Responsibilities : • Design, build, and improve AI/security harnesses for vulnerability research, with emphasis on reproducibility, validation quality, exploitability clarity, false-positive ...
Responsibilities : • Design, build, and improve AI/security harnesses for vulnerability research, with emphasis on reproducibility, validation quality, exploitability clarity, false-positive ...
Responsibilities : • Design, build, and improve AI/security harnesses for vulnerability research, with emphasis on reproducibility, validation quality, exploitability clarity, false-positive ...
Responsibilities : • Design, build, and improve AI/security harnesses for vulnerability research, with emphasis on reproducibility, validation quality, exploitability clarity, false-positive ...
Harness is a high-growth company that is disrupting the software delivery market, and they are seeking a Staff Security Research Engineer to lead research into cutting-edge threats targeting APIs and ...
Harness is a high-growth company that is disrupting the software delivery market, and they are seeking a Staff Security Research Engineer to lead research into cutting-edge threats targeting APIs and ...
Responsibilities : • Research vulnerabilities on cutting-edge SoC and GPU designs • Develop and use cutting-edge security tools and techniques • Guide the continuous integration of latest ...
Responsibilities : • Research vulnerabilities on cutting-edge SoC and GPU designs • Develop and use cutting-edge security tools and techniques • Guide the continuous integration of latest ...
We're seeking a staff-level ML Security Research Scientist who operates at the intersection of applied research and production impact. You'll lead original security research on agentic ML systems ...
We're seeking a staff-level ML Security Research Scientist who operates at the intersection of applied research and production impact. You'll lead original security research on agentic ML systems ...
We're seeking a staff-level ML Security Research Scientist who operates at the intersection of applied research and production impact. You'll lead original security research on agentic ML systems ...
We're seeking a staff-level ML Security Research Scientist who operates at the intersection of applied research and production impact. You'll lead original security research on agentic ML systems ...
In this role, you will conduct advanced security research to identify emerging threats, uncover novel attack vectors, and drive the development of security capabilities that protect modern cloud ...
In this role, you will conduct advanced security research to identify emerging threats, uncover novel attack vectors, and drive the development of security capabilities that protect modern cloud ...
Chiplet Security Research Intern
$50 - $70/hr
Do research on advanced security technologies for chiplet based silicons. What You Will Learn * Security engineering of cutting edge security processor. * Security engineering of chiplet based ...
Chiplet Security Research Intern
$50 - $70/hr
Do research on advanced security technologies for chiplet based silicons. What You Will Learn * Security engineering of cutting edge security processor. * Security engineering of chiplet based ...
You will conduct offensive research into AI-specific attack classes, including prompt injection ... security architecture
You will conduct offensive research into AI-specific attack classes, including prompt injection ... security architecture
Chiplet Security Research Intern
Santa Clara, CA · On-site
$50 - $70/hr
Do research on advanced security technologies for chiplet based silicons. What You Will Learn * Security engineering of cutting edge security processor. * Security engineering of chiplet based ...
Chiplet Security Research Intern
Santa Clara, CA · On-site
$50 - $70/hr
Do research on advanced security technologies for chiplet based silicons. What You Will Learn * Security engineering of cutting edge security processor. * Security engineering of chiplet based ...
Research vulnerabilities on cutting-edge SoC and GPU designs * Develop and use cutting-edge security tools and techniques * Guide the continuous integration of latest mitigations into our security ...
Research vulnerabilities on cutting-edge SoC and GPU designs * Develop and use cutting-edge security tools and techniques * Guide the continuous integration of latest mitigations into our security ...
Security Researcher
San Francisco, CA · On-site
Required : • 3+ years of full-time experience in security research, offensive security, or related fields. • Experience with finding vulnerabilities in source code • Experience creating PoC ...
Security Researcher
San Francisco, CA · On-site
Required : • 3+ years of full-time experience in security research, offensive security, or related fields. • Experience with finding vulnerabilities in source code • Experience creating PoC ...
Research vulnerabilities on cutting-edge SoC and GPU designs * Develop and use cutting-edge security tools and techniques * Guide the continuous integration of latest mitigations into our security ...
Research vulnerabilities on cutting-edge SoC and GPU designs * Develop and use cutting-edge security tools and techniques * Guide the continuous integration of latest mitigations into our security ...
Product Security Research Engineer
San Jose, CA · On-site
$96 - $101/hr
Pay Range: $96.12/hr - $101.12/hr Requirement/Must Have: * 6-9 years of experience in Product Security Engineering, Vulnerability Research, or Offensive Security, with a focus on deconstructing ...
Quick apply
Product Security Research Engineer
San Jose, CA · On-site
$96 - $101/hr
Pay Range: $96.12/hr - $101.12/hr Requirement/Must Have: * 6-9 years of experience in Product Security Engineering, Vulnerability Research, or Offensive Security, with a focus on deconstructing ...
We are seeking a Security Research Engineer to advance our Validate and Patch capabilities by establishing what counts as a confirmed vulnerability and defining what constitutes a truly correct, safe ...
We are seeking a Security Research Engineer to advance our Validate and Patch capabilities by establishing what counts as a confirmed vulnerability and defining what constitutes a truly correct, safe ...
Security Researcher
San Francisco, CA · On-site
Qualifications * 3+ years of full-time experience in security research, offensive security, or related fields. * Experience with finding vulnerabilities in source code * Experience creating PoC ...
Security Researcher
San Francisco, CA · On-site
Qualifications * 3+ years of full-time experience in security research, offensive security, or related fields. * Experience with finding vulnerabilities in source code * Experience creating PoC ...
We are seeking a Security Research Engineer to advance our Validate and Patch capabilities by establishing what counts as a confirmed vulnerability and defining what constitutes a truly correct, safe ...
We are seeking a Security Research Engineer to advance our Validate and Patch capabilities by establishing what counts as a confirmed vulnerability and defining what constitutes a truly correct, safe ...
Offensive Security Researcher, SEAR
$184K - $324K/yr
Apple's Security Engineering & Architecture (SEAR) organization is responsible for the security of ... You will conduct offensive research into AI-specific attack classes, including prompt injection ...
Offensive Security Researcher, SEAR
$184K - $324K/yr
Apple's Security Engineering & Architecture (SEAR) organization is responsible for the security of ... You will conduct offensive research into AI-specific attack classes, including prompt injection ...
Senior Security Researcher
Santa Clara, CA · On-site
$139.60 - $225.77/hr
Publish research, document findings, and contribute to the responsible disclosure of ... Knowledge of security in one or several of the following areas: Operational Technology (OT) or ...
New
Senior Security Researcher
Santa Clara, CA · On-site
$139.60 - $225.77/hr
Publish research, document findings, and contribute to the responsible disclosure of ... Knowledge of security in one or several of the following areas: Operational Technology (OT) or ...
New
Senior Product Manager, Security Research
Foster City, CA · On-site
$145K - $175K/yr
Senior Product Manager, Security Research Location: US West/Foster City About the Qualys Threat Research Unit (TRU) You will be joining the heartbeat of Qualys-a world-renowned team of over 120 ...
Senior Product Manager, Security Research
Foster City, CA · On-site
$145K - $175K/yr
Senior Product Manager, Security Research Location: US West/Foster City About the Qualys Threat Research Unit (TRU) You will be joining the heartbeat of Qualys-a world-renowned team of over 120 ...
Security Research information
See California salary details
$46.97 - $47.58
4% of jobs
$47.58 - $48.18
6% of jobs
$48.18 - $48.78
11% of jobs
$48.96 is the 25th percentile. Wages below this are outliers.
$48.78 - $49.39
11% of jobs
$49.39 - $49.99
7% of jobs
The median wage is $50.51 / hr.
$49.99 - $50.60
11% of jobs
$50.60 - $51.20
7% of jobs
$51.20 - $51.80
11% of jobs
$52.06 is the 75th percentile. Wages above this are outliers.
$51.80 - $52.41
11% of jobs
$52.41 - $53.01
7% of jobs
$53.01 - $53.62
11% of jobs
$46
$50
$53
How much do security research jobs pay per hour?
What are the key skills and qualifications needed to thrive as a security researcher, and why are they important?
What are some common challenges faced by professionals in security research roles?
How much do security researchers make?
What is the difference between Security Research vs Security Analyst?
| Aspect | Security Research | Security Analyst |
|---|---|---|
| Credentials | Certifications like CISSP, GIAC, OSCP often preferred | Certifications like CompTIA Security+, CISSP, CEH common |
| Work Environment | Research labs, cybersecurity firms, R&D teams | Security operations centers, corporate IT departments |
| Industry Usage | Used in threat discovery, vulnerability research, developing security tools | Used in monitoring, incident response, security monitoring |
Security Research and Security Analysts both play vital roles in cybersecurity. While Security Researchers focus on discovering vulnerabilities and developing new security techniques, Security Analysts monitor systems for threats and respond to incidents. Both roles often require similar certifications and work environments, but their core responsibilities differ in scope and focus.
What is security research?
What do security researchers do?
How do you become a security researcher?
- Internship Security Cissp
- Remote Chfi
- Spain Cybersecurity
- Masters Cyber Security
- Internship Vulnerability Analyst
- Script Clearance Researcher
- Internship Raytheon Technologies Security Clearance
- Remote Penetration Test
- Internship Visa Sponsorship Available Cyber Security
- No Experience Information Security Analyst

Principal Security Researcher (AI-Assisted Vulnerability Research)
Santa Clara, CA • On-site
Full-time
Posted 4 days ago
Job description
Palo Alto Networks is dedicated to protecting our digital way of life through innovative technology and collaboration. The Principal Security Researcher will focus on AI-assisted vulnerability research, designing and improving systems for discovering and validating high-impact vulnerabilities in software and open-source projects.
Responsibilities:
• Design, build, and improve AI/security harnesses for vulnerability research, with emphasis on reproducibility, validation quality, exploitability clarity, false-positive reduction, and stable evidence generation.
• Produce high-quality research and security artifacts, such as improved harness capabilities, validated findings, root-cause analyses, technical reports, benchmarks, internal research artifacts, open-source tools, responsible disclosures, publications, or CVEs where appropriate.
• Conduct deep technical analysis across real-world software and open-source projects, including reverse engineering, fuzzing, root-cause analysis, exploitability assessment, patch analysis, variant analysis, and PoC validation.
• Build reusable research infrastructure, including target setup automation, fuzzing harnesses, AI agent workflows, benchmark environments, validation oracles, triage pipelines, evaluation metrics, and maintainer-facing reporting workflows.
• Use LLMs, AI agents, fuzzing, static/dynamic analysis, program analysis, reverse engineering automation, and security automation to improve the quality, speed, coverage, and reliability of vulnerability research workflows.
• Analyze large-scale harness outputs, including successful findings, failed attempts, crash clusters, validation traces, false positives, patch comparisons, and target patterns, to identify new research opportunities and improve future harness capabilities.
Qualifications:
Required:
• Master's degree in Computer Science, Cybersecurity, or a related technical field, or equivalent practical experience.
• Demonstrated ability to independently drive a technical research project from problem formulation to implementation, evaluation, and written results.
• Evidence of original security research or high-signal technical output, such as CVEs, responsible disclosures, bug bounty findings, security conference papers, technical writeups, GitHub projects, fuzzers, harnesses, exploit analyses, AI/security benchmarks, open-source security tools, or comparable research artifacts.
• 7+ years of experience in vulnerability research, offensive security research, reverse engineering, fuzzing, exploit development, program analysis, security automation, or a closely related security research role.
• Demonstrated experience in one or more of the following: vulnerability research, reverse engineering, fuzzing, exploit development, root-cause analysis, exploitability assessment, PoC development, patch analysis, program analysis, or security tooling.
• Experience designing or building reproducible security experiments, including target setup, harness development, validation logic, oracle design, evaluation metrics, false-positive analysis, or reporting workflows.
• Strong programming skills. Strong knowledge of modern operating systems, network protocols, application security, software vulnerability classes, and common exploitation or validation techniques.
• Strong written communication skills, including the ability to document methods, evidence, limitations, reproduction steps, impact, and remediation guidance clearly.
Preferred:
• PhD in Computer Science, Cybersecurity, AI/ML, Systems, Programming Languages, or a related field, or equivalent demonstrated research experience.
• Experience building AI agent harnesses, fuzzing harnesses, evaluation harnesses, vulnerability validation workflows, exploitability triage systems, patch validation pipelines, security benchmarks, or open-source vulnerability research tooling.
• Experience handling real vulnerabilities end-to-end, including target selection, environment setup, harnessing, reproduction, root-cause analysis, exploitability assessment, patch comparison, responsible disclosure, and maintainer communication.
• Knowledge of security in one or more of the following areas: Web Security, OS & Kernel Security, Browser Security, Software Supply Chain Security, OT/IoT Security, Network/Protocol Security, Cloud Security, Application Security, file parser security, or protocol parser security.
• Strong practical artifacts are highly valued. A public track record of security research, such as conference presentations, publications, CVEs, responsible disclosures, bug bounty results, technical blogs, GitHub projects, open-source security tools, AI/security benchmarks, agent frameworks, or security research artifacts.
• High-impact maintainer relationships, experience reporting vulnerabilities to major open-source projects, or a track record of clear, actionable, well-received vulnerability disclosures is a strong plus.
Company:
Palo Alto Networks is a cybersecurity company that offers cybersecurity solutions for organizations. Founded in 2005, the company is headquartered in Santa Clara, USA, with a team of 10001+ employees. The company is currently Late Stage.
About Palo Alto Networks
Sourced by ZipRecruiter
Industry
Network security
Company size
10,000+ Employees
Headquarters location
Santa Clara, CA, US
Year founded
2005