1

Malware Exploit Developer Jobs (NOW HIRING)

Malware Analyst III (MA3) Salary: Up to $217,500, depending on education and experience Security ... engineering, vulnerability analysis, exploit development, and related disciplines.

Malware Analyst

Fort George G Meade, MD · On-site

$112K - $179K/yr

Possess comprehensive knowledge of programming skills:including C/C++ and Assembly language ... exploit development, and related disciplines. * Create malware detection topologies; conduct ...

Malware Analyst

Fort George G Meade, MD · On-site

$112K - $179K/yr

Possess comprehensive knowledge of programming skills:including C/C++ and Assembly language ... exploit development, and related disciplines. * Create malware detection topologies; conduct ...

Malware Analyst

Fort George G Meade, MD · On-site

$112K - $179K/yr

Possess comprehensive knowledge of programming skills:including C/C++ and Assembly language ... exploit development, and related disciplines. * Create malware detection topologies; conduct ...

In this role, you will analyze, dissect, and reverse-engineer malware and advanced persistent ... Knowledge of networking protocols, encryption, and exploit development is a plus. * Strong problem ...

Staying current on emerging threats, malware trends, and reverse-engineering techniques is ... Knowledge of networking protocols, encryption, and exploit development is a plus. * ​​Strong ...

$150 - $200/hr

In this role, you will analyze, dissect, and reverse-engineer malware and advanced persistent ... Knowledge of networking protocols, encryption, and exploit development is a plus. * Strong problem ...

In this role, you will analyze, dissect, and reverse-engineer malware and advanced persistent ... Knowledge of networking protocols, encryption, and exploit development is a plus. * Strong problem ...

Your research will directly power our detection engineering teams to stay ahead of adversaries ... Hands-on expertise analyzing malware, exploit kits, and adversary infrastructure. * A proven track ...

next page

Showing results 1-20

Malware Exploit Developer information

What is a malware exploit developer?

A Malware Exploit Developer is a cybersecurity professional who specializes in identifying and exploiting software vulnerabilities to create malware or proof-of-concept attacks. These individuals understand low-level programming, operating system internals, and security flaws in order to develop code that can bypass security defenses. While some work for ethical purposes such as penetration testing or research, others may operate maliciously. Their work helps organizations identify and patch vulnerabilities before they can be exploited by attackers.

What are the key skills and qualifications needed to thrive as a malware exploit developer, and why are they important?

A Malware Exploit Developer needs a deep understanding of computer science fundamentals, operating systems, network protocols, and vulnerability analysis, often supported by a degree in computer science or cybersecurity. Mastery of reverse engineering tools, disassemblers (like IDA Pro), debuggers, and programming languages such as C/C++ or Python is typically required, along with certifications like OSCP or CEH. Strong analytical thinking, creativity, and attention to detail help in identifying novel vulnerabilities and developing effective exploits. These skills are crucial for creating sophisticated attack tools, understanding threat landscapes, and maintaining an edge in cybersecurity research or defense.

What are some common challenges faced by malware exploit developers when working with evolving security measures?

Malware Exploit Developers frequently encounter the challenge of adapting their techniques to bypass constantly updated security protocols and software patches. This requires staying current with the latest vulnerabilities, understanding advanced defense mechanisms like sandboxing and behavioral analysis, and employing creative problem-solving to craft effective exploits. Additionally, collaborating with teams such as penetration testers and reverse engineers is often necessary to refine tools and ensure effectiveness in real-world scenarios. Keeping up with the fast pace of security advancements is both demanding and critical for success in this role.

What is the difference between Malware Exploit Developer vs Penetration Tester?

AspectMalware Exploit DeveloperPenetration Tester
CredentialsKnowledge of exploit development, programming, cybersecurity certifications (e.g., OSCP, CEH)Certifications like CEH, OSCP, CISSP often preferred
Work EnvironmentTypically in cybersecurity labs, research environments, or offensive security teamsClient sites, security firms, or internal security teams
Industry UsageUsed in offensive security, malware analysis, and exploit researchUsed in security assessments, vulnerability testing, and risk analysis

Malware Exploit Developers focus on creating malicious code and exploits, often for offensive security or research, while Penetration Testers simulate attacks to identify vulnerabilities. Both roles require cybersecurity knowledge and certifications but serve different purposes within cybersecurity strategies.

What are popular job titles related to Malware Exploit Developer jobs?

For Malware Exploit Developer jobs, the most frequently searched job titles are:

Infographic showing various Malware Exploit Developer job openings in the United States as of September 2026, with employment types broken down into 85% Full Time, 3% Part Time, and 12% Contract. Highlights an 79% Physical, 4% Hybrid, and 17% Remote job distribution.

Vulnerability/Malware Researcher (Reverse Engineer)

Arlington, VA • On-site

$160K - $180K/yr

Full-time

Posted 4 days ago


Job description

Everforth ECS is seeking a Vulnerability/Malware Researcher (Reverse Engineer) to join our team in Arlington, VA (Hybrid). This position is contingent upon award.
We are seeking a highly skilled Vulnerability/Malware Researcher (Reverse Engineer) to identify, analyze, and understand complex software vulnerabilities and malicious code that may impact organizational systems, products, and infrastructure. This role will conduct in-depth malware analysis, reverse engineer software and firmware, perform exploitation and tactics, techniques, and procedures (TTPs) analysis to uncover exploitable weaknesses, and provide actionable intelligence to support detection, response, and remediation efforts.
The ideal candidate possesses strong low-level programming knowledge, reverse engineering expertise, and experience analyzing sophisticated malware, exploit techniques, and advanced adversary tradecraft.
Key Responsibilities
Malware Analysis & Reverse Engineering
  • Perform static and dynamic analysis of malicious software, including ransomware, trojans, rootkits, spyware, and advanced persistent threat (APT) malware.
  • Reverse engineer malware samples to identify functionality, persistence mechanisms, command-and-control (C2) communications, and attacker objectives.
  • Develop detailed malware analysis reports and technical documentation.
  • Research evolving malware techniques and adversary capabilities.

Vulnerability Research
  • Identify and analyze software, operating system, firmware, and application vulnerabilities.
  • Perform code analysis to discover security weaknesses and exploit paths.
  • Research emerging vulnerabilities and assess organizational exposure.
  • Validate security findings through proof-of-concept testing and exploit analysis.
  • Collaborate with remediation teams to prioritize and mitigate identified risks.

Security Research & Threat Analysis
  • Investigate adversary tactics, techniques, and procedures (TTPs) on device/service targeting procedures.
  • Analyze exploit kits, attack frameworks, and intrusion methods used by threat actors.
  • Support intelligence-driven security initiatives through technical research and threat assessments.
  • Correlate research findings with threat intelligence and incident response investigations.

Detection Development
  • Create and maintain Indicators of Compromise (IOCs), YARA rules, Sigma rules, and detection signatures.
  • Develop behavioral detections and analytic content for Security Operations Center (SOC) use.
  • Assist threat hunting teams by providing technical indicators and adversary insights.
  • Support development of MITRE ATT&CK procedure-level mapping artifacts.
  • Enhance detection coverage based on research findings and threat trends.

Research Tool Development
  • Develop custom scripts, automation tools, and utilities to support malware analysis and vulnerability research.
  • Improve reverse engineering workflows through automation and tooling enhancements.
  • Maintain secure malware analysis laboratories and research environments.
  • Evaluate emerging security research technologies and platforms.

Collaboration & Reporting
  • Partner with Incident Response, Threat Intelligence, SOC, Product Security, and Engineering teams.
  • Present technical findings to security leadership and engineering stakeholders.
  • Produce technical reports, white papers, and research briefings.
  • Contribute to internal knowledge bases and security best practices.

Salary Range: $160,000 - $180,000
General Description of Benefits
  • Top Secret Clearance
  • Bachelor's degree in Computer Science, Cybersecurity, Computer Engineering, or a related technical field, or equivalent experience.
  • 7+ years of experience in malware analysis, reverse engineering, vulnerability research, or offensive security.
  • Strong understanding of operating system internals, including Windows and Linux.
  • Understanding and familiarity with MITRE ATT&CK framework.
  • Experience reverse engineering compiled software using industry-standard tools.
  • Knowledge of assembly language (x86, x64, ARM) and executable file formats.
  • Proficiency in at least one programming language such as Python, C, C++, Rust, or Go.
  • Experience analyzing malware behavior through static and dynamic analysis techniques.
  • Understanding of software exploitation concepts, memory corruption vulnerabilities, and attack methodologies.
  • Strong analytical, problem-solving, and investigative skills.