1

Vulnerability Researcher Jobs (NOW HIRING)

Vulnerability Researcher

Herndon, VA · On-site

$150K - $300K/yr

In this role, you will apply advanced vulnerability research (VR), reverse engineering (RE), and vulnerability exploitation (VE) skills to support a variety of defensive and offensive cyber ...

Vulnerability Researcher

Annapolis, MD · On-site

$77K - $163K/yr

Vulnerability Researcher: Use advanced systems to find zero-day (O-day) vulnerabilities. Responsible for analyzing, designing, and identifying programmatic behaviors. Have an opportunity to develop ...

Vulnerability Researcher: Use advanced systems to find zero-day (O-day) vulnerabilities. Responsible for analyzing, designing, and identifying programmatic behaviors. Have an opportunity to develop ...

... vulnerability research on Apple software, firmware, and hardware components. Analyzing and exploiting vulnerabilities is a crucial aspect of this position. This role demands individuals with robust ...

BTS Software Solutions is seeking a Vulnerability Researcher III to join their team in Annapolis Junction, MD. The role involves debugging software, performing source code analysis, developing ...

BTS Software Solutions is seeking a Vulnerability Researcher II to join their team in Annapolis Junction, MD. The role involves debugging software, performing source code analysis, developing proof ...

Showing results 21-40

Vulnerability Researcher information

See salary details

$30K

$113.1K

$164.5K

How much do vulnerability researcher jobs pay per year?

As of Aug 19, 2026, the average yearly pay for vulnerability researcher in the United States is $113,102.00, according to ZipRecruiter salary data. Most workers in this role earn between $67,000.00 and $154,000.00 per year, depending on experience, location, and employer.

What is a vulnerability researcher?

A Vulnerability Researcher is a cybersecurity professional who identifies, analyzes, and reports security flaws in software, hardware, and networks. They use reverse engineering, fuzzing, and static analysis techniques to discover vulnerabilities before malicious actors can exploit them. Their work helps improve security by collaborating with developers and security teams to implement patches and mitigations. Often, they contribute to responsible disclosure programs or work for organizations focused on threat intelligence and cybersecurity defense.

What does a vulnerability researcher do?

A typical day for a Vulnerability Researcher involves researching the latest security vulnerabilities, analyzing software or hardware for potential weaknesses, and developing proof-of-concept exploits or mitigation techniques. You may spend time reviewing code, using reverse engineering or fuzzing tools, and documenting your findings for technical and non-technical stakeholders. Collaboration with security teams, software engineers, and sometimes external vendors is common to ensure vulnerabilities are addressed properly. The work is dynamic, often requiring you to stay updated on emerging threats and continuously refine your research skills.

What are the key skills and qualifications needed to thrive as a vulnerability researcher?

To thrive as a Vulnerability Researcher, you need a strong background in computer science, proficiency in programming languages like Python or C/C++, and an in-depth understanding of operating systems and networking. Familiarity with penetration testing tools (such as Metasploit or Burp Suite), reverse engineering software, and certifications like OSCP or CEH are commonly sought after. Analytical thinking, attention to detail, and strong problem-solving and communication skills distinguish top performers in this field. These abilities are crucial for identifying and analyzing security weaknesses, communicating findings effectively, and helping organizations proactively manage cybersecurity risks.

More about Vulnerability Researcher jobs

What cities are hiring for Vulnerability Researcher jobs?

Cities with the most Vulnerability Researcher job openings:

What are the most commonly searched types of Vulnerability Researcher jobs?

The most popular types of Vulnerability Researcher jobs are:

What states have the most Vulnerability Researcher jobs?

States with the most job openings for Vulnerability Researcher jobs include:

What job categories do people searching Vulnerability Researcher jobs look for?

The top searched job categories for Vulnerability Researcher jobs are:

Infographic showing various Vulnerability Researcher job openings in the United States as of August 2026, with employment types broken down into 95% Full Time, and 5% Part Time. Highlights an 65% In-person, 10% Hybrid, and 25% Remote job distribution, with an average salary of $113,102 per year, or $54.4 per hour.

Vulnerability Researcher

Redhorse Corporation

Herndon, VA • On-site

$150K - $300K/yr

Full-time

Posted 21 days ago


Job description

About the Organization
Now is a great time to join Redhorse Corporation. We are a solution-driven company delivering data insights and technology solutions to customers with missions critical to U.S. national interests. We're looking for thoughtful, skilled professionals who thrive as trusted partners building technology-agnostic solutions and want to apply their talents supporting customers with difficult and important mission sets.
About the Role
Redhorse transforms the way government uses data and technology. To support this mission, we are seeking a self-motivated Senior Vulnerability Researcher who is ready to solve some of the most challenging technical problems in a fast-paced environment supporting national security.
In this role, you will apply advanced vulnerability research (VR), reverse engineering (RE), and vulnerability exploitation (VE) skills to support a variety of defensive and offensive cyber requirements. As a senior member of our team, you will perform high-impact research with minimal guidance and have the opportunity to mentor junior personnel, directly influencing the technical direction of critical mission objectives.
Key Responsibilities
  • Apply a variety of VR techniques-including fuzzing, reverse engineering, and experimentation-to identify vulnerabilities and determine exploitability.
  • Develop proof-of-concept software and functional prototypes to meet diverse customer requirements.
  • Manage customer expectations by implementing proactive feedback mechanisms and iterative reporting.
  • Prepare and deliver concise technical presentations summarizing research findings for stakeholders.
  • Collaborate with internal and external stakeholders to align research with operational needs.
  • Shape Capability (CA) requirements to ensure technical solutions meet broader operational goals.
  • Synthesize creative technical solutions from complex operational and technical information.
  • Identify and communicate operational requirements to ensure mission success.
  • Perform vulnerability assessments of secure technologies to determine if protected or inaccessible information is recoverable.

Required Experience/Clearance
  • 7+ years of experience in vulnerability research.
  • Active TS/SCI security clearance.
  • 7+ years of expertise in programming within contemporary Windows and Linux/Unix software development environments.
  • 7+ years of experience in multiple languages including C, C++, Java, and JavaScript.
  • 7+ years of experience using reverse engineering tools such as IDA Pro, OllyDbg, and Windbg.
  • Strong written and oral communication skills, with the ability to explain complex technical concepts to non-technical audiences.
  • Static and dynamic malware analysis experience for mobile platforms, specifically iOS and Android.

$150,000 - $300,000 a year
The salary range provided for this position represents the anticipated base salary for successful candidates. Actual compensation will be determined based on a variety of factors, including relevant experience, education, certifications, skills, security clearance level, geographic location, market conditions, and internal equity. In addition to base salary, eligible employees may participate in Redhorse's comprehensive benefits programs and may be eligible for performance-based or other incentive compensation, where applicable.
Redhorse Corporation is an equal opportunity employer. All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, disability, or any other protected class.
If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to access job openings or apply for a job on this site as a result of your disability. You can request reasonable accommodations by contacting Talent Acquisition at [email protected]
Redhorse Corporation shall, in its discretion, modify or adjust the position to meet Redhorse's changing needs. This job description is not a contract and may be adjusted as deemed appropriate in Redhorse's sole discretion.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.