2

Remote Mobile Security Researcher Jobs (NOW HIRING)

Senior Security Researcher

$117K - $160K/yr

Today our diverse, fully remote team is committed to helping organizations of all sizes with ... mobile operating systems, low-level OS stacks, cloud infrastructures (GCP/AWS/Azure/K8s), and ...

Netwrix maintains a global presence, fostering a remote-first work environment while encouraging ... This role focuses on hands-on research into Active Directory and Entra ID security: finding ...

Oversee mobile security controls including device encryption, lost/stolen device workflows, and remote wipe/lock actions. Conduct security reviews for OS updates, CVEs, and platform changes. Work ...

... mobile platforms with identity, access management, and endpoint security tools - Strong documentation, communication, and stakeholder coordination skills #LI-Remote #techjobs #clearance #veteranspage ...

Security Engineer II

Dublin, CA · On-site +1

$124K - $212K/yr

The Host Security Engineer leads endpoints security, mobile security, cloud security, data ... Research, evaluate, and develop security strategy and develop standards following industry best ...

IOS Mobile Architect Location: New York, NY (REMOTE) Duration: 6+ Months * Lead the design ... Strong understanding of mobile security performance optimization and accessibility * Excellent ...

The team operates with a strong product mindset and deep focus on security, reliability ... Remote role in a distributed team; preference for candidates in the Americas time zone Big ...

Overview We're looking for a mobile engineer to build and extend the React Native application for ... security clearances, due to the nature of the work. Job Locations US-Remote

Principal Application Security Engineer

OR · Remote

$58.75 - $78.50/hr

This role can be fully remote and must reside in US. In this role, you will help us drive our ... Active contributor to the security community (research, open source, publications...) with the ...

next page

Showing results 1-20

Remote Mobile Security Researcher information

See salary details

$30K

$113.1K

$164.5K

How much do remote mobile security researcher jobs pay per year?

As of Aug 6, 2026, the average yearly pay for remote mobile security researcher in the United States is $113,102.00, according to ZipRecruiter salary data. Most workers in this role earn between $67,000.00 and $154,000.00 per year, depending on experience, location, and employer.

What does a remote mobile security researcher do?

A Remote Mobile Security Researcher is a cybersecurity professional who specializes in identifying, analyzing, and mitigating security vulnerabilities in mobile devices and applications. Working remotely, they use various tools and techniques to test mobile operating systems like iOS and Android for weaknesses that could be exploited by hackers. Their responsibilities often include performing penetration tests, reverse engineering apps, and developing security solutions or patches. They also write detailed reports about their findings and may collaborate with development teams to improve mobile security. This role is crucial in helping organizations protect sensitive data and maintain user trust.

What are the key skills and qualifications needed to thrive as a remote mobile security researcher, and why are they important?

To thrive as a Remote Mobile Security Researcher, you need expertise in mobile operating systems, reverse engineering, vulnerability analysis, and a solid background in cybersecurity or computer science. Familiarity with tools like IDA Pro, Frida, Burp Suite, and certifications such as OSCP or GIAC Mobile Device Security is highly recommended. Strong problem-solving, analytical thinking, and self-motivation are crucial soft skills, especially when working independently and communicating findings remotely. These skills ensure effective identification and mitigation of mobile security threats, enabling organizations to protect sensitive data and maintain robust mobile app security.

What is the difference between Remote Mobile Security Researcher vs Mobile Security Analyst?

AspectRemote Mobile Security ResearcherMobile Security Analyst
CredentialsCertifications like CISSP, CEH, or OSCP often preferredSimilar certifications, often including CISSP, GIAC, or CEH
Work EnvironmentRemote or hybrid, focused on research and vulnerability discoveryTypically office-based or remote, focused on monitoring and incident response
Industry UsageUsed in cybersecurity firms, tech companies, and research labsCommon in enterprise security teams, government agencies, and corporations

The Remote Mobile Security Researcher primarily focuses on discovering vulnerabilities and analyzing mobile security threats through research, often working remotely. In contrast, a Mobile Security Analyst concentrates on monitoring, analyzing security incidents, and implementing protective measures. Both roles require similar certifications and work in cybersecurity but differ in their core responsibilities and work environments.

What are some common challenges faced by remote mobile security researchers, and how can they be addressed?

Remote Mobile Security Researchers often encounter challenges such as staying updated on rapidly evolving mobile threats and effectively collaborating with distributed teams. Working remotely can limit spontaneous knowledge sharing, so leveraging regular virtual meetings, secure collaboration tools, and participating in online security communities is crucial. Additionally, managing access to multiple devices and environments for testing requires strong organizational skills and adherence to strict security protocols. Proactively seeking continuous learning opportunities and maintaining clear communication with team members can help overcome these obstacles and lead to a successful research experience.
More about Remote Mobile Security Researcher jobs
What cities are hiring for Remote Mobile Security Researcher jobs? Cities with the most Remote Mobile Security Researcher job openings:
What states have the most Remote Mobile Security Researcher jobs? States with the most job openings for Remote Mobile Security Researcher jobs include:
Infographic showing various Remote Mobile Security Researcher job openings in the United States as of August 2026, with employment types broken down into 84% Full Time, 13% Part Time, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $113,102 per year, or $54.4 per hour.

Senior Security Researcher

Cobalt

Remote

$117K - $160K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Job description

Who We Are
Cobalt was founded on the belief of a fundamental human aspiration: the desire to live better and safer. It all started in 2013, when our founders realized that pentesting can be better. Today our diverse, fully remote team is committed to helping organizations of all sizes with seamless, effective and collaborative Offensive Security Testing that empower organizations to OPERATE FEARLESSLY and INNOVATE SECURELY.
Our customers can start a pentest in as little as 24 hours and integrate with advanced development cycles thanks to the powerful combination of our SaaS platform coupled with an exclusive community of testers known as the Cobalt Core. Accepting just 5% of applicants, the Cobalt Core boasts over 400 closely vetted and highly skilled testers who jointly conduct thousands of tests each year and are at the forefront of identifying and helping remediate risk across a dynamically changing attack surface.
Cobalt is an Equal Opportunity Employer and we strive to build a diverse and inclusive workforce at our company. At Cobalt we aspire to engage with diverse individuals, communities, and organizations in order to continue to nurture our unique rich diverse culture. Join our team, and be your true self to do your best work.
Description
At Cobalt.io, as a Senior Security Researcher, you will conduct advanced vulnerability research and security assessments across modern application and operating system stacks, cloud infrastructure, and critical enterprise systems.
Your role focuses on identifying impactful security flaws, developing potential exploit techniques, and collaborating with cross-functional teams to strengthen customer security postures. Operating within Cobalt's Offensive Security Research team, you will bridge the gap between cutting-edge adversary tradecraft, platform-driven security testing, and actionable remediation guidance.
What You'll Do
  • Advanced Vulnerability Research: Conduct deep-dive vulnerability research, reverse engineering, and threat analysis across modern Web/API platforms, mobile operating systems, low-level OS stacks, cloud infrastructures (GCP/AWS/Azure/K8s), and critical enterprise software systems.
  • Exploit Crafting & Proof-of-Concept Validation: Identify high-impact vulnerabilities and novel attack surfaces; develop proof-of-concept (PoC) exploit techniques to demonstrate real-world risk cleanly and accurately.
  • Methodology & Tradecraft Innovation: Research emerging threat vectors and maintain industry-leading testing guidelines across cloud environments, APIs, mobile platforms, and modern AI/ML technologies.
  • Platform & Tooling Enhancements: Collaborate with Product and Engineering teams to translate research findings into scalable security assessment capabilities, automated testing workflows, and platform intelligence.
  • Cross-Functional Collaboration: Partner with engineering, product, and operations teams to translate complex security research into actionable customer value and platform improvements.
  • Community Enablement & Mentorship: Provide technical guidance, benchmarking, and mentorship to junior researchers and community members; assist in technical quality assurance for complex research initiatives.
  • Thought Leadership & Public Outreach: Represent Cobalt in the security research community through high-impact technical blog posts, advisories, whitepapers, and conference presentations (e.g., DEF CON, Black Hat, BSides).
You Must Have
  • 5+ years of dedicated experience in offensive security, vulnerability research, penetration testing, red teaming, or reverse engineering (or 3+ years with a proven track record of published research, CVE disclosures, or open-source security tooling).
  • Technical Depth across Modern Stacks: Demonstrated expertise in modern application stacks (Node.js, Go, Python, Java, Rust), operating system security fundamentals (Linux/Windows/macOS internals), and containerized cloud environments (Docker, Kubernetes, AWS/GCP).
  • Exploit Analysis & Crafting: Proven ability to analyze binary, source code, or bytecode to construct reliable PoC exploits for complex vulnerability classes (e.g., memory corruption, deserialization, auth bypass, SSRF/RCE, cloud privilege escalation).
  • Tooling & Automation Skills: Strong proficiency in Python, Go, Bash, or Rust for building custom research tools, scripts, and testing utilities.
  • Clear Technical Communication: Ability to document complex technical findings into clear, actionable remediation guidance for engineers, product teams, and executive stakeholders.
  • US-Based: Strictly limited to candidates residing in the United States (EST or CST time zone alignment preferred for team
Nice To Have
  • Emerging Technology Security: Familiarity with modern AI/ML security concepts, LLM risk models, and novel software integrations.
  • Reverse Engineering Tooling: Hands-on experience with Ghidra, IDA Pro, Binary Ninja, or GDB/LLDB debugging.
  • CVE & Research Track Record: Published CVEs, security advisories, or bug bounty hall-of-fame recognitions.
  • Industry Certifications: Active certifications such as OSCP, OSEP, OSWE, OSEE, GXPN, or AWS Certified Security Specialist.
  • Open-Source Contributions: Active contributions to open-source security tools or research projects.
Why You Should Join Us
  • Grow in a passionate, rapidly expanding industry operating at the forefront of the Pentesting industry
  • Work directly with experienced senior leaders with ongoing mentorship opportunities
  • Earn competitive compensation and an attractive equity plan
  • Save for the future with a 401(k) program (US) or pension (EU)
  • Benefit from medical, dental, vision and life insurance (US) or statutory healthcare (EU)
  • Leverage stipends for:
    • Wellness
    • Work-from-home equipment & wifi
    • Learning & development
  • Make the most of our flexible, generous paid time off and paid parental leave
Pay Range Disclosure (For US openings only)
Cobalt is committed to fair and equitable compensation practices. The OTE salary range for this role is $120,000 - $150,000 per year + equity + benefits. A candidate's salary is determined by various factors including, but not limited to, relevant work experience, skills, and certifications. The salary range may differ in other states and may be impacted by proximity to major metropolitan cities.
Cobalt (the "Company") is an equal opportunity employer, and we want the best available persons for every job. The Company makes employment decisions only based on merit. It is the Company's policy to prohibit discrimination in any employment opportunity (including but not limited to recruitment, employment, promotion, salary increases, benefits, termination and all other terms and conditions of employment) based on race, color, sex, sexual orientation, gender, gender identity, gender expression, genetic information, pregnancy, religious creed, national origin, ancestry, age, physical/mental disability, medical condition, marital/domestic partner status, military and veteran status, height, weight or any other such characteristic protected by federal, state or local law. The Company is committed to complying with all applicable laws and providing equal employment opportunities. This commitment applies to all persons involved in the operations of the Company regardless of where the employee is located and prohibits unlawful discrimination by any employee of the Company.
Cobalt is an E-Verify employer. E-Verify is an Internet-based system operated by the Department of Homeland Security (DHS) in partnership with the Social Security Administration (SSA). It allows participating employers to electronically verify the employment eligibility of their newly hired employees in the United States.