1

Contract Vulnerability Analyst Jobs in Riverside, CA

IT Security Engineer

Irvine, CA · On-site

$45 - $52.27/hr

Irvine, CA (onsite) Contract: 12+ Month Schedule: Monday-Friday 8:30am-5:30pm, In Office Korean ... Monitor and analyze security events, logs, and alerts using tools like Splunk or Sentinel to detect ...

Senior Software Engineer

Irvine, CA · On-site

$131K - $173K/yr

... contract Visa- USC/ GC HM Notes: Previous subs only had experience at the application layer/app ... Support cybersecurity risk analysis and threat modeling. * Perform OS‑level verification and ...

Contribute to vulnerability detection and remediation of technological offerings * Deploy developed ... analysis * Strong, professional communication skills that maintain under pressure These things are ...

... vulnerability management, and incident response. * Personally resolve complex technical issues ... Manage vendor relationships and IT spend including contract negotiations, software licensing ...

Contract Vulnerability Analyst information

See Riverside, CA salary details

$32.3K

$76.4K

$135.6K

How much do contract vulnerability analyst jobs pay per year?

As of Aug 4, 2026, the average yearly pay for contract vulnerability analyst in Riverside, CA is $76,431.00, according to ZipRecruiter salary data. Most workers in this role earn between $54,800.00 and $90,800.00 per year, depending on experience, location, and employer.

What are some common challenges faced by contract vulnerability analysts, and how can they overcome them?

Contract Vulnerability Analysts often face challenges such as rapidly changing threat landscapes and the need to quickly adapt to new security vulnerabilities in client environments. They must balance multiple client projects and prioritize tasks based on risk and impact. Success in this role requires strong communication skills to clearly explain technical findings to non-technical stakeholders and collaborate with both internal security teams and client IT departments. Building efficient workflows, staying updated with the latest security tools, and participating in regular training can help analysts stay ahead of threats and deliver impactful results.

What is a contract vulnerability analyst?

A Contract Vulnerability Analyst is a cybersecurity professional who is hired on a contractual basis to identify, assess, and report security vulnerabilities within an organization's systems, networks, or applications. Their main role is to help companies find and address security weaknesses before attackers can exploit them. They often use various tools and methodologies to conduct vulnerability assessments, penetration testing, and security audits. Contract Vulnerability Analysts typically work for a set period or on a specific project, providing expert guidance to enhance the organization's security posture.

What is the difference between Contract Vulnerability Analyst vs Security Analyst?

AspectContract Vulnerability AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, CISA
Work EnvironmentContract-based, project-specific roles, often remote or on-siteFull-time, in-house or remote security teams within organizations
Industry UsageIT security firms, consulting companies, tech organizationsCorporate, government, financial institutions
Search & Comparison IntentFocus on vulnerability assessment, penetration testing, security gapsBroader security management, incident response, policy enforcement

The Contract Vulnerability Analyst primarily focuses on identifying and mitigating security vulnerabilities through assessments and testing, often working on a contractual basis. In contrast, a Security Analyst typically handles ongoing security monitoring, incident response, and policy implementation within an organization. While both roles require similar certifications and work in the cybersecurity field, their scope and employment structure differ significantly.

What are the key skills and qualifications needed to thrive as a contract vulnerability analyst, and why are they important?

To thrive as a Contract Vulnerability Analyst, you need a strong background in cybersecurity principles, vulnerability assessment methodologies, and relevant certifications such as CEH or CompTIA Security+. Familiarity with vulnerability scanning tools like Nessus, Qualys, or OpenVAS, as well as experience with common operating systems and network protocols, is typically required. Analytical thinking, attention to detail, and strong communication skills help analysts effectively identify, prioritize, and report vulnerabilities to stakeholders. These skills are crucial for ensuring organizational security and compliance while minimizing risk in dynamic contract-based environments.
What are the most commonly searched types of Vulnerability Analyst jobs in Riverside, CA? The most popular types of Vulnerability Analyst jobs in Riverside, CA are:
What are popular job titles related to Contract Vulnerability Analyst jobs in Riverside, CA? For Contract Vulnerability Analyst jobs in Riverside, CA, the most frequently searched job titles are:
What cities near Riverside, CA are hiring for Contract Vulnerability Analyst jobs? Cities near Riverside, CA with the most Contract Vulnerability Analyst job openings:

Senior Security Architect- on-site

Stone Search

Santa Ana, CA

Contractor

Re-posted 17 days ago


Job description

Senior Security Architect
100% on-site in Santa Ana, CA
at least 18 month contract
M-F 8-5pm PST

 
Security, Compliance, and Audit Readiness
  • Enforce network security controls aligned with Criminal Justice Information Services (“CJIS”), National Institute of Standards and Technology (“NIST”), and department policy.
  • Implement and maintain firewall rulesets, Network Access Control (“NAC”) solutions (e.g., Cisco Identity Service Engine (“ISE”)), and endpoint access policies.
  • Support the cybersecurity team in incident detection, forensic analysis, and mitigation strategies.
  • Provide documentation and evidence for security audits and compliance reviews.
Implementation, Operations, and Support
  • Serve as the hands-on engineer for network deployment, upgrades, and incident response.
  • Configure and manage Cisco switches, routers, firewalls, WLCs, and wireless endpoints.
  • Design and manage VPNs, QoS, ACLs, network monitoring, and logging systems (SolarWinds, NetFlow, SNMP).
  • Strong technical and leadership experience in cybersecurity, with hands-on expertise in Incident Response, SIEM technologies, O365 Security Architecture and policy administration, and SIEM engineering.
SME Leadership and Staff Development
  • Serve as the department’s SME on enterprise security, guiding decisions across IT, public safety systems, and operations.
  • Train, coach, and mentor internal IT staff, including junior and mid-level network technicians.
  • Lead structured knowledge transfer sessions, hands-on training, and real-time coaching during support and implementation activities.
  • Create SOPs, how-to guides, and step-by-step documentation tailored for ongoing use by internal staff.
  • Support staff in preparation for certification paths (e.g., CCNA/CCNP) if desired.
 
Some core technologies the client is looking for:
  • Palo Alto Technologies (Deep technical knowledge, certification)
    Palo Alto Panorama
  • Palo Alto Cortex EDR
  • Palo Alto Cortex XSOAR
  • Palo Alto Prisma Cloud Service
  • Palo Alto NGFW
  • CyberArk
  • Cisco ISE
  • AWS, Azure
  • Azure Entra ID
  • ServiceNow
  • Tenable Vulnerability Management
  • Terraform
  • Microsoft O365