X-Day Offensive Research (XOR) Vulnerability Researcher
Chase
X-Day Offensive Research (XOR) Vulnerability Researcher - Assessments & Exercises
As an X-Day Offensive Research (XOR) Vulnerability Researcher - Assessments & Exercises at JPMorganChase in the Cybersecurity & Technology Controls line of business, you will contribute significantly to enhancing the firm's cybersecurity or resiliency posture by using industry-standard assessment methodologies and techniques to proactively identify risks and vulnerabilities in people, processes, and technology. In this role, you will design and deploy risk-driven assessments (or manage a highly-skilled team that does) and inform analysis to clearly outline root causes.
We are seeking a dedicated, self-motivated vulnerability researcher to tackle the complex demands of our mission. Working closely with fellow researchers and defense teams, you will investigate challenging targets, uncover novel attack surfaces, and develop innovative solutions that enhance our security posture. The ideal candidate combines deep technical curiosity with a strong background in reverse engineering, static analysis, and dynamic analysis, and thrives in a highly collaborative, research-driven environment.
Job responsibilities
- Design and execute testing and simulations – such as penetration tests, technical controls assessments, cyber exercises, or resiliency simulations – and contribute to the development and refinement of assessment methodologies, tools, and frameworks to ensure alignment with the firm's strategy and compliance with regulatory requirements.
- Evaluate controls for effectiveness and impact on operational risk, as well as opportunities to automate control evaluation.
- Conduct in-depth vulnerability research and exploit development across a broad range of categories, including operating systems, mobile devices, web applications, browsers, edge devices, and enterprise software.
- Reverse engineer binaries using tools such as IDA Pro, Ghidra, or Binary Ninja to identify novel attack surfaces and develop proof-of-concept exploits.
- Use common vulnerability research toolsets such as fuzzers, disassemblers, debuggers, and code browsers for static and dynamic analysis.
- Perform N-day vulnerability analysis, patch diffing, and proof-of-concept exploit validation.
- Collaborate with cross-functional teams to develop comprehensive reports – including detailed findings, risk assessments, and remediation recommendations – supporting vulnerability triage, patch prioritization, and the sharing of indicators of compromise (IOCs) in service of the firm's mission requirements.
- Leverage threat intelligence and security research to stay ahead of emerging threats, vulnerabilities, industry best practices, and regulations, applying this knowledge to enhance the firm's assessment strategy and risk management, and engaging with peers and industry groups that share threat intelligence analytics.
- Document research findings, proof-of-concepts, and technical workflows to enable knowledge sharing and repeatability.
Required qualifications, capabilities, and skills
- 5+ years of experience in cybersecurity or resiliency, with demonstrated exceptional organizational skills to plan, design, and coordinate the development of offensive security testing, assessments, or simulation exercises.
- Track record of discovered vulnerabilities (CVEs) in high-profile targets in at least one of the following categories: operating systems, mobile devices, web applications, browsers, edge devices, or enterprise software.
- Proven hands-on experience in vulnerability research, proof-of-concept exploit development, coordinated vulnerability disclosure, and mitigating security vulnerabilities in open-source projects.
- Expertise in advanced analysis frameworks leveraging symbolic execution techniques and dynamic binary instrumentation to identify, triage, and exploit complex software vulnerabilities.
- Hands-on proficiency exploiting complex vulnerability classes – including use-after-free, double free, type confusion – and applying advanced exploitation techniques such as heap spraying and controlled memory corruption to achieve reliable code execution.
- Strong understanding of the internals of at least two operating systems throughout user mode and kernel mode (Microsoft Windows, GNU/Linux, Android, macOS, or iOS).
- Experience auditing large C/C++, Java, and.NET codebases combining automated static analyzers with manual review to trace data and control flow, uncover memory-safety, injection, and deserialization vulnerabilities and produce proof-of-concept code.
- Extensive reverse engineering expertise on x86/x64 and ARM/ARM64 binaries, employing IDA Pro, Ghidra, Binary Ninja, WinDbg, GDB, and RR for deep static/dynamic analysis and root cause vulnerability discovery.
- Knowledge of US financial services sector cybersecurity or resiliency organization practices, operational risk management processes, principles, regulations, threats, risks, and incident response methodologies.
- Ability to identify systemic security or resiliency issues as they relate to threats, vulnerabilities, or risks, with a focus on recommendations for enhancements or remediation, and proficiency in multiple security assessment methodologies (e.g., Open Worldwide Application Security Project (OWASP) Top Ten, National Institute of Standards and Technology (NIST) Cybersecurity Framework), offensive testing tools, or resiliency testing equivalents.
- Excellent communication, collaboration, and report writing skills, with the ability to influence and engage stakeholders across various functions and levels.
Preferred qualifications, capabilities, and skills
- Bachelor's degree in computer science, or PhD in a related technical field, or an equivalent combination of education and/or experience in a related field.
- 5+ years of experience in vulnerability research and exploit development.
- Experience using fuzzing tools such as LibFuzzer, LibAFL, AFL++, OSS-Fuzz, and Syzkaller.
- Experience using program analysis tools such as LLVM, Angr, KLEE, Intel Pin, DynamoRIO, and Frida.
- Experience emulating embedded platforms for live debugging.
- Experience with kernel and low-level operating system development.
- Deep Linux internals knowledge (SELinux, AppArmor, Seccomp, eBPF, containers, VMs).
- Deep Windows internals knowledge (KASLR, DSE, SSDT, IDT, SMEP, SMAP, PXN, KPP, KDP, VBS, HVCI, KMCI, UMCI).
- ...Principal Vulnerability Researcher Zetier is seeking Principal Vulnerability Researchers to analyze and counter malicious software and develop operationally... ...: Experience developing/defeating mitigations (ASLR, DEP, N^X) Developed defeats of common anti-RE techniques (obfuscation...Suggested
$105k
Are you a technical leader, researcher, and cyber capability developer eager to tackle some... ...introspection find memory and logic vulnerabilities in firmware at scale correlate source code... ...Secret security clearance by the first day of employment. Eligibility requirements...SuggestedTemporary workWork experience placementRelocation packageFlexible hours- Stanley Reid & Company is looking for a Vulnerability Researcher to join their team in the Arlington, VA area. The role emphasizes deep expertise... ...vulnerability research, reverse engineering, and related offensive security disciplines. The position requires experience in...Suggested
- ...on the lookout for experienced and passionate vulnerability researchers to join our team. If you have a background in offensive security and think collaborating on high-... ...invitation to interview. Perks and benefits: ~25 days paid vacation + federal holidays ~ Annual...SuggestedPermanent employmentRemote work
- ...experienced and passionate people who have a background in vulnerability research, offensive security and reverse engineering on Apple platforms.... ...invitation to interview. Perks and benefits: ~25 days paid vacation + federal holidays ~ Annual bonus based on...SuggestedRemote work
$105k
...discovering novel software and hardware vulnerabilities in complex systems? Do you thrive on leading... ...If so, we want you to join our group of offensive cyber experts! We are seeking an experienced cyber vulnerability researcher to lead efforts to identify, analyze, and...Temporary workWork experience placementRelocation packageFlexible hours- ...Our client has deep expertise in Vulnerability Research, CNO Development, Reverse Engineering, and Penetration Testing. They support the defense and intelligence communities along with commercial clients. Founded by engineers, they have their own fixed, firm contract,...Contract work
- ...capabilities. You will work on emulating firmware, discovering vulnerabilities, and enabling AI-assisted tooling in a multidisciplinary... ...Senior Staff member, you will engage with sponsors, pursue funded research, and publish findings while collaborating across AI, bio,...
$131k
...Senior Vulnerability Researcher Android OS McLean, VA Senior Vulnerability Researcher Android OS Get AI-powered advice on this job and more exclusive... ...and stay at the forefront of mobile security advancements. Day-to-day responsibilities and duties include: Conduct in-depth...Full timeWork experience placementRemote workMonday to Friday$128.87k - $195k
...where we push the boundaries of software and firmware reverse engineering to uncover vulnerabilities in wireless and embedded systems. As part of our elite team of security researchers, you'll work alongside CNO developers and hardware engineers, conducting cutting-edge...Contract workLocal area- ...Vulnerability Researcher - Hybrid - CI Poly Arlington, VA We are seeking a Vulnerability Researcher to join a team focused on Vulnerability Research, CNO Development, Reverse Engineering, and Penetration Testing. The position is located in Arlington, VA and offers a hybrid...
- Stanley Reid & Company is seeking a Vulnerability Researcher to join their team in a hybrid role based in Arlington, VA. The position focuses on vulnerability research, with capabilities in reverse engineering, assembly languages, Python, and debugging/decompilation tools...
- Stanley Reid & Company is seeking a Vulnerability Researcher to join their team in a hybrid Arlington, VA setting. The role requires expertise in vulnerability research, reverse engineering, and development across multiple platforms, with compensation aligned to technical...
- ...challenges. You will collaborate across disciplines, pursue funded research, and publish findings while contributing to national security.... ...obtain a TS/SCI clearance or hold an active Secret clearance by day one. #J-18808-Ljbffr The Johns Hopkins University Applied...
- Stanley Reid & Company in Arlington, VA is seeking a Vulnerability Researcher to join a team focused on vulnerability research, CNO development, reverse engineering, and penetration testing. The role is hybrid and requires Top Secret clearance or higher. The ideal candidate...
- ...nonprofit engineering, applied research, and advanced technology... ...seeking to hire a Senior Firmware Vulnerability Researcher to tackle the... ...thrives at the intersection of offensive and defensive security research... ...requires a minimum of 3 days on site each week.Preferred Qualifications...InternshipLocal area3 days per week
- ...Two Six Technologies in the United States is seeking a Lead Vulnerability Researcher to advance reverse engineering of embedded systems and wireless targets. You’ll guide vulnerability research, mentor colleagues, and deliver high‑impact exploits for government customers...
- A cybersecurity organization is looking for a Mid-Level Vulnerability Researcher in Arlington, VA. The candidate will analyze and counter malicious software and develop critical cyber capabilities. Required qualifications include expertise in reverse engineering, assembly...Full time
$145.46k - $193.94k
...is seeking a remote Threat Intelligence Researcher on the Research & Analysis team focused... ...to customer sites approximately 3-4 days per month. The Main Responsibilities... ...strategic insights into emerging threats, vulnerabilities, adversary infrastructure, and...Full timeTemporary workRemote work- Johns Hopkins Applied Physics Laboratory in Laurel, MD seeks a Senior Staff researcher and cyber capability developer to tackle challenging reverse engineering problems. You will contribute to cutting-edge cybersecurity work, collaborate with world-class experts, and work...
$162.7k - $263.18k
...of our industry. This is something our employees work at each day and is defined by our values: Disruption, Collaboration, Execution... ....Job SummaryJob SummaryAs a Principal Threat Intelligence Researcher on the Unit 42 CTI Services Delivery Team, you will play a critical...Full timeRemote workShift work- ...applications received and will close at 11:59PM Eastern Time on the day that we receive the 200th application, or at 11:59PM Eastern... ...scientific expertise to plan, coordinate, and implement assigned research and research training programs. Evaluating gaps in the...
- ...Institute of Education Sciences (IES), National Center for Education Research (NCER), has four Senior Scientific Program Officer positions in... ...received and will close at 11:59PM Eastern Time on the day that we receive the 200th application, or at 11:59PM Eastern Time...Full timePart timeLocal areaRelocationTrial periodRelocation package
$262.5k - $299.6k
...Applied Researcher II Overview: At Capital One, we are creating trustworthy and reliable... ...thing. You know at the end of the day it's about making the right decision for... ...with the ability to document technical vulnerabilities and their direct impact on model...Full timePart timeLocal areaFlexible hours$150k - $225k
...government, including the Defense Advanced Research Projects Agency (DARPA), National... ...community. The mission of DARPA’s Multi X Office (MXO) to ensure the U.S.’s continued... ...requisition will remain open for at least three days, with a closing date no earlier than three...Hourly payFull timeContract workWork at officeLocal area$70k - $102k
...and work with the product team to help improve Narrative Analytics®, the platform our analysts use every day. Whether your background is in social science research, product and analytics, or a more technical track, what matters most is that you can take messy, real-world...Full timeInternship- ...Do Our team, within the Cyber Risk and Resilience Directorate researches, designs, and develops software tools for the collection, storage... ..., handling record counts in the tens of billions per day. What We Do Our team, within the Cyber Risk and Resilience Directorate...Full timePart timeWork experience placement
- Westat is a leader in research, data collection and analysis, technical assistance, evaluation, and communications. We support government... ...The role emphasizes in-person collaboration with a minimum of 2 days per week at our Bethesda, Maryland office or other Westat locations...Work at office2 days per week
$99k - $206k
...meet our customers’ most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing...Contract workImmediate start- Johns Hopkins Applied Physics Laboratory (APL) in Laurel, MD, seeks motivated cybersecurity researchers with a passion for vulnerability research, reverse engineering, and cross‑discipline problem solving. You will analyze software, hardware, and firmware, develop novel...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to X-Day Offensive Research (XOR) Vulnerability Researcher. Be the first to apply!
- field researcher Washington DC
- product researcher Washington DC
- security researcher Washington DC
- data collection researcher Washington DC
- machine learning researcher Washington DC
- court researcher Washington DC
- researcher Washington DC
- remote researcher Washington DC
- qualitative researcher Washington DC
- human factors researcher Washington DC



