Senior Vulnerability Researcher – Mobile / Browser / OS

NPAworldwide

Chantilly (VA)

On-site

USD 275,000 - 330,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Annual bonus up to 25%
Equity
Comprehensive benefits
Fully remote within the United States

Job summary

NPAworldwide is seeking a Senior Vulnerability Researcher to join an elite security research team focused on discovering zero-day vulnerabilities and developing advanced exploitation techniques across mobile, browser, OS, and application layers. This remote U.S.

role emphasizes hands-on vulnerability discovery, reverse engineering, and PoC exploit development. Ideal candidates will have deep expertise in memory corruption, OS internals, and modern exploit mitigations, plus experience with IDA

Qualifications

  • Proven experience in vulnerability research and exploit development.
  • Experience performing original vulnerability research and analyzing CVEs, with a strong interest in zero-day discovery.
  • Strong understanding of memory corruption and exploitation techniques.
  • Experience with reverse engineering, binary analysis, and patch diffing.
  • Strong understanding of operating system internals and modern exploit mitigations.
  • Experience with one or more platforms: Android, iOS, Windows, macOS, browser engines / JavaScript runtimes.
  • Experience with debugging, disassemblers, and dynamic analysis.
  • Proficient in C/C++ and Python.
  • Ability to read x86/x64 and ARM assembly.
  • Experience with fuzzing, static/dynamic analysis, root cause analysis, and kernel vulnerability research.
  • Ability to obtain a U.S. DoD Security Clearance.

Responsibilities

  • Discover and analyze unknown vulnerabilities and zero-days.
  • Perform original vulnerability research and CVE analysis.
  • Reverse engineer binaries and vendor patches.
  • Reproduce and analyze publicly disclosed vulnerabilities.
  • Identify root causes and develop PoC exploits.
  • Research modern exploitation techniques and mitigation bypasses.
  • Develop detection and mitigation strategies.
  • Document findings and communicate results.

Skills

Vulnerability research
Exploit development
Reverse engineering
Binary analysis
Patch analysis
OS internals
Memory corruption
C/C++
Python
x86/x64/ARM

Tools

IDA Pro
Ghidra
Binary Ninja

Job description

Job Description

Senior Vulnerability Researcher Mobile / Browser / OS

Location: Fully Remote U.S.

Employment: Full-Time

About The Role

We are looking for an experienced Vulnerability Researchers to join an elite security research team focused on discovering zero-day vulnerabilities and developing advanced exploitation techniques across mobile platforms, browsers, operating systems, and applications.

This is a hands-on research role for someone who enjoys reverse engineering, vulnerability discovery, exploit development, patch analysis, and working at the edge of modern security mitigations.

Primary Research Areas
Experience In One Or More Of The Following
  • iOS / Android
  • Mobile applications
  • Browser security
  • Windows
  • JavaScript engines and browser runtimes
  • Kernel security
  • Zero-click attack surfaces
What You'll Do

Discover and analyze previously unknown vulnerabilities and zero-days.

  • Perform original vulnerability research and CVE analysis.
  • Reverse engineer binaries, software, and vendor patches.
  • Reproduce and analyze publicly disclosed vulnerabilities.
  • Identify vulnerability root causes and develop working Proof-of-Concept (PoC) exploits.
  • Research modern exploitation techniques and mitigation bypasses.
  • Develop detection and mitigation strategies.
  • Document technical findings and communicate research results.
Why Join Us
  • Fully remote within the United States
  • Cutting-edge zero-day vulnerability research and exploit development
  • Work alongside highly experienced security researchers
  • Research-focused environment with minimal bureaucracy
  • Opportunity to work on challenging mobile, browser, and OS security problems
  • Competitive compensation
  • Up to 25% annual bonus
  • Meaningful equity with near-founder-level upside
  • Comprehensive benefits
Qualifications
Required Qualifications
  • Proven experience in vulnerability research and exploit development.
  • Experience performing original vulnerability research and/or analyzing complex CVEs, with a strong interest in zero-day discovery.
  • Strong understanding of memory corruption and exploitation techniques.
  • Experience with reverse engineering, binary analysis, and patch diffing.
  • Strong understanding of operating system internals and modern exploit mitigations.
  • Experience with one or more of:
    • Android
    • iOS
    • Windows
    • macOS
    • Browser engines / JavaScript runtimes
  • Experience with IDA Pro, Ghidra, Binary Ninja, or similar tools.
  • Experience with debuggers, disassemblers, binary instrumentation, and dynamic analysis.
  • Strong programming skills in C/C++ and Python.
  • Ability to read and analyze x86/x64 and ARM assembly.
  • Experience with techniques such as fuzzing, static analysis, dynamic analysis, root cause analysis, and kernel vulnerability research.
  • Ability to obtain a U.S. Department of Defense Security Clearance.
Browser / JavaScript Research Preferred
For Candidates Focused On Browser Security
  • Experience researching V8/Chromium, JavaScriptCore/WebKit, or similar runtimes.
  • Understanding of JavaScript engine internals, including JIT and interpreter behavior.
  • Experience researching Use-After-Free, type confusion, object lifetime, re-entrancy, and related vulnerabilities.
  • Familiarity with browser exploitation and modern mitigation bypass techniques.
Why Is This a Great Opportunity
  • Fully remote within the United States
  • Cutting-edge zero-day vulnerability research and exploit development
  • Work alongside highly experienced security researchers
  • Research-focused environment with minimal bureaucracy
  • Opportunity to work on challenging mobile, browser, and OS security problems
  • Competitive compensation
  • Up to 25% annual bonus
  • Meaningful equity with near-founder-level upside
  • Comprehensive benefits

Salary Type: Annual Salary

Salary Min: $ 275000

Salary Max: $ 330000

Currency Type: USD

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

vulnerability researcher
vulnerability researcher

NPAworldwide • Saint Petersburg (FL)

On-site
USD 156,000 - 234,000
Relocation assistance
Senior Vulnerability Researcher – Exploit Development
Senior Vulnerability Researcher – Exploit Development

Great Bay Staffing Group • Saint Petersburg (FL)

On-site
USD 156,000 - 234,000
Relocation assistance
Remote Senior Vulnerability Researcher - Mobile/Browser/OS
Remote Senior Vulnerability Researcher - Mobile/Browser/OS

NPAworldwide • Chantilly (VA)

On-site
USD 275,000 - 330,000
Annual bonus up to 25%
Equity
Comprehensive benefits
+1
Remote Senior Vulnerability Researcher — Mobile/Browser/OS
Remote Senior Vulnerability Researcher — Mobile/Browser/OS

NPAworldwide • San Francisco (CA)

On-site
USD 275,000 - 330,000
Up to 25% annual bonus
Meaningful equity with near-founder‑up
Comprehensive benefits
+1
Senior Vulnerability Researcher
Senior Vulnerability Researcher

Success Matcher Recruitment • Town of Florida (NY)

On-site
USD 156,000 - 234,000
Sign-on bonus
Relocation assistance
5 weeks PTO
+1
vulnerability researcher
vulnerability researcher

Job Juncture • Saint Petersburg (FL)

On-site
USD 156,000 - 234,000
Relocation assistance
Android Vulnerability Researcher
Android Vulnerability Researcher

TopClearedRecruiting • United States

Remote
USD 120,000 - 180,000
Competitive base salary
Project-based performance bonuses
Flexible work schedule
Mobile Vulnerability Researcher
Mobile Vulnerability Researcher

REDLattice • Chantilly (VA)

On-site
USD 90,000 - 120,000
Competitive salary and benefits package
Opportunities for professional growth
Collaborative work culture
Senior Reverse Engineering/Vulnerability Research Engineer
Senior Reverse Engineering/Vulnerability Research Engineer

Clarityinnovates • Columbus (OH)

On-site
USD 85,000 - 115,000
Senior Vulnerability Researcher
Senior Vulnerability Researcher

Redhorse Corp. • Herndon (VA)

On-site
USD 120,000 - 150,000