1

Contract Vulnerability Scanning Jobs in Reston, VA

Security Engineer

Washington, DC · On-site

$40 - $48/hr

This is a contract to hire opportunity. Applicants must be willing and able to work on a w2 basis ... Troubleshoot issues associated with endpoint vulnerability scanning with administrators and federal ...

Responsibilities : • Manage vulnerability scanning, remediation, and POA&M tracking. • Support ... Prior experience supporting the same or similar contract, with an in-depth understanding of the ...

... contract. This role demands strong technical writing capability, meticulous version control ... Vulnerability & POA&M Management: Coordinate vulnerability scanning and penetration testing.

Showing results 41-60

Contract Vulnerability Scanning information

See Reston, VA salary details

$13

$17

$23

How much do contract vulnerability scanning jobs pay per hour?

As of Aug 18, 2026, the average hourly pay for contract vulnerability scanning in Reston, VA is $17.95, according to ZipRecruiter salary data. Most workers in this role earn between $16.01 and $19.28 per hour, depending on experience, location, and employer.

What is contract vulnerability scanning?

Contract vulnerability scanning refers to the process of hiring third-party professionals or firms to assess and identify security weaknesses in an organization's systems, networks, or applications. The scanning is typically performed on a contractual basis, often as part of compliance requirements or routine security practices. These experts use automated tools and manual techniques to detect vulnerabilities that could be exploited by attackers, providing detailed reports and recommendations for remediation. This approach allows organizations to benefit from specialized expertise without maintaining a full-time, in-house vulnerability scanning team.

What are some common challenges faced by professionals in contract vulnerability scanning roles?

Professionals in Contract Vulnerability Scanning often encounter challenges such as managing tight deadlines, adapting to varied client environments, and ensuring clear communication of technical findings to non-technical stakeholders. They must stay updated with the latest vulnerabilities and scanning tools, as threats and technologies evolve rapidly. Additionally, balancing thoroughness with efficiency is crucial, as clients expect comprehensive reports without significant delays. Collaboration with IT, security, and management teams is also key to ensure that identified vulnerabilities are properly addressed.

What are the key skills and qualifications needed to thrive as a contract vulnerability scanning specialist, and why are they important?

To thrive as a Contract Vulnerability Scanning Specialist, you need expertise in network security, vulnerability assessment methodologies, and a solid understanding of operating systems and protocols, often supported by certifications like CompTIA Security+ or CEH. Proficiency with vulnerability scanning tools such as Nessus, OpenVAS, or Qualys, and familiarity with ticketing and reporting systems are typically required. Attention to detail, analytical thinking, and clear communication are essential soft skills for identifying risks and conveying findings to non-technical stakeholders. These capabilities ensure the accurate detection of security weaknesses and effective risk mitigation for clients or organizations.

What is the difference between Contract Vulnerability Scanning vs Penetration Tester?

AspectContract Vulnerability ScanningPenetration Tester
Primary FocusAutomated identification of security vulnerabilities in systemsManual and automated testing to exploit vulnerabilities and assess security
Tools & TechniquesVulnerability scanners, automated toolsCustom scripts, penetration tools, manual testing
Work EnvironmentTypically performed remotely or on client sites, within security teamsOften on-site, conducting simulated attacks
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN

Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.

What are the most commonly searched types of Vulnerability Scanning jobs in Reston, VA?

The most popular types of Vulnerability Scanning jobs in Reston, VA are:

What are popular job titles related to Contract Vulnerability Scanning jobs in Reston, VA?

For Contract Vulnerability Scanning jobs in Reston, VA, the most frequently searched job titles are:

What job categories do people searching Contract Vulnerability Scanning jobs in Reston, VA look for?

The top searched job categories for Contract Vulnerability Scanning jobs in Reston, VA are:

What cities near Reston, VA are hiring for Contract Vulnerability Scanning jobs?

Cities near Reston, VA with the most Contract Vulnerability Scanning job openings:

Infographic showing various Contract Vulnerability Scanning job openings in Reston, VA as of August 2026, with employment types broken down into 1% As Needed, 77% Full Time, 15% Part Time, and 7% Contract. Highlights an 95% Physical, 2% Hybrid, and 3% Remote job distribution, with an average salary of $37,328 per year, or $17.9 per hour.

Cybersecurity Security Engineer III

SOSi

Washington, DC • On-site

Full-time

Re-posted 15 days ago


Job description

Company Description

Founded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions, tested leadership, and trusted results to enable national security missions worldwide.

Job Description

*** This position is contingent upon contract award ***

Overview

SOSi is seeking a Cybersecurity Security Engineer III to support cybersecurity engineering activities in alignment with our customer. This role is responsible for supporting security architecture, engineering, technology integration, and modernization initiatives across enterprise cyber defense environments, including Zero Trust, cloud security, DevSecOps, and emerging technologies.
 

Responsibilities

  Support cybersecurity engineering and security architecture activities across enterprise environments

  Support design and integration of Zero Trust Architecture (ZTA) capabilities and security controls

  Develop and support technology roadmaps, engineering recommendations, market research, and proofs of concept

  Support engineering and integration of cloud security, secure authentication, and single sign-on (SSO) capabilities

  Support DevSecOps practices and secure technology integration activities

  Support security engineering activities involving vulnerability scanning tools, cyber defense technologies, and enterprise security platforms

  Support engineering and integration of AI/GenAI-related security capabilities

  Support post-quantum cryptography concepts, cryptographic inventory activities, and PQC-enabled protocols

  Support development and implementation of security CONOPS and engineering documentation

  Use scripting and automation to support engineering, integration, and security operations activities

Qualifications

  Experience:

  • Ten (10) or more years of cybersecurity engineering and/or project management experience
  • Two (2) or more years of leadership experience
  • Experience supporting cybersecurity design and integration
  • Experience supporting Zero Trust Architecture (ZTA)
  • Experience developing technology roadmaps, conducting market research, and supporting proofs of concept
  • Experience supporting security architecture and CONOPS
  • Experience supporting cloud security
  • Experience supporting AI/GenAI security integration
  • Experience supporting DevSecOps
  • Experience supporting vulnerability scanning tools
  • Experience supporting secure authentication and SSO
  • Experience supporting post-quantum cryptography concepts and PQC-enabled protocols
  • Experience with scripting and automation

  Education:

  • Bachelor's Degree in engineering, information systems, cybersecurity, or equivalent experience as defined by role requirements

  Certifications: 

At least one of:

  • Security+ 
  • CCNA 
  • SSCP 

And one of:

  • CISSP 
  • CISSP-ISSAP 
  • CISSP-ISSEP 
  • CCSP
  • GCIA
  • GDSA
  • GCCC
  • GCPN
  • GCIH
  • Clearance/Suitability: Secret (eligible)
Additional Information

Work Environment

  • Normal office conditions with potential to perform duties in deployed locations.
  • Core hours of operation are Monday through Friday, 0600 - 1700.
  • May be requested to work evenings and weekends to meet program and contract needs.

Working at SOSi

All interested individuals will receive consideration and will not be discriminated against for any reason.