1

Security Research Jobs in Boston, MA (NOW HIRING)

The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings. Responsibilities · Conduct ...

The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings. Responsibilities • Conduct ...

Research, evaluate, and recommend new security tools, technologies, and processes that improve HMS security capabilities. * Abide by and follow Harvard University IT technical standards, policies ...

Senior Security Engineer

Boston, MA · On-site

$124K - $170K/yr

Research, evaluate, and recommend new security tools, technologies, and processes that improve HMS security capabilities. * Abide by and follow Harvard University IT technical standards, policies ...

Senior Research Scientist

Burlington, MA · On-site

$107K - $136K/yr

The Kostas Research Institute was founded with a focus on homeland security research and development. Today, KRI strives to advance resilience in the face of 21st century risks across a wide range of ...

Sr Research Scientist

Burlington, MA · On-site

$107K - $136K/yr

The Kostas Research Institute was founded with a focus on homeland security research and development. Today, KRI strives to advance resilience in the face of 21st century risks across a wide range of ...

next page

Showing results 1-20

Security Research information

See Boston, MA salary details

$51

$55

$59

How much do security research jobs pay per hour?

As of Aug 28, 2026, the average hourly pay for security research in Boston, MA is $55.89, according to ZipRecruiter salary data. Most workers in this role earn between $54.04 and $57.69 per hour, depending on experience, location, and employer.

What is security research?

Security research is the process of studying, analyzing, and developing methods to identify and address vulnerabilities in computer systems, networks, and software. Security researchers investigate potential threats, discover security flaws, and often create proof-of-concept exploits to demonstrate risks. Their work helps organizations understand emerging threats and improve their defenses, often contributing to the wider cybersecurity community by sharing findings and best practices.

What are some common challenges faced by professionals in security research roles?

Security Researchers often encounter the challenge of keeping up with rapidly evolving threats and technologies. The field demands continuous learning, as new vulnerabilities and attack vectors emerge regularly. Collaborating with cross-functional teams, such as software engineers and incident response, is essential to translate research findings into practical defenses. Additionally, Security Researchers must balance thorough analysis with the need to quickly communicate critical findings to stakeholders, ensuring organizational security remains robust.

What are the key skills and qualifications needed to thrive as a security researcher, and why are they important?

To thrive as a Security Researcher, you need a solid background in computer science, cybersecurity principles, and vulnerability analysis, often supported by a relevant degree or certifications like OSCP or CEH. Expertise with tools such as IDA Pro, Wireshark, Metasploit, and reverse engineering platforms is typically required. Critical thinking, curiosity, and strong written communication are essential soft skills for investigating threats and sharing findings. These competencies enable Security Researchers to identify, analyze, and mitigate security risks in an evolving threat landscape.

What is the difference between Security Research vs Security Analyst?

AspectSecurity ResearchSecurity Analyst
CredentialsCertifications like CISSP, GIAC, OSCP often preferredCertifications like CompTIA Security+, CISSP, CEH common
Work EnvironmentResearch labs, cybersecurity firms, R&D teamsSecurity operations centers, corporate IT departments
Industry UsageUsed in threat discovery, vulnerability research, developing security toolsUsed in monitoring, incident response, security monitoring

Security Research and Security Analysts both play vital roles in cybersecurity. While Security Researchers focus on discovering vulnerabilities and developing new security techniques, Security Analysts monitor systems for threats and respond to incidents. Both roles often require similar certifications and work environments, but their core responsibilities differ in scope and focus.

How do you become a security researcher?

To become a security researcher, individuals typically pursue a bachelor's degree in computer science, cybersecurity, or a related field, and develop skills in programming, network analysis, and vulnerability assessment. Gaining experience through internships, participating in Capture The Flag (CTF) competitions, and obtaining certifications like Certified Ethical Hacker (CEH) or Offensive Security Certified Professional (OSCP) can also enhance prospects in this field.

What do security researchers do?

Security researchers analyze computer systems, networks, and software to identify vulnerabilities and develop ways to protect against cyber threats. They often use tools like penetration testing, reverse engineering, and security analysis, and may hold certifications such as CISSP or CEH. Their work helps improve cybersecurity defenses and prevent cyberattacks.

What job categories do people searching Security Research jobs in Boston, MA look for?

The top searched job categories for Security Research jobs in Boston, MA are:

Infographic showing various Security Research job openings in Boston, MA as of August 2026, with employment types broken down into 85% Full Time, 12% Part Time, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $116,244 per year, or $55.9 per hour.

Security Research Architect

Veracode

Burlington, MA • On-site

Full-time

Re-posted 18 days ago


Job description

The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode’s dynamic scanner offerings.

Responsibilities

·         Conduct research and development for automating web application attacks.

·         Conduct research for improving techniques for detection of vulnerabilities.

·         Develop attack signatures for specific classes of vulnerabilities.

·         Define developer focused specifications for new attacks.

·         Work with management to set priorities and goals for Veracode’s DAST offerings.

·         Keep up to date with the latest features in web browsers, web application development techniques, and web application vulnerabilities.

·         Develop test cases to demonstrate vulnerabilities and ensure products’ ability to identify them in an automated fashion.

·         Actively engage with the security research community through speaking at industry conferences, publishing independent research, posting on the Veracode blog, and other means.