1

Contract Vulnerability Scanning Jobs in Michigan

Oversee and ensure that all contract requirements are met, the systems are maintained at required ... vulnerability scanning and benchmark testing for the USMC systems when required. * Administer ...

Oversee and ensure that all contract requirements are met, the systems are maintained at required ... vulnerability scanning and benchmark testing for the USMC systems when required. * Administer ...

Contract / Requirement: * 1-3 years of experience in IT Security, Cyber Security, Compliance, or a ... Experience performing risk assessments, vulnerability remediation, and compliance activities.

Building Technology Coordinator

Detroit, MI ยท Remote

$76K - $114K/yr

Review vulnerability reports from scanning tools (e.g., Qualys, Phosphorus.io); support risk ... Vendor & Contract Coordination * Serve as coordination point with managed services vendors for ...

next page

Showing results 1-20

Contract Vulnerability Scanning information

What is contract vulnerability scanning?

Contract vulnerability scanning refers to the process of hiring third-party professionals or firms to assess and identify security weaknesses in an organization's systems, networks, or applications. The scanning is typically performed on a contractual basis, often as part of compliance requirements or routine security practices. These experts use automated tools and manual techniques to detect vulnerabilities that could be exploited by attackers, providing detailed reports and recommendations for remediation. This approach allows organizations to benefit from specialized expertise without maintaining a full-time, in-house vulnerability scanning team.

What are some common challenges faced by professionals in contract vulnerability scanning roles?

Professionals in Contract Vulnerability Scanning often encounter challenges such as managing tight deadlines, adapting to varied client environments, and ensuring clear communication of technical findings to non-technical stakeholders. They must stay updated with the latest vulnerabilities and scanning tools, as threats and technologies evolve rapidly. Additionally, balancing thoroughness with efficiency is crucial, as clients expect comprehensive reports without significant delays. Collaboration with IT, security, and management teams is also key to ensure that identified vulnerabilities are properly addressed.

What are the key skills and qualifications needed to thrive as a contract vulnerability scanning specialist, and why are they important?

To thrive as a Contract Vulnerability Scanning Specialist, you need expertise in network security, vulnerability assessment methodologies, and a solid understanding of operating systems and protocols, often supported by certifications like CompTIA Security+ or CEH. Proficiency with vulnerability scanning tools such as Nessus, OpenVAS, or Qualys, and familiarity with ticketing and reporting systems are typically required. Attention to detail, analytical thinking, and clear communication are essential soft skills for identifying risks and conveying findings to non-technical stakeholders. These capabilities ensure the accurate detection of security weaknesses and effective risk mitigation for clients or organizations.

What is the difference between Contract Vulnerability Scanning vs Penetration Tester?

AspectContract Vulnerability ScanningPenetration Tester
Primary FocusAutomated identification of security vulnerabilities in systemsManual and automated testing to exploit vulnerabilities and assess security
Tools & TechniquesVulnerability scanners, automated toolsCustom scripts, penetration tools, manual testing
Work EnvironmentTypically performed remotely or on client sites, within security teamsOften on-site, conducting simulated attacks
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN

Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.

What are the most commonly searched types of Vulnerability Scanning jobs in Michigan?

The most popular types of Vulnerability Scanning jobs in Michigan are:

What are popular job titles related to Contract Vulnerability Scanning jobs in Michigan?

For Contract Vulnerability Scanning jobs in Michigan, the most frequently searched job titles are:

What job categories do people searching Contract Vulnerability Scanning jobs in Michigan look for?

The top searched job categories for Contract Vulnerability Scanning jobs in Michigan are:

What cities in Michigan are hiring for Contract Vulnerability Scanning jobs?

Cities in Michigan with the most Contract Vulnerability Scanning job openings:

Patch Engineer (Operational Technology / OT)

Judge Group, Inc.

Detroit, MI โ€ข On-site

$48 - $52/hr

Other

Posted 11 days ago


Job description

Location: Detroit, MI Salary: $48.00 USD Hourly - $52.00 USD Hourly Description:
Patch Engineer (Operational Technology / OT)
Location: Detroit, MI (Hybrid)
Work Schedule: Tuesday, Wednesday, Thursday onsite | Monday and Friday remote
Employment Type: Long-Term Contract (2+ Years)
Visa Sponsorship: Not available. Candidates requiring OPT, CPT, or F-1 sponsorship are not eligible.
About the Role
We are seeking an experienced Patch Engineer to support patch management and cybersecurity initiatives across an Operational Technology (OT) environment. This role is responsible for planning, coordinating, deploying, and validating security and system patches across OT infrastructure, including industrial control systems, SCADA environments, PI infrastructure, servers, and workstations.
The ideal candidate will have a strong background in OT cybersecurity, vulnerability management, and industrial control systems, with the ability to balance cybersecurity requirements while maintaining operational reliability and system availability.
Responsibilities
  • Plan, coordinate, and execute patch management activities across OT environments.
  • Collaborate with engineering, operations, cybersecurity, IT teams, site leadership, and vendors to schedule patch deployments.
  • Communicate maintenance windows, patching plans, potential risks, and deployment requirements to stakeholders.
  • Obtain necessary approvals and ensure compliance with change management procedures.
  • Evaluate security updates, operating system patches, and vendor-recommended fixes for applicability and risk.
  • Conduct vulnerability assessments and patch compliance reviews to identify remediation requirements.
  • Deploy approved patches to OT servers, workstations, control systems, and supporting infrastructure.
  • Place systems into maintenance mode when required and follow established operational procedures.
  • Perform post-deployment validation to verify system functionality and operational readiness.
  • Execute vulnerability scans following patch deployment to confirm successful remediation.
  • Maintain accurate patch management records, deployment documentation, and compliance artifacts.
  • Support antivirus updates, system upgrades, and related OT cybersecurity initiatives.
  • Assist with backup, recovery, and rollback processes associated with patching activities.
  • Coordinate activities during planned outages and maintenance windows.
  • Support audit readiness and regulatory compliance documentation requirements.
Required Qualifications
  • Bachelor's degree in Computer Science, Cybersecurity, Computer Engineering, Information Technology, or a related technical discipline.
  • 5+ years of experience supporting Operational Technology (OT), Industrial Control Systems (ICS), or critical infrastructure environments.
  • Strong knowledge of SCADA systems, Distributed Control Systems (DCS), and PI infrastructure.
  • Hands-on experience with patch management processes and deployment tools.
  • Experience conducting vulnerability assessments and managing remediation efforts.
  • Knowledge of cybersecurity best practices and vulnerability management principles.
  • Experience working within structured change management environments.
  • Proven ability to assess, deploy, test, and validate patches in production systems.
  • Strong documentation, communication, and stakeholder management skills.
  • Ability to collaborate effectively with cross-functional technical and operational teams.
Preferred Qualifications
  • Experience supporting utility, energy, power generation, manufacturing, or other critical infrastructure organizations.
  • Knowledge of NERC CIP compliance requirements.
  • Experience with vulnerability scanning tools and remediation programs.
  • Strong understanding of Windows Server and Windows workstation environments.
  • Experience supporting PI infrastructure and OT cybersecurity programs.
  • Familiarity with backup, disaster recovery, and system rollback procedures.
Key Skills
  • Patch Management
  • Operational Technology (OT)
  • Industrial Control Systems (ICS)
  • SCADA
  • Distributed Control Systems (DCS)
  • PI System Administration
  • Vulnerability Management
  • Cybersecurity
  • NERC CIP
  • Windows Server
  • Change Management
  • Compliance & Audit Readiness
  • Infrastructure Support
  • Risk Assessment
Success Measures
  • Patches deployed within established compliance windows.
  • Minimal operational impact during maintenance activities.
  • Successful post-patch system validation and testing.
  • Complete and accurate documentation of all patching activities.
  • Adherence to cybersecurity and change management requirements.
  • Audit-ready compliance and patch management records.
Ideal Candidate
The ideal candidate is an OT Infrastructure Engineer, OT Cybersecurity Engineer, ICS Engineer, SCADA Engineer, or Control Systems Engineer with hands-on experience managing patching activities across industrial environments. This individual understands how to balance cybersecurity mandates with operational uptime, leveraging structured testing, approvals, maintenance windows, validation, and rollback procedures to ensure successful deployments in critical production environments.
By providing your phone number, you consent to: (1) receive automated text messages and calls from the Judge Group, Inc. and its affiliates (collectively "Judge") to such phone number regarding job opportunities, your job application, and for other related purposes. Message & data rates apply and message frequency may vary. Consistent with Judge's Privacy Policy, information obtained from your consent will not be shared with third parties for marketing/promotional purposes. Reply STOP to opt out of receiving telephone calls and text messages from Judge and HELP for help.
Contact:
This job and many more are available through The Judge Group. Please apply with us today!