> Markdown version of [/jobs/ext/1457624-cleared-senior-software-researcher](https://www.wearedevelopers.com/jobs/ext/1457624-cleared-senior-software-researcher). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cleared Senior Software Researcher - **Company:** Yellow Duck Technologies Inc. - **Location:** Annapolis Junction, MD, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** C (Programming Language), Distributed Systems, Python (Programming Language), Secure Coding, Software Security, Vulnerability Analysis - **Published:** July 27, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=6ff786c367b0108a ## About the Role Yellow Duck Technologies is seeking a Senior Software Researcher to independently analyze and identify vulnerabilities in software and software architecture design. This role requires expertise in vulnerability research, software security analysis, and exploit development, with a focus on identifying, documenting, and demonstrating control over software flaws. The ideal candidate will have strong development skills in C, Python, and Assembly, experience with OS internals across major platforms, and the ability to analyze distributed architectures and inter-component protocols. This position demands attention to detail, problem-solving skills, and the ability to work both independently and collaboratively on cutting-edge security research., * Must have an active TS/SCI clearance with Full Scope Polygraph. * Bachelor's degree in a related field or an additional 4 years of relevant experience in lieu of a degree. * Strong proficiency in C, Python, and Assembly (ASM). * Deep understanding of software vulnerabilities and secure coding best practices. * Strong understanding of distributed architectures and protocol analysis between disparate system components. ## Related Videos - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Best Practices for AI-Assisted Development of Distributed Systems](https://www.wearedevelopers.com/videos/100200-best-practices-for-ai-assisted-development-of-distributed-systems) - [Unleashing the Power of Developers: Why Cybersecurity is the Missing Piece?!?](https://www.wearedevelopers.com/videos/712-unleashing-the-power-of-developers-why-cybersecurity-is-the-missing-piece) - [Security Blindspots and How to Learn About Them - Anna Oliveira](https://www.wearedevelopers.com/videos/1754-security-blindspots-and-how-to-learn-about-them-anna-oliveira) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 166: Sycophancy, Zip bombs and AI Native Development](https://www.wearedevelopers.com/magazine/585-dev-digest-166-sycophancy-zip-bombs-and-ai-native-development) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)