1

Security Researcher Jobs (NOW HIRING)

The candidate will be working on a team performing security research against Windows technologies. The candidate must be familiar with the latest techniques in vulnerability research and demonstrate ...

S. security and promote global stability. Our mission spans four critical national security areas ... We have multiple openings for a Senior Research Scientist to lead efforts to develop techniques and ...

About the Company Born from groundbreaking research at Columbia University and Yale University, CertiK is a leading Web3 security company focused on securing blockchain protocols, smart contracts ...

You will join a team working with world-class offensive security researchers. The work is critical directly shapes the security posture of Apple. You will conduct offensive research into AI-specific ...

Offensive Security Researcher, SEAR Apple's Security Engineering & Architecture (SEAR) organization is responsible for the security of all Apple products. Passionate about safeguarding our users, we ...

S. security and promote global stability. Our mission spans four critical national security areas ... We have multiple openings for a Senior Research Scientist to lead efforts to develop techniques and ...

S. security and promote global stability. Our mission spans four critical national security areas ... We have multiple openings for a Senior Research Scientist to lead efforts to develop techniques and ...

next page

Showing results 1-20

Security Researcher information

See salary details

$47

$51

$54

How much do security researcher jobs pay per hour?

As of Jul 21, 2026, the average hourly pay for security researcher in the United States is $51.44, according to ZipRecruiter salary data. Most workers in this role earn between $49.76 and $53.12 per hour, depending on experience, location, and employer.

What Is a Security Researcher?

A security researcher keeps up-to-date on all the latest developments in threats to computer software and networks. These threats include different types of malware, such as computer viruses, malicious software and scripts, and direct attacks on a network. The main duties of a security researcher are to investigate existing types of malware, analyze their capabilities, and attempt to predict new forms of malware to develop appropriate security responses. They may reverse engineer malware or test security systems.

What are Security Researchers?

Security Researchers are professionals who analyze computer systems, networks, and software to identify vulnerabilities and potential security threats. They often discover new types of cyberattacks, develop tools or methods to test for weaknesses, and recommend ways to improve security. Security Researchers may work for private companies, government agencies, or independently, and they play a crucial role in preventing cybercrime by staying ahead of hackers. Their work often involves reverse engineering, penetration testing, and publishing their findings to help strengthen cybersecurity across the industry.

Can I make $200,000 a year in cyber security?

Security Researchers can potentially earn $200,000 or more annually, especially with advanced skills, certifications, and experience in high-demand areas like penetration testing or threat analysis. Salaries vary based on industry, location, and level of expertise, with senior roles and specialized skills commanding higher pay.

What is the difference between Security Researcher vs Security Analyst?

AspectSecurity ResearcherSecurity Analyst
CredentialsCertifications like CISSP, CEH, OSCPCertifications like CompTIA Security+, CISSP, GIAC
Work EnvironmentResearch labs, cybersecurity firms, R&D teamsSecurity operations centers, corporate IT teams
Employer & IndustryTech companies, cybersecurity firms, government agenciesFinancial institutions, healthcare, enterprise companies
Primary FocusIdentifying vulnerabilities, developing exploits, analyzing threatsMonitoring security systems, incident response, implementing security measures

While both roles focus on cybersecurity, Security Researchers primarily analyze vulnerabilities and develop exploits to understand threats better. Security Analysts focus on monitoring, detecting, and responding to security incidents within organizations. Both roles often require similar certifications and work in related environments, but their core responsibilities differ in scope and daily tasks.

What does a security researcher do?

A security researcher analyzes computer systems, networks, and software to identify vulnerabilities and develop ways to protect against cyber threats. They often use tools like penetration testing and vulnerability scanners and may hold certifications such as CISSP or CEH. Their work helps improve cybersecurity defenses and prevent cyberattacks.

How to get a job as a security researcher?

To become a security researcher, develop strong knowledge of cybersecurity principles, programming, and network protocols. Obtain relevant certifications such as CISSP or CEH, gain experience through internships or labs, and stay updated on current security threats and tools like Wireshark or Metasploit.

How much do security researchers make in the US?

Security researchers in the US typically earn a median salary of around $100,000 per year, with entry-level positions starting at approximately $70,000 and experienced professionals earning over $130,000. Salaries vary based on experience, certifications, and the complexity of the security environment they work in.

What are the key skills and qualifications needed to thrive as a Security Researcher, and why are they important?

To thrive as a Security Researcher, you need deep expertise in computer science, networking, vulnerability assessment, and malware analysis, often supported by a degree in cybersecurity or related fields. Familiarity with tools like IDA Pro, Wireshark, Metasploit, and certifications such as OSCP or CEH is highly valued. Analytical thinking, curiosity, and strong written and verbal communication help distinguish top performers in this role. These skills are crucial for identifying emerging threats, effectively communicating risks, and developing solutions to protect organizations' digital assets.

What are some common challenges Security Researchers face when collaborating with development teams?

Security Researchers often encounter challenges when working with development teams, such as communicating complex vulnerabilities in a way that is actionable for developers and aligning on remediation priorities. Bridging the gap between security findings and practical implementation requires clear documentation and a collaborative mindset. Additionally, researchers must balance thorough testing with minimal disruption to production environments, ensuring security improvements integrate smoothly into development cycles.
What cities are hiring for Security Researcher jobs? Cities with the most Security Researcher job openings:
What are the most commonly searched types of Security Researcher jobs? The most popular types of Security Researcher jobs are:
Who are the top companies hiring for Security Researcher jobs? The top employers for Security Researcher jobs are:
What states have the most Security Researcher jobs? States with the most job openings for Security Researcher jobs include:
What job categories do people searching Security Researcher jobs look for? The top searched job categories for Security Researcher jobs are:
Infographic showing various Security Researcher job openings in the United States as of July 2026, with employment types broken down into 89% Full Time, 5% Part Time, 1% Temporary, 4% Contract, and 1% Summer. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $107,000 per year, or $51.4 per hour.
Security Researcher / Systems Hacker

Security Researcher / Systems Hacker

Riverside Research

Lexington, MA • On-site

$95K - $200K/yr

Other

Re-posted 18 days ago


Job description


Security Researcher / Systems Hacker
Location
US-MA-Lexington
ID
2026-4112
Category
Research & Development
Position Type
Full Time Salary
Riverside Overview
Riverside Research is an independent National Security Nonprofit dedicated to research and development in the national interest. We provide high-end technical services, research and development, and prototype solutions to some of the country's most challenging technical problems.
All Riverside Research opportunities require U.S. Citizenship
Position Overview

Riverside Research's Secure and Resilient Systems group seeks a computer scientist with a focus on systems security research.

The researcher will contribute to applied research projects from cradle to grave including: ideation (e.g., system architecture, technical proposal writing), planning (e.g., designing new methods and approaches), execution (e.g., prototyping, experimentation) and transition (e.g., publishing and/or briefing results).

Research problems tackled in this position may involve systems software (e.g., real time operating systems (RTOS), secure hypervisors), computer architecture (e.g., tagged architectures), peripheral hardware (e.g., custom device drivers, FPGA hardware, bus protocols), compiler extensions (e.g., LLVM passes, custom backends) and/or program analysis (e.g., fuzzer implementation, symbolic execution). Awareness of peripheral domains such as cryptography, formal methods and reverse engineering will enable better collaboration across the Secure and Resilient Systems group.

Successful candidates for this role will have the deep technical and big-picture skills necessary to both decompose big problems and communicate effectively with both technical and less-technical stakeholders and contributors. If you can see a forest made of weeds, if you know how to eat an elephant (hint: one bite at a time), or if you can explain virtual memory to your grandmother... you may have the right skills to join Riverside Research's Secure and Resilient Systems group.

Responsibilities
    Help design and implement innovative solutions to customer problems related to systems software security
  • Prototype and evaluate features within large system software projects (e.g., Linux, Xen, QEMU, etc.)
  • Build new tools features, and/or capabilities in languages like C/C++, Python, Rust, Assembly, etc.
  • Contribute to whitepapers and/or published papers that document innovative work performed.
  • Document and communicate design decisions, technical challenges, and progress to technical and less-technical internal and external stakeholders
  • Collaborate with team members on debugging programs, pair programming, reviewing papers/proposals, etc.

Qualifications

Required:

  • Thesis-based MS degree with 3+ years experience or PhD degree. Equivalent work experience in systems research may substitute. Degree is preferred in related technical field, such as computer science, computer engineering, electrical engineering, or cybersecurity.
  • Strong systems software development fundamentals, including proficiency with C/C++, Assembly (1 or more architecture), and Python. Knowledge of principles in computer architecture, operating systems, and compilers.
  • Strong software development fundamentals such as source code version control, documentation, debugging, toolchains, build systems, etc
  • Experience working inside a large project (e.g., submitting PRs, interacting with open-source communities and mailing lists, git branches/merges/rebasing, tiered build systems, etc)
  • Strong grasp on the research process (e.g., reading & writing academic papers, ideation for inventing solutions to hard problems)
  • Superior written and verbal communications skills
  • Must be eligible to obtain a Top Secret security clearance.

Bonus/Desired:

  • Healthy balance between technical orientation and business acumen
  • Ability to operate independently with limited supervision and feedback, and establish a solid working relationship with technical staff and business leaders in the group and across Riverside Research
  • Experience with both defensive and offensive cyber tools
  • Familiarity with seL4, Rust, LLVM, AFL++, or other cutting-edge system software languages and tools
  • Existing/prior security clearance

Global Comp
$95,000 - $200,000 This represents the typical compensation range for this position based on experience, location and other factors.
Closing Statement
Riverside Research Institute is a not-for-profit, technology-oriented defense company, where service to our customers and support of our staff is our overall mission. Riverside is an affirmative action-equal opportunity employer and complies with all applicable federal, state, and local laws regarding recruitment and hiring. Riverside offers comprehensive compensation and benefit packages to our employees.
Riverside bases its employment decisions solely on technical experience, qualifications and other job-related criteria related to our organizational purpose as a not-for-profit company, and without regard to race, color, religion, age, sex marital status, sexual orientation, national origin, physical or mental disability, veteran's status or any other status legally protected by applicable federal, state, and local law.