Vulnerability Researcher
Reston, VA · On-site +1
Approval of remote and hybrid work is not guaranteed regardless of work location.For additional ... Reverse engineering, vulnerability research, malware analysis, and/or CNO tool development
Reston, VA · On-site +1
Approval of remote and hybrid work is not guaranteed regardless of work location.For additional ... Reverse engineering, vulnerability research, malware analysis, and/or CNO tool development
Reston, VA · On-site +1
Approval of remote and hybrid work is not guaranteed regardless of work location.For additional ... Reverse engineering, vulnerability research, malware analysis, and/or CNO tool development
Reston, VA · On-site +1
Approval of remote and hybrid work is not guaranteed regardless of work location.For additional ... Reverse engineering, vulnerability research, malware analysis, and/or CNO tool development
Reston, VA · On-site +1
Approval of remote and hybrid work is not guaranteed regardless of work location.For additional ... Reverse engineering, vulnerability research, malware analysis, and/or CNO tool development
Washington, DC · Remote
$167K - $250K/yr
... malware, and identity data into mission outcomes. This role is remote, but the person in this ... Familiarity with infostealer and malware-derived intelligence and identity analytics. * Hands-on ...
Washington, DC · Remote
$167K - $250K/yr
... malware, and identity data into mission outcomes. This role is remote, but the person in this ... Familiarity with infostealer and malware-derived intelligence and identity analytics. * Hands-on ...
Washington, DC · Remote
... analysts, and mission engineers to shape technical decisions and elevate the team's forensic ... Remote status is subject to change at the customer's direction, but is expected to continue.
Washington, DC · Remote
... analysts, and mission engineers to shape technical decisions and elevate the team's forensic ... Remote status is subject to change at the customer's direction, but is expected to continue.
Washington, DC · Remote
... analysts, and mission engineers to shape technical decisions and elevate the team's forensic ... Remote status is subject to change at the customer's direction, but is expected to continue.
Quick apply
Washington, DC · Remote
... analysts, and mission engineers to shape technical decisions and elevate the team's forensic ... Remote status is subject to change at the customer's direction, but is expected to continue.
Washington, DC · Remote
$100K - $120K/yr
This is a remote position. Responsibilities: * Manages SOC daily activities including building ... Experience with SIEM, SOAR, EDR, CDM, and malware analysis. * Experience with operating systems and ...
Quick apply
Washington, DC · Remote
$100K - $120K/yr
This is a remote position. Responsibilities: * Manages SOC daily activities including building ... Experience with SIEM, SOAR, EDR, CDM, and malware analysis. * Experience with operating systems and ...
Washington, DC · Remote
$114K - $140K/yr
Conduct org-level analysis of actor behavior, identifying patterns across exchanges to inform ... Fully remote, U.S.-based * Health Benefits: Comprehensive health, dental, and vision coverage
Washington, DC · Remote
$114K - $140K/yr
Conduct org-level analysis of actor behavior, identifying patterns across exchanges to inform ... Fully remote, U.S.-based * Health Benefits: Comprehensive health, dental, and vision coverage
VA · On-site +1
... City Remote Country United States Working time Full-time Description & Requirements Maximus is a ... analysis, and complex incident resolution in coordination with incident management and ...
VA · On-site +1
... City Remote Country United States Working time Full-time Description & Requirements Maximus is a ... analysis, and complex incident resolution in coordination with incident management and ...
Required Qualifications: * 5+ years of experience in a cyber threat intelligence, cyber security engineering, incident response or malware analysis role with heavy emphasis on tool and technology ...
Required Qualifications: * 5+ years of experience in a cyber threat intelligence, cyber security engineering, incident response or malware analysis role with heavy emphasis on tool and technology ...
Required Qualifications: * 5 years of experience in a cyber threat intelligence, cyber security engineering, incident response or malware analysis role with heavy emphasis on tool and technology ...
Required Qualifications: * 5 years of experience in a cyber threat intelligence, cyber security engineering, incident response or malware analysis role with heavy emphasis on tool and technology ...
Fort George G Meade, MD · On-site +1
$86K - $198K/yr
... analytic development, and DevOps techniques for malware variants, advancing crypt capabilities, or ... Remote : If this position is listed as remote, there may still be occasions when you are required ...
Fort George G Meade, MD · On-site +1
$86K - $198K/yr
... analytic development, and DevOps techniques for malware variants, advancing crypt capabilities, or ... Remote : If this position is listed as remote, there may still be occasions when you are required ...
... oriented, have strong analytical skills, and a passion for both customer service and problem ... Basic understanding of IT technologies such as Active Directory, malware protection, printing ...
... oriented, have strong analytical skills, and a passion for both customer service and problem ... Basic understanding of IT technologies such as Active Directory, malware protection, printing ...
... remote work) and requires a TS/SCI + Poly clearance (acceptable to this customer). What You'll Be ... Experience with code analysis tools - CodeQL, Joern, Semgrep * History of exploiting or ...
... remote work) and requires a TS/SCI + Poly clearance (acceptable to this customer). What You'll Be ... Experience with code analysis tools - CodeQL, Joern, Semgrep * History of exploiting or ...
Advanced Malware Protection * Threat Intelligence * Incident Management - analysis, detection, and handling of security events * Penetration testing and associated tools (e.g., nmap, Metasploit, etc.
Quick apply
Advanced Malware Protection * Threat Intelligence * Incident Management - analysis, detection, and handling of security events * Penetration testing and associated tools (e.g., nmap, Metasploit, etc.
Sterling, VA · On-site +1
$50 - $95/hr
Advanced Malware Protection * Threat Intelligence * Incident Management - analysis, detection, and handling of security events * Penetration testing and associated tools (e.g., nmap, Metasploit, etc.
Sterling, VA · On-site +1
$50 - $95/hr
Advanced Malware Protection * Threat Intelligence * Incident Management - analysis, detection, and handling of security events * Penetration testing and associated tools (e.g., nmap, Metasploit, etc.
Mclean, VA · Remote
$110K - $136K/yr
... Forensic Analyst (GCFA), GIAC Reverse Engineering Malware (GREM), MCFE, EnCE or equivalent ... Although this is a remote role, if you live close by, you'll have access to our office in McLean ...
Quick apply
Mclean, VA · Remote
$110K - $136K/yr
... Forensic Analyst (GCFA), GIAC Reverse Engineering Malware (GREM), MCFE, EnCE or equivalent ... Although this is a remote role, if you live close by, you'll have access to our office in McLean ...
Mclean, VA · On-site +1
$110K - $136K/yr
... Forensic Analyst (GCFA), GIAC Reverse Engineering Malware (GREM), MCFE, EnCE or equivalent ... Although this is a remote role, if you live close by, you'll have access to our office in McLean ...
Mclean, VA · On-site +1
$110K - $136K/yr
... Forensic Analyst (GCFA), GIAC Reverse Engineering Malware (GREM), MCFE, EnCE or equivalent ... Although this is a remote role, if you live close by, you'll have access to our office in McLean ...
Washington, DC · On-site +1
$111K - $207K/yr
Remote Job Schedule: 9/80: Employees work 9 out of every 14 days - totaling 80 hours worked and ... Proven experience analyzing malware samples, producing vulnerability proofs of concept, and ...
Washington, DC · On-site +1
$111K - $207K/yr
Remote Job Schedule: 9/80: Employees work 9 out of every 14 days - totaling 80 hours worked and ... Proven experience analyzing malware samples, producing vulnerability proofs of concept, and ...
Washington, DC · On-site +1
$111K - $207K/yr
Remote Job Schedule: 9/80: Employees work 9 out of every 14 days - totaling 80 hours worked and ... Proven experience analyzing malware samples, producing vulnerability proofs of concept, and ...
Washington, DC · On-site +1
$111K - $207K/yr
Remote Job Schedule: 9/80: Employees work 9 out of every 14 days - totaling 80 hours worked and ... Proven experience analyzing malware samples, producing vulnerability proofs of concept, and ...
Arlington, VA · On-site +1
$77K - $176K/yr
... analyze streaming cyber event data. The platform also detects malware and other anomalies in real ... Remote : If this position is listed as remote, there may still be occasions when you are required ...
Arlington, VA · On-site +1
$77K - $176K/yr
... analyze streaming cyber event data. The platform also detects malware and other anomalies in real ... Remote : If this position is listed as remote, there may still be occasions when you are required ...
A Remote Malware Analyst is a cybersecurity professional who analyzes, identifies, and mitigates malicious software from a remote location. They investigate malware threats, reverse-engineer code, and develop security recommendations to protect systems and networks. These analysts work with cybersecurity teams to detect vulnerabilities, respond to incidents, and prevent future attacks. Strong knowledge of programming, forensic tools, and threat intelligence is essential for this role.
To thrive as a Remote Malware Analyst, you need expertise in malware detection, reverse engineering, network security, and a solid foundation in computer science or cybersecurity. Familiarity with tools such as IDA Pro, Wireshark, YARA, and experience with SIEM systems or certifications like CEH or GIAC are commonly required. Strong analytical thinking, problem-solving, and effective written and verbal communication skills are critical for collaborating with distributed teams. These competencies enable accurate threat identification and reporting, ensuring effective protection of digital assets in remote and dynamic environments.
A typical day for a Remote Malware Analyst involves analyzing suspicious files or network traffic, reverse engineering malware samples, and documenting findings for other cybersecurity teams. You may spend time using specialized tools to dissect malware code, developing detection signatures, and collaborating virtually with threat intelligence or incident response teams. Communication is often conducted via secure messaging platforms and regular video meetings to coordinate efforts. The remote aspect allows for flexibility but also requires self-motivation and effective time management. Analysts often prioritize ongoing learning to keep up-to-date with evolving threats and methodologies.

Full-time
Medical, Dental, Vision, Retirement, PTO
Re-posted yesterday
Approval of remote and hybrid work is not guaranteed regardless of work location.For additional information on remote work at Penn State, seeNotice to Out of State Applicants.
POSITION SPECIFICS
We are searching for a self-motivated Vulnerability Researcher to join our Cyberspace Operations Research Department in Reston, VA of the Applied Research Laboratory (ARL) at Penn State University. The Cyberspace Operations Research Department provides technical expertise in adversarial tactics, techniques, and procedures (TTPs) to support system evaluation and provide security hardening support to various sponsors.
ARL is an authorized DoD SkillBridge partner and welcomes all transitioning military members to apply.
You will:
Research cutting edge techniques and technologies for system exploitation
Leverage expertise in reverse engineering, vulnerability research, and software development to address established needs and investigate solutions to emerging requirements
Apply software engineering best practices to create proof-of-concept tools and configure test environments to perform demonstrations to sponsors and partners
Assist the Cyberspace Operations Research Department Head in maintaining relationships with sponsors through on-site technical discussions, preparation and presentation of technical materials, and project-related correspondence
Provide process enhancement for technical functionality evaluation, vulnerability analyses, cyberspace operations engineering, and penetration testing projects
Apply project management principles and methods to the leadership of tasks or projects
Provide guidance to lower-level engineers to foster professional growth
Additional responsibilities for higher level position includes:
Understand broad strategic objectives and contribute to them; nurture and maintain relationships with major customers/grantors of external research and development grant funding
Identify grant/project follow-on work and persuade customers/grantors to fund; impact customer decisions and strategies
Initiate new project concepts and seek funding; develop technical proposals and make presentations to customers/grant sponsors
Mentor department staff in the development technical, project, and business development skills
Required skills/experience areas include:
Documented application of reverse engineering and vulnerability testing tools (e.g. Ghidra/IDA, Kali Linux, Angr/AFL++, QEMU/Unicorn, etc)
Reverse engineering, vulnerability research, malware analysis, and/or CNO tool development
Computer networking fundamentals, Windows and *NIX operating systems, X86(64) and ARM or MIPS architectures
Cyber operations architecture and software engineering practices
Software programming, programming languages, and development environments (to include at a minimum C, Java, or Python)
Ability to express technical information clearly and concisely in documents and presentations for senior leaders to successfully comprehend and leverage for decision making
Active government security clearance at TS/SCI level with eligibility for special accesses
Preferred skills/experience areas include:
Cybersecurity exploit development and test environment configuration
Cybersecurity penetration testing / cybersecurity Red Team testing / white hat hacking
Military cyberspace operations or computer network operations
Demonstrated history of successful project initiation efforts
Agile software development methodology and tools
Atlassian products (e.g., JIRA, Confluence)
Your working location will be fully on-site located in Reston, VA, but options exist for occasional hybrid of on-site/work from home based on project-dependent ability. This position will require periodic travel to remote locations in support of testing as part of a small team of researchers, engineers, and technologists.
MINIMUM EDUCATION, WORK EXPERIENCE & REQUIRED CERTIFICATIONS
If filled as Research and Development Engineer - Cyber Security (ARL) - Senior Professional, this position requires: Bachelor's Degree - Engineering or Science 14+ years of relevant experience Required Certifications: None If filled as Research and Development Engineer - Cyber Security (ARL) - Advanced Professional, this position requires: Bachelor's Degree - Engineering or Science 5+ years of relevant experience Required Certifications: None If filled as Research and Development Engineer - Cyber Security (ARL) - Intermediate Professional, this position requires: Bachelor's Degree - Engineering or Science 2+ years of relevant experience Required Certifications: NoneARL at Penn State is an integral part of one of the leading research universities in the nation and serves as a University center of excellence in defense science, systems, and technologies with a focus in naval missions and related areas.
FOR FURTHER INFORMATION on ARL, visit our web site at www.arl.psu.edu.
BACKGROUND CHECKS/CLEARANCES
Employment with the University will require successful completion of background check(s) in accordance with University policies.Notice regarding employment at the Applied Research Laboratory (ARL): Employees must be eligible to obtain a government security clearance, participate in the ARL drug testing program, and comply with electronic and physical monitoring requirements applicable to federal contractors. ARL operates in a secure information environment involving Unclassified, Controlled Unclassified Information (CUI), and Classified information. Personal electronic devices brought onsite must be registered and may be restricted from certain areas. You must be a U.S. citizen to apply.SALARY & BENEFITS
The salary range for this position, including all possible grades, is $127,080.00 - $277,200.00. This salary range includes an adjustment based on required geographic work location.Salary Structure - Information on Penn State's salary structure
Penn State provides a competitive benefits package for full-time employees designed to support both personal and professional well-being. In addition to comprehensive medical, dental, and vision coverage, employees enjoy robust retirement plans and substantial paid time off which includes holidays, vacation and sick time. One of the standout benefits is the generous 75% tuition discount, available to employees as well as eligible spouses and children. For more detailed information, please visit our Benefits Page.
CAMPUS SECURITY CRIME STATISTICS
Pursuant to the Jeanne Clery Disclosure of Campus Security Policy and Campus Crime Statistics Act and the Pennsylvania Act of 1988, Penn State publishes a combined Annual Security and Annual Fire Safety Report (ASR). The ASR includes crime statistics and institutional policies concerning campus security, such as those concerning alcohol and drug use, crime prevention, the reporting of crimes, sexual assault, and other matters. The ASR is available for review here.
EEO IS THE LAW
Penn State is an equal opportunity employer and is committed to providing employment opportunities to all qualified applicants without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. If you are unable to use our online application process due to an impairment or disability, please contact 814-865-1473.
Federal Contractors Labor Law Poster
PA State Labor Law Poster
Penn State Policies
Copyright Information
Hotlines
Sourced by ZipRecruiter
Pennsylvania State University, often referred to as Penn State, is a major, public, research-intensive university located in University Park, PA, US. This esteemed institution serves as an important player within the education industry, offering a plethora of academic programs across various disciplines. The university was founded in 1855 with the mission to provide quality education, advanced research, and service to society. Penn State holds firmly to values of integrity, respect, and excellence, fostering a diverse and inclusive community. The university is renowned for its research productivity and its high-ranking programs in areas like engineering, business, and education. One notable achievement of the institution is its designation as a "R1: Doctoral Universities – Very high research activity," demonstrating its commitment to scholarship and discovery.
Education
11 - 50 Employees
University Park, PA, US
1855