1

Contract Vulnerability Scanning Jobs in Florida (NOW HIRING)

DevSecOps Engineer : 26-01649

Orlando, FL ยท On-site +1

$90 - $94/hr

... advanced) Contract Type: W2 Duration: 6+ months with possible extension Location: #LI-Remote ... You will be instrumental in automating security processes, from vulnerability scanning and patching ...

This position is contingent upon contract award. The Information Assurance Specialist ensures ... Conduct vulnerability scans on simulator systems * Perform independent security assessments of ...

... with vulnerability scanning tools! This position is 100% remote working eastern time zone business hours. This is starting out as a contract position running through January 2025 with strong ...

next page

Showing results 1-20

Contract Vulnerability Scanning information

What is contract vulnerability scanning?

Contract vulnerability scanning refers to the process of hiring third-party professionals or firms to assess and identify security weaknesses in an organization's systems, networks, or applications. The scanning is typically performed on a contractual basis, often as part of compliance requirements or routine security practices. These experts use automated tools and manual techniques to detect vulnerabilities that could be exploited by attackers, providing detailed reports and recommendations for remediation. This approach allows organizations to benefit from specialized expertise without maintaining a full-time, in-house vulnerability scanning team.

What are some common challenges faced by professionals in contract vulnerability scanning roles?

Professionals in Contract Vulnerability Scanning often encounter challenges such as managing tight deadlines, adapting to varied client environments, and ensuring clear communication of technical findings to non-technical stakeholders. They must stay updated with the latest vulnerabilities and scanning tools, as threats and technologies evolve rapidly. Additionally, balancing thoroughness with efficiency is crucial, as clients expect comprehensive reports without significant delays. Collaboration with IT, security, and management teams is also key to ensure that identified vulnerabilities are properly addressed.

What is the difference between Contract Vulnerability Scanning vs Penetration Tester?

AspectContract Vulnerability ScanningPenetration Tester
Primary FocusAutomated identification of security vulnerabilities in systemsManual and automated testing to exploit vulnerabilities and assess security
Tools & TechniquesVulnerability scanners, automated toolsCustom scripts, penetration tools, manual testing
Work EnvironmentTypically performed remotely or on client sites, within security teamsOften on-site, conducting simulated attacks
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN

Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.

What are the key skills and qualifications needed to thrive as a contract vulnerability scanning specialist, and why are they important?

To thrive as a Contract Vulnerability Scanning Specialist, you need expertise in network security, vulnerability assessment methodologies, and a solid understanding of operating systems and protocols, often supported by certifications like CompTIA Security+ or CEH. Proficiency with vulnerability scanning tools such as Nessus, OpenVAS, or Qualys, and familiarity with ticketing and reporting systems are typically required. Attention to detail, analytical thinking, and clear communication are essential soft skills for identifying risks and conveying findings to non-technical stakeholders. These capabilities ensure the accurate detection of security weaknesses and effective risk mitigation for clients or organizations.
What are the most commonly searched types of Vulnerability Scanning jobs in Florida? The most popular types of Vulnerability Scanning jobs in Florida are:
What are popular job titles related to Contract Vulnerability Scanning jobs in Florida? For Contract Vulnerability Scanning jobs in Florida, the most frequently searched job titles are:
What job categories do people searching Contract Vulnerability Scanning jobs in Florida look for? The top searched job categories for Contract Vulnerability Scanning jobs in Florida are:
What cities in Florida are hiring for Contract Vulnerability Scanning jobs? Cities in Florida with the most Contract Vulnerability Scanning job openings:

Physical Security System Administrator

EEC Solutions

Doral, FL โ€ข On-site

$100K - $115K/yr

Full-time

Re-posted 17 days ago


Job description

EEC Solutions is looking for a Physical Security System Administrator for an upcoming contract opportunity. Hubzone residents are invited to apply.

The Physical Security System Administrator serves as a Key Personnel position responsible for operating the LENEL access control system and performing system administrator functions for USSOUTHCOM's Electronic Security System (ESS) at HQ USSOUTHCOM in Doral, FL. This individual provides Tier 2 IT services in support of collateral and SCI physical security programs, performs daily monitoring and vulnerability scanning of the ESS network, and maintains continuous availability of all security systems. The position requires on-call availability and response to critical ESS failures after hours, on holidays, and weekends within two (2) hours. As Key Personnel, this individual is subject to government approval for any substitution.

Essential Duties and Responsibilities:
  • Operate LENEL system and perform all system administrator functions.
  • Provide IT Tier 2 services including technical troubleshooting, elevated issue investigation, and escalation to Tier 3 as needed.
  • Provide internal and external IPv4 primary and secondary DNS services for USSOUTHCOM Security ESS network.
  • Operate and maintain enterprise applications for network AAA, port authentication, enddevice compliance, device profiling, and policy compliance.
  • Configure and maintain all network equipment for log collection and retention; analyze and manage SIEM tools daily.
  • Manage, update, and troubleshoot SAN and other storage technology devices across ESS network.
  • Develop and maintain Backup Plan supporting filelevel and systemlevel recovery; complete Backup Testing Schedule.
  • Provide virtualization services for virtualized platforms and systems.
  • Provide Active Directory management services including DNS, DHCP, group policy, and certificates.
  • Apply OS patches, STIGs, and upgrades; configure and add new services as required.
  • Perform monthly vulnerability scans and recommend corrective action to the COR.
  • Provide daily monitoring, review, analysis, and evaluation of ESS processes and technology.
  • Develop written preventative maintenance plan within 30 days of award; update annually.
  • Develop and maintain system to track maintenance agreements with Lenel, VX Rail, Quest, Solar Winds, Microsoft, NETAPP, Thales, and other ESS components.
  • Respond to critical ESS failures after duty hours, on holidays, and weekends within two (2) hours.
  • Train users on equipment operation and generate/dispense user codes; retain documentation for one (1) year.
  • Integrate ESS hardware with ESS network infrastructure including switches, servers, fiber systems, and battery backup systems.
  • Minimun Qualifications:
  • Bachelor's degree in Information Technology, Computer Science, or related field preferred; equivalent DoD experience accepted.
  • Minimum five (5) years of specialized system administration experience in DoD or IC environments.
  • Demonstrated experience operating LENEL or equivalent access control systems in classified environments required.
  • CompTIA Security+ (SEC+) or equivalent (current); CCNA or equivalent (current); DoDM 8140.03 baseline IA/IT certification upon contract award.
  • Top Secret with SCI access required (TS/SCI); Tier 5 investigation completed within past five (5) years
  • NATO information access required. Must be eligible for access at time of proposal submission and maintain for life of contract.
  • Preferred Qualifications:
  • Lenel Certified Professional (LGECore, LGEAccess, LGEEnterprise) must obtain within 120 days of award if not already held.
  • Experience with ACAS/Nessus, HBSS vulnerability scanning tools.
  • SIEM administration experience.
  • Note: We are seeking resumes for a proposal opportunity. This position is contingent upon contract award. Candidates currently living in a HubZone designated area are encouraged to apply.