Nrel

Nrel

Adversarial Cybersecurity Researcher

Golden, CO · Full-time

No sponsorship$120k-$217kDetected 30 days ago
TypeScriptPythonC++PowerShellData AnalysisAI OrchestrationA/B TestingCybersecurityPenetration TestingProject ManagementSupply ChainSystems EngineeringPower ElectronicsResearchExperimental DesignLeadershipCommunicationCollaborationProblem SolvingMentoringPublic SpeakingWriting

About the role

  • Posting Title Adversarial Cybersecurity Researcher.
  • Working at NLR NLR is located at the foothills of the Rocky Mountains in Golden, Colorado is the nation's primary laboratory for energy systems research and development.
  • Join the National Laboratory of the Rockies (NLR), where world-class scientists, engineers, and experts are accelerating energy innovation through breakthrough research and systems integration.

Responsibilities

  • Lead adversarial research initiatives targeting energy sector systems, including threat emulation, cyber range experimentation, and model-based simulation, defining experimental objectives and strategies.
  • Independently design, execute, and evaluate complex adversary-defender studies, including multi-stage attack-chain modeling, vulnerability exploration, and defense validation, ensuring reproducible and rigorous research outcomes.
  • Lead development and validation of cybersecurity research tools, simulation frameworks, and automation scripts, ensuring integration with multiple projects and broader laboratory initiatives.
  • Extend and operationalize threat modeling methodologies (e.g., MITRE ATT&CK, ATT&CK for ICS) for large-scale experimental design and system-level defense evaluation.
  • Lead the preparation of research proposals, technical publications, and conference presentations, shaping research directions and laboratory reputation in the field.
  • Drive interdisciplinary collaboration across power systems, controls, and modeling teams, bridging cyber-physical domains and guiding project execution.
  • Support and expand NLR's adversarial research infrastructure, including cyber ranges, digital twins, and experiment orchestration frameworks, through leadership and mentorship.
  • Mentor and guide junior and mid-level researchers, promoting professional development, fostering a positive research culture, and building laboratory-wide capability in adversarial modeling and defense research.
  • Design, execute, and evaluate controlled adversary-defender studies, such as attack-chain modeling, vulnerability exploration, and defense validation experiments, contributing to reproducible research outputs.
  • Develop and validate cybersecurity research tools, simulation frameworks, and automation scripts to support quantitative analysis of cyber-physical dynamics.

Requirements

  • Relevant PhD and 4 or more years of experience.
  • Or, relevant Master's Degree and 7 or more years of experience.
  • Or, relevant Bachelor's Degree and 9 or more years of experience.
  • Demonstrated in-depth knowledge of laws, regulations, principles, procedures and practices related to specific field.
  • Ability to use various computer software programs.
  • Or, relevant Master's Degree and 3 or more years of experience.
  • Or, relevant Bachelor's Degree and 5 or more years of experience.
  • General knowledge of other related disciplines.
  • Demonstrated experience in management of projects.
  • Additional Required Qualifications

Nice to have

  • Proven leadership in offensive cybersecurity research, including planning and executing complex experiments with strategic impact.
  • Deep expertise in cyber modeling and simulation for applied R&D, including digital twins, discrete-event simulation, and hardware-in-the-loop testbeds.
  • Advanced proficiency in Python, PowerShell, C/C++, or other languages, enabling automation, data-driven analysis, and modeling integration across projects.
  • Expert-level knowledge of ICS, OT, and energy sector systems, including protocols, architectures, and security considerations.
  • Established record of publications, technical reports, and funded proposals, with experience translating findings into actionable outcomes for sponsors.
  • Demonstrated experience conducting offensive cybersecurity research, including penetration testing, exploit development, threat emulation, or vulnerability analysis, with an applied understanding of defensive evaluation.
  • Working knowledge of cyber modeling and simulation approaches, including digital twins, discrete-event simulation, and hardware-in-the-loop testbeds for energy systems.
  • Proficiency in Python, PowerShell, C/C++, or other scripting/programming languages to support experiments, data analytics, and modeling workflows.

Compensation

  • In compliance with the Colorado Equal Pay for Equal Work Act, a potential new employee's salary history will not be used in compensation decisions.
  • $120,400 - $216,700
  • Job Profile: Researcher III / Annual
  • $100,400 - $180,700
  • NLR takes into consideration a candidate's education, training, and experience, expected quality and quantity of work, required travel (if any), external market and internal value, including seniority and merit systems, and internal pay alignment when determining the salary level for potential new employees.

Benefits

  • Benefits Summary
  • Some positions may be eligible for relocation expense reimbursement.
  • Limited-term positions are not eligible for long-term disability or tuition reimbursement.

Visa & Work Authorization

  • Must be able to obtain and maintain a DOE security clearance at the Q/TS/SCI level

This listing is sourced directly from Nrel's careers page and normalized into a canonical job model.