Senior Vulnerability Researcher

Grammatech

Herndon (VA)

Hybrid

USD 165,000 - 200,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Health insurance
Dental insurance
Vision insurance
Disability insurance
Life insurance
401(k) with company contributions
Paid holidays
Paid time off
Sick leave
Personal leave
Merit increases
Performance-based bonus

Job summary

GrammaTech in Herndon, VA is seeking a Senior Vulnerability Researcher to advance reverse engineering and vulnerability research across embedded systems, software, and operational processes. Working alongside reverse engineers and security researchers, you’ll identify vulnerabilities, analyze attack vectors, and assess operational impacts for critical systems.

This on-site role requires regular on-site support at the Linthicum, Maryland customer site or headquarters in Herndon, VA, and includes

Qualifications

  • Bachelor’s degree with 5+ years of relevant experience, or Associate’s with 7+ years.
  • Experience in computer/information systems design/development and security fields.
  • Proficiency in C/C++, Python, and at least one ISA (x86/ARM/MIPS).
  • Proficiency with Linux command-line environments.
  • Experience using a decompiler (IDA Pro, Binary Ninja, Ghidra).
  • Experience using vulnerability research tools such as emulators or fuzzers.
  • Experience using a software debugger (GDB or WinDbg).

Responsibilities

  • Identify vulnerabilities and attack vectors across hardware, software, procedures, logistics, and physical security.
  • Develop PoC code for identified vulnerabilities.
  • Reverse‑engineer embedded systems to identify vulnerabilities.
  • Review source code for risks and vulnerabilities.
  • Analyze vulnerability effects on mission outcomes and operations.
  • Compare attack techniques and propose countermeasures.
  • Produce reports, briefings, and perspectives on attacks.
  • Mentor junior engineers and guide research methodology.

Skills

C/C++
Python
Reverse engineering
Vulnerability analysis

Education

Bachelor's degree
Associate's degree

Tools

IDA Pro
Binary Ninja
Ghidra
emulators
fuzzers
GDB
WinDbg

Job description

If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.

Senior Vulnerability Researcher

Herndon, VA, US

Join our GrammaTech team and immerse yourself in reverse engineering and vulnerability research on a wide range of embedded systems, software, and operational processes. Working alongside reverse engineers and security researchers, you’ll identify vulnerabilities, analyze attack vectors, and assess operational impacts on some of the most critical systems for our customers. Our fast-growing roster of government customers relies on us to deliver advanced security solutions, and we’re looking for a Senior Vulnerability Researcher to help us continue pushing boundaries. If you’re passionate about vulnerability research that can make a tangible impact on national security, we want you on our team.

This role requires regular on-site support at the Linthicum, Maryland customer site or our headquarters in Herndon VA

What you will do:

  • Identify vulnerabilities and potential attacks across hardware, software, procedures, logistics, and physical security of systems
  • Develop proof of concept (PoC) code for identified vulnerabilities
  • Reverse-engineer targeted embedded systems to identify vulnerabilities
  • Review source code looking for risks and vulnerabilities
  • Analyze the effects of vulnerabilities on mission outcomes and operational effectiveness.
  • Compare system attack techniques and propose operationally effective countermeasures
  • Produce reports, briefings, and perspectives on actual and potential attacks
  • Mentor junior engineers and analysts, reviewing technical approaches and guiding research methodology

What you will need (Basic Qualifications):

  • Bachelor’s degree and 5 years of relevant experience, OR Associate’s degree and 7 years of relevant experience.
    • Relevant experience: computer/information systems design/development, programming, information/cyber/network security, reverse-engineering, vulnerability analysis, penetration testing, computer forensics, information assurance, or systems engineering
  • Proficiency in C/C++, Python, and at least one ISA (e.g. x86/ARM/MIPS)
  • Proficiency in Linux command-line environments
  • Experience using a decompiler such as IDA Pro, Binary Ninja, or Ghidra
  • Experience using vulnerability research tools such as emulators or fuzzers
  • Experience using a software debugger such as GDB or WinDbg

Nice If You Have (Preferred):

  • Experience producing technical briefings for operational stakeholders
  • Experience using a hardware debugger
  • Experience with UART, SPI, I2C
  • Experience with common secure communications such as TLS or SSH
  • Familiarity with embedded firmware, RTOS, or networked systems
  • Familiarity with high-side environments

Security Clearance:

  • Active TS/SCI clearance required (Polygraph preferred)

The anticipated base salary range for this position is $165,000–$200,000 annually. This range reflects the Company's good-faith estimate at the time of posting. Final compensation will be determined based on a variety of factors, including the scope and level of the role, relevant experience, technical expertise, education, and other job-related qualifications.

GrammaTech offers a comprehensive total rewards package designed to support the health, well-being, and financial security of our employees. Benefits include medical, dental, and vision insurance; short- and long-term disability coverage; life insurance; and a 401(k) retirement plan with company contributions. Employees are also eligible for paid holidays, paid time off (PTO), sick and personal leave, annual merit increases, and performance-based bonus opportunities.

GrammaTech, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status. GrammaTech is committed to providing reasonable accommodations to qualified individuals with disabilities throughout the application and hiring process. Applicants requiring accommodation should contact Human Resources.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Vulnerability Researcher
Senior Vulnerability Researcher

GrammaTech • Maryland

On-site
USD 165,000 - 200,000
Medical insurance
Dental insurance
Vision insurance
+5
Senior Embedded Security Software Engineer
Senior Embedded Security Software Engineer

Grammatech • Herndon (VA), Northern (KY)

Hybrid
USD 130,000 - 190,000
Medical, dental, and vision insurance
401(k) with company contributions
Paid holidays and PTO
+1
Software Vulnerability Analyst
Software Vulnerability Analyst

Grammatech • Northern (KY)

Hybrid
USD 150,000 - 215,000
Senior Embedded Security Researcher
Senior Embedded Security Researcher

Grammatech • Herndon (VA)

Hybrid
USD 165,000 - 200,000
Health insurance
Dental insurance
Vision insurance
+9
Senior Vulnerability Researcher ($250k+/year + Sign-On Bonus)
Senior Vulnerability Researcher ($250k+/year + Sign-On Bonus)

Two Six Technologies • Linthicum (MD)

On-site
USD 250,000 - 285,000
Healthcare benefits
401(k) matching
Paid professional development
+2
Senior Vulnerability Researcher ($250k+/year + Sign-On Bonus)
Senior Vulnerability Researcher ($250k+/year + Sign-On Bonus)

Trusted Concepts, Inc. • Linthicum (MD)

On-site
USD 250,000 - 285,000
Sign-On Bonus
Health/Dental/Vision
401(k) matching
+2
Vulnerability & Exploitation Specialist
Vulnerability & Exploitation Specialist

GRVTY • Maryland

On-site
USD 180,000 - 230,000
Robust health plan including medical, dental, and vision
Health Savings Account with company contribution
Annual Paid Time Off and Paid Holidays
+3
Senior Vulnerability Researcher
Senior Vulnerability Researcher

Redhorse Corporation • Herndon (VA)

On-site
USD 120,000 - 160,000
Senior Vulnerability Researcher
Senior Vulnerability Researcher

Redhorse Corp. • Herndon (VA)

On-site
USD 120,000 - 150,000
Vulnerability Researcher: Mid-Level (Applicants must already hold a TS clearance or higher)
Vulnerability Researcher: Mid-Level (Applicants must already hold a TS clearance or higher)

ciphertechsolutions • Vienna (VA)

On-site
USD 76,153 - 112,591
Relocation assistance