Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
GI
GrammaTech, Inc.
Software Vulnerability Analyst
Career Insights for Technical Consultant / Analyst
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Maryland data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Technical Consultant or Analyst provides information technology consulting services to businesses and organizations. Advises or manages installation or expansion of computer network systems; provides problem-solving assistance and staff training with new systems. May work independently or as part of a consulting team.
$105,815 / year median in Maryland
-3% projected decline
Job Description
Job Requirements Linthicum, MD Top Secret/SCI Full Scope Polygraph Career Level not specified $150,000 - $215,000 Job Description GrammaTech is actively seeking a Software Vulnerability Analyst to join our team in Linthicum, Maryland. The team is composed of intelligent individuals, passionate about binary patch diffing, root-cause vulnerability analysis, and software security validation. The team is growing and looking for someone with a vulnerability analysis and reverse engineering background who has an understanding of how to analyze software patches, verify security fixes, and confirm vulnerability mitigation across target systems. If you are actively using Ghidra, IDA Pro, BinDiff, and dynamic analysis tools, the team wants to talk to you!
What you will do:
- Evaluate software and firmware patches to perform binary patch diffing and root-cause vulnerability analysis in support of national security research missions.
- Work under minimal supervision with latitude for independent judgment to confirm patch integrity and ensure security fixes completely address target vulnerabilities.
- Document detailed analytical findings, validate security fixes, and assist with integrating AI-assisted software verification tools into security analysis workflows. What you will need (basic qualifications)
- Demonstrated experience in static and dynamic reverse engineering, binary patch diffing (e.g., BinDiff, Diaphora), and software vulnerability analysis.
- Hands-on proficiency with disassembly tools (Ghidra, IDA Pro, or Binary Ninja) and software debuggers (GDB, WinDbg).
- Proven track record performing root-cause analysis on software vulnerabilities and validating patch mitigation effectiveness.
- Strong programming and scripting skills in C, C++, and Python within Linux environments. Nice to have (preferred)
- Experience applying AI/ML models or LLM frameworks to software code analysis, vulnerability discovery, or patch verification.
- Familiarity with dynamic instrumentation frameworks (Frida, DynamoRIO) or automated fuzzing engines.
- Knowledge of operating system security mitigations (ASLR, DEP, CFI, Stack Canaries) and common vulnerability patterns (CWEs).
Security Clearance:
- Active TS/SCI clearance with Polygraph required The anticipated base salary range for this position is $150,000-$215,000 annually.
group id:
10117802 Log in to view the job poster Apply nowBenefits
- Paid Time Off (PTO)
- 401(k) Plans
- Other Retirement and Savings
- Health Insurance