1

Vulnerability Research Jobs in Virginia (NOW HIRING)

iOS Vulnerability Researcher

Arlington, VA · Remote

$59.50 - $82/hr

We are looking for experienced and passionate people who have a background in vulnerability research, offensive security and reverse engineering on Apple platforms. The role: * You'll join our team ...

iOS Vulnerability Researcher

Arlington, VA · On-site +1

$59.50 - $82/hr

We are looking for experienced and passionate people who have a background in vulnerability research, offensive security and reverse engineering on Apple platforms. The role: * You'll join our team ...

Showing results 41-60

Vulnerability Research information

See Virginia salary details

$36.7K

$105.1K

$141.3K

How much do vulnerability research jobs pay per year?

As of Aug 20, 2026, the average yearly pay for vulnerability research in Virginia is $105,103.00, according to ZipRecruiter salary data. Most workers in this role earn between $103,100.00 and $103,100.00 per year, depending on experience, location, and employer.

What is a vulnerability research?

A Vulnerability Research job involves identifying, analyzing, and reporting security weaknesses in software, hardware, or networks. Researchers use reverse engineering, fuzz testing, and other techniques to discover exploitable flaws before malicious actors can exploit them. Their findings help improve security by enabling developers and organizations to patch vulnerabilities and strengthen defenses. This role requires a deep understanding of cybersecurity, programming, and exploit development.

What are some common challenges faced in a vulnerability research role?

One of the main challenges in Vulnerability Research is keeping up with constantly evolving threat landscapes and security technologies, which requires continuous learning and adaptability. Researchers often encounter complex and undocumented systems, making analysis and exploitation both technically demanding and time-consuming. You may collaborate closely with other cybersecurity professionals, developers, and incident response teams to verify findings, replicate vulnerabilities, and share remediation strategies. Successfully navigating these challenges is rewarding and allows you to make a tangible impact on organizational security.

What are the key skills and qualifications needed to thrive in a vulnerability research position?

To thrive in Vulnerability Research, you need a strong background in cybersecurity principles, programming, reverse engineering, and deep knowledge of common operating systems and network protocols, often supported by a relevant degree in computer science or similar fields. Familiarity with tools such as IDA Pro, Ghidra, Wireshark, Metasploit, and certifications like OSCP or CEH is highly valuable. Analytical thinking, persistence, attention to detail, and effective written communication are critical soft skills in this field. These capabilities ensure you can effectively discover, analyze, and document security vulnerabilities, contributing to safer software and systems.

What are popular job titles related to Vulnerability Research jobs in Virginia?

For Vulnerability Research jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Vulnerability Research jobs in Virginia look for?

The top searched job categories for Vulnerability Research jobs in Virginia are:

What cities in Virginia are hiring for Vulnerability Research jobs?

Cities in Virginia with the most Vulnerability Research job openings:

Infographic showing various Vulnerability Research job openings in Virginia as of August 2026, with employment types broken down into 1% Internship, 1% As Needed, 77% Full Time, 19% Part Time, and 2% Contract. Highlights an 83% Physical, 4% Hybrid, and 13% Remote job distribution, with an average salary of $105,103 per year, or $50.5 per hour.

Senior Vulnerability Researcher - Windows / CNE

M9 Solutions

Arlington, VA • On-site

Full-time

This job post has expired today. Applications are no longer accepted.


Job description

Job Summary:
M9 Solutions is dedicated to providing IT services and solutions to the Federal Government. They are seeking a Senior Vulnerability Researcher to lead advanced vulnerability research on Windows operating systems and support CNE/CNO missions.
Responsibilities:
• Lead advanced vulnerability research on Windows operating systems, applications, and core OS components (including kernel and drivers).
• Analyze, reverse engineer, and understand complex vulnerabilities to support CNE/CNO missions.
• Use tools such as IDA Pro, Ghidra, Binary Ninja, and WinDbg/x64dbg for in‐depth binary analysis and debugging, including creating or extending custom tooling when needed.
• Own end‐to‐end research on difficult, poorly documented Windows targets with minimal guidance, from scoping and experimentation through proof‐of‐concept.
• Develop and document technical approaches, findings, and PoCs to validate vulnerabilities and exploitation paths.
• Continuously explore and prototype novel techniques for vulnerability discovery and exploitation on modern, mitigated Windows platforms.
• Collaborate with mission and engineering teams to translate research into operational capabilities.
• Act as the senior technical point of contact and subject‐matter expert for Windows vulnerability, exploitation, and OS‐internals questions.
Qualifications:
Required:
• Active TS/SCI clearance.
• 3+ years in vulnerability research, exploit development, or CNE‐focused reverse engineering, with a sustained focus on Windows (user and kernel mode) rather than general app security or pen‐testing.
• Deep, practical understanding of Windows internals (kernel architecture, drivers, memory management, system calls, process/thread models, and security mechanisms).
• Strong CNE/CNO background; experience leveraging vulnerabilities in support of real‐world operations or mission environments.
• Demonstrated track record solving very hard, low‐level technical problems with minimal guidance, including on research efforts where many others have struggled to make progress.
• Demonstrated experience discovering and exploiting non‐trivial vulnerabilities in modern, mitigated Windows environments (e.g., ASLR, DEP, CFG, virtualization‐based security).
• Hands‐on experience with reverse engineering and debugging tools (IDA Pro, Ghidra, Binary Ninja, WinDbg, x64dbg, etc.).
• Fluency in x86/x64 assembly and strong C/C++ skills, plus scripting experience (e.g., Python) for automation, tooling, and PoCs.
• Strong analytical mindset and ability to clearly communicate complex technical findings to both technical and non‐technical stakeholders.
Company:
M9 Solutions is a national staffing firm focused on cloud, cyber security, web application services, ERP, and BI implementations. Founded in 2007, the company is headquartered in Atlanta, USA, with a team of 51-200 employees. The company is currently Growth Stage.