1

Vulnerability Researcher Jobs (NOW HIRING)

Vulnerability Researcher

Dayton, OH · On-site

$97K - $145K/yr

As a Vulnerability Researcher , you will be a key technical contributor within our elite team of security researchers, CNO developers, and hardware engineers. Our government customers rely on us to ...

The candidate will be working on a team performing vulnerability research against mobile technologies. The candidate must be familiar with the latest techniques in vulnerability research and ...

next page

Showing results 1-20

People also search for

Vulnerability Researcher information

See salary details

$30K

$113.1K

$164.5K

How much do vulnerability researcher jobs pay per year?

As of Jun 10, 2026, the average yearly pay for vulnerability researcher in the United States is $113,102.00, according to ZipRecruiter salary data. Most workers in this role earn between $67,000.00 and $154,000.00 per year, depending on experience, location, and employer.

What is a Vulnerability Researcher job?

A Vulnerability Researcher is a cybersecurity professional who identifies, analyzes, and reports security flaws in software, hardware, and networks. They use reverse engineering, fuzzing, and static analysis techniques to discover vulnerabilities before malicious actors can exploit them. Their work helps improve security by collaborating with developers and security teams to implement patches and mitigations. Often, they contribute to responsible disclosure programs or work for organizations focused on threat intelligence and cybersecurity defense.

What does a typical day look like for a Vulnerability Researcher?

A typical day for a Vulnerability Researcher involves researching the latest security vulnerabilities, analyzing software or hardware for potential weaknesses, and developing proof-of-concept exploits or mitigation techniques. You may spend time reviewing code, using reverse engineering or fuzzing tools, and documenting your findings for technical and non-technical stakeholders. Collaboration with security teams, software engineers, and sometimes external vendors is common to ensure vulnerabilities are addressed properly. The work is dynamic, often requiring you to stay updated on emerging threats and continuously refine your research skills.

What are the key skills and qualifications needed to thrive in the Vulnerability Researcher position, and why are they important?

To thrive as a Vulnerability Researcher, you need a strong background in computer science, proficiency in programming languages like Python or C/C++, and an in-depth understanding of operating systems and networking. Familiarity with penetration testing tools (such as Metasploit or Burp Suite), reverse engineering software, and certifications like OSCP or CEH are commonly sought after. Analytical thinking, attention to detail, and strong problem-solving and communication skills distinguish top performers in this field. These abilities are crucial for identifying and analyzing security weaknesses, communicating findings effectively, and helping organizations proactively manage cybersecurity risks.

More about Vulnerability Researcher jobs
What cities are hiring for Vulnerability Researcher jobs? Cities with the most Vulnerability Researcher job openings:
What are the most commonly searched types of Vulnerability Researcher jobs? The most popular types of Vulnerability Researcher jobs are:
What states have the most Vulnerability Researcher jobs? States with the most job openings for Vulnerability Researcher jobs include:
What job categories do people searching Vulnerability Researcher jobs look for? The top searched job categories for Vulnerability Researcher jobs are:
Infographic showing various Vulnerability Researcher job openings in the United States as of June 2026, with employment types broken down into 82% Full Time, 6% Part Time, and 12% Contract. Highlights an 80% Physical, 6% Hybrid, and 14% Remote job distribution, with an average salary of $113,102 per year, or $54.4 per hour.
Senior Vulnerability Researcher

Senior Vulnerability Researcher

KBR, Inc.

Beavercreek, OH • On-site

$142K - $213K/yr

Full-time

Posted 14 days ago


KBR rating

8.3

Company rating: 8.3 out of 10

Based on 47 frontline employees who took The Breakroom Quiz

94th of 352 rated engineering


Job description

Title:
Senior Vulnerability Researcher
Why Join Us?
  • Innovative Projects: KBR's work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.
  • Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.
  • Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.

KBR is seeking a Senior Vulnerability Researcher to lead vulnerability discovery and validation against embedded systems and firmware. This role owns end-to-end vulnerability research: building emulation-backed test environments, designing fuzzing and analysis workflows, performing crash triage and root-cause analysis, and developing proof-of-concept exploits to validate impact in a controlled lab setting.
The Senior Vulnerability Researcher provides technical leadership, mentors engineers into defined proficiencies, and works directly with government customers to deliver reproducible findings and scalable research capability.
Key Responsibilities
  • Lead and mentor vulnerability researchers; set technical direction and intentionally develop individual proficiencies
  • Execute vulnerability research on embedded targets using asset-safe approaches
  • Build and maintain fuzzing pipelines, including target selection, harness development, seed/corpus management, and coverage-driven campaign design
  • Perform crash triage, exploitability assessment, and root-cause analysis
  • Develop proof-of-concept exploits to demonstrate vulnerability impact in controlled labs
  • Create controlled test harnesses and orchestration to exercise payload delivery and validate behavior deterministically across runs
  • Reverse engineer firmware/binaries as needed to understand vulnerable code paths, exploitation constraints, and exploit mechanics
  • Engage customers to understand mission outcomes and shape scalable research approaches
  • Produce high-quality technical reports and supporting artifacts suitable for release

Minimum Qualifications
  • Security Clearance: Must have an active U.S. government Secret security clearance, which is something only a U.S. citizen can obtain
  • Education: Master's degree in Computer Engineering, Electrical Engineering, Computer Science, or a related field
  • 10+ years of experience, including at least 5 years in vulnerability research, reverse engineering, or exploit development
  • Strong understanding of embedded systems, firmware, operating systems, and low-level software behavior
  • Proficiency in C/C++, Python, and assembly for vulnerability research, harness development, and automation
  • Experience building emulation-backed analysis environments
  • Demonstrated experience with coverage-guided fuzzing, harness development, and crash triage workflows
  • Demonstrated ability to produce proof-of-concept exploits for vulnerability validation
  • Demonstrated leadership, mentorship, and customer engagement experience

Preferred Qualifications
  • Experience with hybrid fuzzing and advanced analysis techniques
  • Experience scaling fuzzing or dynamic testing programs
  • Experience with hardware security research
  • Publications, reports, or presentations in vulnerability research or embedded security

Basic Compensation: $142,000 - $213,000 (For Beavercreek, OH Only)
The offered rate will be based on the selected candidate's knowledge, skills, abilities and/or experience and in consideration of internal parity.
Additional Compensation:
KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of a sign on bonus, relocation benefits, short-term incentives, long-term incentives, or discretionary payments for exceptional performance.
Belong, Connect and Grow at KBR
At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team's philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver - Together.
KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.

What KBR employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


KBR logo

About KBR

Sourced by ZipRecruiter

At KBR, we partner with government and industry clients to provide purposeful and comprehensive solutions with an emphasis on efficiency and safety. With a full portfolio of services, proprietary technologies and expertise, our employees are ready to handle projects and missions from planning and design to sustainability and maintenance. Whether at the bottom of the ocean or in outer space, our clients trust us to deliver the impossible on a daily basis.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Houston, TX, US

Year founded

1998