{"schemaVersion":"jobsearcher.job.v1","id":"873874cf7b6da0ed6c52b310","url":"https://jobsearcher.com/jobs/873874cf7b6da0ed6c52b310","canonicalUrl":"https://jobsearcher.com/jobs/873874cf7b6da0ed6c52b310","title":"Software Vulnerability Analyst","description":"GrammaTech is actively seeking a Software Vulnerability Analyst to join our team in Linthicum, Maryland. The team is composed of intelligent individuals, passionate about binary patch diffing, root-cause vulnerability analysis, and software security validation. The team is growing and looking for someone with a vulnerability analysis and reverse engineering background who has an understanding of how to analyze software patches, verify security fixes, and confirm vulnerability mitigation across target systems. If you are actively using Ghidra, IDA Pro, BinDiff, and dynamic analysis tools, the team wants to talk to you!\n\nWhat you will do:\n\nEvaluate software and firmware patches to perform binary patch diffing and root-cause vulnerability analysis in support of national security research missions.\nWork under minimal supervision with latitude for independent judgment to confirm patch integrity and ensure security fixes completely address target vulnerabilities.\nDocument detailed analytical findings, validate security fixes, and assist with integrating AI-assisted software verification tools into security analysis workflows.\n\nWhat you will need (basic qualifications)\n\nDemonstrated experience in static and dynamic reverse engineering, binary patch diffing (e.g., BinDiff, Diaphora), and software vulnerability analysis.\nHands-on proficiency with disassembly tools (Ghidra, IDA Pro, or Binary Ninja) and software debuggers (GDB, WinDbg).\nProven track record performing root-cause analysis on software vulnerabilities and validating patch mitigation effectiveness.\nStrong programming and scripting skills in C, C++, and Python within Linux environments.\n\nNice to have (preferred)\n\nExperience applying AI/ML models or LLM frameworks to software code analysis, vulnerability discovery, or patch verification.\nFamiliarity with dynamic instrumentation frameworks (Frida, DynamoRIO) or automated fuzzing engines.\nKnowledge of operating system security mitigations (ASLR, DEP, CFI, Stack Canaries) and common vulnerability patterns (CWEs).\n\nSecurity Clearance:\n\nActive TS/SCI clearance with Polygraph required\n\nThe anticipated base salary range for this position is $150,000–$215,000 annually. This range reflects the Company's good-faith estimate at the time of posting. Final compensation will be determined based on a variety of factors, including the scope and level of the role, relevant experience, technical expertise, education, and other job-related qualifications.\n\nGrammaTech offers a comprehensive total rewards package designed to support the health, well-being, and financial security of our employees. Benefits include medical, dental, and vision insurance; short- and long-term disability coverage; life insurance; and a 401(k) retirement plan with company contributions. Employees are also eligible for paid holidays, paid time off (PTO), sick and personal leave, annual merit increases, and performance-based bonus opportunities.\n\nGrammaTech, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status. GrammaTech is committed to providing reasonable accommodations to qualified individuals with disabilities throughout the application and hiring process. Applicants requiring accommodation should contact Human Resources.","company":"Grammatech","rawCompany":"grammatech","city":"Ithaca","state":"NY","isRemote":false,"isActive":true,"createdAt":"2026-09-11T11:43:01.772Z","occupations":[{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1299.04","title":"Penetration Testers","slug":"penetration-testers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Software Vulnerability Analyst","description":"GrammaTech is actively seeking a Software Vulnerability Analyst to join our team in Linthicum, Maryland. The team is composed of intelligent individuals, passionate about binary patch diffing, root-cause vulnerability analysis, and software security validation. The team is growing and looking for someone with a vulnerability analysis and reverse engineering background who has an understanding of how to analyze software patches, verify security fixes, and confirm vulnerability mitigation across target systems. If you are actively using Ghidra, IDA Pro, BinDiff, and dynamic analysis tools, the team wants to talk to you!\n\nWhat you will do:\n\nEvaluate software and firmware patches to perform binary patch diffing and root-cause vulnerability analysis in support of national security research missions.\nWork under minimal supervision with latitude for independent judgment to confirm patch integrity and ensure security fixes completely address target vulnerabilities.\nDocument detailed analytical findings, validate security fixes, and assist with integrating AI-assisted software verification tools into security analysis workflows.\n\nWhat you will need (basic qualifications)\n\nDemonstrated experience in static and dynamic reverse engineering, binary patch diffing (e.g., BinDiff, Diaphora), and software vulnerability analysis.\nHands-on proficiency with disassembly tools (Ghidra, IDA Pro, or Binary Ninja) and software debuggers (GDB, WinDbg).\nProven track record performing root-cause analysis on software vulnerabilities and validating patch mitigation effectiveness.\nStrong programming and scripting skills in C, C++, and Python within Linux environments.\n\nNice to have (preferred)\n\nExperience applying AI/ML models or LLM frameworks to software code analysis, vulnerability discovery, or patch verification.\nFamiliarity with dynamic instrumentation frameworks (Frida, DynamoRIO) or automated fuzzing engines.\nKnowledge of operating system security mitigations (ASLR, DEP, CFI, Stack Canaries) and common vulnerability patterns (CWEs).\n\nSecurity Clearance:\n\nActive TS/SCI clearance with Polygraph required\n\nThe anticipated base salary range for this position is $150,000–$215,000 annually. This range reflects the Company's good-faith estimate at the time of posting. Final compensation will be determined based on a variety of factors, including the scope and level of the role, relevant experience, technical expertise, education, and other job-related qualifications.\n\nGrammaTech offers a comprehensive total rewards package designed to support the health, well-being, and financial security of our employees. Benefits include medical, dental, and vision insurance; short- and long-term disability coverage; life insurance; and a 401(k) retirement plan with company contributions. Employees are also eligible for paid holidays, paid time off (PTO), sick and personal leave, annual merit increases, and performance-based bonus opportunities.\n\nGrammaTech, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status. GrammaTech is committed to providing reasonable accommodations to qualified individuals with disabilities throughout the application and hiring process. Applicants requiring accommodation should contact Human Resources.","datePosted":"2026-09-11T11:43:01.772Z","dateModified":"2026-09-11T11:43:01.772Z","hiringOrganization":{"@type":"Organization","name":"Grammatech","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Ithaca","addressRegion":"NY","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"873874cf7b6da0ed6c52b310"},"url":"https://jobsearcher.com/jobs/873874cf7b6da0ed6c52b310"}}