1

Salaried Exploit Development Jobs (NOW HIRING)

Windows CNO Developer

Herndon, VA · On-site

$60K - $180K/yr

Background in vulnerability research, exploit development, or malware development. * Scripting ... M9 Benefits - Salary Range $60,000-$180,000 USD M9 Solutions, LLC (M9) is a Federal sub-contractor ...

They offer competitive salaries, healthcare, retirement options, profit sharing, and generous PTO ... and exploit development This role is located in Hanover, MD and the work requires a TS/SCI + Full ...

Background in malware analysis or exploit development and experience integrating findings into ... Salary is determined by various factors, including but not limited to, the scope and ...

Cyber Research Engineer

Reston, VA · On-site

$190K - $235K/yr

Reston, VA (preferred) Job-Type: Full-Time Target Salary Range*: $190,000 - $235,000 *This ... exploit development, reverse engineering, mission-oriented software tooling, and adversarial ...

Background in malware analysis or exploit development and experience integrating findings into ... Salary is determined by various factors, including but not limited to, the scope and ...

They offer competitive salaries, healthcare, retirement options, profit sharing, and generous PTO ... and exploit development This role is located in Hanover, MD and the work requires a TS/SCI + Full ...

They offer competitive salaries, healthcare, retirement options, profit sharing, and generous PTO ... and exploit development This role is located in Laurel, MD and the work requires a TS/SCI + Full ...

Performing vulnerability weaponization, exploit development, payload development, and exploit ... Information Full-Time Salary Range: $112,000 - $154,000 The salary range listed is based on ...

Performing vulnerability weaponization, exploit development, payload development, and exploit ... Information Full-Time Salary Range: $112,000 - $154,000 The salary range listed is based on ...

Performing vulnerability weaponization, exploit development, payload development, and exploit ... Information Full-Time Salary Range: $134,000 - $184,000 The salary range listed is based on ...

Senior Reverse Engineer

San Diego, CA · On-site

$134K - $184K/yr

Performing vulnerability weaponization, exploit development, payload development, and exploit ... Information Full-Time Salary Range: $134,000 - $184,000 The salary range listed is based on ...

Performing vulnerability weaponization, exploit development, payload development, and exploit ... Information Full-Time Salary Range: $112,000 - $154,000 The salary range listed is based on ...

next page

Showing results 1-20

Salaried Exploit Development information

See salary details

$8

$17

$24

How much do salaried exploit development jobs pay per hour?

As of May 28, 2026, the average hourly pay for salaried exploit development in the United States is $17.04, according to ZipRecruiter salary data. Most workers in this role earn between $14.42 and $19.23 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Salaried Exploit Developer, and why are they important?

To thrive as a Salaried Exploit Developer, you need deep expertise in computer science, reverse engineering, vulnerability analysis, and low-level programming, often backed by a degree in computer science or related field. Familiarity with tools like IDA Pro, Ghidra, debuggers, and operating system internals is crucial, and certifications such as OSCP or OSCE can be advantageous. Creativity, persistence, and strong problem-solving abilities are standout soft skills in this role. These qualifications are essential for identifying, developing, and responsibly handling software exploits in a secure and ethical manner.

What are some typical challenges encountered by professionals in salaried exploit development roles?

Professionals in salaried exploit development roles often face challenges such as staying current with rapidly evolving security technologies and patch cycles. They must continuously research new vulnerabilities and develop creative solutions to bypass updated security mechanisms, which can be highly demanding. Collaborating closely with security analysts and other developers is essential to ensure responsible disclosure and risk management. Additionally, balancing project deadlines with the need for meticulous testing and documentation can be a significant challenge in this field.

What is a Salaried Exploit Developer?

A Salaried Exploit Developer is a cybersecurity professional who is employed by an organization to research, identify, and develop software exploits—ways to take advantage of vulnerabilities in computer systems or applications. Unlike freelance or independent security researchers, salaried exploit developers work as part of a security team, often within penetration testing firms, defense contractors, or tech companies. Their work can involve both offensive (discovering vulnerabilities to test defenses) and defensive (helping to patch or mitigate vulnerabilities) tasks. These roles require strong programming skills, a deep understanding of operating systems, and knowledge of security protocols. Salaried Exploit Developers may also be involved in responsible disclosure of vulnerabilities to affected vendors.

What is the difference between Salaried Exploit Development vs Penetration Tester?

AspectSalaried Exploit DevelopmentPenetration Tester
CredentialsSecurity certifications, programming skillsSecurity certifications, testing experience
Work EnvironmentResearch labs, security firms, internal teamsClient sites, corporate environments, consulting firms
Industry UsageCybersecurity, offensive securityCybersecurity, vulnerability assessment

Salaried Exploit Developers focus on creating and testing exploits for security research or defensive purposes, often working in labs or R&D settings. Penetration Testers simulate attacks to identify vulnerabilities in client systems. While both roles require security knowledge and technical skills, Exploit Developers primarily develop exploits, whereas Penetration Testers perform assessments and reporting. Understanding these differences helps clarify career paths and employer expectations in cybersecurity.

More about Salaried Exploit Development jobs
What cities are hiring for Salaried Exploit Development jobs? Cities with the most Salaried Exploit Development job openings:
What are the most commonly searched types of Exploit Development jobs? The most popular types of Exploit Development jobs are:
What states have the most Salaried Exploit Development jobs? States with the most job openings for Salaried Exploit Development jobs include:
What job categories do people searching Salaried Exploit Development jobs look for? The top searched job categories for Salaried Exploit Development jobs are:
Infographic showing various Salaried Exploit Development job openings in the United States as of May 2026, with employment types broken down into 100% Full Time. Highlights an 94% Physical, and 6% Remote job distribution, with an average salary of $35,436 per year, or $17 per hour.

Windows CNO Developer

M9 Solutions

Herndon, VA • On-site

$60K - $180K/yr

Other

This job post has expired today. Applications are no longer accepted.


Job description

M9 Solutions is dedicated to providing IT services and solutions to the Federal Government by mobilizing the right people, skills, clearance levels, and technologies to help organizations who desire improved performance and modern, sustainable change. M9 has provided quality IT services and support to more than 30 Federal Agencies and multiple commercial customers nationwide. Our capabilities include digital transformation, software development, cloud migration, applications & infrastructure, cybersecurity, data delivery & analytics, and IT talent solutions.
M9 Solutions is seeking a Windows CNO Developer to work on-site in support of a government contract for a client located in Herndon, VA. An active TS/SCI with Full Scope Polygraph clearance is required.
Responsibilities

  • Design, develop, and maintain CNO/CNE capabilities targeting Windows systems.
  • Implement low-level functionality in C, interacting with Windows internals (WinAPI, processes/threads, memory management).
  • Debug, test, and harden capabilities for use in real-world operational environments.
  • Collaborate with operators, analysts, and fellow developers to refine and extend capabilities based on mission needs.
  • Document designs and implementations in a manner appropriate for secure, classified environments.
Required Skills and Qualifications
  • Active TS/SCI with Full Scope Polygraph clearance.
  • 3+ years of experience in CNO/CNE development, exploit development, or related offensive cyber work focused on Windows.
  • Strong C programming skills (low-level/system-level development).
  • Solid understanding of Windows internals (memory management, APIs, process injection, etc.).
  • Experience developing, debugging, and troubleshooting in Windows environments.
  • Experience with reverse engineering tools (e.g., IDA, Ghidra, x64dbg).
  • Background in vulnerability research, exploit development, or malware development.
  • Scripting experience (Python or similar) for tooling and automation.
Full-Time Employee Compensation
  • M9 Solutions' pay range for this position is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include, but are not limited to, responsibilities of the position, education, experience, knowledge, skills, abilities, as well as internal equity, location, alignment with market data, applicable bargaining agreement (if any), or other law.
  • M9 Benefits - https://m9solutions.com/why-join-m9/#our-benefits

Salary Range
$60,000-$180,000 USD
M9 Solutions, LLC (M9) is a Federal sub-contractor and we comply with all applicable federal laws prohibiting discrimination in employment, including Title VII of the Civil Rights Act of 1964. We also adhere to the affirmative action requirements of the Vietnam Era Veterans' Readjustment Assistance Act (VEVRAA) and Section 503 of the Rehabilitation Act, ensuring equal opportunity for veterans and individuals with disabilities. Please click here to complete M9's Voluntary Self-Identification Form and then email it to hr@m9solutions.com. If you need accommodation during the application process or encounter difficulties using our website, please contact our Human Resources Department at hr@m9solutions.com or 703-936-0880
M9 Solutions is a proud participant in the Virginia Values Veterans (V3) program and supports the Military Medics and Corpsmen (MMAC) initiative, demonstrating our commitment to hiring and supporting veterans, transitioning service members, military spouses, and dependents.
With 15+ years of proven delivery and growth, M9 Solutions is a unique small business with credible past performance and key capabilities offering project management services, solution architects, business analysts, program managers, technical architects, and technical consultants. M9 was recognized as an Inc. 5000 Fastest-Growing Private Companies in 2021, 2020, 2019, 2018, 2017, 2016, and 2012. M9 Solutions believes that work should be fun, rewarding, and something everyone can be excited about. We offer a competitive compensation package and value diverse perspectives in driving the vision of the company.