1

Contract Vulnerability Scanning Jobs in Ohio (NOW HIRING)

$99K - $225K/yr

Experience analyzing compliance and vulnerability scan results, and implementing appropriate ... as well as contract-specific affordability and organizational requirements. The projected ...

$99K - $225K/yr

Experience analyzing compliance and vulnerability scan results, and implementing appropriate ... as well as contract-specific affordability and organizational requirements. The projected ...

Senior Systems Administrator/ Patch Manager

Carson, CA ยท Hybrid

$89K - $121K/yr

Vulnerability Remediation: * Analyze ACAS (Assured Compliance Assessment Solution/Nessus) scan ... contract management software. Compliance Reporting: * Generate weekly and monthly compliance ...

Showing results 21-40

Contract Vulnerability Scanning information

What is contract vulnerability scanning?

Contract vulnerability scanning refers to the process of hiring third-party professionals or firms to assess and identify security weaknesses in an organization's systems, networks, or applications. The scanning is typically performed on a contractual basis, often as part of compliance requirements or routine security practices. These experts use automated tools and manual techniques to detect vulnerabilities that could be exploited by attackers, providing detailed reports and recommendations for remediation. This approach allows organizations to benefit from specialized expertise without maintaining a full-time, in-house vulnerability scanning team.

What are some common challenges faced by professionals in contract vulnerability scanning roles?

Professionals in Contract Vulnerability Scanning often encounter challenges such as managing tight deadlines, adapting to varied client environments, and ensuring clear communication of technical findings to non-technical stakeholders. They must stay updated with the latest vulnerabilities and scanning tools, as threats and technologies evolve rapidly. Additionally, balancing thoroughness with efficiency is crucial, as clients expect comprehensive reports without significant delays. Collaboration with IT, security, and management teams is also key to ensure that identified vulnerabilities are properly addressed.

What are the key skills and qualifications needed to thrive as a contract vulnerability scanning specialist, and why are they important?

To thrive as a Contract Vulnerability Scanning Specialist, you need expertise in network security, vulnerability assessment methodologies, and a solid understanding of operating systems and protocols, often supported by certifications like CompTIA Security+ or CEH. Proficiency with vulnerability scanning tools such as Nessus, OpenVAS, or Qualys, and familiarity with ticketing and reporting systems are typically required. Attention to detail, analytical thinking, and clear communication are essential soft skills for identifying risks and conveying findings to non-technical stakeholders. These capabilities ensure the accurate detection of security weaknesses and effective risk mitigation for clients or organizations.

What is the difference between Contract Vulnerability Scanning vs Penetration Tester?

AspectContract Vulnerability ScanningPenetration Tester
Primary FocusAutomated identification of security vulnerabilities in systemsManual and automated testing to exploit vulnerabilities and assess security
Tools & TechniquesVulnerability scanners, automated toolsCustom scripts, penetration tools, manual testing
Work EnvironmentTypically performed remotely or on client sites, within security teamsOften on-site, conducting simulated attacks
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN

Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.

What are the most commonly searched types of Vulnerability Scanning jobs in Ohio?

The most popular types of Vulnerability Scanning jobs in Ohio are:

What are popular job titles related to Contract Vulnerability Scanning jobs in Ohio?

For Contract Vulnerability Scanning jobs in Ohio, the most frequently searched job titles are:

What job categories do people searching Contract Vulnerability Scanning jobs in Ohio look for?

The top searched job categories for Contract Vulnerability Scanning jobs in Ohio are:

What cities in Ohio are hiring for Contract Vulnerability Scanning jobs?

Cities in Ohio with the most Contract Vulnerability Scanning job openings:

Infographic showing various Contract Vulnerability Scanning job openings in Ohio as of July 2026, with employment types broken down into 60% Full Time, 22% Part Time, 1% Temporary, and 17% Contract. Highlights an 82% Physical, 2% Hybrid, and 16% Remote job distribution.

Cybersecurity Subject Matter Expert Lead

Goldbelt, Inc.

Dayton, OH โ€ข On-site

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 24 days ago


Job description

Overview
Please note that this position is contingent upon the successful award of a contract currently under bid.
Global in service but local in approach, Nisga'a Tek is committed to high-quality service to those who defend us. Nisga'a Tek ensures mission assurance and execution for customers and warfighters. Providing intelligence, IT, cyber security, training, logistics, administrative, acquisition, and background investigation services.
Summary:
The Cybersecurity Subject Matter Expert Lead provides expert support, research and analysis of exceptionally complex problems, and processes relating to them.
Responsibilities
Essential Job Functions:
  • Serves as technical expert to the Cybersecurity Assessment Program providing technical direction, interpretation, and alternatives to complex problems.
  • Thinks independently and demonstrates exceptional written and oral communications skills.
  • Applies advanced technical principles, theories, and concepts.
  • Contributes to the development of new principles, concepts, and methodologies.
  • Works on unusually complex technical problems and provides highly innovative and ingenious solutions.
  • Recommends cybersecurity software tools and assists in the development of software tool requirements and selection criteria to include the development of product specific STIGs from applicable DISA SRGs.
  • Works under consultative direction toward predetermined long-range goals and objectives.
  • Assignments are often self-initiated.
  • Determines and pursues courses of action necessary to obtain desired results.
  • Develops advanced technological ideas and guides their development into a final product.

Qualifications
Necessary Skills and Knowledge:
  • Demonstrated expertise in leading and mentoring teams, providing clear guidance, quality oversight, and technical direction to ensure all cybersecurity artifacts meet DoD standards, organizational expectations, and inspection ready quality levels.
  • Provin real world hands-on experience preparing enterprise environments for DoD cybersecurity inspections (CCRI, CORA, Blue Team assessments)
  • SME level experience in assessing security controls and conducting authorization reviews for large, complex organizations.
  • SME level understanding of DoD cybersecurity requirements, including documenting and developing artifacts for STIGs, TCG configuration guides, IAVMs, and Task Orders
  • Oversees end to end POA&M lifecycle management, ensuring accurate documentation, status tracking, and closure of all remediation actions
  • Exceptional ability to develop, maintain, and validate RMF artifacts and cybersecurity documentation
  • Expert ability to interpret new and evolving DoD cybersecurity documentation, templates, and compliance requirements to develop high quality cyber security artifacts even when guidance is incomplete, ambiguous, or inconsistently applied.
  • Skilled in analyzing and interpreting cybersecurity guidance from the ISSM/ISSO to produce authoritative system documents such as the SSP, CONOPS, Incident Response Plan, Contingency Plan, Configuration Management Plan, and other required artifacts
  • Proven ability to work independently and collaboratively with minimal oversight
  • Strong research, analytical, and problem solving skills
  • Proficiency with analytical tools such as Microsoft Excel, Access, Power BI, and Power Platforms
  • Ability to generate clear, accurate, and audit ready cybersecurity reports, including vulnerability summaries, compliance status updates, and risk findings for technical and leadership audiences
  • Ability to generate detailed analytics and trend reports using data from vulnerability scanners, configuration tools, and security platforms to support decision making and inspection readiness
  • Excellent written and verbal communication skills, including the ability to brief leadership and produce clear documentation
  • Experienced in the general tenets supporting the overall DOD implementation of its authorization process, to include supporting cybersecurity policy, procedures, and processes.
  • Knowledgeable in the cybersecurity of emerging technology areas such as Cloud, information technology (IT), Industrial Control Systems (ICSs), or Operational Technology (OT) infrastructures.
  • Strong analytical and problem-solving skills for resolving security issues.

Minimum Qualifications:
  • Certification Requirements:
    • Required Training Certifications In: ICS300 or relevant Operational Technology "OT" or Industrial Control System "ICS" Cybersecurity Certifications, ACAS, and Tanium
    • Computing Environment: DLA approved CE (D Account Access)
    • Current Requirement: DOD 8570 - IAT 3
    • Future Requirement: DOD 8140
    • Primary Cyber Work Role:
      • Work Element: Cybersecurity (CS)
      • Work Role: 722 - Information Systems Security Manager
      • Proficiency Level: Advanced
  • Ten (10) years IT experience
  • Ten (10) years DOD Cybersecurity experience
  • Ten (10) years of Risk Management Framework (RMF) and NIST A&A experience
  • Expert experience in cybersecurity and evaluations
  • DOD Secret Clearance and must possess IT-II Non-Critical Sensitive security clearance or Tier 3 (T3) at time of proposal submission.

Preferred Qualifications:
  • Bachelor's degree

Pay and Benefits
At Goldbelt, we value and reward our team's dedication and hard work. We provide a competitive base salary commensurate with your qualifications and experience. As an employee, you'll enjoy a comprehensive benefits package, including medical, dental, and vision insurance, a 401(k) plan with company matching, tax-deferred savings options, supplementary benefits, paid time off, and professional development opportunities.