1

Vulnerability Researcher Contractor Jobs in Washington

Vulnerability & Exploitation Specialist

Annapolis, MD · On-site

$180K - $230K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Our team conducts Vulnerability Research and Reverse Engineering in a rapid prototyping, R&D ... Work on this program takes place in both customer and contractors SCIFs in the Annapolis Junction ...

Showing results 21-40

Vulnerability Researcher Contractor information

What does a vulnerability researcher contractor do?

A Vulnerability Researcher Contractor is an information security professional who specializes in identifying, analyzing, and documenting security vulnerabilities in software, systems, or networks. They are often hired on a temporary or project basis to assess the security posture of an organization or specific products. Their responsibilities may include conducting penetration tests, reverse engineering software, developing proof-of-concept exploits, and providing recommendations for mitigating discovered vulnerabilities. Contractors in this role typically work independently or as part of a security team and may present their findings to stakeholders or assist in developing security patches.

What are the key skills and qualifications needed to thrive as a vulnerability researcher contractor?

To thrive as a Vulnerability Researcher Contractor, you need a deep understanding of computer systems, networking, programming languages (such as C/C++, Python), and a strong background in cybersecurity, often supported by relevant degrees or certifications like OSCP or CEH. Familiarity with vulnerability assessment tools (e.g., IDA Pro, Burp Suite, Metasploit), reverse engineering platforms, and bug tracking systems is typically required. Analytical thinking, attention to detail, and effective written communication are vital soft skills in this role. These skills ensure the accurate identification, documentation, and mitigation of security vulnerabilities, which are crucial for protecting organizational assets.

What are the typical collaboration dynamics for a vulnerability researcher contractor within cybersecurity teams?

As a Vulnerability Researcher Contractor, you’ll often work closely with internal security teams, developers, and sometimes external clients to identify, analyze, and document security flaws. Despite being a contractor, you’ll participate in regular team meetings, share findings, and sometimes assist in developing proof-of-concept exploits or remediation guidance. The role requires strong communication skills, as you’ll need to clearly explain technical vulnerabilities to both technical and non-technical stakeholders. Contract positions may also require rapid onboarding and adaptability to different workflows, making flexibility and proactive communication essential.

What is the difference between Vulnerability Researcher Contractor vs Penetration Tester?

AspectVulnerability Researcher ContractorPenetration Tester
CredentialsCertifications like OSCP, CEH, CISSP often preferredSimilar certifications, often including OSCP, CEH, GPEN
Work EnvironmentResearch-focused, analyzing vulnerabilities in systems and softwarePractical testing, simulating attacks to identify security gaps
Employer & Industry UsageConsulting firms, cybersecurity companies, freelance rolesSecurity firms, internal security teams, consulting roles
Search & Comparison IntentUnderstanding research vs active testing rolesDistinguishing between research and hands-on attack simulation

While both roles involve cybersecurity expertise, Vulnerability Researcher Contractors focus on discovering and analyzing vulnerabilities through research, whereas Penetration Testers actively simulate attacks to evaluate security defenses. Both roles often require similar certifications and work in related environments, but their core activities differ: research versus practical testing.

What are popular job titles related to Vulnerability Researcher Contractor jobs in Washington?

For Vulnerability Researcher Contractor jobs in Washington, the most frequently searched job titles are:

What job categories do people searching Vulnerability Researcher Contractor jobs in Washington look for?

The top searched job categories for Vulnerability Researcher Contractor jobs in Washington are:

What cities in Washington are hiring for Vulnerability Researcher Contractor jobs?

Cities in Washington with the most Vulnerability Researcher Contractor job openings:

Infographic showing various Vulnerability Researcher Contractor job openings in Washington as of August 2026, with employment types broken down into 69% Full Time, 9% Part Time, 2% Temporary, and 20% Contract. Highlights an 80% Physical, 2% Hybrid, and 18% Remote job distribution.

Vulnerability & Exploitation Specialist

GRVTY

Annapolis, MD

$180K - $230K/yr

Full-time

Re-posted 9 days ago


Job description

What You'll Be Owning:

GRVTY is seeking a Vulnerability & Exploitation Specialist with a TS/SCI + Poly clearance (applicable to this customer) to join one of our top projects in Annapolis Junction, MD. We are looking for candidates who have discovered a 0-day vulnerabilities or a list of CVEs (public vulnerability disclosures) they discovered or contributed to. We are also looking for any specific work they've done exploiting vulnerabilities.

What You Must Have:

  • Active TS/SCI with Polygraph Clearance
  • Skills/experience listed out in order of priority:
  • 0-day vulnerabilities or CVEs discovered and attributed to themselves
  • History performing vulnerability research
  • Experience with writing or using fuzzers – AFL, LibFuzzer, ClusterFuzz, oss-fuzz
  • Experience with code analysis tools – CodeQL, Joern, Semgrep
  • History of exploiting or productizing 0-day vulnerabilities
  • History of exploiting or productizing n-day vulnerabilities/CVEs/publicly disclosed vulnerabilities
  • History of reverse engineering malware or other code for CNE purposes
  • Experience with reverse engineering tools – Ghidra, Ida Pro, Binary Ninja Experience using debuggers – GDB or WinDbg
  • Experience writing, navigating, and building C/C++ code
  • Experience with tools like VsCode, Visual Studio, VIM/Emacs
  • Familiarity with ARM or MIPS architectures and Linux variants
  • We also use Python to write a lot of our tools, so that is good to see

Pay Range: At GRVTY, we understand that compensation is influenced by many factors—such as geographic location, federal contract labor categories, wage rates, prior experience, skillsets, education, and certifications.
We're proud to offer a work environment that empowers our team to achieve a strong work-life balance. GRVTY provides competitive pay, comprehensive benefits, and meaningful opportunities for professional growth.
Our benefits package is designed to support the well-being of our employees and their families, and includes coverage in areas such as healthcare, financial wellness, retirement planning, family assistance, continued education, and paid time off.

Maryland Pay Range
$180,000—$230,000 USD

Why Choose GRVTY


The toughest national security challenges demand vision and ingenuity, not just resources. We deliver mission and technical expertise to outpace our adversaries. We're purpose-built to tackle the most entrenched, systemic national security issues around the world.

We partner with our customers to help them overcome challenges in every corner of technology and defense—including the ones still being explored. Our growing capabilities create complementary advantages, giving on-the-ground operations the edge they need to succeed. We muster everything we have to answer every challenge presented, every day of our lives.

At GRVTY, we believe that when our employees thrive, our company thrives. That's why we offer a comprehensive and competitive benefits package designed to support your well-being, growth, and work-life balance.

• Robust health plan including medical, dental, and vision

• Health Savings Account with company contribution

• Annual Paid Time Off and Paid Holidays

• Paid Parental Leave

• 401k with generous company match

• Training and Development Opportunities

• Award Programs

• Variety of Company Sponsored Events

EEO Statement


GRVTY, is an Equal Opportunity Employer.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran and will not be discriminated against on the basis of disability.

Anyone requiring reasonable accommodations should email recruiting@grvty.com or call 703-544-7930 with requested details.  A member of the HR team will respond to your request within 2 business days. 

Know Your Rights: Workplace Discrimination is Illegal (eeoc.gov) 

Please review our current job openings and apply for the positions you believe may be a fit. If you are not an immediate fit, we will also keep your resume in our database for future opportunities.