1

Contract Vulnerability Scanning Jobs in Virginia

Cloud Engineer

Chantilly, VA · On-site

$120K - $160K/yr

The CMCC System Facilitator contract positions SAIC to accelerate how new capabilities are ... Awareness of security practices such as STIG hardening, vulnerability scanning, Zero Trust, or MLS ...

The contracts Core Capabilities are: IA Management, Federal Information Security Management Act ... Analyze data sets found in the customer's vulnerability scanning, authorization, and configuration ...

The contracts Core Capabilities are: IA Management, Federal Information Security Management Act ... Analyze data sets found in the customer's vulnerability scanning, authorization, and configuration ...

Security Engineer

Reston, VA · On-site

$140K - $155K/yr

... vulnerability scanning, security testing, and remediation tracking - Support ATO evidence ... S. federal government contracts, applicants may be subject to background investigations and ...

Security Engineer

Reston, VA · On-site

$110 - $150/hr

Perform vulnerability scanning, security testing, and remediation tracking * Support ATO evidence ... S. federal government contracts, applicants may be subject to background investigations and ...

Security Engineer

Reston, VA · On-site

$140K - $165K/yr

... vulnerability scanning, security testing, and remediation tracking - Support ATO evidence ... S. federal government contracts, applicants may be subject to background investigations and ...

Security Engineer

Reston, VA · On-site

$140K - $155K/yr

... vulnerability scanning, security testing, and remediation tracking - Support ATO evidence ... S. federal government contracts, applicants may be subject to background investigations and ...

Conduct authenticated and unauthenticated vulnerability scans of web applications, APIs, servers ... on the contract. Must meet all other requirements.) * Computing Environment (CE): Microsoft ...

The contracts Core Capabilities are: IA Management, Federal Information Security Management Act ... Analyze data sets found in the customer's vulnerability scanning, authorization, and configuration ...

$85K - $145K/yr

Contingent on Contract Award. Salary: $85k-$145k (depending on experience) The Cybersecurity ... Support vulnerability scanning and remediation activities. * Assist with documentation for RMF and ...

DevOps Engineer

Springfield, VA · On-site

$55.25 - $75.50/hr

Implement automated security gatekeeping including SBOM generation, vulnerability scanning, and ... Paid Time Off - PTO granted in accordance with contract requirements. * Paid Holidays - 11 federal ...

Showing results 41-60

Contract Vulnerability Scanning information

What is contract vulnerability scanning?

Contract vulnerability scanning refers to the process of hiring third-party professionals or firms to assess and identify security weaknesses in an organization's systems, networks, or applications. The scanning is typically performed on a contractual basis, often as part of compliance requirements or routine security practices. These experts use automated tools and manual techniques to detect vulnerabilities that could be exploited by attackers, providing detailed reports and recommendations for remediation. This approach allows organizations to benefit from specialized expertise without maintaining a full-time, in-house vulnerability scanning team.

What are some common challenges faced by professionals in contract vulnerability scanning roles?

Professionals in Contract Vulnerability Scanning often encounter challenges such as managing tight deadlines, adapting to varied client environments, and ensuring clear communication of technical findings to non-technical stakeholders. They must stay updated with the latest vulnerabilities and scanning tools, as threats and technologies evolve rapidly. Additionally, balancing thoroughness with efficiency is crucial, as clients expect comprehensive reports without significant delays. Collaboration with IT, security, and management teams is also key to ensure that identified vulnerabilities are properly addressed.

What is the difference between Contract Vulnerability Scanning vs Penetration Tester?

AspectContract Vulnerability ScanningPenetration Tester
Primary FocusAutomated identification of security vulnerabilities in systemsManual and automated testing to exploit vulnerabilities and assess security
Tools & TechniquesVulnerability scanners, automated toolsCustom scripts, penetration tools, manual testing
Work EnvironmentTypically performed remotely or on client sites, within security teamsOften on-site, conducting simulated attacks
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN

Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.

What are the key skills and qualifications needed to thrive as a contract vulnerability scanning specialist, and why are they important?

To thrive as a Contract Vulnerability Scanning Specialist, you need expertise in network security, vulnerability assessment methodologies, and a solid understanding of operating systems and protocols, often supported by certifications like CompTIA Security+ or CEH. Proficiency with vulnerability scanning tools such as Nessus, OpenVAS, or Qualys, and familiarity with ticketing and reporting systems are typically required. Attention to detail, analytical thinking, and clear communication are essential soft skills for identifying risks and conveying findings to non-technical stakeholders. These capabilities ensure the accurate detection of security weaknesses and effective risk mitigation for clients or organizations.
What are the most commonly searched types of Vulnerability Scanning jobs in Virginia? The most popular types of Vulnerability Scanning jobs in Virginia are:
What are popular job titles related to Contract Vulnerability Scanning jobs in Virginia? For Contract Vulnerability Scanning jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Contract Vulnerability Scanning jobs in Virginia look for? The top searched job categories for Contract Vulnerability Scanning jobs in Virginia are:
What cities in Virginia are hiring for Contract Vulnerability Scanning jobs? Cities in Virginia with the most Contract Vulnerability Scanning job openings:

$57.50 - $77/hr

Contractor

Re-posted 6 days ago


SAIC rating

7.9

Company rating: 7.9 out of 10

Based on 79 frontline employees who took The Breakroom Quiz

78th of 223 rated it services


Job description


SAIC is a trusted leader in delivering advanced command and control capabilities across the Department of the Air Force, bringing deep expertise in how cutting edge technologies are engineered, secured, and delivered to the fight. At the center of this mission, the Common Mission Control Center (CMCC) unifies data, sensors, mission applications, cloud based services, and emerging AI enabled automation to give warfighters a decisive edge-turning complex, multidomain information into fast, clear, and actionable decisions in the moments that matter most. The CMCC System Facilitator contract positions SAIC to accelerate how new capabilities are integrated, tested, secured, and transitioned into operational use, working side by side with operators, engineers, Capability Providers, and government teams to ensure every delivery strengthens mission readiness. This effort offers the chance to directly shape how the Air Force sees, decides, and acts across all domains-making a tangible and immediate impact on warfighter effectiveness.
The Junior Cloud Engineer will support cloud environment provisioning, configuration, monitoring, and readiness across CMCC development, test, experimental, and operational tiers. This position works under the guidance of Cloud SME to help develop hybrid cloud environments, assist in infrastructure automation, and ensure consistent and secure deployment practices. Responsibilities emphasize hands on execution, learning, and reliable support.
Job Duties include:
  • Support deployment and maintenance of secure hybrid cloud environments.
  • Assist in implementing Infrastructure as Code (IaC) and Configuration as Code (CaC) using Terraform, Ansible, Helm, and Argo CD to maintain consistent configurations.
  • Execute cloud automation tasks supporting CI/CD integration, basic resource provisioning, and container orchestration under senior oversight.
  • Support secure data flow validation, network configuration checks, and adherence to MLS/MILS and CMCC security requirements.
  • Help build and maintain cloud test environments by supporting configuration, monitoring, and incident response activities.
  • Collaborate with DSOP, Cyber, Software, and Integration teams to maintain pipeline readiness, assist with STIG compliance actions, and support vulnerability scanning workflows.
  • Document environment changes, maintain status of cloud configuration items, and support environment readiness checks for deployments.
  • Identify opportunities for improved automation, stability, or performance.

Qualifications
Typical Education and Experience:
  • Bachelor's degree and 5 years of IT, cloud, DevSecOps, or systems engineering experience;
    OR equivalent combination of education and hands on cloud/automation experience.

Required Qualifications & Experience:
  • DOD 8140 CyberSecurity Certifications.
  • Experience supporting cloud or containerized environments (Kubernetes, Docker/Podman).
  • Hands-on familiarity with IaC/CaC tools such as Terraform, Ansible, Helm, and Git-based workflows.
  • Understanding of DevSecOps concepts, CI/CD pipelines (e.g., GitLab, Jenkins, Bitbucket), and cloud automation fundamentals.
  • Ability to troubleshoot cloud infrastructure, Linux-based systems, and container runtime issues.
  • Awareness of security practices such as STIG hardening, vulnerability scanning, Zero Trust, or MLS/MILS concepts.

Desired Qualifications and Experience:
  • Experience in DoD cloud environments.
  • Exposure to network or security operations workflows.
  • Familiarity with cloud or cybersecurity automation tools.

Desired Skills and Certifications:
  • Familiarity with Kubernetes, containers, Zero Trust, and modern source control tools (Git/Bitbucket).
  • Basic understanding of multi-layer security and cross-domain solution workflows.
  • Strong documentation, communication, and collaboration habits.

About Us
SAIC® is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.
We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

What SAIC employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom