1

Windows Malware Reverse Engineer Jobs in New York, NY

Malware analysis and reverse engineering * Resilient networking in support of cyber mission goals ... Working knowledge of Linux, MacOS, Windows, and mobile operating systems, platforms and internals

Malware analysis and reverse engineering * Resilient networking in support of cyber mission goals ... Working knowledge of Linux, MacOS, Windows, and mobile operating systems, platforms and internals

Software Research Engineer

Basking Ridge, NJ ยท On-site

$211K/yr

Malware analysis and reverse engineering * Resilient networking in support of cyber mission goals ... Working knowledge of Linux, MacOS, Windows, and mobile operating systems, platforms and internals

Malware analysis and reverse engineering * Resilient networking in support of cyber mission goals ... Working knowledge of Linux, MacOS, Windows, and mobile operating systems, platforms and internals

Showing results 21-40

Windows Malware Reverse Engineer information

See New York, NY salary details

$89.7K

$149.1K

$213.3K

How much do windows malware reverse engineer jobs pay per year?

As of Aug 22, 2026, the average yearly pay for windows malware reverse engineer in New York, NY is $149,101.00, according to ZipRecruiter salary data. Most workers in this role earn between $97,400.00 and $194,700.00 per year, depending on experience, location, and employer.

What does a Windows Malware Reverse Engineer do?

A Windows Malware Reverse Engineer analyzes malicious software designed to target Windows operating systems. Their primary tasks include dissecting malware to understand how it works, identifying its behavior and purpose, and determining how it infects systems. They use specialized tools and techniques such as disassemblers, debuggers, and virtual environments to safely analyze and decode malware. The insights gained help develop detection methods, improve cybersecurity defenses, and assist in incident response.

What are the key skills and qualifications needed to thrive as a Windows Malware Reverse Engineer?

To thrive as a Windows Malware Reverse Engineer, you need strong knowledge of Windows internals, assembly programming, and malware analysis techniques, usually backed by a degree in computer science or cybersecurity. Proficiency with tools like IDA Pro, Ghidra, OllyDbg, and familiarity with common malware frameworks and relevant certifications such as GIAC Reverse Engineering Malware (GREM) are typically required. Attention to detail, analytical thinking, and strong problem-solving abilities are essential soft skills for unraveling complex threats. These competencies are crucial for identifying, understanding, and mitigating advanced malware threats that target Windows environments.

What are some common challenges faced by Windows Malware Reverse Engineers, and how can they be addressed?

Windows Malware Reverse Engineers often face challenges such as dealing with heavily obfuscated code, rapidly evolving malware techniques, and anti-analysis mechanisms designed to thwart reverse engineering efforts. These challenges require staying up-to-date with the latest tools, regularly practicing with new malware samples, and collaborating with peers to share insights. Building a strong foundation in Windows internals, assembly language, and using debuggers or disassemblers like IDA Pro or Ghidra can help overcome these obstacles and improve overall analysis efficiency.

What is the difference between Windows Malware Reverse Engineer vs Cybersecurity Analyst?

AspectWindows Malware Reverse EngineerCybersecurity Analyst
Required CredentialsKnowledge of reverse engineering, malware analysis, programming skills, certifications like GREM or GREMSecurity certifications like CISSP, CEH, or Security+; broader cybersecurity knowledge
Work EnvironmentSpecialized labs, malware analysis environments, often in security firms or R&D teamsSecurity operations centers, corporate IT teams, or government agencies
Industry UsagePrimarily in cybersecurity, malware research, threat intelligenceAcross industries for threat detection, incident response, and security policy enforcement

While both roles require cybersecurity knowledge, Windows Malware Reverse Engineers focus on dissecting malicious software to understand its mechanics, whereas Cybersecurity Analysts monitor and respond to security threats across organizations. The roles often overlap in skills but differ in daily tasks and focus areas.

Can you reverse engineer malware?

A Windows Malware Reverse Engineer specializes in analyzing malicious software to understand its behavior, origin, and impact. This process involves using tools like debuggers and disassemblers, and requires strong knowledge of assembly language, operating systems, and cybersecurity principles. Reverse engineering malware is a complex task that demands technical skill, patience, and adherence to legal and ethical standards.

How much do Windows Malware Reverse Engineers make?

Windows Malware Reverse Engineers typically earn between $80,000 and $130,000 annually, depending on experience, location, and employer. Advanced skills in reverse engineering tools and malware analysis can lead to higher salaries, especially in cybersecurity-focused organizations.

What are popular job titles related to Windows Malware Reverse Engineer jobs in New York, NY?

For Windows Malware Reverse Engineer jobs in New York, NY, the most frequently searched job titles are:

What job categories do people searching Windows Malware Reverse Engineer jobs in New York, NY look for?

The top searched job categories for Windows Malware Reverse Engineer jobs in New York, NY are:

Infographic showing various Windows Malware Reverse Engineer job openings in New York, NY as of August 2026, with employment types broken down into 88% Full Time, 7% Part Time, and 5% Contract. Highlights an 85% Physical, 6% Hybrid, and 9% Remote job distribution, with an average salary of $149,101 per year, or $71.7 per hour.

Engineer II, Threat Detection - Windows (Hybrid)

CrowdStrike Holdings, Inc.

Manhattan, NY โ€ข On-site

$100 - $145/hr

Other

Medical, Retirement, PTO

Posted 4 days ago


Job description

## Engineer II, Threat Detection - Windows (Hybrid)Applylocations: USA - Sunnyvale, CA: USA - New York, NY: USA - Austin, TX: USA - Redmond, WAtime type: Full timeposted on: Posted Yesterdayjob requisition id: R29387As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasnโ€™t changed โ€” weโ€™re here to stop breaches, and weโ€™ve redefined modern security with the worldโ€™s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. Weโ€™re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you. **About the Role:**The CrowdStrike Endpoint Protection (EPP) Content Response team is seeking an experienced and passionate professional to analyze intrusions, threat campaigns, and malware โ€” and to drive efforts to mitigate them by implementing robust behavioral detection coverage on the Falcon sensor platform. The Content Response Team improves detection capability and efficiency through tactical analysis of ongoing attacks by criminal and nation-state actors impacting our customers, translating observed attacker behavior into high-fidelity endpoint detections deployed at global scale.The role requires independent work as well as the ability to collaborate across threat intelligence, engineering, and operational teams. You will be expected to take initiative identifying and solving detection gaps that directly protect our customers. You will be part of a cutting-edge threat detection team regularly facing off against sophisticated techniques and well-resourced adversaries.***This role is hybrid, requiring 2-3 days per week on-site at one of the posted locations.*****What You'll Do:*** Analyze emerging threats, campaigns, intrusion data, and malware execution telemetry to identify detectable behaviors and coverage gaps* Author and optimize behavioral detection rules (Indicators of Attack) targeting adversary techniques observed on Windows endpoints* Query and analyze endpoint telemetry (process execution, file system, registry, memory, authentication events) to validate detection hypotheses and assess coverage* Monitor detection precision metrics, investigate false positives, and tune detections to maintain high signal-to-noise ratios* Manage detections through a structured lifecycle: development, validation, staged deployment, and production monitoring* Collaborate with threat intelligence and incident response teams to prioritize detection development based on active threat campaigns**What Youโ€™ll Need:*** **Must be eligible for CJIS clearance (requires U.S. citizenship or Green Card/permanent resident status).*** Bachelor's degree in information security, computer science, or related field โ€” or 4+ years of equivalent hands-on experience in detection engineering, threat analysis, or endpoint security* Experience with endpoint detection platforms, EDR tooling, or detection-driven security workflows* Proficiency in Windows OS internals and APIs (process creation, registry, file system, memory management, authentication subsystems)* Experience with behavioral malware analysis, sandboxing, telemetry collection, and detectable behaviors from execution logs or Windows forensics* Working knowledge of regular expressions and pattern-based detection authoring* Ability to read and understand various programming languages and PowerShell; scripting proficiency in Python for automation and analysis* Experience analyzing endpoint telemetry or host-based log data to identify malicious patterns* Solid working knowledge of common adversary TTPs and the ability to translate threat intelligence into detection logic* Ability to assess cyber threat intelligence, open-source intelligence, or partner reporting for actionable detection opportunities* Passion for detection engineering, threat analysis, or security research, with the motivation to keep learning and growing* Comfortable using AI-assisted tooling as a daily force multiplier, not just a novelty* Energetic self-starter mentality with the ability to take ownership and be accountable for deliverables* Clear written and verbal communication skills to drive triage, convey detection rationale, and align cross-functionally with both technical and executive-level stakeholders* Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.**Bonus Points:*** Experience writing behavioral detection rules or signatures for an endpoint security product (IOA/IOC logic, behavioral engines, or equivalent)* Experience with regex optimization or pattern matching in performance-sensitive contexts* Familiarity with detection precision concepts: true/false positive analysis, disposition workflows, and tuning at scale* Experience with detection content lifecycle management (development โ†’ testing โ†’ staged deployment โ†’ monitoring)* Understanding of behavioral detection paradigms: process tree analysis, parent-child relationships, API call sequences, and living-off-the-land technique identification* Familiarity with MITRE ATT&CK adversary tactics and techniques* Experience in a security operations center or similar environment tracking threat actors and responding to incidents* Experience building test environments, lab infrastructure, or automation to improve detection development workflows* Working knowledge of agentic AI CLIs and skills for detection engineering workflows* Contributions to the open-source community (GitHub, Stack Overflow, blogging) or published research (conferences, blogs, articles)#LI-DR1This role will require the candidate to periodically undergo and pass additional background and fingerprint check(s) consistent with government customer requirements.**Benefits of Working at CrowdStrike:*** Market leader in compensation and equity awards* Comprehensive physical and mental wellness programs* Competitive vacation and holidays for recharge* Paid parental and adoption leaves* Professional development opportunities for all employees regardless of level or role* Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections* Vibrant office culture with world class amenities* Great Place to Work CertifiedTM across the globeCrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at recruiting@crowdstrike.com for further assistance.Find out more about your rights as an applicant.CrowdStrike participates in the E-Verify program.Notice of E-Verify ParticipationRight to WorkCrowdStrike, Inc. is committed to fair and equitable compensation practices. Placement within the pay range is dependent on a variety of factors including, but not limited to, relevant work experience, skills, certifications, job level, supervisory status, and location. The base salary range for this position for all U.S. candidates is $100,000 - $145,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off.For detailed information about the U.S. benefits package, please click here. #J-18808-Ljbffr

CrowdStrike logo

About CrowdStrike

Sourced by ZipRecruiter

#WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading cloud-native platform has offered unparalleled protection against the most sophisticated cyberattacks. We're looking for people with limitless passion, a relentless focus on innovation and a fanatical commitment to the customer to join us in shaping the future of cybersecurity. Consistently recognized as a top workplace, CrowdStrike is committed to cultivating an inclusive, remote-first culture that offers people the autonomy and flexibility to balance the needs of work and life while taking their career to the next level. Interested in working for a company that sets the standard and leads with integrity? Join us on a mission that matters - one team, one fight.

Industry

It services

Company size

1,001 - 5,000 Employees

Headquarters location

Sunnyvale, CA, US

Year founded

2012