1

Malware Researcher Jobs (NOW HIRING)

We are looking for a Principal-level red team security researcher with experience in adversary emulation, offensive tooling, and malware development to design and execute realistic attack simulations ...

We are looking for a senior-level red team security researcher with experience in adversary emulation, offensive tooling, and malware development to design and execute realistic attack simulations in ...

next page

Showing results 1-20

Malware Researcher information

See salary details

$30K

$113.1K

$164.5K

How much do malware researcher jobs pay per year?

As of Jun 29, 2026, the average yearly pay for malware researcher in the United States is $113,102.00, according to ZipRecruiter salary data. Most workers in this role earn between $67,000.00 and $154,000.00 per year, depending on experience, location, and employer.

How much do malware researchers make?

Malware researchers typically earn between $70,000 and $120,000 annually, depending on experience, education, and location. Entry-level positions may start lower, while experienced professionals with specialized skills or certifications can earn higher salaries, especially in cybersecurity-focused environments.

Can you make $500,000 a year in cyber security?

Malware researchers and cybersecurity professionals can potentially earn $500,000 annually, especially with advanced skills, extensive experience, certifications like CISSP or OSCP, and roles in high-paying industries or leadership positions. However, such salaries are typically achieved through senior roles, consulting, or specialized expertise rather than entry-level positions.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role is typically considered an entry-level position in cybersecurity, often suitable for individuals with basic knowledge of network security, threat detection, and security tools. However, some SOC roles may require prior experience or certifications like CompTIA Security+ or CISSP, depending on the complexity of the environment. Advancement usually involves gaining hands-on experience and developing specialized skills in incident response and threat analysis.

What is a Malware Researcher job?

A Malware Researcher is a cybersecurity expert who analyzes malicious software to understand its behavior, origin, and impact. They reverse-engineer malware, develop detection methods, and create defenses to protect systems from cyber threats. Their work involves using specialized tools, programming, and forensic techniques to uncover vulnerabilities and patterns used by attackers. Malware Researchers often collaborate with cybersecurity teams, law enforcement, and organizations to mitigate threats and improve security measures.

What are the key skills and qualifications needed to thrive in the Malware Researcher position, and why are they important?

To thrive as a Malware Researcher, you need strong expertise in computer science, reverse engineering, programming (such as C/C++ or Python), and a deep understanding of operating systems and network protocols. Proficiency with tools like IDA Pro, Ghidra, Wireshark, virtualization platforms, and malware analysis sandboxes, plus certifications like GREM or OSCP, is highly valued. Analytical thinking, problem-solving abilities, attention to detail, and effective communication are crucial soft skills for success in this role. These skills ensure accurate malware identification, effective threat analysis, and clear communication of findings to technical and non-technical stakeholders, all critical for maintaining cybersecurity.

What does a typical day look like for a Malware Researcher?

A typical day for a Malware Researcher involves analyzing suspected malicious files or code samples, documenting findings, and collaborating with cybersecurity teams to develop detection and mitigation strategies. You'll often use specialized tools to perform static and dynamic analysis, write detection rules, and stay updated on the latest threat trends. The role frequently requires responding quickly to new threats and participating in team meetings to discuss ongoing investigations. Expect a mix of independent research and close teamwork, as well as ongoing learning in a fast-paced, high-stakes environment.

How to become a malware researcher?

To become a malware researcher, typically a bachelor's degree in computer science, cybersecurity, or a related field is required. Gaining skills in reverse engineering, programming languages like C and Python, and familiarity with malware analysis tools such as IDA Pro or Wireshark is essential, along with practical experience through internships or labs. Certifications like GREM or GIAC Malware Analysis can also enhance qualifications.
What are the most commonly searched types of Malware Researcher jobs? The most popular types of Malware Researcher jobs are:
What states have the most Malware Researcher jobs? States with the most job openings for Malware Researcher jobs include:
What job categories do people searching Malware Researcher jobs look for? The top searched job categories for Malware Researcher jobs are:
Infographic showing various Malware Researcher job openings in the United States as of June 2026, with employment types broken down into 1% As Needed, 90% Full Time, 1% Part Time, 1% Temporary, and 7% Contract. Highlights an 88% Physical, 3% Hybrid, and 9% Remote job distribution, with an average salary of $113,102 per year, or $54.4 per hour.
DoW SkillBridge Vulnerability Researcher (Cyber199)

DoW SkillBridge Vulnerability Researcher (Cyber199)

Research Innovations Incorporated

Melbourne, FL โ€ข On-site

Full-time

Posted 9 days ago


Key responsibilities

  • Conduct in-depth reverse engineering and vulnerability analysis across various architectures and platforms, including x86/64, ARM, and PowerPC.

  • Research and analyze operating system and application internals to identify and understand security strengths and weaknesses.

  • Participate actively in the Vulnerability Research mentorship program, sharing knowledge and collaborating with colleagues.


Job description

Job Summary:
Research Innovations, Inc. (RII) is a company focused on developing transformative technology for government and military applications. They are seeking a Vulnerability Research SkillBridge candidate to join their Cyber Security team, where the candidate will conduct vulnerability analysis and reverse engineering while supporting Defense and Homeland Security customers.
Responsibilities:
โ€ข Conducting in-depth reverse engineering and vulnerability analysis across various architectures and platforms, including x86/64, ARM, PowerPC, and more
โ€ข Researching and analyzing operating system and application internals, identifying and understanding security strengths and weaknesses of those systems
โ€ข Developing and enhancing functionality by adding features and capabilities to undocumented interfaces
โ€ข Modeling and analyzing in-memory compiled application behavior to identify potential vulnerabilities and improve security measures
โ€ข Developing and understanding mobile/embedded systems and kernel modules, particularly related to vulnerability research
โ€ข Participating actively in our extensive Vulnerability Research mentorship program, sharing knowledge and collaborating with colleagues
Qualifications:
Required:
โ€ข Active US Secret security clearance
โ€ข Proficient understanding of wireless networking and associated security protocols, such as Wi-Fi (802.11), Bluetooth, or cellular networks (2G/3G/4G/5G). Familiarity with common vulnerabilities and attack vectors in wireless communication
โ€ข Strong grasp of legacy exploit mitigations and bypass techniques, including but not limited to Address Space Layout Randomization (ASLR), Data Execution Prevention (DEP/NX), Stack Cookies (Canaries), and Control Flow Integrity (CFI). Experience in identifying and circumventing these security measures
โ€ข In-depth knowledge of both security and network fundamentals, such as cryptography, authentication, access control, and network protocols (TCP/IP, UDP, DNS, HTTP, etc.). Understanding the security implications and potential vulnerabilities associated with these concepts
โ€ข Programming experience with both scripted languages (preferably Python3) and compiled languages (preferably C). Ability to write efficient and secure code for vulnerability research and exploit development purposes
โ€ข Familiarity with low-level architectures such as x86, ARM, or MIPS. Understanding the underlying principles, instruction sets, and memory models of these architectures for vulnerability identification and analysis
โ€ข Experience with operating system internals and implementations, including Windows, Linux, or macOS. Knowledge of system structures, process management, memory management, and security mechanisms at the kernel level
โ€ข Excellent oral, written, and interpersonal communication skills, with the ability to effectively convey complex technical concepts and interact with customers and team members alike
Preferred:
โ€ข Experience with vulnerability research and reverse engineering of real-time operating systems (RTOS), such as FreeRTOS, QNX, or VxWorks. Understanding the unique security challenges and attack vectors specific to RTOS environments
โ€ข Bachelor's or postgraduate degree in Computer Science, Computer Engineering, or a related field
โ€ข Experience with software protection and binary armoring techniques, such as anti-debugging, code obfuscation, or tamper resistance. Understanding the methods employed to protect software from reverse engineering and vulnerability discovery
โ€ข Proficiency in agile development methodologies, including Scrum or Kanban, for efficient collaboration and iterative development in a cybersecurity context
โ€ข Familiarity with low-level iOS/Android development and associated security considerations, such as jailbreaking or rooting, application sandboxing, or secure interprocess communication (IPC)
โ€ข Knowledge of hypervisors and their security implications, including virtualization-based security, guest escape vulnerabilities, or hypervisor-based rootkits
โ€ข Proficiency in malware analysis, including static and dynamic analysis techniques, behavioral analysis, and code deobfuscation. Experience in identifying and analyzing malware samples to understand their capabilities and potential vulnerabilities
โ€ข Experience with constraint solving techniques, such as symbolic execution, theorem proving, or model checking, for vulnerability identification, verification, and exploit generation
โ€ข Background in machine learning, particularly in the context of vulnerability analysis and detection, such as using ML techniques to identify patterns in code or analyze network traffic for anomaly detection
Company:
Research Innovations Inc. (RII) supports critical defense, intelligence, and cyber customers across the U.S. Founded in 2009, the company is headquartered in Alexandria, USA, with a team of 201-500 employees. The company is currently Growth Stage.