1

Senior Security Researcher Jobs (NOW HIRING)

You will work closely with security leadership, engineering teams, and researchers to validate ... As a Senior Security Engineer, you will be a hands-on technical contributor with deep expertise in ...

We are seeking a highly motivated and talented research scientist working in machine learning (ML), natural language processing (NLP), and Artificial Intelligence (AI) to join our Security Science ...

New

As a Principal Product Security Researcher at Chainguard, you'll lead our product security research ... Partner with executive and senior engineering leadership to drive org-level security strategy ...

As a Principal Product Security Researcher at Chainguard, you'll lead our product security research ... Partner with executive and senior engineering leadership to drive org-level security strategy ...

next page

Showing results 1-20

Senior Security Researcher information

See salary details

$47

$51

$54

How much do senior security researcher jobs pay per hour?

As of Jun 7, 2026, the average hourly pay for senior security researcher in the United States is $51.44, according to ZipRecruiter salary data. Most workers in this role earn between $49.76 and $53.12 per hour, depending on experience, location, and employer.

What are some common challenges faced by Senior Security Researchers when working with cross-functional teams?

Senior Security Researchers often collaborate with engineers, product managers, and IT teams to identify and address security vulnerabilities. One common challenge is bridging the gap between technical security findings and the priorities or understanding of non-security stakeholders. Communicating complex risks in a clear, actionable way and advocating for security improvements without disrupting project timelines requires strong interpersonal skills. Building mutual trust and staying adaptable helps foster effective collaboration and ensures security is integrated into all stages of development.

What are the key skills and qualifications needed to thrive as a Senior Security Researcher, and why are they important?

To thrive as a Senior Security Researcher, you need deep expertise in cybersecurity principles, threat analysis, vulnerability assessment, and typically a degree in computer science or related field. Familiarity with tools like IDA Pro, Wireshark, Metasploit, and experience with programming languages such as Python or C/C++, as well as relevant certifications like OSCP or CISSP, are highly valuable. Analytical thinking, problem-solving, and strong written and verbal communication skills make someone stand out in this role. These skills are crucial for identifying and mitigating complex security threats, effectively sharing findings, and contributing to organizational resilience.

What does a Senior Security Researcher do?

A Senior Security Researcher is responsible for identifying, analyzing, and mitigating security threats and vulnerabilities in software, systems, or networks. They conduct advanced research on emerging cyber threats, develop new security tools and techniques, and often collaborate with other teams to improve an organization’s overall security posture. Additionally, they may publish findings, present at conferences, and contribute to the security community by sharing knowledge about the latest attack vectors and defense strategies.
More about Senior Security Researcher jobs
What cities are hiring for Senior Security Researcher jobs? Cities with the most Senior Security Researcher job openings:
What are the most commonly searched types of Security Researcher jobs? The most popular types of Security Researcher jobs are:
What states have the most Senior Security Researcher jobs? States with the most job openings for Senior Security Researcher jobs include:
What job categories do people searching Senior Security Researcher jobs look for? The top searched job categories for Senior Security Researcher jobs are:
Infographic showing various Senior Security Researcher job openings in the United States as of May 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $107,000 per year, or $51.4 per hour.
Sr. Security Engineer, AWS Security

Sr. Security Engineer, AWS Security

Amazon

Seattle, WA

$130K - $178K/yr

Full-time

Posted 10 days ago


Amazon rating

7.4

Company rating: 7.4 out of 10

Based on 6,820 frontline employees who took The Breakroom Quiz

7th of 39 rated national retailers


Job description

Come help us conduct sophisticated offensive security operations targeting emerging threats across the AWS identity and platform infrastructure. This role is responsible for executing Red Team operations across our platform services, performing security research on novel attack surfaces, and developing automated solutions to scale offensive security capabilities. You will work closely with security leadership, engineering teams, and researchers to validate security assumptions and drive meaningful improvements in our security posture.
Amazon Web Services (AWS) Identity and Governance teams build and operate the identity, authentication, and authorization stack for the AWS cloud, and build services that enable customers to manage access and governance across their AWS environments at scale

AWS Identity and Governance services empower customers to confidently and securely execute their workflows with flexible controls which meet their individual security requirements.
As a Senior Security Engineer, you will be a hands-on technical contributor with deep expertise in offensive security for platform and infrastructure services. You'll execute complex security assessments, discover vulnerabilities in AWS infrastructure and applications, and translate technical findings into actionable recommendations. This position requires someone who can work independently on sophisticated technical challenges while collaborating effectively across teams to drive security outcomes.
Key job responsibilities
-Conducting Red Team operations targeting identity and platform services including authentication, authorization, credential management, certificate management, secrets management, and supporting infrastructure.
-Performing offensive security research focused on identity-specific primitives such as token issuance and validation, federation policies, credential delegation mechanisms, and background service workers to discover deep, hidden vulnerabilities in how authentication and authorization technology is offered to builders.
-Building and executing multi-phase attack chains including defining targets, identifying attacker starting positions (external, internal, assumed breach), and chaining together primitives to achieve compromise


-Discovering and exploiting vulnerabilities in public-facing and broadly accessible internal services through hands-on penetration testing, with a focus on identifying entry points that adversaries can leverage and understanding downstream impact to services that depend on identity infrastructure for authentication and authorization.
-Evaluating dependency and supply chain risks by consuming vulnerability intelligence from partner teams, assessing exploitability within the identity services context, and integrating confirmed risks into adversary emulation plans as initial access scenarios.
-Developing automated tools and custom exploit code for threat emulation, adversary simulation, and scaling offensive security capabilities across identity services.
Measuring detection, prevention, and telemetry coverage during adversary emulation exercises and providing detailed technical findings to service teams with remediation guidance.
-Collaborating with detection engineers, service team engineers, and external partner teams to validate that remediations are effective through re-testing, and to advance the overall security posture of identity services.
-Contributing to program metrics including detection coverage targets, mean time to detect for high-priority techniques, and dependency risk intake SLAs, ensuring the program demonstrates measurable progress in closing attack vectors.
A day in the life
- Drive technical direction for security projects impacting multiple teams or organizations
- Author and maintain technical design documents for security systems and controls
- Review and approve security architecture proposals and technical implementation plans
- Lead security reviews for critical systems and applications
- Partner with Product, Operations, and Development teams to drive security improvements
- Represent security engineering in senior-level technical discussions
- Mentor junior security engineers and develop team capabilities
- Drive security best practices across engineering organizations
About the team
The Identity Security team partners with AWS Identity, Governance, and Infrastructure as Code services to reduce risk in our services as they're built and throughout their lifecycle. The team of security engineers collaborates directly with software engineers to prevent security issues from being introduced at the time of design and development. We proactively look for unknown threats in our services to identify and fix them before they can impact customers

When security issues are detected, we support teams with their response to minimize the impact to customers, while determining what can be done to prevent the issue from happening again. In addition to diving deep with individual services, we also own security efforts that raise the security bar across a broad range of services, such as contingent authorization, auth correctness, and service credential management. We instill a high security bar in our services, working alongside service teams to foster a culture of security and continuous learning.
If you enjoy analyzing the security of web applications and services, driving the delivery of large-scale security solutions, fostering a culture of security across engineering teams, learning and applying new skills on a daily basis, and helping to protect some of the most mission-critical systems in AWS, then join us our challenging endeavor!


What Amazon employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Amazon logo

About Amazon

Sourced by ZipRecruiter

Amazon.com, Inc., commonly known as Amazon, is an American multinational technology company. It was founded by Jeff Bezos in 1994 and initially started as an online marketplace for books. Since then, Amazon has expanded its operations and become one of the largest e-commerce companies in the world. Amazon's primary business is its online retail platform, where customers can purchase a vast array of products, including electronics, clothing, books, home goods, and much more. The company offers a convenient and user-friendly shopping experience, with features such as fast shipping, customer reviews, and personalized recommendations. In addition to its e-commerce platform, Amazon has diversified its business into various other areas. One of its notable ventures is Amazon Web Services (AWS), a comprehensive cloud computing platform that provides services such as storage, compute power, and database management to individuals and businesses. AWS has become a leader in the cloud computing industry, powering many websites and applications worldwide. Amazon has also developed its own consumer electronics, including the popular Amazon Kindle e-reader, Fire tablets, Fire TV streaming devices, and the Alexa-powered Echo smart speakers. The Alexa voice assistant, integrated into these devices, allows users to interact with their devices using voice commands, perform tasks, and access information. Furthermore, Amazon has expanded into media and entertainment. It operates Prime Video, a streaming service that offers a wide range of movies, TV shows, and original content. Amazon Music provides a platform for streaming and purchasing digital music, while Audible offers audiobooks and other audio content. The company's commitment to customer satisfaction and convenience is demonstrated by its membership program, Amazon Prime. Prime members receive various benefits, including free two-day shipping, access to streaming services, exclusive deals, and more.

Industry

It services, book publishers, retail, real estate and computer and electronic product manufacturing

Company size

10,000+ Employees

Headquarters location

Seattle, WA, US