1

Contract Vulnerability Analyst Jobs (NOW HIRING)

Vulnerability Analyst

Boston, MA ยท Remote

$50 - $55/hr

The start date is ASAP for this 6 month contract-to-hire position. Job Title: Vulnerability Analyst Location-Type: Remote Start Date Is: ASAP Duration: 6-month contract-to-hire Compensation Range ...

Contract Position: Full Time, 40 hour work week Period of Performance: 1 Year Scope: This is an opportunity for a Vulnerability Analyst within the Cyber Security Program Office (CSPO). The ...

Contract Position: Full Time, 40 hour work week Period of Performance: 1 Year Scope This is an opportunity for a Vulnerability Analyst within the Cyber Security Program Office (CSPO). The ...

Contract Location: Purchase, New York Pay Rate: $0 A Vulnerability Analyst II with a data focus is responsible for improving the quality, consistency, and usability of vulnerability management data ...

Responsibilities This Cybersecurity Vulnerability Analyst supports a Vulnerability Disclosure ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Vulnerability Analyst, Senior

Herndon, VA ยท On-site

$104K - $166K/yr

Vulnerability Analyst, Senior Job Locations US-VA-Herndon Requisition ID 2026-165332 Position ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Responsibilities We are seeking a highly skilled and innovative Vulnerability Analyst, Journeyman ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Vulnerability Analyst, Senior

Herndon, VA ยท On-site

$104K - $166K/yr

Oversee analysis of vulnerability outputs (ACAS, Forescout, STIG findings, etc.) to adjudicate risk ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Risk and Vulnerability Analyst

Chandler, AZ ยท On-site

$80K - $128K/yr

The Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by identifying ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Risk and Vulnerability Analyst

Chandler, AZ ยท On-site

$80K - $128K/yr

The Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by identifying ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Risk and Vulnerability Analyst

Washington, DC ยท On-site

$80K - $128K/yr

The Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by identifying ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Oversee analysis of vulnerability outputs (ACAS, Forescout, STIG findings, etc.) to adjudicate risk ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Responsibilities We are seeking a highly skilled and innovative Vulnerability Analyst, Journeyman ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Oversee analysis of vulnerability outputs (ACAS, Forescout, STIG findings, etc.) to adjudicate risk ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Risk and Vulnerability Analyst

Washington, DC ยท On-site

$80K - $128K/yr

The Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by identifying ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

next page

Showing results 1-20

Contract Vulnerability Analyst information

See salary details

$31K

$73.3K

$130K

How much do contract vulnerability analyst jobs pay per year?

As of May 28, 2026, the average yearly pay for contract vulnerability analyst in the United States is $73,261.00, according to ZipRecruiter salary data. Most workers in this role earn between $52,500.00 and $87,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Contract Vulnerability Analyst, and why are they important?

To thrive as a Contract Vulnerability Analyst, you need a strong background in cybersecurity principles, vulnerability assessment methodologies, and relevant certifications such as CEH or CompTIA Security+. Familiarity with vulnerability scanning tools like Nessus, Qualys, or OpenVAS, as well as experience with common operating systems and network protocols, is typically required. Analytical thinking, attention to detail, and strong communication skills help analysts effectively identify, prioritize, and report vulnerabilities to stakeholders. These skills are crucial for ensuring organizational security and compliance while minimizing risk in dynamic contract-based environments.

What are some common challenges faced by Contract Vulnerability Analysts, and how can they overcome them?

Contract Vulnerability Analysts often face challenges such as rapidly changing threat landscapes and the need to quickly adapt to new security vulnerabilities in client environments. They must balance multiple client projects and prioritize tasks based on risk and impact. Success in this role requires strong communication skills to clearly explain technical findings to non-technical stakeholders and collaborate with both internal security teams and client IT departments. Building efficient workflows, staying updated with the latest security tools, and participating in regular training can help analysts stay ahead of threats and deliver impactful results.

What is a Contract Vulnerability Analyst?

A Contract Vulnerability Analyst is a cybersecurity professional who is hired on a contractual basis to identify, assess, and report security vulnerabilities within an organization's systems, networks, or applications. Their main role is to help companies find and address security weaknesses before attackers can exploit them. They often use various tools and methodologies to conduct vulnerability assessments, penetration testing, and security audits. Contract Vulnerability Analysts typically work for a set period or on a specific project, providing expert guidance to enhance the organization's security posture.

What is the difference between Contract Vulnerability Analyst vs Security Analyst?

AspectContract Vulnerability AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, CISA
Work EnvironmentContract-based, project-specific roles, often remote or on-siteFull-time, in-house or remote security teams within organizations
Industry UsageIT security firms, consulting companies, tech organizationsCorporate, government, financial institutions
Search & Comparison IntentFocus on vulnerability assessment, penetration testing, security gapsBroader security management, incident response, policy enforcement

The Contract Vulnerability Analyst primarily focuses on identifying and mitigating security vulnerabilities through assessments and testing, often working on a contractual basis. In contrast, a Security Analyst typically handles ongoing security monitoring, incident response, and policy implementation within an organization. While both roles require similar certifications and work in the cybersecurity field, their scope and employment structure differ significantly.

More about Contract Vulnerability Analyst jobs
What cities are hiring for Contract Vulnerability Analyst jobs? Cities with the most Contract Vulnerability Analyst job openings:
What are the most commonly searched types of Vulnerability Analyst jobs? The most popular types of Vulnerability Analyst jobs are:
What states have the most Contract Vulnerability Analyst jobs? States with the most job openings for Contract Vulnerability Analyst jobs include:
What job categories do people searching Contract Vulnerability Analyst jobs look for? The top searched job categories for Contract Vulnerability Analyst jobs are:
Infographic showing various Contract Vulnerability Analyst job openings in the United States as of May 2026, with employment types broken down into 31% Full Time, 46% Part Time, 15% Contract, and 8% Nights. Highlights an 47% Physical, and 53% Remote job distribution, with an average salary of $73,261 per year, or $35.2 per hour.
Vulnerability Analyst

Vulnerability Analyst

Mondo

Boston, MA โ€ข Remote

$50 - $55/hr

Contractor

Medical, Dental, Vision, Retirement

This job post hasย expired today.ย Applications are no longer accepted.


Job description

Apply now: Vulnerability Analyst, location is Remote. The start date is ASAP for this 6 month contract-to-hire position.

Job Title: Vulnerability Analyst
Location-Type: Remote
Start Date Is: ASAP
Duration: 6-month contract-to-hire
Compensation Range: $50-$55/hour W2
Benefits: Eligible for Health, Dental, Vision, 401K
Must be authorized to work in the U.S. This position is not eligible for sponsorship .

Job Description:
Support vulnerability management and production operations by identifying, tracking, and reporting security risks while ensuring compliance within regulated environments.

Day-to-Day Responsibilities:

  • Pull vulnerability data from tools (e.g., Wiz, scans, databases)
  • Normalize, clean, and reconcile data across multiple sources
  • Identify high-priority risks vs. noise across large datasets
  • Build, maintain, and track POA&Ms (Plans of Action & Milestones)
  • Assign ownership and monitor remediation progress with application teams
  • Document exceptions, deviations, and compliance artifacts
  • Produce risk summaries and reports for stakeholders
  • Monitor production alerts and incidents (e.g., PagerDuty)
  • Ensure resolution and document root cause analyses (RCAs)
  • Identify opportunities to reduce alert noise and improve automation

Requirements:

  • Must-Haves:
    • Strong experience in vulnerability management (identification, tracking, prioritization)
    • Hands-on experience with Wiz (vulnerability scanning tool)
    • Experience creating and managing POA&Ms
    • Experience with FedRAMP or regulated environments
    • Ability to reconcile and normalize data from multiple tools/sources
    • Experience managing large volumes of vulnerabilities (hundreds to thousands)
    • Strong cross-functional collaboration with engineering/application teams
    • Excellent documentation and reporting skills
    • Must have a Bachelor's Degree
  • Nice-to-Haves:
    • AWS cloud and cloud security experience
    • Experience with continuous monitoring (ConMon) programs
    • Familiarity with automation of security or reporting processes
    • Experience improving alerting systems and reducing operational noise