1

Vulnerability Researcher Contractor Jobs in Virginia

Required Qualifications In addition to meeting all baseline technical requirements for contractor ... Vulnerability Research (VR) * Reverse Engineering (RE) * Exploit development and exploitation

Required Qualifications In addition to meeting all baseline technical requirements for contractor ... Vulnerability Research (VR) * Reverse Engineering (RE) * Exploit development and exploitation

iOS Vulnerability Engineer (Software)

Reston, VA · On-site

$145K/yr

... Security Researcher, Software Security Analyst, Mobile App Penetration Tester, Cybersecurity ... We are a growing small business and a trusted federal contractor offering full scope consulting ...

iOS Vulnerability Engineer (Software)

Tysons, VA · On-site

$140K/yr

... Security Researcher, Software Security Analyst, Mobile App Penetration Tester, Cybersecurity ... We are a growing small business and a trusted federal contractor offering full scope consulting ...

... Security Researcher, Software Security Analyst, Mobile App Penetration Tester, Cybersecurity ... We are a growing small business and a trusted federal contractor offering full scope consulting ...

next page

Showing results 1-20

Vulnerability Researcher Contractor information

What does a vulnerability researcher contractor do?

A Vulnerability Researcher Contractor is an information security professional who specializes in identifying, analyzing, and documenting security vulnerabilities in software, systems, or networks. They are often hired on a temporary or project basis to assess the security posture of an organization or specific products. Their responsibilities may include conducting penetration tests, reverse engineering software, developing proof-of-concept exploits, and providing recommendations for mitigating discovered vulnerabilities. Contractors in this role typically work independently or as part of a security team and may present their findings to stakeholders or assist in developing security patches.

What are the key skills and qualifications needed to thrive as a vulnerability researcher contractor?

To thrive as a Vulnerability Researcher Contractor, you need a deep understanding of computer systems, networking, programming languages (such as C/C++, Python), and a strong background in cybersecurity, often supported by relevant degrees or certifications like OSCP or CEH. Familiarity with vulnerability assessment tools (e.g., IDA Pro, Burp Suite, Metasploit), reverse engineering platforms, and bug tracking systems is typically required. Analytical thinking, attention to detail, and effective written communication are vital soft skills in this role. These skills ensure the accurate identification, documentation, and mitigation of security vulnerabilities, which are crucial for protecting organizational assets.

What are the typical collaboration dynamics for a vulnerability researcher contractor within cybersecurity teams?

As a Vulnerability Researcher Contractor, you’ll often work closely with internal security teams, developers, and sometimes external clients to identify, analyze, and document security flaws. Despite being a contractor, you’ll participate in regular team meetings, share findings, and sometimes assist in developing proof-of-concept exploits or remediation guidance. The role requires strong communication skills, as you’ll need to clearly explain technical vulnerabilities to both technical and non-technical stakeholders. Contract positions may also require rapid onboarding and adaptability to different workflows, making flexibility and proactive communication essential.

What is the difference between Vulnerability Researcher Contractor vs Penetration Tester?

AspectVulnerability Researcher ContractorPenetration Tester
CredentialsCertifications like OSCP, CEH, CISSP often preferredSimilar certifications, often including OSCP, CEH, GPEN
Work EnvironmentResearch-focused, analyzing vulnerabilities in systems and softwarePractical testing, simulating attacks to identify security gaps
Employer & Industry UsageConsulting firms, cybersecurity companies, freelance rolesSecurity firms, internal security teams, consulting roles
Search & Comparison IntentUnderstanding research vs active testing rolesDistinguishing between research and hands-on attack simulation

While both roles involve cybersecurity expertise, Vulnerability Researcher Contractors focus on discovering and analyzing vulnerabilities through research, whereas Penetration Testers actively simulate attacks to evaluate security defenses. Both roles often require similar certifications and work in related environments, but their core activities differ: research versus practical testing.

What are popular job titles related to Vulnerability Researcher Contractor jobs in Virginia?

For Vulnerability Researcher Contractor jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Vulnerability Researcher Contractor jobs in Virginia look for?

The top searched job categories for Vulnerability Researcher Contractor jobs in Virginia are:

What cities in Virginia are hiring for Vulnerability Researcher Contractor jobs?

Cities in Virginia with the most Vulnerability Researcher Contractor job openings:

Windows Vulnerability Research

Sterling, VA • On-site

$122K - $253K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 8 days ago


Job description

Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets.


Nightwing is seeking a highly skilled Windows Vulnerability Research (VR) Engineer to support advanced research, development, and exploitation efforts on Windows platforms. The ideal candidate will bring deep technical expertise in low-level programming, vulnerability research, and exploit development, along with a strong background in secure software analysis.Required Qualifications
In addition to meeting all baseline technical requirements for contractor technical personnel, the candidate must possess, at a minimum, the following:
  • Current TS/SCI with Poly Clearance
  • At least three (3) years of professional experience in each of the following:
    • Developing, testing, and debugging software in C
    • Developing, testing, and debugging software in C++
    • Developing, testing, and debugging software in Python
  • Demonstrated hands-on experience in:
    • Vulnerability Research (VR)
    • Reverse Engineering (RE)
    • Exploit development and exploitation
  • Proven expertise working with Windows operating systems, including internal architectures, debugging, and security mechanisms
Preferred Skills (Optional - if you want to add them later)
  • Experience with Windows kernel internals
  • Familiarity with common reverse engineering tools and debuggers
  • Understanding of modern exploit mitigations and bypass techniques
  • Experience supporting mission-critical or government systems
Please Note: This position is contingent upon award


Salary & Benefits

The salary associated with this position ($122,000-$253,000) is commensurate with the selected candidate's qualifications, years of relevant experience, and demonstrated level of expertise. Compensation will be determined based on these factors to ensure alignment with skills, responsibilities, and market standards.


Nightwingoffers medical, vision and dental insurance coverage in addition to a 401k plan, PTO, Holidays, and additional insurances.


Nightwing is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.