Mid-level Malware Engineer / Active Top Secret
$112,000–$179,000 year
HybridArlington, Virginia, United States
Job Summary
Isolate, analyze, and reverse-engineer malicious binaries to determine behavior, functionality, and intent across Linux, macOS, Windows, iOS, Android, and IoT platforms. Perform static and dynamic analysis on malware samples, produce detailed technical reports outlining findings and operational implications, and recommend countermeasures for government communication systems. Support active cyber operations, incident response, and threat-hunting activities while developing policies and methodologies for malware investigations. Requires hands-on experience with tools like IDA Pro, Ghidra, and Wireshark, plus a Bachelor's or Master's degree with 8+ years of relevant technical experience. Active Top Secret clearance with SCI eligibility and DHS EOD background investigation are mandatory. Hybrid 50/50 on-site/remote schedule based in Arlington, VA.
Required Qualifications
- Bachelor's degree
- 8+ years of relevant technical experience
- Master's degree
- 6+ years of experience
- 4 years of experience
- Experience analyzing malicious applications across Linux, macOS, Windows, iOS, Android, and IoT devices
- Hands-on experience with IDA Pro
- Hands-on experience with OllyDbg
- Hands-on experience with x64dbg
- Hands-on experience with Scylla x64
- Hands-on experience with Objdump
- Hands-on experience with Readelf
- Hands-on experience with Ghidra
- Hands-on experience with Process Explorer
- Hands-on experience with CFF Explorer
- Hands-on experience with Wireshark
- Hands-on experience with Fiddler
- Hands-on experience with Regshot
- Hands-on experience with Process Monitor
- Hands-on experience with Process Hacker
- Demonstrated strong understanding of reverse-engineering methodologies and file reconstruction
- Ability to unpack, de-obfuscate, and analyze highly complex malicious applications
- Debugging experience, including identifying and defeating custom or known packers
- Experience with disassemblers and disassembly workflows
- U.S. citizenship
- Active Top Secret Clearance with the ability to obtain SCI
- Ability to obtain and maintain a DHS EOD background investigation
- Local candidates able to work in a hybrid environment
Desired Qualifications
- Experience with Python for automation or tooling
- Programming knowledge in Java
- Programming knowledge in C
- Programming knowledge in C++
- Programming knowledge in .NET
- Programming knowledge in PowerShell
- Programming knowledge in Golang
- Programming knowledge in C#
- Familiarity with ICS/SCADA systems and related security considerations
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.