1

Malware Research Jobs (NOW HIRING)

Conduct research and training on comprehending emerging malicious code threats. The Malware Analyst Level 2 shall possess the following capabilities: * Conduct both dynamic and static analysis of ...

NSS is currently hiring for an Android Malware Reverse Engineer to support a well known client ... Research on threats such as APT using Open-Source Intelligence (Virus Total, Web, ExploitDB, MITRE ...

NSS is currently hiring for an Android Malware Reverse Engineer to support a well known client ... Research on threats such as APT using Open-Source Intelligence (Virus Total, Web, ExploitDB, MITRE ...

Perform static and dynamic malware analysis, including reverse engineering and extracting malicious ... Research open-source intel to inform threat assessments and signature creation. * Develop and ...

Research open-source intel to inform threat assessments and signature creation. * Develop and ... Eight plus years' demonstrated proficiency in malware analysis (static/dynamic), incident handling ...

NSS is currently hiring for an Android Malware Reverse Engineer to support a well known client ... Research on threats such as APT using Open-Source Intelligence (Virus Total, Web, ExploitDB, MITRE ...

Perform static and dynamic malware analysis, including reverse engineering and extracting malicious ... Research open-source intel to inform threat assessments and signature creation. * Develop and ...

Lead Cyber Threat Analyst

Washington, DC · On-site

$165K - $200K/yr

This position requires deep expertise in threat analysis, malware research, and adversary emulation within highly regulated environments. Responsibilities: * Lead cyber threat analysis and ...

This position requires deep expertise in threat analysis, malware research, and adversary emulation within highly regulated environments. Responsibilities: * Lead cyber threat analysis and ...

NSS is currently hiring for an Android Malware Reverse Engineer to support a well known client ... Research on threats such as APT using Open-Source Intelligence (Virus Total, Web, ExploitDB, MITRE ...

Perform static and dynamic malware analysis, including reverse engineering and extracting malicious ... Research open-source intel to inform threat assessments and signature creation. * Develop and ...

Research open-source intel to inform threat assessments and signature creation. * Develop and ... Eight plus years' demonstrated proficiency in malware analysis (static/dynamic), incident handling ...

Perform static and dynamic malware analysis, including reverse engineering and extracting malicious ... Research open-source intel to inform threat assessments and signature creation. * Develop and ...

Lead Cyber Threat Analyst

Washington, DC · On-site

$165K - $200K/yr

This position requires deep expertise in threat analysis, malware research, and adversary emulation within highly regulated environments. Responsibilities: * Lead cyber threat analysis and ...

next page

Showing results 1-20

People also search for

Malware Research information

See salary details

$11

$44

$75

How much do malware research jobs pay per hour?

As of Jun 11, 2026, the average hourly pay for malware research in the United States is $44.83, according to ZipRecruiter salary data. Most workers in this role earn between $27.88 and $58.89 per hour, depending on experience, location, and employer.

How to become a malware researcher?

Malware researchers analyze malicious software to understand its behavior and develop defenses. They typically hold degrees in computer science, cybersecurity, or related fields, and gain skills in reverse engineering, programming, and using tools like disassemblers and debuggers. Certifications such as GREM or GREM can also enhance credibility and job prospects.

Can you make $500,000 a year in cyber security?

Malware research roles in cybersecurity can offer high salaries, especially for experienced professionals with specialized skills, certifications, and a strong track record. Achieving a $500,000 annual income typically requires advanced expertise, leadership positions, or working in high-demand sectors, often supplemented by bonuses or stock options.

What is the difference between Malware Research vs Malware Analysis?

AspectMalware ResearchMalware Analysis
CredentialsCybersecurity certifications, programming skillsCybersecurity certifications, reverse engineering skills
Work EnvironmentResearch labs, cybersecurity firms, academiaSecurity operations centers, incident response teams
Industry UsageDeveloping detection methods, understanding malware evolutionIdentifying, dissecting, and mitigating malware threats
Search/Comparison IntentUnderstanding malware development and behaviorAnalyzing specific malware samples for threats

Malware Research focuses on studying malware to understand its development, behavior, and evolution, often in research labs or academic settings. Malware Analysis involves dissecting specific malware samples to identify threats and mitigate risks, typically within security operations or incident response teams. Both roles require cybersecurity expertise but differ in their primary objectives and work environments.

What are the key skills and qualifications needed to thrive as a Malware Researcher, and why are they important?

To thrive as a Malware Researcher, you need strong expertise in cybersecurity, reverse engineering, programming (such as C/C++ or Python), and a solid understanding of operating systems and malware behaviors, often supported by a degree in computer science or a related field. Familiarity with tools like IDA Pro, Ghidra, Wireshark, and sandbox environments, as well as certifications like CEH or OSCP, is highly valuable. Analytical thinking, attention to detail, and effective communication are critical soft skills for interpreting complex threats and collaborating with security teams. These skills are essential for identifying, analyzing, and mitigating malicious software to protect organizational assets and maintain cybersecurity.

What is malware research?

Malware research is the process of studying malicious software (malware) to understand how it operates, spreads, and affects computer systems. Researchers analyze malware samples using various techniques to identify their behavior, origins, and vulnerabilities. This information helps in developing effective detection, prevention, and removal strategies to protect individuals and organizations from cyber threats. Malware research also contributes to improving cybersecurity tools and informing law enforcement about emerging threats.

How much do malware researchers make?

Malware researchers typically earn between $70,000 and $120,000 annually, depending on experience, education, and location. Senior professionals with specialized skills in reverse engineering and threat analysis can earn higher salaries, especially in cybersecurity-focused environments.

What are some common challenges faced by professionals working in malware research?

Malware researchers often encounter the challenge of keeping pace with rapidly evolving threats and sophisticated attack techniques. The role requires continuous learning and adaptability, as new malware variants and evasion methods emerge frequently. Additionally, researchers must ensure their analysis environments are secure to prevent accidental infections or data breaches. Collaboration with other cybersecurity teams, such as incident response and threat intelligence, is also essential to sharing insights and developing effective countermeasures.

What does a malware researcher do?

A malware researcher analyzes malicious software to understand how it works, identify its origin, and develop methods to detect and remove it. They use tools like disassemblers, debuggers, and antivirus software, often working in cybersecurity environments and requiring knowledge of programming and operating systems.
More about Malware Research jobs
What cities are hiring for Malware Research jobs? Cities with the most Malware Research job openings:
What states have the most Malware Research jobs? States with the most job openings for Malware Research jobs include:
Infographic showing various Malware Research job openings in the United States as of June 2026, with employment types broken down into 67% Full Time, and 33% Contract. Highlights an 100% In-person job distribution, with an average salary of $93,238 per year, or $44.8 per hour.

Other

Medical, Dental, Vision, Retirement, PTO

Posted 24 days ago


Job description


Job Brief

Cybersecurity, Malware Analysis, GHIDRA, SYSInternals, FireEye AX

Job Description

RealmOne was built on the principle that people matter first and foremost. We believe in providing a strong work/life balance by investing in our employees and encouraging professional and personal growth. We do this by offering exceptional benefits, flexible schedules, and the tools necessary to achieve success through paid training, mentoring, and the opportunity to work alongside top-notch industry professionals.

Join us on this journey as we execute this mission-critical contract providing high-end analytics and data science services within the REALM of cybersecurity.

Your effort and expertise are crucial to the success and execution of this impactful mission that is critical in ensuring mission success through Security Engineering, Risk Management and Assessment, and Insider Threat Analysis, by improving, protecting, and defending our Nation's Security.

Job Description:

  • Support clients in solving difficult problems by providing recommendations based on the results of malicious code analysis. Analyze and evaluate malicious code to create technical reports for indicators of compromise and to recommend mitigation and detection actions. Work to continually improve current malware analysis techniques and identify new ways to improve malware identification best practices. Conduct research and training on comprehending emerging malicious code threats.

The Malware Analyst Level 2 shall possess the following capabilities:

  • Conduct both dynamic and static analysis of suspicious code in order to establish malicious capability and determine potential impact.
  • Experience with host and network monitoring for analysis of malware execution & propagation methodologies.
  • Perform analysis on captured data, such as audit, log, network traffic, etc. to identify any intrusion-related artifacts.
  • Understanding of operating system-specific exploitation vectors.
  • Analyze malicious code by employing tools, scripting languages, and leveraging virtual machines/environments.
  • Support 24/7 monitoring of malware threats to Customer networks, hosts, mission platforms, and boundaries.
  • Generate documentation of vulnerabilities and exploits used by malware in written reports.
  • Communicate written and verbal information in a timely, clear, and concise manner.
  • Apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Generate technical summary of findings in accordance with established reporting procedures.
  • Develop and recommend mitigation strategies.
  • Develop signatures, techniques, and rules to identify malware vectors.
  • Collaborate with internal and external organizations to discover new threats, develop mitigation techniques, processes, and tools which further the CSSP mission, as directed by the customer.
  • Evaluate emerging threats.

Qualifications:

  • Five (5) years of demonstrated experience in cybersecurity.
  • Three (3) years of demonstrated experience with malware analysis.
  • Two (2) years of demonstrated experience with tools such as GHIDRA, SYSInternals, FireEye AX, or similar technologies.
  • One (1) year of demonstrated experience with development of code in languages such as Python, Lua, C/C++, Ruby or similar
  • No Degree Required

Certifications Required:

  • Requires DoD 8570 compliance with CSSP Analyst Baseline certification.
  • Information Assurance Technical (IAT) Level II or Level III certification.
  • Computing Environment (CE) certification. The CE certification requirements can be fulfilled with variations of Windows, Cisco, Linux, Microsoft, Python, Red Hat, Splunk, Kibana, Advanced Cyber Defense Course, and other OS systems.
  • Requires Global Information Assurances Certification (GIAC) Certified Forensic Analyst (GCFA) certificate, or Certified Reverse Engineering Malware (GREM) certificate.
  • Requires successful completion of the Splunk software training course "Fundamentals 1".

Position requires active Security Clearance with appropriate Polygraph

Pay Range: 185,000-235,000

The RealmOne pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Our approach to crafting offers considers various factors to establish an equitable and competitive compensation package. These considerations include, but are not limited to, the extent and intricacy of the role's responsibilities, the candidate's educational background, their work experience, and the specific competencies crucial for success in the role.

RealmOne Benefits:

  • Healthcare Coverage + Insurance: Medical: Three (3) rich healthcare options through CareFirst with 100% or majority company-paid premiums. Tax-advantaged health savings account available with generous employer contribution. Dental + Vision: 100% employer-paid for employees and family with buy-up option available.
  • Retirement + Savings: 401K - 10% TOTAL CONTRIBUTION - 5% safe harbor - 5% annual profit share. Immediate vested, no match required!
  • Paid Time Off + More: 4 weeks starting PTO - 11 federal holidays + 2 floating holidays - Paid hours for company-required training.
  • Career Growth + Development: Access to FREE 24/7 learning via Udemy - Opportunities to participate in tech councils, industry initiatives, etc. - $7,500 annual Educational & Professional Development Assistance.
  • MORE BENEFITS...FOR EVERY LIFESTYLE! - Paid parental leave - Adoption assistance - Annual swag drops - Flexible work schedules - -Generous referral bonus program - Employee appreciation + family-friendly corporate events ...and much more.

ABOUT US

  • RealmOne is a mid-sized science and technology company dedicated to solving our customers' toughest mission challenges.
  • Headquartered in Columbia, MD., RealmOne supplies advanced cybersecurity, data science and software engineering services and products to customers in the Government and commercial sectors.
  • RealmOne delivers encompassing mission assurance and critical systems support to government customers across various U.S. locations to include Colorado, Georgia, Hawaii, Texas, Utah, and Virginia.
  • RealmOne has earned numerous awards, including being named a Top Workplace by the Baltimore Sun. With more than 30+ active contracts, 12 of which are prime, RealmOne stands as a premier innovator supporting the Government and Department of Defense, with team members located nationwide.

Disclaimer: Benefits packages offered by RealmOne are subject to variation and may differ based on work location, clearance level, and other eligibility criteria. Specific eligibility, availability, and scope of benefits are not guaranteed, may differ from those generally described, and remain subject to modification at the sole discretion of the company.