1

Senior Security Researcher Jobs in Oregon (NOW HIRING)

Senior Security Research Engineer

OR · On-site +1

$114K - $156K/yr

Reporting to the Director of Global Vulnerability Management, you will serve as a Senior Security Research Engineer and technical lead within SIE's Global Vulnerability Management team. You will lead ...

Senior Product Security Engineer

OR · On-site +1

$114K - $156K/yr

Senior Product Security Engineer The role in a nutshell: You are a deeply technical engineer who ... Background in security research or offensive security (bug bounty, CTF, penetration testing)

The Role We're seeking a Senior Product Security Engineer who is passionate about building and ... Contributions to open-source security tooling or active participation in the security research ...

Senior Product Security Engineer II

OR · On-site +1

$114K - $156K/yr

Overview About the Role - You will be a key member of the Security Engineering team that is tasked with researching, developing, and conducting offensive security techniques for a suite of Instacart ...

Proficiency using AI to accelerate vulnerability discovery, exploit development, code analysis, and security research while validating AI-generated output. * Strong communication skills with the ...

Research emerging threats, attacker methodologies, and offensive security techniques to ... senior leadership and executive stakeholders. * Demonstrated ability to lead complex offensive ...

The Role We are seeking a highly analytical Sr. Director Product Marketing, with a strong technical ... security researchers and discussing business risk mitigation with enterprise CISOs. * Education:

Vendor Coordination and Relations * Conduct product and vendor research, and present ... senior leadership * Possess a high degree of initiative and motivation * Ability to effectively ...

next page

Showing results 1-20

Senior Security Researcher information

See Oregon salary details

$50

$54

$57

How much do senior security researcher jobs pay per hour?

As of Aug 26, 2026, the average hourly pay for senior security researcher in Oregon is $54.39, according to ZipRecruiter salary data. Most workers in this role earn between $52.60 and $56.15 per hour, depending on experience, location, and employer.

What does a senior security researcher do?

A Senior Security Researcher is responsible for identifying, analyzing, and mitigating security threats and vulnerabilities in software, systems, or networks. They conduct advanced research on emerging cyber threats, develop new security tools and techniques, and often collaborate with other teams to improve an organization’s overall security posture. Additionally, they may publish findings, present at conferences, and contribute to the security community by sharing knowledge about the latest attack vectors and defense strategies.

What are some common challenges faced by senior security researchers when working with cross-functional teams?

Senior Security Researchers often collaborate with engineers, product managers, and IT teams to identify and address security vulnerabilities. One common challenge is bridging the gap between technical security findings and the priorities or understanding of non-security stakeholders. Communicating complex risks in a clear, actionable way and advocating for security improvements without disrupting project timelines requires strong interpersonal skills. Building mutual trust and staying adaptable helps foster effective collaboration and ensures security is integrated into all stages of development.

What are the key skills and qualifications needed to thrive as a senior security researcher, and why are they important?

To thrive as a Senior Security Researcher, you need deep expertise in cybersecurity principles, threat analysis, vulnerability assessment, and typically a degree in computer science or related field. Familiarity with tools like IDA Pro, Wireshark, Metasploit, and experience with programming languages such as Python or C/C++, as well as relevant certifications like OSCP or CISSP, are highly valuable. Analytical thinking, problem-solving, and strong written and verbal communication skills make someone stand out in this role. These skills are crucial for identifying and mitigating complex security threats, effectively sharing findings, and contributing to organizational resilience.

What are the most commonly searched types of Security Researcher jobs in Oregon?

The most popular types of Security Researcher jobs in Oregon are:

What are popular job titles related to Senior Security Researcher jobs in Oregon?

For Senior Security Researcher jobs in Oregon, the most frequently searched job titles are:

What cities in Oregon are hiring for Senior Security Researcher jobs?

Cities in Oregon with the most Senior Security Researcher job openings:

Senior Security Research Engineer

OR • On-site, Remote

PlayStation Global
Manufacturing • 1 - 5K employees

$114K - $156K/yr

Full-time

Posted 19 days ago


Job description

Reporting to the Director of Global Vulnerability Management, you will serve as a Senior Security Research Engineer and technical lead within SIE's Global Vulnerability Management team. You will lead complex work that advances our Threat Exposure Management capability and supports our transition to a Continuous Threat Exposure Management operating model, while remaining directly engaged in vulnerability research, analysis, security validation, prioritization, and remediation support.

You will partner across Information Security, engineering, technology, and business teams to improve how SIE discovers, prioritizes, validates, and mobilizes action on security risks. You will translate annual TEM goals into defined workstreams, delivery plans, success measures, and repeatable operating practices that improve visibility, decision-making, remediation outcomes, and program scale.
Responsibilities

  • Lead complex Global Vulnerability Management workstreams that advance SIE's Threat Exposure Management capability and transition toward a Continuous Threat Exposure Management operating model across discovery, prioritization, validation, and mobilization.
  • Translate annual TEM goals into defined delivery plans, milestones, success measures, dependencies, and repeatable operating practices. Monitor progress, identify barriers, and adjust execution to improve outcomes.
  • Lead hands-on vulnerability research and technical analysis to confirm security conditions, eliminate false positives, characterize exploitability and business impact, and provide actionable remediation or mitigation guidance.
  • Improve the discovery and assessment of vulnerabilities across SIE network, cloud, endpoint, application, container, and other technology environments.
  • Develop risk-based prioritization using vulnerability and threat intelligence, exploitation evidence, asset and business context, control effectiveness, and remediation considerations.
  • Lead security validation activities and develop proofs of concept when appropriate to distinguish material risk, evaluate defensive controls, and support informed decisions.
  • Partner with Information Security teams and technology owners to mobilize remediation, clarify ownership, establish effective handoffs, resolve barriers, and measure progress through remediation, mitigation, or accepted disposition.
  • Evolve GVM platforms, integrations, data, analytics, automation, and AI-enabled workflows to improve coverage, data quality, consistency, decision speed, and operational scale.
  • Communicate vulnerability trends, material risks, remediation progress, and program outcomes to technical, operational, and leadership audiences through clear reports and recommendations.
  • Mentor engineers and partner teams, contribute to technical standards and procedures, and improve the quality of vulnerability analysis, validation, documentation, and delivery.
  • Maintain current knowledge of relevant vulnerabilities, exploitation techniques, threat activity, security technologies, and industry practices.
  • Some travel may be required.
Qualifications
  • 8+ years of relevant experience in information security, information technology, systems engineering, or a related field, including substantial experience in vulnerability management, security research, or exposure management.
  • Bachelor's degree or equivalent in computer science, information security, or a related discipline.
  • Experience leading complex technical workstreams across multiple teams, translating objectives into delivery plans, and achieving measurable outcomes without relying on direct reporting authority.
  • Hands-on experience with vulnerability research, technical analysis, security validation, risk-based prioritization, and remediation or mitigation guidance.
  • Experience assessing vulnerabilities across several technology domains, such as operating systems, networks, cloud services, applications, endpoints, containers, databases, or hybrid infrastructure.
  • Experience with vulnerability discovery, assessment, validation, or exposure-management platforms and their supporting integrations.
  • Knowledge of adversarial tactics, exploitation techniques, threat intelligence, and attack frameworks such as MITRE ATT&CK, with the ability to apply that information to vulnerability prioritization.
  • Experience using scripting, programming, APIs, or automation to improve security analysis and operational workflows. Relevant technologies may include Python, SQL, Bash, PowerShell, JavaScript, or comparable languages.
  • Experience analyzing and contextualizing security data to connect technical findings with asset, service, business, threat, control, and remediation information.
  • Familiarity with software engineering practices such as version control, testing, code review, CI/CD, reusable components, and controlled production releases.
  • Ability to communicate complex security conditions, priorities, tradeoffs, and recommendations clearly to technical, operational, and leadership audiences.
  • Experience mentoring engineers or analysts and influencing technical practices across teams.
Desired qualifications
  • Experience helping evolve a traditional vulnerability-management function toward a TEM or CTEM operating model.
  • Experience with continuous security validation, adversarial exposure validation, exploit research, or proof-of-concept development.
  • Experience securing cloud, container, application, or build-pipeline environments and integrating security capabilities into engineering workflows.
  • Experience with security-data and analytics platforms such as Snowflake, Domo, or comparable technologies.
  • Experience applying automation, advanced analytics, or AI-enabled capabilities to vulnerability analysis, prioritization, validation, or remediation workflows.