1

Security Research Jobs in California (NOW HIRING)

Required : • 3+ years of full-time experience in security research, offensive security, or related fields. • Experience with finding vulnerabilities in source code • Experience creating PoC ...

Qualifications * 3+ years of full-time experience in security research, offensive security, or related fields. * Experience with finding vulnerabilities in source code * Experience creating PoC ...

next page

Showing results 1-20

Security Research information

See California salary details

$46

$50

$53

How much do security research jobs pay per hour?

As of Aug 24, 2026, the average hourly pay for security research in California is $50.77, according to ZipRecruiter salary data. Most workers in this role earn between $49.09 and $52.45 per hour, depending on experience, location, and employer.

What is security research?

Security research is the process of studying, analyzing, and developing methods to identify and address vulnerabilities in computer systems, networks, and software. Security researchers investigate potential threats, discover security flaws, and often create proof-of-concept exploits to demonstrate risks. Their work helps organizations understand emerging threats and improve their defenses, often contributing to the wider cybersecurity community by sharing findings and best practices.

What are some common challenges faced by professionals in security research roles?

Security Researchers often encounter the challenge of keeping up with rapidly evolving threats and technologies. The field demands continuous learning, as new vulnerabilities and attack vectors emerge regularly. Collaborating with cross-functional teams, such as software engineers and incident response, is essential to translate research findings into practical defenses. Additionally, Security Researchers must balance thorough analysis with the need to quickly communicate critical findings to stakeholders, ensuring organizational security remains robust.

What are the key skills and qualifications needed to thrive as a security researcher, and why are they important?

To thrive as a Security Researcher, you need a solid background in computer science, cybersecurity principles, and vulnerability analysis, often supported by a relevant degree or certifications like OSCP or CEH. Expertise with tools such as IDA Pro, Wireshark, Metasploit, and reverse engineering platforms is typically required. Critical thinking, curiosity, and strong written communication are essential soft skills for investigating threats and sharing findings. These competencies enable Security Researchers to identify, analyze, and mitigate security risks in an evolving threat landscape.

What is the difference between Security Research vs Security Analyst?

AspectSecurity ResearchSecurity Analyst
CredentialsCertifications like CISSP, GIAC, OSCP often preferredCertifications like CompTIA Security+, CISSP, CEH common
Work EnvironmentResearch labs, cybersecurity firms, R&D teamsSecurity operations centers, corporate IT departments
Industry UsageUsed in threat discovery, vulnerability research, developing security toolsUsed in monitoring, incident response, security monitoring

Security Research and Security Analysts both play vital roles in cybersecurity. While Security Researchers focus on discovering vulnerabilities and developing new security techniques, Security Analysts monitor systems for threats and respond to incidents. Both roles often require similar certifications and work environments, but their core responsibilities differ in scope and focus.

How do you become a security researcher?

To become a security researcher, individuals typically pursue a bachelor's degree in computer science, cybersecurity, or a related field, and develop skills in programming, network analysis, and vulnerability assessment. Gaining experience through internships, participating in Capture The Flag (CTF) competitions, and obtaining certifications like Certified Ethical Hacker (CEH) or Offensive Security Certified Professional (OSCP) can also enhance prospects in this field.

What do security researchers do?

Security researchers analyze computer systems, networks, and software to identify vulnerabilities and develop ways to protect against cyber threats. They often use tools like penetration testing, reverse engineering, and security analysis, and may hold certifications such as CISSP or CEH. Their work helps improve cybersecurity defenses and prevent cyberattacks.

What job categories do people searching Security Research jobs in California look for?

The top searched job categories for Security Research jobs in California are:

Infographic showing various Security Research job openings in California as of August 2026, with employment types broken down into 89% Full Time, 9% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $105,598 per year, or $50.8 per hour.

Senior Security Engineer, Security Research

San Jose, CA • On-site


Google Inc.
Software Development • 10K+ employees

8.8

Company rating: 8.8 out of 10

Based on 103 frontline employees who took The Breakroom Quiz

49th of 246 rated software companies

Free food

Great coworkers

People enjoy working here


$207 - $300/hr

Other

Posted yesterday

New


Job description

Senior Security Engineer, Security Research

Google San Jose, CA, USA

Advanced

Experience owning outcomes and decision making, solving ambiguous problems and influencing stakeholders;deep expertise in domain.

  • Bachelor's degree or equivalent practical experience.
  • 8 years of experience with security assessments or security design reviews or threat modeling.
  • 8 years of experience with security engineering, computer and network security and security protocols.
  • 8 years of coding experience in one or more general purpose languages.
  • 3 years of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.
Preferred qualifications:
  • A track record of excellent published security research.
  • The ability to demonstrate significant depth of understanding in one or more vulnerability research security fields.
About the job

Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

There's no such thing as a safe system, only safer systems. Our Security team works to create and maintain the safest operating environment for Google's users and developers.

As a Security Engineer, you help protect network boundaries, keep computer systems and network devices hardened against attacks and provide security services to protect highly sensitive data like passwords and customer information. Security Engineers work directly with network equipment and actively monitor our systems for attacks and intrusions. You also work with software engineers to proactively identify and fix security flaws and vulnerabilities. You use your industry experience to own and drive the resolution of complex security incidents, policy questions and technical security issues.

We build tooling to scale security research, and create new methodologies for discovering high impact security vulnerabilities. We also use in-house exploit development to provide relevant and actionable guidance for long-term defenses and mitigations, and engage in non-technical work such as driving improvements to industry security processes and best practices.

Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

About the job

Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

There's no such thing as a safe system, only safer systems. Our Security team works to create and maintain the safest operating environment for Google's users and developers.

As a Security Engineer, you help protect network boundaries, keep computer systems and network devices hardened against attacks and provide security services to protect highly sensitive data like passwords and customer information. Security Engineers work directly with network equipment and actively monitor our systems for attacks and intrusions. You also work with software engineers to proactively identify and fix security flaws and vulnerabilities. You use your industry experience to own and drive the resolution of complex security incidents, policy questions and technical security issues.

We build tooling to scale security research, and create new methodologies for discovering high impact security vulnerabilities. We also use in-house exploit development to provide relevant and actionable guidance for long-term defenses and mitigations, and engage in non-technical work such as driving improvements to industry security processes and best practices.

Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

US: $207000 - $300000 (USD) + 20% bonus target + equity + benefits
Learn more about benefits at Google .

  • Conduct vulnerability research and exploit development, specifically in (but not limited to) iOS, MacOS and XNU.
  • Create tools and infrastructure that enables the team to scale up our research efforts.
  • Engage the wider defensive community by publishing your results.
  • Work with other security engineers on the analysis of, and response to vulnerabilities reported by other parties.

Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google's EEO Policy , Know your rights: workplace discrimination is illegal , Belonging at Google , and How we hire .

Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.

Equity is granted exclusively and discretionarily by Alphabet Inc. on the basis of an agreement concluded between you and Alphabet Inc. Alphabet Inc. is your sole contractual partner with respect to equity grants. GSU grants are not guaranteed, are discretionary, are subject to approval by the Alphabet Inc. board of directors or its delegate, the terms of the relevant Alphabet Inc. stock plan, and your grant agreement. They have no impact on statutory payments. Current or past grants do not confer an acquired right.

#J-18808-Ljbffr


What Google employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom