1

Contract Vulnerability Scanning Jobs in Tennessee

Vulnerability management program oversight - Ensure endpoints are scanned and reported properly ... Negotiate contracts QUALIFICATIONS: * 3+ years relevant technical experience * Project Management ...

Desktop Support Technician

Nashville, TN · On-site

$25 - $31.25/hr

Term: 6 Month Contract-to-hire Location: 100% onsite in Nashville, TN 37203 Pay: Up to $31.25/hr ... and vulnerability remediation. * Managing any Service Requests (e.g., desktop, mobile) which ...

Term: 6 Month Contract-to-hire Location: 100% onsite in Nashville, TN 37203 Pay: Up to $31.25/hr ... and vulnerability remediation. * Managing any Service Requests (e.g., desktop, mobile) which ...

Term: 6 Month Contract-to-hire Location: 100% onsite in Nashville, TN 37203 Pay: Up to $31.25/hr ... and vulnerability remediation. * Managing any Service Requests (e.g., desktop, mobile) which ...

Contract Vulnerability Scanning information

What is contract vulnerability scanning?

Contract vulnerability scanning refers to the process of hiring third-party professionals or firms to assess and identify security weaknesses in an organization's systems, networks, or applications. The scanning is typically performed on a contractual basis, often as part of compliance requirements or routine security practices. These experts use automated tools and manual techniques to detect vulnerabilities that could be exploited by attackers, providing detailed reports and recommendations for remediation. This approach allows organizations to benefit from specialized expertise without maintaining a full-time, in-house vulnerability scanning team.

What are some common challenges faced by professionals in Contract Vulnerability Scanning roles?

Professionals in Contract Vulnerability Scanning often encounter challenges such as managing tight deadlines, adapting to varied client environments, and ensuring clear communication of technical findings to non-technical stakeholders. They must stay updated with the latest vulnerabilities and scanning tools, as threats and technologies evolve rapidly. Additionally, balancing thoroughness with efficiency is crucial, as clients expect comprehensive reports without significant delays. Collaboration with IT, security, and management teams is also key to ensure that identified vulnerabilities are properly addressed.

What is the difference between Contract Vulnerability Scanning vs Penetration Tester?

AspectContract Vulnerability ScanningPenetration Tester
Primary FocusAutomated identification of security vulnerabilities in systemsManual and automated testing to exploit vulnerabilities and assess security
Tools & TechniquesVulnerability scanners, automated toolsCustom scripts, penetration tools, manual testing
Work EnvironmentTypically performed remotely or on client sites, within security teamsOften on-site, conducting simulated attacks
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN

Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.

What are the key skills and qualifications needed to thrive as a Contract Vulnerability Scanning Specialist, and why are they important?

To thrive as a Contract Vulnerability Scanning Specialist, you need expertise in network security, vulnerability assessment methodologies, and a solid understanding of operating systems and protocols, often supported by certifications like CompTIA Security+ or CEH. Proficiency with vulnerability scanning tools such as Nessus, OpenVAS, or Qualys, and familiarity with ticketing and reporting systems are typically required. Attention to detail, analytical thinking, and clear communication are essential soft skills for identifying risks and conveying findings to non-technical stakeholders. These capabilities ensure the accurate detection of security weaknesses and effective risk mitigation for clients or organizations.
What are the most commonly searched types of Vulnerability Scanning jobs in Tennessee? The most popular types of Vulnerability Scanning jobs in Tennessee are:
What are popular job titles related to Contract Vulnerability Scanning jobs in Tennessee? For Contract Vulnerability Scanning jobs in Tennessee, the most frequently searched job titles are:
What job categories do people searching Contract Vulnerability Scanning jobs in Tennessee look for? The top searched job categories for Contract Vulnerability Scanning jobs in Tennessee are:
What cities in Tennessee are hiring for Contract Vulnerability Scanning jobs? Cities in Tennessee with the most Contract Vulnerability Scanning job openings:

Vulnerability Management Analyst

Boston Government Services, LLC

Oak Ridge, TN • On-site

$131K - $154K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 9 days ago


Job description

Boston Government Services, LLC. (BGS) has created this Evergreen Talent Pool post for gathering qualified candidates for a position relating to Vulnerability Management Analyst to support our clients in various locations across the US.


BGS is an engineering, technology, and security firm helping to advance missions of national importance for government programs, national laboratories, national security facilities, nuclear operations, and complex projects. We support clients at every stage, from strategic planning and program management to the execution of engineering and technical activities. We work to attract and retain the best talent because the best talent delivers the best results for our clients. Our capabilities are based on our experience in complex, secure, and highly regulated environments. We leverage our experience and capabilities to provide mission-driven solutions tuned to our client's mission needs and strategic direction.


Work that Matters. People that Matter More. At BGS, we believe meaningful work starts with great people. We foster a culture built on respect, collaboration, and accountability—where employees are empowered to contribute ideas, grow professionally, and make an impact. We care about our employees’ well-being through competitive benefits, clear expectations, and an environment that values both excellence and connection.


If you align with BGS’ company values and culture, we would love for you to explore opportunities to join our growing team by checking out the job description below!


Responsibilities:

The Vulnerability Management Analyst supports vulnerability scanning, analysis, prioritization, remediation coordination, reporting, KEV tracking, and risk-based mitigation across the NIH/OD-OIT managed environment.

  • Operate or support host-based, network-based, application, and database vulnerability scanning activities.
  • Analyze scan results, identify high-risk vulnerabilities, and develop mitigation guidance.
  • Coordinate remediation tracking with system owners, technical POCs, program areas, and security stakeholders.
  • Support vulnerability management reporting, ad hoc reports, remediation activity summaries, and risk-based prioritization.
  • Track critical vulnerabilities, KEVs, configuration errors, missing assets, unauthorized software/hardware, and remediation timelines.
  • Monitor authoritative government and private-sector vulnerability intelligence sources.
  • Support integration of vulnerability management with CDM, RMF, risk registers, POA&Ms, and compliance reporting.


Requirements:

  • Bachelor’s Degree or equivalent.
  • Experience performing vulnerability analysis, scan review, remediation tracking, technical risk assessment, or security assessments.
  • Familiarity with vulnerability scanners, CDM concepts, KEV catalog tracking, CISA BODs, CVSS, configuration findings, and remediation workflows.
  • Ability to translate technical findings into clear risk statements and practical mitigation recommendations.
  • Strong coordination and reporting skills.


Preferred Qualifications:

  • Security+, CySA+, Tenable/Qualys/Rapid7 certification, CISSP, CISA, or equivalent.


Location/Work Arrangement:

  • Schedule is full-time, Monday – Friday 40-hour week, 4/10’s, or 9/80’s and may require on call or overnight shifts depending on contract needs.
  • This position may be fully onsite or hybrid/remote depending on the needs of the specific contract.


Benefits:

BGS offers a competitive total compensation package to eligible employees. Benefits include Health, Dental, Vision, Life Insurance, Paid Vacation, 401K, Long and Short-Term Disability.


Starting compensation for this role typical salary ranges between $131,316 – $154,489 annually is commensurate with experience relative to the position and may vary based on candidate geographical location.


EEO:

BGS is an Equal Opportunity/Affirmative Action employer. All qualified applicants are encouraged to apply and will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or protected veteran status.


Exclusive Agreement Disclaimer:

BGS has standing contracts with federal agencies throughout the United States. We require an affirmative exclusive agreement to represent all candidates to our clients. By submitting this application, you are consenting to allow BGS to represent you as a candidate for the role in which you are applying.