is responsible for ... independent research, posting on the Veracode blog, and other means.
Austin, TX · On-site +1
Constantly and independently work to identify improvements and automation opportunities in the recaptured data workflow and ETL pipelines. * Participate in security research including investigation ...
Austin, TX · On-site +1
Constantly and independently work to identify improvements and automation opportunities in the recaptured data workflow and ETL pipelines. * Participate in security research including investigation ...
Up to 20% of your time will be allocated for independent research, and this means you'll need ... Careers Veracode was founded by world-class security experts - and it continues to attract top ...
Up to 20% of your time will be allocated for independent research, and this means you'll need ... Careers Veracode was founded by world-class security experts - and it continues to attract top ...
Research Innovations Incorporated is redefining defense technology, seeking security researchers to ... • Independently scoping ambiguous or underexplored attack surfaces and driving research from ...
Research Innovations Incorporated is redefining defense technology, seeking security researchers to ... • Independently scoping ambiguous or underexplored attack surfaces and driving research from ...
$47.60 - $48.21
4% of jobs
$48.21 - $48.82
6% of jobs
$48.82 - $49.43
11% of jobs
$49.61 is the 25th percentile. Wages below this are outliers.
$49.43 - $50.04
11% of jobs
$50.04 - $50.66
7% of jobs
The median wage is $51.18 / hr.
$50.66 - $51.27
11% of jobs
$51.27 - $51.88
7% of jobs
$51.88 - $52.49
11% of jobs
$52.76 is the 75th percentile. Wages above this are outliers.
$52.49 - $53.10
11% of jobs
$53.10 - $53.72
7% of jobs
$53.72 - $54.33
11% of jobs
$47
$51
$54
| Aspect | Independent Security Researcher | Penetration Tester |
|---|---|---|
| Certifications | OSCP, CEH, CISSP | OSCP, CEH, GPEN |
| Work Environment | Self-directed, often freelance or contract-based | Typically employed by security firms or organizations |
| Industry Usage | Researching vulnerabilities, discovering exploits, publishing findings | Simulating attacks to test security defenses |
While both roles focus on cybersecurity, Independent Security Researchers primarily discover and analyze vulnerabilities independently, often publishing their findings. Penetration Testers conduct controlled security assessments for organizations, focusing on exploiting vulnerabilities to evaluate defenses. Both roles require similar certifications and skills but differ in work setting and objectives.

Full-time
Posted 21 days ago
Leading advanced vulnerability research efforts across operating systems, kernels, firmware, hypervisors, embedded platforms, and complex application stacks.
Independently scoping ambiguous or underexplored attack surfaces and driving research from initial hypothesis through validated findings.
Performing deep reverse engineering and in-memory analysis of compiled binaries across multiple architectures (x86/x64, ARM, PowerPC, etc.).
Designing and executing novel exploitation techniques and mitigation evaluations, including identifying real-world weaknesses in modern defense mechanisms.
Analyzing undocumented or partially documented system behavior and extending internal interfaces or tooling to support research goals.
Collaborating with other senior researchers to shape technical direction, review complex work, and raise the overall quality of research output.
Translating low-level technical findings into clear, actionable insights for internal stakeholders and, when appropriate, customers.
Contributing to research culture through mentorship, knowledge sharing, and improvements to tools, methodologies, and workflows.
Conducted high-impact vulnerability research on real-world systems with minimal guidance, producing findings that influenced security decisions or mitigations.
Demonstrated deep understanding of operating system internals (Windows, Linux, macOS), kernel subsystems, and low-level execution models.
Reverse engineered complex binaries, firmware, or kernel components and reasoned about their behavior in memory.
Developed proof-of-concept exploits or mitigation bypasses that go beyond simple crashes and demonstrate meaningful impact.
Shown strong intuition for exploit mitigations such as ASLR, DEP/NX, stack canaries, CFI, and where their assumptions break down.
Written research tooling, scripts, or frameworks (e.g., Python, C/C++) to support analysis, exploitation, or automation.
Collaborated closely with other researchers, provided technical feedback, and influenced how work is approached or evaluated.
Communicated complex technical concepts clearly in writing and discussion, including with other experts.
Experience with hypervisors, virtualization stacks, firmware boot chains, or trusted execution environments.
Background in embedded systems, RTOS environments, or mobile platforms (iOS/Android).
Familiarity with networking or wireless stacks (Wi-Fi, Bluetooth, cellular) and their security models.
Contributions to the vulnerability research community (publications, talks, open source).
Experience with symbolic execution, constraint solving, fuzzing frameworks, or advanced program analysis techniques.
Malware analysis experience, including deobfuscation, behavioral analysis, or adversarial tooling.
Interest in shaping long-term research direction, mentoring other researchers, or acting as a technical authority without moving into management.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Sourced by ZipRecruiter
Software development
51 - 200 Employees
Alexandria, VA, US
2009