1

Contract Vulnerability Analyst Jobs (NOW HIRING)

iOS Vulnerability Engineer (Software)

Reston, VA ยท On-site

$145K/yr

Most contracts allow additional experience (4-5 years) in lieu of a Bachelor's Degree. Some ... Identify and analyze iOS vulnerabilities * Develop mitigation strategies for discovered issues

Showing results 41-60

Contract Vulnerability Analyst information

See salary details

$31K

$73.3K

$130K

How much do contract vulnerability analyst jobs pay per year?

As of Sep 6, 2026, the average yearly pay for contract vulnerability analyst in the United States is $73,261.00, according to ZipRecruiter salary data. Most workers in this role earn between $52,500.00 and $87,000.00 per year, depending on experience, location, and employer.

What is a contract vulnerability analyst?

A Contract Vulnerability Analyst is a cybersecurity professional who is hired on a contractual basis to identify, assess, and report security vulnerabilities within an organization's systems, networks, or applications. Their main role is to help companies find and address security weaknesses before attackers can exploit them. They often use various tools and methodologies to conduct vulnerability assessments, penetration testing, and security audits. Contract Vulnerability Analysts typically work for a set period or on a specific project, providing expert guidance to enhance the organization's security posture.

What are the key skills and qualifications needed to thrive as a contract vulnerability analyst, and why are they important?

To thrive as a Contract Vulnerability Analyst, you need a strong background in cybersecurity principles, vulnerability assessment methodologies, and relevant certifications such as CEH or CompTIA Security+. Familiarity with vulnerability scanning tools like Nessus, Qualys, or OpenVAS, as well as experience with common operating systems and network protocols, is typically required. Analytical thinking, attention to detail, and strong communication skills help analysts effectively identify, prioritize, and report vulnerabilities to stakeholders. These skills are crucial for ensuring organizational security and compliance while minimizing risk in dynamic contract-based environments.

What are some common challenges faced by contract vulnerability analysts, and how can they overcome them?

Contract Vulnerability Analysts often face challenges such as rapidly changing threat landscapes and the need to quickly adapt to new security vulnerabilities in client environments. They must balance multiple client projects and prioritize tasks based on risk and impact. Success in this role requires strong communication skills to clearly explain technical findings to non-technical stakeholders and collaborate with both internal security teams and client IT departments. Building efficient workflows, staying updated with the latest security tools, and participating in regular training can help analysts stay ahead of threats and deliver impactful results.

What is the difference between Contract Vulnerability Analyst vs Security Analyst?

AspectContract Vulnerability AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, CISA
Work EnvironmentContract-based, project-specific roles, often remote or on-siteFull-time, in-house or remote security teams within organizations
Industry UsageIT security firms, consulting companies, tech organizationsCorporate, government, financial institutions
Search & Comparison IntentFocus on vulnerability assessment, penetration testing, security gapsBroader security management, incident response, policy enforcement

The Contract Vulnerability Analyst primarily focuses on identifying and mitigating security vulnerabilities through assessments and testing, often working on a contractual basis. In contrast, a Security Analyst typically handles ongoing security monitoring, incident response, and policy implementation within an organization. While both roles require similar certifications and work in the cybersecurity field, their scope and employment structure differ significantly.

More about Contract Vulnerability Analyst jobs

What cities are hiring for Contract Vulnerability Analyst jobs?

Cities with the most Contract Vulnerability Analyst job openings:

What are the most commonly searched types of Vulnerability Analyst jobs?

The most popular types of Vulnerability Analyst jobs are:

What states have the most Contract Vulnerability Analyst jobs?

States with the most job openings for Contract Vulnerability Analyst jobs include:

Infographic showing various Contract Vulnerability Analyst job openings in the United States as of August 2026, with employment types broken down into 40% Full Time, and 60% Contract. Highlights an 100% In-person job distribution, with an average salary of $73,261 per year, or $35.2 per hour.

Technology Vulnerability Analyst (Junior - Senior)

Clear Ridge Defense

Fort George G Meade, MD โ€ข On-site

$85K - $190K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 2 days ago


Key responsibilities

  • Identify vulnerabilities and attacks related to physical, chemical, and electromagnetic characteristics of signals, equipment, and security mechanisms.

  • Compare attack techniques and develop operationally effective countermeasures.

  • Produce reports, briefings, and analysis of actual and potential attacks against specific technologies.


Job description

Clear Ridge Defense is seeking TS/SCI cleared professionals to serve as Technology Vulnerability Analysts in Fort Meade, MD.

Roles and Responsibilities

You will...

  • Identify vulnerabilities of/attacks to various physical, chemical, and electromagnetic characteristics /properties of signals, equipment, and security mechanisms.
  • Characterize attacks with respect to resources and capabilitiesย required to accomplish attacks.
  • Relate vulnerabilities and attacks to their effects on the operations and missions supported by those systems.
  • Compare and contrast signals and equipment attack techniques and develop operationally effective countermeasures.
  • Produce formal and informal reports, briefings, and analysis of actual and potential attacks against particular technologies.

Must-Haves

You possess...

  • Excellent interpersonal communication skills.
  • A Top Secret clearance with polygraph.
  • Years (2+) of relevant experience in vulnerability analysis, penetration testing, or computer forensics.
  • An ability to work in a fast-paced and dynamic workplace with unique TTPs.

Nice-To-Haves

  • Leadership experience.
  • Information Assurance Certification.

Additional Informationย 

Ranking #5 in Maryland and #7 in Government Services! And see how we were ranked a 2025 Top Workplace by the Baltimore Sun!

Clear Ridge Defense is the premier service solutions provider supporting the Service and Joint cyberspace operations and intelligence community in three core areas of expertise:ย 

  • Cyber Systems & Software Engineeringย 

  • Cyber Intelligence & Operations Planningย 

  • Security Risk Analysis, Mitigation & Trainingย 

All delivered by highly talented and focused team members that are supported by an unmatched professional and family-oriented culture that leverages and builds on sound, proven principles.

Benefits Snapshot:ย 

  • 100% Fully-Covered Health, Dental, and Vision Insuranceย 

  • 100% Fully-Covered Short-Term and Long-Term Disability Insuranceย 

  • 100% Fully-Covered Life and AD&D Insuranceย 

  • Unique Flexible PTOย 

  • 11 Paid Federal Holidaysย 

  • $500 New Uniform Bonus for Transitioning Militaryย 

  • Monthly Tax-Free Cell Phone Stipendย 

  • Monthly Tax-Free Gym Wellness / Streaming Subscription Stipend to include Amazon Prime, Netflix, Audible, etc.ย 

  • Competitive 401k Matching to plan for retirementย 

  • Free financial advising from qualified expertsย 

  • Annual $5,000 Training Allotmentย 

  • One-of-a-kind Referral Program:$250/mo indefinitely per successful referral, with no limit to number of referralsย 

  • Business Development and Client Expansion Bonusesย 

  • Monthly Company-Paid Socials and Eventsย 

  • Access to our Company Swag Store

CRD fully supports Maryland's Equal Pay for Equal Work - Wage Range Transparency law, which mandates employers to provide detailed wage and benefits information in all job postings. The salary range for this position is:

$85,000 - $190,000/ year

ย 
Salary ranges provided are subject to the following variables and circumstances, which may impact whether the actual paid salary falls within the range:

  • The contract the employee is assigned to support. For example, this advertised position may support multiple contracts.
  • The negotiated rates between CRD and our client.
  • The option year of the contract the employee is assigned to.
  • Annual performance of the employee and/or the company.
  • If the employee takes on additional company responsibilities.
  • If the company makes a strategic hiring decision (e.g., investment in the employee) for growth opportunities.
  • If the employee does not meet the qualifications fully but a waiver is provided by CRD or our clients.
  • If the employee is assigned a lower-level labor category due to external circumstances than they actually qualify for.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.ย