1

Vulnerability Research Jobs (NOW HIRING)

Showing results 41-60

Vulnerability Research information

See salary details

$37K

$106K

$142.5K

How much do vulnerability research jobs pay per year?

As of Sep 11, 2026, the average yearly pay for vulnerability research in the United States is $106,012.00, according to ZipRecruiter salary data. Most workers in this role earn between $104,000.00 and $104,000.00 per year, depending on experience, location, and employer.

What is a vulnerability research?

A Vulnerability Research job involves identifying, analyzing, and reporting security weaknesses in software, hardware, or networks. Researchers use reverse engineering, fuzz testing, and other techniques to discover exploitable flaws before malicious actors can exploit them. Their findings help improve security by enabling developers and organizations to patch vulnerabilities and strengthen defenses. This role requires a deep understanding of cybersecurity, programming, and exploit development.

What are some common challenges faced in a vulnerability research role?

One of the main challenges in Vulnerability Research is keeping up with constantly evolving threat landscapes and security technologies, which requires continuous learning and adaptability. Researchers often encounter complex and undocumented systems, making analysis and exploitation both technically demanding and time-consuming. You may collaborate closely with other cybersecurity professionals, developers, and incident response teams to verify findings, replicate vulnerabilities, and share remediation strategies. Successfully navigating these challenges is rewarding and allows you to make a tangible impact on organizational security.

What are the key skills and qualifications needed to thrive in a vulnerability research position?

To thrive in Vulnerability Research, you need a strong background in cybersecurity principles, programming, reverse engineering, and deep knowledge of common operating systems and network protocols, often supported by a relevant degree in computer science or similar fields. Familiarity with tools such as IDA Pro, Ghidra, Wireshark, Metasploit, and certifications like OSCP or CEH is highly valuable. Analytical thinking, persistence, attention to detail, and effective written communication are critical soft skills in this field. These capabilities ensure you can effectively discover, analyze, and document security vulnerabilities, contributing to safer software and systems.

More about Vulnerability Research jobs

What cities are hiring for Vulnerability Research jobs?

Cities with the most Vulnerability Research job openings:

What are the most commonly searched types of Vulnerability Research jobs?

The most popular types of Vulnerability Research jobs are:

What states have the most Vulnerability Research jobs?

States with the most job openings for Vulnerability Research jobs include:

What job categories do people searching Vulnerability Research jobs look for?

The top searched job categories for Vulnerability Research jobs are:

Infographic showing various Vulnerability Research job openings in the United States as of September 2026, with employment types broken down into 1% Internship, 1% As Needed, 88% Full Time, 9% Part Time, and 1% Contract. Highlights an 79% Physical, 3% Hybrid, and 18% Remote job distribution, with an average salary of $106,012 per year, or $51 per hour.

Lead Vulnerability Researcher

Herndon, VA โ€ข On-site

Two Six Technologies
Software Developmentย โ€ขย 501 - 1,000 employees

$171K/yr

Full-time

This job post hasย expired 1 day ago.ย Applications are no longer accepted.


Job description

Overview of Opportunityย 

Join the Trusted Electronics & Effects team at Two Six Technologies in Herndon, Virginia, where we push the boundaries of software and firmware reverse engineering to uncover vulnerabilities in wireless and embedded systems. As part of our elite team of security researchers, you'll work alongside CNO developers and hardware engineers, conducting cutting-edge vulnerability research on complex, real-world targets.

Our government customers rely on us to deliver mission-critical security solutions, and we're looking for a Lead Vulnerability Researcher who thrives on reverse engineering embedded systems, discovering security weaknesses, and developing innovative proof-of-concept exploits. If you're passionate about wireless security, embedded firmware analysis, and making an impact on national security, we want you on our team.

What You'll Do:

  • Drive the planning, task prioritization, and technical execution for vulnerability research projects on complex, undocumented embedded and wireless systems supporting government customers and national security programs.
  • Act as a key technical contributor by analyzing binaries, firmware, and wireless protocols, reverse engineering complex targets, and writing maintainable proof-of-concept exploits following DevOps best practices.
  • Provide technical direction to team members, mentor staff through code reviews and knowledge sharing, and collaborate daily with CNO developers and hardware engineers in a fast-paced environment.
  • Interface directly with customers to translate mission needs into technical requirements and present complex research findings.

What You'll Need (Basic Qualifications):

  • Bachelor's (or higher) degree in Computer Science, Computer/Electrical Engineering, or a related field (or equivalent practical experience).
  • Experience developing, debugging, and scripting in C/C++ and Python within Linux command-line environments, with a strong emphasis on low-level programming, memory management, and system interaction for reverse engineering and vulnerability research.
  • Experience with reverse engineering and vulnerability research, using tools such as IDA Pro, Binary Ninja, or Ghidra.
  • Expertise in one or more of the following:
    • Firmware analysis (ARM, MIPS, PowerPC, RTOS).
    • Firmware rehosting using emulation tools such as QEMU
    • Fuzzing and exploit development.
    • Binary obfuscation and anti-analysis techniques.
    • Wireless protocols and radio signal analysis.
    • File system forensics and fault injection frameworks.
  • Knowledge of common network protocols TCP/IP, UDP, or HTTP
  • Ability to work in the Herndon, Virginia office daily.

Nice if you have:

  • Experience conducting vulnerability research on embedded systems
  • Experience with defeating modern migrations such as ASLR, DEP, and Stack Canaries
  • Knowledge of cellular standards such as 4G or 5G
  • Knowledge of low bandwidth communications such as RS485, RS232, CAN
  • Knowledge of Wifi, Bluetooth, Zigbee communication
  • Previous experience in a client-facing technical role

Clearance Requirement:

  • Active US Security clearance of Top Secret level and ability to obtain and maintain TS/SCI

#LI-AM1

#LI-ONSITE