1

Contract Vulnerability Scanning Jobs in Ohio (NOW HIRING)

Identify points of vulnerability, non-compliance with established Information Assurance (IA ... Accountable for the quality and timely delivery of all technical contract deliverables * Ensure ...

Showing results 41-46

Contract Vulnerability Scanning information

What is contract vulnerability scanning?

Contract vulnerability scanning refers to the process of hiring third-party professionals or firms to assess and identify security weaknesses in an organization's systems, networks, or applications. The scanning is typically performed on a contractual basis, often as part of compliance requirements or routine security practices. These experts use automated tools and manual techniques to detect vulnerabilities that could be exploited by attackers, providing detailed reports and recommendations for remediation. This approach allows organizations to benefit from specialized expertise without maintaining a full-time, in-house vulnerability scanning team.

What are some common challenges faced by professionals in contract vulnerability scanning roles?

Professionals in Contract Vulnerability Scanning often encounter challenges such as managing tight deadlines, adapting to varied client environments, and ensuring clear communication of technical findings to non-technical stakeholders. They must stay updated with the latest vulnerabilities and scanning tools, as threats and technologies evolve rapidly. Additionally, balancing thoroughness with efficiency is crucial, as clients expect comprehensive reports without significant delays. Collaboration with IT, security, and management teams is also key to ensure that identified vulnerabilities are properly addressed.

What are the key skills and qualifications needed to thrive as a contract vulnerability scanning specialist, and why are they important?

To thrive as a Contract Vulnerability Scanning Specialist, you need expertise in network security, vulnerability assessment methodologies, and a solid understanding of operating systems and protocols, often supported by certifications like CompTIA Security+ or CEH. Proficiency with vulnerability scanning tools such as Nessus, OpenVAS, or Qualys, and familiarity with ticketing and reporting systems are typically required. Attention to detail, analytical thinking, and clear communication are essential soft skills for identifying risks and conveying findings to non-technical stakeholders. These capabilities ensure the accurate detection of security weaknesses and effective risk mitigation for clients or organizations.

What is the difference between Contract Vulnerability Scanning vs Penetration Tester?

AspectContract Vulnerability ScanningPenetration Tester
Primary FocusAutomated identification of security vulnerabilities in systemsManual and automated testing to exploit vulnerabilities and assess security
Tools & TechniquesVulnerability scanners, automated toolsCustom scripts, penetration tools, manual testing
Work EnvironmentTypically performed remotely or on client sites, within security teamsOften on-site, conducting simulated attacks
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN

Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.

What are the most commonly searched types of Vulnerability Scanning jobs in Ohio?

The most popular types of Vulnerability Scanning jobs in Ohio are:

What are popular job titles related to Contract Vulnerability Scanning jobs in Ohio?

For Contract Vulnerability Scanning jobs in Ohio, the most frequently searched job titles are:

What job categories do people searching Contract Vulnerability Scanning jobs in Ohio look for?

The top searched job categories for Contract Vulnerability Scanning jobs in Ohio are:

What cities in Ohio are hiring for Contract Vulnerability Scanning jobs?

Cities in Ohio with the most Contract Vulnerability Scanning job openings:

Infographic showing various Contract Vulnerability Scanning job openings in Ohio as of July 2026, with employment types broken down into 60% Full Time, 22% Part Time, 1% Temporary, and 17% Contract. Highlights an 82% Physical, 2% Hybrid, and 16% Remote job distribution.

CYBERSECURITY ENGINEER - DATA LOSS PREVENTION

Kinsley Power Systems

Columbus, OH • On-site

$90 - $120/hr

Other

Posted 18 days ago


Job description

CYBERSECURITY ENGINEER - DATA LOSS PREVENTION Location Columbus, OH Job Code 98 # of openings 1

Remote with travel required to client's place of performance in Columbus, OH or Richmond, VA

Overview

iP -Plus Consulting is seeking a Cybersecurity Engineer to support an upcoming federal program. The Cybersecurity Engineer serves as a hands‑on technical operator responsible for the design, integration, and sustainment of enterprise Data Loss Prevention solutions across a hybrid DoD cloud environment. The candidate will work directly with Microsoft Purview and Forcepoint DLP to protect sensitive government data across M365, SharePoint Online, OneDrive, Teams, and Azure IL4+ environments. In this role, the candidate will operate as part of a Tier 3 DLP support team, executing policy engineering, incident remediation, compliance management, and system sustainment while supporting one of the DoD's most critical data protection programs.

Key Responsibilities
  • Design, configure, and tune Microsoft Purview and Forcepoint DLP policies, rulesets, and workflows across an enterprise DoD environment.
  • Provide Tier 3 engineering support for DLP infrastructure, including fault isolation, root cause analysis, and incident remediation.
  • Support integration of DLP solutions with broader IT infrastructure, including M365, Azure IL4+, SharePoint Online, OneDrive, and Teams.
  • Perform STIG hardening and maintain configuration compliance across all DLP components in accordance with DISA Secure Technical Implementation Guides.
  • Assist with data‑at‑rest scanning operations, false‑positive reduction, and ongoing performance tuning of DLP platforms.
  • Manage and execute software updates, firmware patches, and service packs in compliance with DoD IA directives and agency change‑management processes.
  • Support development and submission of required documentation, including ECR forms, PPSM forms, LCA forms, and Information Assurance packages.
  • Participate in on‑call rotation to provide 24/7/365 coverage for critical DLP infrastructure issues.
  • Develop and maintain operational documentation, including SOPs, CONOPS, troubleshooting guides, and training materials.
  • Support remediation workflow automation efforts and assist with Authorization to Operate (ATO) documentation for DoD IL4+ environments.
  • Coordinate with agency stakeholders, including privacy, incident response, vulnerability management, and Information Assurance personnel.
  • Generate operational status reports for agency leadership and DoD reporting requirements as required.
  • Ensure all DLP systems maintain compliance with federal data protection standards, DoD IA policies, and applicable regulatory requirements.
Required Qualifications
  • Minimum seven (7) years of relevant IT and cybersecurity experience.
  • Active DoD Secret clearance with eligibility for IT‑I Critical Sensitive / Tier 5 (T5) investigation.
  • Must possess IT‑II Non‑Critical Sensitive / Tier 3 (T3) clearance at time of application.
  • DoD 8570/8140 IAT Level II certification (Security+, CySA+, CASP+, or equivalent).
  • CNDSP‑IS certification or equivalent (CySA+, CASP+, GCIH, GCIA, or CISSP).
  • Hands‑on experience implementing and administering Microsoft Purview DLP in an enterprise environment.
  • Familiarity with DoD cloud environments, including Azure IL4+ and M365 security architecture.
  • Experience working within DoD change‑management processes, including ECR, PPSM, and LCA documentation.
  • Strong working knowledge of DISA STIGS and federal IA compliance frameworks.
Required Certifications
  • IAT Level II – Must hold at least one of the following: Security+ CE, CySA+, CASP+, or CISSP.
  • CNDSP‑IS – Must hold at least one of the following: CySA+, CASP+, GCIH, GCIA, or CISSP.
  • Computing Environment / DLP Administrator – Must hold at least one of the following: SC-400 (Microsoft Information Protection Administrator), Forcepoint Certified Administrator (FCA), Forcepoint DLP Administrator, or equivalent platform certification accepted with documented justification.

Must meet DoD 8570/8140 certification requirements prior to starting work and maintain certifications for the full duration of the contract.

Preferred Qualifications
  • Hands‑on experience with Forcepoint DLP administration and policy engineering.
  • Experience with DLP remediation workflow automation in a DoD IL4 or higher environment.
  • Prior work experience within a DoD Component IT environment.
  • Microsoft certifications including SC-400, AZ‑500, or SC‑100.
  • Familiarity with SQL database environments and application‑level troubleshooting.
  • Experience supporting ATO packages in DoD cloud environments.
  • Background with adjacent DLP platforms such as Symantec DLP, Trellix, Digital Guardian, or Broadcom DLP.
Clearance Requirement
  • Must be eligible for and willing to undergo IT‑I Critical Sensitive / Tier 5 investigation.

This position is contingent upon contract award. Employment is expected to begin upon successful award and funding of the program.

#J-18808-Ljbffr