Springfield, IL / Boston, MA / NYC, NY (Hybrid) Employment Type: Long term contract - The Mobile ... Validate remediation effectiveness using scanner re-runs, policy compliance, and audit evidence.
Springfield, IL / Boston, MA / NYC, NY (Hybrid) Employment Type: Long term contract - The Mobile ... Validate remediation effectiveness using scanner re-runs, policy compliance, and audit evidence.
W2 Contract || Vulnerability Management || Somerset, NJ || (Day-1-Oniste)
Somerset, NJ ยท On-site
$40 - $50/hr
Vulnerability Management Location: Somerset, NJ (Onsite) Look for profiles with vulnerability ... This role combines hands-on scanning, threat-informed prioritization, and cross-functional ...
Quick apply
W2 Contract || Vulnerability Management || Somerset, NJ || (Day-1-Oniste)
Somerset, NJ ยท On-site
$40 - $50/hr
Vulnerability Management Location: Somerset, NJ (Onsite) Look for profiles with vulnerability ... This role combines hands-on scanning, threat-informed prioritization, and cross-functional ...
Senior Scrum Master / Project manager
Piscataway, NJ ยท On-site
$55.75 - $74/hr
W2 contract Role Summary We are looking for Scrum Master/ Project Manager in NJ. Ideal candidate ... vulnerability scanning tools experience along with risk reviews and mitigation planning. Ensure ...
Quick apply
Senior Scrum Master / Project manager
Piscataway, NJ ยท On-site
$55.75 - $74/hr
W2 contract Role Summary We are looking for Scrum Master/ Project Manager in NJ. Ideal candidate ... vulnerability scanning tools experience along with risk reviews and mitigation planning. Ensure ...
Contract Job Overview: Requirement/Must Have: * 10+ years of experience. * Deep hands-on RHEL ... vulnerability scanning and secrets management. * Coordinate across teams including Security ...
Contract Job Overview: Requirement/Must Have: * 10+ years of experience. * Deep hands-on RHEL ... vulnerability scanning and secrets management. * Coordinate across teams including Security ...
Application Security Engineer/Brooklyn, NY , 6+ months contract
Brooklyn, NY ยท On-site
$63.75 - $85.25/hr
Suncap Technology is seeking an Application Security Engineer for a contract position in Brooklyn ... vulnerability scanning and penetration testing โข Work alongside developers to write and ...
Application Security Engineer/Brooklyn, NY , 6+ months contract
Brooklyn, NY ยท On-site
$63.75 - $85.25/hr
Suncap Technology is seeking an Application Security Engineer for a contract position in Brooklyn ... vulnerability scanning and penetration testing โข Work alongside developers to write and ...
Application Security Engineer/Brooklyn, NY , 6+ months contract
Brooklyn, NY ยท On-site
$63.75 - $85.25/hr
Suncap Technology is seeking an Application Security Engineer for a contract position. The role ... vulnerability scanning and penetration testing โข Work alongside developers to write and ...
Application Security Engineer/Brooklyn, NY , 6+ months contract
Brooklyn, NY ยท On-site
$63.75 - $85.25/hr
Suncap Technology is seeking an Application Security Engineer for a contract position. The role ... vulnerability scanning and penetration testing โข Work alongside developers to write and ...
Security Engineer
Jersey City, NJ ยท On-site
... Contract Staffing (Staff Augmentation) Permanent Placement (Staff Augmentation) ICAP (Contractor ... Security Engineer Mandatory Skills - Experience using various vulnerability scanning toolsets ...
Security Engineer
Jersey City, NJ ยท On-site
... Contract Staffing (Staff Augmentation) Permanent Placement (Staff Augmentation) ICAP (Contractor ... Security Engineer Mandatory Skills - Experience using various vulnerability scanning toolsets ...
Security Engineer
Jersey City, NJ ยท On-site
Contract Staffing (Staff Augmentation) Permanent Placement (Staff Augmentation) ICAP (Contractor ... Qualifications Security Engineer Mandatory Skills - Experience using various vulnerability scanning ...
Security Engineer
Jersey City, NJ ยท On-site
Contract Staffing (Staff Augmentation) Permanent Placement (Staff Augmentation) ICAP (Contractor ... Qualifications Security Engineer Mandatory Skills - Experience using various vulnerability scanning ...
Contract Mode of interview : WebEx / Teams Experience Required: 8 10 Years Platforms: Windows ... Analyze vulnerability scan outputs and translate them into actionable patching activities
Contract Mode of interview : WebEx / Teams Experience Required: 8 10 Years Platforms: Windows ... Analyze vulnerability scan outputs and translate them into actionable patching activities
Contract Rate: 60-65$/Hr. Role Summary The Senior Project Manager will lead and manage large-scale ... Analyze vulnerability scan reports and dashboards from tools such as Qualys, Tenable, Rapid7 ...
Quick apply
Contract Rate: 60-65$/Hr. Role Summary The Senior Project Manager will lead and manage large-scale ... Analyze vulnerability scan reports and dashboards from tools such as Qualys, Tenable, Rapid7 ...
W2 contract. Experience level: 9-12 Years Role Summary We are looking for a Senior Developer with ... Exposure to Security vulnerability scanning tools - SNYK, CrowdStrike, SonarQube, Etc.
Quick apply
W2 contract. Experience level: 9-12 Years Role Summary We are looking for a Senior Developer with ... Exposure to Security vulnerability scanning tools - SNYK, CrowdStrike, SonarQube, Etc.
Hiring: Senior Java Fullstack Developer (Angular/Python / AWS/ DevOps) at Piscataway, NJ
Piscataway, NJ ยท On-site
$53.50 - $69/hr
Piscataway, NJ (Need Onsite day 1, hybrid 3 days from office) Duration: Long-Term Contract We are ... Exposure to Security vulnerability scanning tools - SNYK, CrowdStrike, SonarQube, Etc.
Quick apply
Hiring: Senior Java Fullstack Developer (Angular/Python / AWS/ DevOps) at Piscataway, NJ
Piscataway, NJ ยท On-site
$53.50 - $69/hr
Piscataway, NJ (Need Onsite day 1, hybrid 3 days from office) Duration: Long-Term Contract We are ... Exposure to Security vulnerability scanning tools - SNYK, CrowdStrike, SonarQube, Etc.
Contract - expected 6-12 months or longer Industry: Defense Compensation: $45 - $60 / hour Schedule ... Vulnerability Scanning and Remediation - As part of the Continuous Monitoring (ConMon) process ...
Quick apply
Contract - expected 6-12 months or longer Industry: Defense Compensation: $45 - $60 / hour Schedule ... Vulnerability Scanning and Remediation - As part of the Continuous Monitoring (ConMon) process ...
Jersey City, NJ Duration: 6 Months Contract-to-Hire Position Overview: We are seeking an ... vulnerability scanning. We're looking for a hands-on practitioner with 5-6 years of consistent ...
Quick apply
Jersey City, NJ Duration: 6 Months Contract-to-Hire Position Overview: We are seeking an ... vulnerability scanning. We're looking for a hands-on practitioner with 5-6 years of consistent ...
IT Security Analyst
New York, NY ยท On-site
Role: IT Security Analyst Duration: 12 Months Contract Location: New York City, NY (On-site with ... Review and verify results from vendor-provided security tests (e.g., vulnerability scans). Must ...
Quick apply
IT Security Analyst
New York, NY ยท On-site
Role: IT Security Analyst Duration: 12 Months Contract Location: New York City, NY (On-site with ... Review and verify results from vendor-provided security tests (e.g., vulnerability scans). Must ...
Experience with ACAS, Nessus, and/or other vulnerability scanners * In-depth knowledge of TCP/IP ... and contract considerations. Depending on the position, employees may be eligible for overtime ...
Experience with ACAS, Nessus, and/or other vulnerability scanners * In-depth knowledge of TCP/IP ... and contract considerations. Depending on the position, employees may be eligible for overtime ...
Information Assurance and Security, Lead Associate
Basking Ridge, NJ ยท On-site
$125 - $150/hr
Experience with ACAS, Nessus, and/or other vulnerability scanners * In-depth knowledge of TCP/IP ... and contract considerations. Depending on the position, employees may be eligible for overtime ...
Information Assurance and Security, Lead Associate
Basking Ridge, NJ ยท On-site
$125 - $150/hr
Experience with ACAS, Nessus, and/or other vulnerability scanners * In-depth knowledge of TCP/IP ... and contract considerations. Depending on the position, employees may be eligible for overtime ...
Experience with ACAS, Nessus, and/or other vulnerability scanners * In-depth knowledge of TCP/IP ... and contract considerations. Depending on the position, employees may be eligible for overtime ...
Experience with ACAS, Nessus, and/or other vulnerability scanners * In-depth knowledge of TCP/IP ... and contract considerations. Depending on the position, employees may be eligible for overtime ...
Experience with ACAS, Nessus, and/or other vulnerability scanners * In-depth knowledge of TCP/IP ... and contract considerations. Depending on the position, employees may be eligible for overtime ...
Experience with ACAS, Nessus, and/or other vulnerability scanners * In-depth knowledge of TCP/IP ... and contract considerations. Depending on the position, employees may be eligible for overtime ...
Network Security Architect
Manhattan, NY ยท On-site
New York City, NY (Hybrid) Duration: Long Term Contract Responsibilities: Security Architecture ... Plan and oversee regular vulnerability scanning, penetration testing, and ethical hacking exercises.
Network Security Architect
Manhattan, NY ยท On-site
New York City, NY (Hybrid) Duration: Long Term Contract Responsibilities: Security Architecture ... Plan and oversee regular vulnerability scanning, penetration testing, and ethical hacking exercises.
Contract Vulnerability Scanning information
What is contract vulnerability scanning?
What are some common challenges faced by professionals in contract vulnerability scanning roles?
What are the key skills and qualifications needed to thrive as a contract vulnerability scanning specialist, and why are they important?
What is the difference between Contract Vulnerability Scanning vs Penetration Tester?
| Aspect | Contract Vulnerability Scanning | Penetration Tester |
|---|---|---|
| Primary Focus | Automated identification of security vulnerabilities in systems | Manual and automated testing to exploit vulnerabilities and assess security |
| Tools & Techniques | Vulnerability scanners, automated tools | Custom scripts, penetration tools, manual testing |
| Work Environment | Typically performed remotely or on client sites, within security teams | Often on-site, conducting simulated attacks |
| Certifications | CompTIA Security+, CISSP, CEH | OSCP, CEH, GPEN |
Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.
What are the most commonly searched types of Vulnerability Scanning jobs in New York?
The most popular types of Vulnerability Scanning jobs in New York are:
What are popular job titles related to Contract Vulnerability Scanning jobs in New York?
For Contract Vulnerability Scanning jobs in New York, the most frequently searched job titles are:
What job categories do people searching Contract Vulnerability Scanning jobs in New York look for?
The top searched job categories for Contract Vulnerability Scanning jobs in New York are:
What cities in New York are hiring for Contract Vulnerability Scanning jobs?
Cities in New York with the most Contract Vulnerability Scanning job openings:

Mobile Device Vulnerability Management & Configuration Compliance Engineer
Manhattan, NY โข On-site
Other
Posted 20 days ago
Job description
Location: Springfield, IL / Boston, MA / NYC, NY (Hybrid)
Employment Type: Long term contract
Job Description:-
The Mobile Device Vulnerability Management & Configuration Compliance Engineer will partner with internal stakeholders to design, validate, and operationalize an automated mobile device vulnerability scanning and configuration compliance capability across enterprise-issued mobile endpoints (iOS/iPadOS and Android). This role leads proof-of-technology (PoT) activities including tool evaluation, architecture validation, security controls mapping, and pilot execution, and drives full-scale implementation through integration with other security tools such as MDM, SIEM/SOAR, ITSM, and asset inventory/CMDB systems.
The engineer will establish and maintain mobile vulnerability management processes aligned to corporate and regulatory requirements, develop continuous compliance and policy enforcement strategies, implement risk-based remediation workflows, and deliver measurable improvements in mobile endpoint security posture.
Key Responsibilities
Define PoT scope, success criteria, and test plans for automated mobile vulnerability scanning (e.g., agent-based/agentless, MDM-integrated, API-driven).
Evaluate candidate tools for: coverage (OS/app/cert/profile), detection accuracy, scalability, device impact, privacy controls, and reporting fidelity.
Execute pilots across representative device populations validating:
vulnerability detection capabilities (OS versions, CVEs, patch levels, risky apps)
configuration compliance checks (encryption, jailbreak/root, screen lock, OS hardening)
integration readiness (Intune/Workspace ONE/Jamf; SIEM; ITSM; CMDB)
Produce PoT outcomes: findings, risk analysis, cost/benefit, architecture decision record, and go/no-go recommendation.
Coordinate with InfoSec and Compliance teams to ensure SaaS platform posture aligns with regulatory requirements (NYDFS).
Build and run mobile vulnerability lifecycle processes: discovery, assessment, prioritization, remediation, validation, reporting.
Establish severity/risk scoring tuned for mobile (exposure, device role, app risk, compliance impact).
Coordinate remediation with endpoint engineering, mobility admins, app owners, and operations teams.
Validate remediation effectiveness using scanner re-runs, policy compliance, and audit evidence.
Develop, deploy, and continuously improve baseline security configurations for iOS/iPadOS and Android.
Translate requirements into enforceable policies (password/biometrics, encryption, OS update controls, app controls, certificate/profile constraints, VPN/Wi-Fi security, logging settings).
Implement compliance monitoring and drift detection; drive automated or semi-automated corrective actions.
Build automation scripts and APIs to normalize and enrich findings.
Support change management and communications for new controls impacting device behavior and user experience.
Provide technical guidance and training to operations teams for ongoing support.
Required Skills
Mobile OS security fundamentals: iOS/iPadOS and Android security models, patching, permissions, app ecosystems, jailbreak/root detection concepts.
Vulnerability management expertise: CVE/patch lifecycle, risk-based prioritization, SLAs, validation, metrics.
Configuration compliance: baseline hardening, policy enforcement, continuous compliance monitoring, and drift remediation.
Mobility Scanning Tool Experience (hands-on): Qualys Mobile VMDR, Lookout, Workspace One + Microsoft Threat Defense, or equivalent.
MDM experience (hands-on): Microsoft Intune, Omnissa Workspace ONE, Jamf Pro, or equivalent.
Enterprise integration skills: API integration, data normalization, and automation with SIEM/SOAR/ITSM (e.g., Splunk, Sentinel, QRadar; XSOAR, Sentinel SOAR; ServiceNow).
Identity & access: conditional access concepts, device compliance states, SSO, certificates, MFA, posture-based access controls.
Scripting/automation: PowerShell and/or Python; familiarity with REST APIs, JSON, OAuth, and secrets management.
Security documentation: ability to author PoT plans, architecture diagrams, operational runbooks, and audit evidence.
Excellent documentation and stakeholder management skills.
Strong analytical and problem-solving skills.
Excellent communication and stakeholder management skills; experience presenting PoT results and recommendations.
Ability to work independently and across multifunctional teams.
Detail-oriented with a focus on process improvement and operational excellence.
Ability to manage multiple workstreams (pilot + integration + operations) with minimal supervision.
Familiarity with NIST, CIS Benchmarks, DISA STIG (mobile), ISO 27001 control mapping, or similar frameworks.
Educational Requirements
Bachelor s degree in Cybersecurity, Information Systems, Computer Science, Engineering, or equivalent practical experience.
Relevant Certifications
CompTIA Security+, CySA+
GIAC: GSEC, GMON, or related (if available/appropriate)
Qualys/Rapid7/Tenable (or equivalent vulnerability platform certifications where relevant)
Governance / Risk / Architecture (bonus)
CISSP, CISM, CCSP
ITIL Foundation (for ITSM integration and operations maturity)
Experience Level
5 - 8+ years in cybersecurity/endpoint security, with 2 - 4+ years specifically in mobile/UEM security, vulnerability management, or compliance engineering.