1

Senior Vulnerability Researcher Jobs in Virginia

Vulnerability Researcher: Use advanced systems to find zero-day (O-day) vulnerabilities. Responsible for analyzing, designing, and identifying programmatic behaviors. Have an opportunity to develop ...

next page

Showing results 1-20

Senior Vulnerability Researcher information

What does a senior vulnerability researcher do?

A Senior Vulnerability Researcher is responsible for identifying, analyzing, and reporting security vulnerabilities in software, hardware, or network systems. They use advanced techniques to discover potential security flaws that could be exploited by attackers. Their work involves reverse engineering, penetration testing, and developing proof-of-concept exploits to demonstrate risks. Additionally, they often collaborate with development teams to recommend mitigation strategies and help improve overall security posture.

What are some common challenges faced by senior vulnerability researchers when working on complex systems?

Senior Vulnerability Researchers often encounter challenges such as reverse engineering proprietary software, analyzing obfuscated code, and dealing with a lack of documentation for complex systems. Collaboration with cross-functional teams, such as software developers and security analysts, is essential to understand system intricacies and coordinate responsible disclosure. Staying updated with the latest attack techniques and adapting to rapidly evolving technology landscapes are also key aspects of the role.

What are the key skills and qualifications needed to thrive as a senior vulnerability researcher, and why are they important?

To thrive as a Senior Vulnerability Researcher, you need deep expertise in cybersecurity, reverse engineering, exploit development, and a strong background in computer science or a related field. Familiarity with tools like IDA Pro, Ghidra, debuggers, and proficiency in programming languages such as C, Python, and assembly are essential, along with relevant certifications like OSCP or CEH. Analytical thinking, attention to detail, and effective communication are critical soft skills for collaborating with teams and presenting complex findings. These competencies are vital for identifying and mitigating security risks, ensuring robust protection of digital assets, and driving advancements in security research.

What is the difference between Senior Vulnerability Researcher vs Security Analyst?

AspectSenior Vulnerability ResearcherSecurity Analyst
Required CredentialsCertifications like OSCP, CISSP, CEH; strong technical backgroundCertifications like Security+, CISSP; focus on monitoring and analysis
Work EnvironmentResearch labs, cybersecurity firms, R&D teamsSecurity operations centers, corporate IT departments
Employer & Industry UsageTech companies, cybersecurity firms, government agenciesFinancial institutions, healthcare, enterprise organizations
Common Search & Comparison IntentUnderstanding advanced vulnerability research rolesComparing security roles in cybersecurity teams

While both roles focus on cybersecurity, a Senior Vulnerability Researcher specializes in identifying and analyzing security flaws through research and testing, often working in labs or R&D environments. In contrast, a Security Analyst monitors security systems, responds to incidents, and maintains overall security posture within organizations. The roles complement each other but differ in focus and daily responsibilities.

What are the most commonly searched types of Vulnerability Researcher jobs in Virginia?

The most popular types of Vulnerability Researcher jobs in Virginia are:

What are popular job titles related to Senior Vulnerability Researcher jobs in Virginia?

For Senior Vulnerability Researcher jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Senior Vulnerability Researcher jobs in Virginia look for?

The top searched job categories for Senior Vulnerability Researcher jobs in Virginia are:

What cities in Virginia are hiring for Senior Vulnerability Researcher jobs?

Cities in Virginia with the most Senior Vulnerability Researcher job openings:

Infographic showing various Senior Vulnerability Researcher job openings in Virginia as of August 2026, with employment types broken down into 86% Full Time, 8% Part Time, and 6% Contract. Highlights an 81% Physical, 7% Hybrid, and 12% Remote job distribution.

Senior Vulnerability Researcher

Two Six Technologies

Herndon, VA

$122K - $162K/yr

Full-time

Posted 5 days ago


Job description

Overview of Opportunity 

Join the Trusted Electronics & Effects team at Two Six Technologies in Herndon, Virginia, where we push the boundaries of software and firmware reverse engineering to uncover vulnerabilities in wireless and embedded systems. As part of our elite team of security researchers, you'll work alongside CNO developers and hardware engineers, conducting cutting-edge vulnerability research on complex, real-world targets.

Our government customers rely on us to deliver mission-critical security solutions, and we're looking for a Senior Vulnerability Researcher who thrives on reverse engineering embedded systems, discovering security weaknesses, and developing innovative proof-of-concept exploits. If you're passionate about wireless security, embedded firmware analysis, and making an impact on national security, we want you on our team.

What You'll Do:

  • Serve as a senior technical contributor to the reverse engineering of wireless and embedded systems, identifying vulnerabilities and assessing their security impact.
  • Develop proof-of-concept exploits for discovered vulnerabilities following DevOps best practices for keeping code bases organized and maintainable.
  • Analyze firmware, software protections, and wireless protocols to uncover security flaws.
  • Utilize and develop custom tools to analyze and manipulate software/firmware binaries.
  • Collaborate closely with CNO developers, vulnerability researchers, and hardware engineers in a fast-paced, small-team environment.
  • Solve complex technical challenges with no predefined solutions.

What You'll Need (Basic Qualifications):

  • Bachelor's (or higher) degree in Computer Science, Computer/Electrical Engineering, or a related field (or equivalent practical experience).
  • Experience developing, debugging, and scripting in C/C++ and Python within Linux command-line environments, with a strong emphasis on low-level programming, memory management, and system interaction for reverse engineering and vulnerability research.
  • Experience with reverse engineering and vulnerability research, using tools such as IDA Pro, Binary Ninja, or Ghidra.
  • Expertise in one or more of the following:
    • Firmware analysis (ARM, MIPS, PowerPC, RTOS).
    • Firmware rehosting using emulation tools such as QEMU
    • Fuzzing and exploit development.
    • Binary obfuscation and anti-analysis techniques.
    • Wireless protocols and radio signal analysis.
    • File system forensics and fault injection frameworks.
  • Knowledge of common network protocols TCP/IP, UDP, or HTTP
  • Ability to work in the Herndon, Virginia office daily.

Nice if you have:

  • Experience conducting vulnerability research on embedded systems
  • Experience with defeating modern migrations such as ASLR, DEP, and Stack Canaries
  • Knowledge of cellular standards such as 4G or 5G
  • Knowledge of low bandwidth communications such as RS485, RS232, CAN
  • Knowledge of Wifi, Bluetooth, Zigbee communication
  • Previous experience in a client-facing technical role

Clearance Requirement:

  • Active US Security clearance of Top Secret level and ability to obtain and maintain TS/SCI

#LI-ZS1

#LI-ONSITE