1

Contract Vulnerability Scanning Jobs (NOW HIRING)

Contract - Temp to Hire About Us Help us insure it. Tokio Marine HCC is a leading global specialty ... Conduct regular vulnerability scans using Qualys or similar platforms. * Analyze scan results ...

This position is contingent upon contract award *** Overview SOSi is seeking a Risk and ... This role is responsible for conducting vulnerability scanning and analysis, supporting remediation ...

Experience with container scanning, network device scanning, or cloud scanning * Knowledge of ... as well as contract-specific affordability and organizational requirements. The projected ...

S. Citizenship is required due to federal contract obligations, along with the ability to ... Responsibilities: * Oversee enterprise vulnerability scanning across infrastructure, web ...

next page

Showing results 1-20

Contract Vulnerability Scanning information

See salary details

$12

$17

$22

How much do contract vulnerability scanning jobs pay per hour?

As of Jul 27, 2026, the average hourly pay for contract vulnerability scanning in the United States is $17.25, according to ZipRecruiter salary data. Most workers in this role earn between $15.38 and $18.51 per hour, depending on experience, location, and employer.

What is contract vulnerability scanning?

Contract vulnerability scanning refers to the process of hiring third-party professionals or firms to assess and identify security weaknesses in an organization's systems, networks, or applications. The scanning is typically performed on a contractual basis, often as part of compliance requirements or routine security practices. These experts use automated tools and manual techniques to detect vulnerabilities that could be exploited by attackers, providing detailed reports and recommendations for remediation. This approach allows organizations to benefit from specialized expertise without maintaining a full-time, in-house vulnerability scanning team.

What are some common challenges faced by professionals in Contract Vulnerability Scanning roles?

Professionals in Contract Vulnerability Scanning often encounter challenges such as managing tight deadlines, adapting to varied client environments, and ensuring clear communication of technical findings to non-technical stakeholders. They must stay updated with the latest vulnerabilities and scanning tools, as threats and technologies evolve rapidly. Additionally, balancing thoroughness with efficiency is crucial, as clients expect comprehensive reports without significant delays. Collaboration with IT, security, and management teams is also key to ensure that identified vulnerabilities are properly addressed.

What is the difference between Contract Vulnerability Scanning vs Penetration Tester?

AspectContract Vulnerability ScanningPenetration Tester
Primary FocusAutomated identification of security vulnerabilities in systemsManual and automated testing to exploit vulnerabilities and assess security
Tools & TechniquesVulnerability scanners, automated toolsCustom scripts, penetration tools, manual testing
Work EnvironmentTypically performed remotely or on client sites, within security teamsOften on-site, conducting simulated attacks
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN

Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.

What are the key skills and qualifications needed to thrive as a Contract Vulnerability Scanning Specialist, and why are they important?

To thrive as a Contract Vulnerability Scanning Specialist, you need expertise in network security, vulnerability assessment methodologies, and a solid understanding of operating systems and protocols, often supported by certifications like CompTIA Security+ or CEH. Proficiency with vulnerability scanning tools such as Nessus, OpenVAS, or Qualys, and familiarity with ticketing and reporting systems are typically required. Attention to detail, analytical thinking, and clear communication are essential soft skills for identifying risks and conveying findings to non-technical stakeholders. These capabilities ensure the accurate detection of security weaknesses and effective risk mitigation for clients or organizations.
More about Contract Vulnerability Scanning jobs
What cities are hiring for Contract Vulnerability Scanning jobs? Cities with the most Contract Vulnerability Scanning job openings:
What are the most commonly searched types of Vulnerability Scanning jobs? The most popular types of Vulnerability Scanning jobs are:
What states have the most Contract Vulnerability Scanning jobs? States with the most job openings for Contract Vulnerability Scanning jobs include:
Infographic showing various Contract Vulnerability Scanning job openings in the United States as of July 2026, with employment types broken down into 57% Full Time, 22% Part Time, 1% Temporary, and 20% Contract. Highlights an 79% Physical, 2% Hybrid, and 19% Remote job distribution, with an average salary of $35,880 per year, or $17.2 per hour.
Vulnerability Manager (Contract)

Vulnerability Manager (Contract)

Tokio Marine HCC

Houston, TX • On-site

Full-time

Posted 18 days ago


Tokio Marine HCC rating

9.5

Company rating: 9.5 out of 10

Based on 5 frontline employees who took The Breakroom Quiz

8th of 299 rated insurance


Job description

Job Title: Vulnerability Manager
Location: Houston, TX (Hybrid 4:1)
Reports To: Director of Security Governance
Employment Type: Contract - Temp to Hire
About Us
Help us insure it. Tokio Marine HCC is a leading global specialty insurance group, backed by the strength and stability of the Tokio Marine Group. With more than 50 years of sustained growth and profitability, and offices across the United States, the United Kingdom, Europe, and other international locations, we offer more than 100 classes of specialty insurance-covering everything from the crops that feed us and the concerts that entertain us to rescuing travelers abroad.
Guided by our Mind Over Risk philosophy, we empower clients to pursue opportunities with confidence while fostering a culture rooted in innovation, collaboration, and trust. Always Advancing, we embrace an entrepreneurial spirit; as Experts in Tomorrow, we anticipate what's next; and by Reaching Out, we build genuine connections that enable our people and our business to thrive.
Role Overview
Lead the organization's vulnerability management program by identifying, assessing, prioritizing, and coordinating the remediation of security vulnerabilities across IT infrastructure, applications, and cloud environments. Improve the organization's security posture through continuous risk reduction.
Key Responsibilities
  • Develop and manage the enterprise vulnerability management lifecycle, including scanning, assessment, reporting, and remediation tracking.
  • Conduct regular vulnerability scans using Qualys or similar platforms.
  • Analyze scan results, validate findings, and work with IT and development teams to prioritize and remediate vulnerabilities.
  • Maintain an accurate inventory of assets and ensure proper coverage of vulnerability scanning tools.
  • Collaborate with threat intelligence and incident response teams to assess exploitability and risk context.
  • Track remediation efforts and provide regular status updates to leadership and stakeholders.
  • Develop and maintain metrics and dashboards to measure program effectiveness and risk reduction.
  • Stay current with emerging threats, vulnerabilities, and security advisories.
  • Support compliance and audit activities related to vulnerability management.
  • Provide guidance and training on secure configuration and patch management best practices.
What You Bring
Education
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field.
  • Relevant certifications preferred: CISSP, OSCP, CEH, CompTIA Security+, or similar.
Experience
  • 5+ years of experience in vulnerability management, security operations, or related cybersecurity roles.
  • Experience with vulnerability management tools (e.g., Qualys, Akamai).
  • Experience with ticketing systems (e.g., ServiceNow, Jira) and GRC platforms is a plus.
  • Scripting or automation experience (e.g., Python, PowerShell).
  • Experience with container and DevSecOps vulnerability management (e.g., Docker, Kubernetes, SCA tools).
Key Competencies
  • Strong knowledge of vulnerability scanning tools and techniques.
  • Familiarity with Windows, Linux, networking, AWS, Azure, and web application security.
  • Understanding of CVSS scoring, risk assessment methodologies, and remediation workflows.
  • Strong communication and collaboration skills.
  • Ability to manage multiple priorities in a fast-paced environment.
Equal Opportunity Employer
TMHCC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity, genetic information, marital status, medical condition, national origin, physical or mental disability, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations, and ordinances.
#LI-SD1

What Tokio Marine HCC employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom