Knowledge of public security advisories, CVE databases and vulnerability disclosure processes. * Experience reviewing and understanding public CTF (Capture The Flag) writeups and security research ...
Knowledge of public security advisories, CVE databases and vulnerability disclosure processes. * Experience reviewing and understanding public CTF (Capture The Flag) writeups and security research ...
Lead Penetration Test Engineer
Englewood, CO · Hybrid
$135K/yr
Vulnerability Management & Remediation Collaborate with engineering and development teams to ... Research emerging threats, attack vectors, and adversarial techniques to inform offensive and ...
Lead Penetration Test Engineer
Englewood, CO · Hybrid
$135K/yr
Vulnerability Management & Remediation Collaborate with engineering and development teams to ... Research emerging threats, attack vectors, and adversarial techniques to inform offensive and ...
Lead Penetration Test Engineer
Englewood, CO · Hybrid
$135K/yr
Vulnerability Management & Remediation Collaborate with engineering and development teams to ... Research emerging threats, attack vectors, and adversarial techniques to inform offensive and ...
Lead Penetration Test Engineer
Englewood, CO · Hybrid
$135K/yr
Vulnerability Management & Remediation Collaborate with engineering and development teams to ... Research emerging threats, attack vectors, and adversarial techniques to inform offensive and ...
Defensive Cyber Operations Watch Stander / Information Security Analyst
Colorado Springs, CO · On-site
Role Overview S4 LLC (a wholly owned subsidiary of Knexus Research LLC) is seeking a Cyber ... Monitor cyber taskings, advisories, vulnerability alerts, and incident reporting to support mission ...
Defensive Cyber Operations Watch Stander / Information Security Analyst
Colorado Springs, CO · On-site
Role Overview S4 LLC (a wholly owned subsidiary of Knexus Research LLC) is seeking a Cyber ... Monitor cyber taskings, advisories, vulnerability alerts, and incident reporting to support mission ...
Principal Application Security Engineer - Threat Research
Denver, CO · On-site
$144 - $288/hr
Lead security testing, vulnerability analysis, and documentation. * Spearhead the evaluation and ... Innovation and Research * Proven track record with participation in security research and the ...
Principal Application Security Engineer - Threat Research
Denver, CO · On-site
$144 - $288/hr
Lead security testing, vulnerability analysis, and documentation. * Spearhead the evaluation and ... Innovation and Research * Proven track record with participation in security research and the ...
Security Technical Program Manager
Denver, CO · On-site
$132K - $161K/yr
As the Security TPM, you'll own the definition and delivery of Gusto's vulnerability management and security operations programs across Security, AIT, R&D, Infrastructure, GRC, and Risk. You'll drive ...
Security Technical Program Manager
Denver, CO · On-site
$132K - $161K/yr
As the Security TPM, you'll own the definition and delivery of Gusto's vulnerability management and security operations programs across Security, AIT, R&D, Infrastructure, GRC, and Risk. You'll drive ...
... research and reproduce vulnerability exploitation Understanding of advanced cryptographic concepts. Ability to demonstrate manual testing experience including all of OWASP Top 10. Qualifications ...
... research and reproduce vulnerability exploitation Understanding of advanced cryptographic concepts. Ability to demonstrate manual testing experience including all of OWASP Top 10. Qualifications ...
Sr. Application Security Engineer
Cherry Hills Village, CO · On-site
$58.50 - $78/hr
... research and reproduce vulnerability exploitation • Understanding of advanced cryptographic concepts. • Ability to demonstrate manual testing experience including all of OWASP Top 10. ...
Sr. Application Security Engineer
Cherry Hills Village, CO · On-site
$58.50 - $78/hr
... research and reproduce vulnerability exploitation • Understanding of advanced cryptographic concepts. • Ability to demonstrate manual testing experience including all of OWASP Top 10. ...
R&D Engineer SW Quality 3
Broomfield, CO · On-site
$72K - $93K/yr
... infrastructure, and Vulnerability/Intrusive scanner applications. * Automation Scripting ... Tester), GXPN (GIAC Exploit Researcher and Advanced Penetration Tester), CASE (Certified ...
R&D Engineer SW Quality 3
Broomfield, CO · On-site
$72K - $93K/yr
... infrastructure, and Vulnerability/Intrusive scanner applications. * Automation Scripting ... Tester), GXPN (GIAC Exploit Researcher and Advanced Penetration Tester), CASE (Certified ...
R&D Engineer SW Quality 3
Broomfield, CO · On-site
$72K - $93K/yr
... infrastructure, and Vulnerability/Intrusive scanner applications. * Automation Scripting ... Tester), GXPN (GIAC Exploit Researcher and Advanced Penetration Tester), CASE (Certified ...
R&D Engineer SW Quality 3
Broomfield, CO · On-site
$72K - $93K/yr
... infrastructure, and Vulnerability/Intrusive scanner applications. * Automation Scripting ... Tester), GXPN (GIAC Exploit Researcher and Advanced Penetration Tester), CASE (Certified ...
This individual will perform research, analysis, and data gathering activities while conducting threat, vulnerability, and capability maturity assessments. The individual will be expected to apply ...
Quick apply
This individual will perform research, analysis, and data gathering activities while conducting threat, vulnerability, and capability maturity assessments. The individual will be expected to apply ...
This individual will perform research, analysis, and data gathering activities while conducting threat, vulnerability, and capability maturity assessments. The individual will be expected to apply ...
This individual will perform research, analysis, and data gathering activities while conducting threat, vulnerability, and capability maturity assessments. The individual will be expected to apply ...
Sr Principal Classified Cybersecurity Analyst - TS/SCI at Northrop Grumman Aurora, CO
Aurora, CO · On-site
$137.40 - $206/hr
... research, hardware introduction and release, emerging technology research, inspections, and ... Knowledge of ACAS, NESSUS, SPLUNK, SCAP, POA&M, NIST, NISPOM, system audits, vulnerability scanning ...
Sr Principal Classified Cybersecurity Analyst - TS/SCI at Northrop Grumman Aurora, CO
Aurora, CO · On-site
$137.40 - $206/hr
... research, hardware introduction and release, emerging technology research, inspections, and ... Knowledge of ACAS, NESSUS, SPLUNK, SCAP, POA&M, NIST, NISPOM, system audits, vulnerability scanning ...
... Research and Development for Enterprise Solutions contract, focusing on cyber security compliance and vulnerability assessments. Responsibilities : • Exhibit excellent problem-solving skills, be a ...
... Research and Development for Enterprise Solutions contract, focusing on cyber security compliance and vulnerability assessments. Responsibilities : • Exhibit excellent problem-solving skills, be a ...
Security Consultant
Denver, CO · On-site
... Vulnerability Management, Qualys, Web Application Scanning, ThreatProtect, Policy Compliance, Cloud Agents, Asset Management, Governance, Risk Management and Compliance. Research on biggest risks of ...
Security Consultant
Denver, CO · On-site
... Vulnerability Management, Qualys, Web Application Scanning, ThreatProtect, Policy Compliance, Cloud Agents, Asset Management, Governance, Risk Management and Compliance. Research on biggest risks of ...
... Sentinel. • Conduct vulnerability assessments and penetration testing, then partner with ... of emerging threats by researching new attack vectors and recommending countermeasures.
... Sentinel. • Conduct vulnerability assessments and penetration testing, then partner with ... of emerging threats by researching new attack vectors and recommending countermeasures.
Principal Cyber Systems Engineer with Security Clearance
Colorado Springs, CO · On-site
$55.50 - $68/hr
Perform vulnerability assessments using ACAS, Nessus, Tenable.sc, and related security assessment ... Research emerging cybersecurity technologies, evaluate new security tools, and recommend ...
Principal Cyber Systems Engineer with Security Clearance
Colorado Springs, CO · On-site
$55.50 - $68/hr
Perform vulnerability assessments using ACAS, Nessus, Tenable.sc, and related security assessment ... Research emerging cybersecurity technologies, evaluate new security tools, and recommend ...
SIMILAR CAREER TITLES Mobile Security Analyst, Reverse Engineer, Malware Analyst, Mobile Application Penetration Tester, Security Researcher, Software Reverse Engineer, Vulnerability Researcher ...
SIMILAR CAREER TITLES Mobile Security Analyst, Reverse Engineer, Malware Analyst, Mobile Application Penetration Tester, Security Researcher, Software Reverse Engineer, Vulnerability Researcher ...
Threat Intelligence & Data Analyst, Mission Assurance (USSF) | The Watchtower
Colorado Springs, CO · On-site
When you see a threat report, intelligence feed, vulnerability assessment, or adversary activity ... A), research and development (R&D), cyber operational technology, and training. Our extensive ...
Threat Intelligence & Data Analyst, Mission Assurance (USSF) | The Watchtower
Colorado Springs, CO · On-site
When you see a threat report, intelligence feed, vulnerability assessment, or adversary activity ... A), research and development (R&D), cyber operational technology, and training. Our extensive ...
... vulnerability validation, remediation tracking, and coordination with development and technology teams to reduce application risk. * Assist in the research, development and implementation of ...
... vulnerability validation, remediation tracking, and coordination with development and technology teams to reduce application risk. * Assist in the research, development and implementation of ...
Vulnerability Research information
See Colorado salary details
$38.9K - $49K
3% of jobs
$49K - $59.1K
0% of jobs
$59.1K - $69.2K
0% of jobs
$69.2K - $79.2K
1% of jobs
$79.2K - $89.3K
4% of jobs
$89.3K - $99.4K
4% of jobs
$103.6K is the 25th percentile. Wages below this are outliers.
$99.4K - $109.5K
30% of jobs
The median wage is $111.3K / yr.
$109.5K - $119.6K
43% of jobs
$119.6K - $129.7K
6% of jobs
$129.7K - $139.8K
1% of jobs
$139.8K - $149.8K
7% of jobs
$38.9K
$111.5K
$149.8K
How much do vulnerability research jobs pay per year?
What is a vulnerability research?
A Vulnerability Research job involves identifying, analyzing, and reporting security weaknesses in software, hardware, or networks. Researchers use reverse engineering, fuzz testing, and other techniques to discover exploitable flaws before malicious actors can exploit them. Their findings help improve security by enabling developers and organizations to patch vulnerabilities and strengthen defenses. This role requires a deep understanding of cybersecurity, programming, and exploit development.
What are some common challenges faced in a vulnerability research role?
One of the main challenges in Vulnerability Research is keeping up with constantly evolving threat landscapes and security technologies, which requires continuous learning and adaptability. Researchers often encounter complex and undocumented systems, making analysis and exploitation both technically demanding and time-consuming. You may collaborate closely with other cybersecurity professionals, developers, and incident response teams to verify findings, replicate vulnerabilities, and share remediation strategies. Successfully navigating these challenges is rewarding and allows you to make a tangible impact on organizational security.
What are the key skills and qualifications needed to thrive in a vulnerability research position?
To thrive in Vulnerability Research, you need a strong background in cybersecurity principles, programming, reverse engineering, and deep knowledge of common operating systems and network protocols, often supported by a relevant degree in computer science or similar fields. Familiarity with tools such as IDA Pro, Ghidra, Wireshark, Metasploit, and certifications like OSCP or CEH is highly valuable. Analytical thinking, persistence, attention to detail, and effective written communication are critical soft skills in this field. These capabilities ensure you can effectively discover, analyze, and document security vulnerabilities, contributing to safer software and systems.
What are the most commonly searched types of Vulnerability Research jobs in Colorado?
The most popular types of Vulnerability Research jobs in Colorado are:
What are popular job titles related to Vulnerability Research jobs in Colorado?
For Vulnerability Research jobs in Colorado, the most frequently searched job titles are:
What job categories do people searching Vulnerability Research jobs in Colorado look for?
The top searched job categories for Vulnerability Research jobs in Colorado are:

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
This job post has expired today. Applications are no longer accepted.
Job description
Do you want to be part of a business that genuinely valuesentrepreneurialism,innovationandindividual accountability? Wefocus on our customersand are proud of the difference our technology makes. We partner with some of the biggest manufacturing companies in the world and our technical innovations are used to enhance well-known brands across multiple industries.
Title Software Security Test Automation Engineer
Department R&D
Location Niwot, CO (Hybrid)
ReportsTo Software Test Manager
Your Impact
We are looking for aSoftware Security Test Automation Engineerwho will contribute to the success of theR&DTeam, applying theirexpertiseinSoftware Testing and Securityto support the achievement of team and company goals and deliver innovative, reliable solutions.In this role, the successful candidate will collaborate effectively with colleagues and cross-functional teams,demonstratestrong problem-solving and decision-making skills, andmaintaina commitment to professional excellence,qualityand continuous improvement.
The Role
As aSoftware Security Test Automation Engineer,you'llbe working on a team of highly skilled Software Test Engineers to test application software and embedded firmware on complex facility management systems and instruments throughout the product lifecycle. You will take care of the preparation and execution of the tests necessary to verify the compliance of the software related cyber security. The ideal candidate has experience in software security testing and vulnerability assessment activities, with the ability to identify, analyze and document security weaknesses in software applications and systems.
Job Responsibilities
- Participate in and contribute to the entire software development life cycle process.
- Execution of Security Assessments:
- Vulnerability assessments: perform the assessment.
- Penetration testing: manual and automated test.
- Threat Modeling: conduct threat modeling to identify potential security threats, assess risks, and define appropriate mitigation strategies.
- SAST/DAST analysis: to analysis, validate and triage and with developers and cyber security team the findings.
- Vulnerability validation and security reporting: to ensure compliance with cybersecurity requirements.
- Planning and implementation of testing strategies: Define detailed plans to test the various functionalities of the software for cyber security side.
- Review system requirements and use cases with software developers and other technical team members.
- Develop,documentand execute detailed test scripts, both manual and automated, to cover software/firmware functionality and ensure traceability to requirements.
- Research issues, create test reports that detail testing results and solutions, trackdefectsand verify bug fixesin a timely manner.
- Design and develop reliable,scalableand maintainable test automation frameworks with Java/Python.
- Implement andmaintainautomation scripts for webapplicationusing Java/Selenide/Junit.
- Collaborate with Developer and QA team to contribute to Git repositories and perform peer code reviews.
- Document test processes and peer review documentation for clarity and precision; develop andmaintainQA guidelines.
- Integrate test automation scripts into the CI/CD pipeline with Jenkins.
- Recommend and implement automated test tools and strategies.
- Share automation-related knowledge and best practices, and train other testers on test execution.
- This job description is not intended to beall-inclusive.Responsibilities may evolve over time, and other related duties may be assigned to meet the ongoing needs of the company.
Required Qualifications
- A BS degree in Computer Science, Software Engineering, or equivalent.
- At least 5 years' experience as an Automation Software Test Engineer developing and executing automation software/firmware test scripts,testingand tracking defects.
- Security Testing and Vulnerability Assessment: Experience in identifying, validating and documenting software vulnerabilities and security risks.
- Manual and Tool-Based Penetration Testing: Ability to perform security assessments using both manual techniques and industry-standard penetration testing tools.
- Static and Dynamic Application Security Testing (SAST/DAST): Experience using source code analysis and dynamic testing methodologies to identify security vulnerabilities throughout the software development lifecycle.
- Vulnerability Risk Assessment: Knowledge of CVSS (Common Vulnerability Scoring System) methodology for vulnerability classification, prioritization and risk evaluation.
- Secure Development Lifecycle: Understanding of security integration within Agile, DevSecOps and CI/CD environments.
- Security Reporting: Ability to produce clear technical reports detailing findings, risk levels, remediation recommendations and validation results.
- Expertise ontest-driven development, developingdifferent levelsof automated tests, such as functionaltest, integrationtest, systemtest, or performancetest.
- Experience in Web application automation using Selenium/Selenide.
- Working experience with IntelliJ or other IDE's, as well as Java, Python, C#.
- Working experience withRanorexStudio.
- Strong analytical and problem-solving skills, with strong attention to detail.
- Clear oral and written communication skills, especially technical writing.
- Self-starter and capable of working effectively with minimal supervision.
Preferred Qualifications
- Knowledge of public security advisories, CVE databases and vulnerability disclosure processes.
- Experience reviewing and understanding public CTF (Capture The Flag) writeups and security research publications.
- Familiarity with the MITRE ATT&CK framework and adversarial techniques.
- Security certifications such as OSCP (Offensive Security Certified Professional), CEH (Certified Ethical Hacker), GPEN (GIAC Penetration Tester) or equivalent certifications.
- Experience with common security testing tools such as Burp Suite, OWASP ZAP, Nessus, Nmap, Metasploit or similar.
- Experience working within an Agile Development Environment is preferred.
- Knowledge of Jira, Jama, and Confluence is preferred.
- Working knowledge of generative AI tools such as Copilot for software development or testing is preferred.
Work Environment & Physical Requirements
- This role primarilyoperatesin an office/lab/manufacturing environment.
- Mustbe able to sit, stand, and use a computer for extended periods of time.
- This is a hybrid position, "in-office"minimum 3 days per week.
- Occasional lifting of up to20lbs.may berequired.
- Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of this role.
Compensation & Benefits
- Competitive base salary range:$90000 - 120000
- Our compensation philosophy:we offer competitive pay based on market data, including local, national, and industry benchmarks.For new hires, offers aregenerally withinthe established min- to mid-point of the range for the role, with flexibility to recognize experience, skills, and education.Our approach ensures fair pay internally whileremainingcompetitive externally and allows room for growth.
- Comprehensive benefits package:
- Health coverage: medical, dental, vision,fsa, onsite clinic (CO employees), life insurance
- 401(k) retirement plan with company match
- Vacation, holiday, and leave policies
- Tuition reimbursement, Employee recognition programs, Employeeassistanceprograms
Particle Measuring Systems is proud to be an Equal Opportunity Employer and are committed to building an inclusive and supportive workplace where everyone can thrive.
About Particle Measuring Systems
Sourced by ZipRecruiter
Industry
Electrical equipment, appliance, and component manufacturing
Company size
201 - 500 Employees
Headquarters location
Boulder, CO, US
Year founded
1972