1

Contract Vulnerability Analyst Jobs in Boston, MA

Cybersecurity GRC Lead

Burlington, MA · Hybrid

$118.50K - $148.10K/yr

Oversee execution of recurring controls such as access reviews, vulnerability scans, and patch ... contract-to-hire, and direct hire placements, supporting roles across IT, data & analytics, cloud ...

Contract / Hourly (Part-Time or As-Needed Basis) Reports To: Head of M&A / Corporate Development ... Analyze provided documentation: network diagrams, risk assessments, audit reports, penetration test ...

Perform analysis on security collected data and test results. * Prepare and maintain compliance ... Perform and/or provide guidance and oversight on vulnerability assessments, defining, negotiating ...

Perform analysis on security collected data and test results. * Prepare and maintain compliance ... Perform and/or provide guidance and oversight on vulnerability assessments, defining, negotiating ...

Perform analysis on security collected data and test results. * Prepare and maintain compliance ... Perform and/or provide guidance and oversight on vulnerability assessments, defining, negotiating ...

Senior Systems Administrator/ Patch Manager

Smyrna, GA · Hybrid

$84.10K - $113.90K/yr

Vulnerability Remediation: * Analyze ACAS (Assured Compliance Assessment Solution/Nessus) scan ... contract management software. Compliance Reporting: * Generate weekly and monthly compliance ...

Deep knowledge of network security, cryptography, threat analysis, vulnerability assessment ... Varsity Tutors does not contract in: Alaska, California, Colorado, Delaware, Hawaii, Maine, New ...

next page

Showing results 1-20

Contract Vulnerability Analyst information

See Boston, MA salary details

$33.7K

$79.6K

$141.2K

How much do contract vulnerability analyst jobs pay per year?

As of May 28, 2026, the average yearly pay for contract vulnerability analyst in Boston, MA is $79,591.00, according to ZipRecruiter salary data. Most workers in this role earn between $57,000.00 and $94,500.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Contract Vulnerability Analyst, and why are they important?

To thrive as a Contract Vulnerability Analyst, you need a strong background in cybersecurity principles, vulnerability assessment methodologies, and relevant certifications such as CEH or CompTIA Security+. Familiarity with vulnerability scanning tools like Nessus, Qualys, or OpenVAS, as well as experience with common operating systems and network protocols, is typically required. Analytical thinking, attention to detail, and strong communication skills help analysts effectively identify, prioritize, and report vulnerabilities to stakeholders. These skills are crucial for ensuring organizational security and compliance while minimizing risk in dynamic contract-based environments.

What are some common challenges faced by Contract Vulnerability Analysts, and how can they overcome them?

Contract Vulnerability Analysts often face challenges such as rapidly changing threat landscapes and the need to quickly adapt to new security vulnerabilities in client environments. They must balance multiple client projects and prioritize tasks based on risk and impact. Success in this role requires strong communication skills to clearly explain technical findings to non-technical stakeholders and collaborate with both internal security teams and client IT departments. Building efficient workflows, staying updated with the latest security tools, and participating in regular training can help analysts stay ahead of threats and deliver impactful results.

What is a Contract Vulnerability Analyst?

A Contract Vulnerability Analyst is a cybersecurity professional who is hired on a contractual basis to identify, assess, and report security vulnerabilities within an organization's systems, networks, or applications. Their main role is to help companies find and address security weaknesses before attackers can exploit them. They often use various tools and methodologies to conduct vulnerability assessments, penetration testing, and security audits. Contract Vulnerability Analysts typically work for a set period or on a specific project, providing expert guidance to enhance the organization's security posture.

What is the difference between Contract Vulnerability Analyst vs Security Analyst?

AspectContract Vulnerability AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, CISA
Work EnvironmentContract-based, project-specific roles, often remote or on-siteFull-time, in-house or remote security teams within organizations
Industry UsageIT security firms, consulting companies, tech organizationsCorporate, government, financial institutions
Search & Comparison IntentFocus on vulnerability assessment, penetration testing, security gapsBroader security management, incident response, policy enforcement

The Contract Vulnerability Analyst primarily focuses on identifying and mitigating security vulnerabilities through assessments and testing, often working on a contractual basis. In contrast, a Security Analyst typically handles ongoing security monitoring, incident response, and policy implementation within an organization. While both roles require similar certifications and work in the cybersecurity field, their scope and employment structure differ significantly.

What are the most commonly searched types of Vulnerability Analyst jobs in Boston, MA? The most popular types of Vulnerability Analyst jobs in Boston, MA are:
What are popular job titles related to Contract Vulnerability Analyst jobs in Boston, MA? For Contract Vulnerability Analyst jobs in Boston, MA, the most frequently searched job titles are:
What job categories do people searching Contract Vulnerability Analyst jobs in Boston, MA look for? The top searched job categories for Contract Vulnerability Analyst jobs in Boston, MA are:
What cities near Boston, MA are hiring for Contract Vulnerability Analyst jobs? Cities near Boston, MA with the most Contract Vulnerability Analyst job openings:

Senior Associate, Incident Response - Forensics

Publicis Groupe Holdings B.V

Boston, MA • On-site

$120K/yr

Other

Posted 21 days ago


Job description

Company DescriptionPublicis Re:Sources is the backbone of Publicis Groupe, the world's most valuable agency group. We are the only full-service, end-to-end shared service organization in the industry, enabling Groupe agencies to do what they do best: innovate and transform for their clients. Formed in 1998 as a small team to service a few Publicis Groupe firms, Publicis Re:Sources has grown to 5,000+ employees in over 66 countries. We provide technology solutions and business services including finance, accounting, legal, benefits, procurement, tax, real estate, treasury and risk management. We continually transform to keep pace with our ever-changing communications industry and thrive on a spirit of innovation felt around the globe. Learn more about Publicis Re:Sources and the Publicis Groupe agencies we support at http://www.publicisresources.com/. 

The Publicis Re:Sources Guiding Principles define who we are and what we stand for. They reflect the mindset and behaviors that shape how we work, how we support one another, and how we drive progress together.

People First, Driving Success TogetherProblem Solving MindsetRespect Each OtherPartner and Collaborate as One TeamCommit to Quality and StandardsInnovate and Embrace the Future

Overview

The Senior Associate, Information Security - Forensics is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendors; is technically skilled and ensures incident containment, remediation, and closure. This individual will be expected to work closely with the legal, data privacy, business, and client teams. They should be comfortable with interacting with senior executives including C-level staff.

Responsibilities
  • Lead investigation of cyber security incidents of higher severity
  • Analyze compromised/potentially compromised systems
  • Coordinate evidence/data gathering and document security incident reports
  • Manage, review and present written and oral reports in a pertinent, concise, and accurate manner for distribution to management
  • Maintain security processes such as application security, vulnerability management and incident response
  • Maintain current knowledge of tools and best practices in advanced persistent threats, tools, techniques, procedures of attackers, forensics, and incident response
  • Perform complex forensic investigations into system breaches, data leaks, and system weaknesses
  • Provide technical expertise to staff on security incident monitoring, triage, response, threat & vulnerability management, and security analysis
  • Provide strategic direction on types of Incident Management activities that will drive efficiencies across company
Qualifications
  • 4 or more years of experience in an analytical role of either forensics analyst (Linux, Windows, or MacOS), threat analyst, incident response or security engineer/ consultant
  • Experience on forensic investigation tools such as: FTK, EnCase, Sleuthkit
  • Experience with cloud environment such as: Azure, AWS, GCP
  • Familiarity with the MITRE ATT&CK or related frameworks
  • Experience developing and managing incident response programs
  • Proficient in EDR - CrowdStrike and/or SentinelOne
  • Proficient in social engineering, phishing, and related fraud schemes.
  • Understanding of real-world exploits work, how offensive attackers laterally move between internal systems and to establish persistence
  • Strong general knowledge of security concepts and expertise in network and web application security issues
  • Experience with a scripting language such as Python, Bash, PowerShell, or other scripting language in an incident handling environment
Additional InformationAll your information will be kept confidential according to EEO guidelines. This job description in no way states or implies that these are the only duties to be performed by the employee(s) currently in this position. Employee(s) will be required to follow any other job related instructions and to perform any other job-related duties requested by any person authorized to give instructions or assignments. A review of this position has excluded the marginal functions of the position that are incidental to the performance of fundamental job duties. All duties and responsibilities are essential job functions and requirements and are subject to possible modification to reasonably accommodate individuals with disabilities. To perform this job successfully, the incumbent(s) will possess the skills, aptitudes, and abilities to perform each duty proficiently. Some requirements may exclude individuals who pose a direct threat or significant risk to the health or safety of themselves or others. The requirements listed in this document are the minimum levels of knowledge, skills, or abilities. This document does not create an employment contract, implied or otherwise, other than an ""at-will"" relations. Salary range: $100-120K/yr #LI-DS1Employment Type: OTHER