1

Contract Vulnerability Scanning Jobs (NOW HIRING)

  • Medical

  • Dental

  • Vision

  • Life

S. Citizenship is required due to federal contract obligations, along with the ability to ... Responsibilities: * Oversee enterprise vulnerability scanning across infrastructure, web ...

  • Medical

  • Dental

  • Vision

  • Life

S. Citizenship is required due to federal contract obligations, along with the ability to ... Responsibilities: * Oversee enterprise vulnerability scanning across infrastructure, web ...

Senior Vulnerability Analyst

O Fallon, MO ยท On-site

$89K - $117K/yr

* 12+ Months Contract Location: O Fallon, Missouri Hybrid Overview The Vulnerability Management team ... vulnerability scanning, exposure management, or security testing tools Be able to clearly ...

... Fixed Term Contract We have an exciting opportunity for a Vulnerability Manager to join a ... Operate and optimise vulnerability scanning platforms (e.g Microsoft Defender Vulnerability ...

Execute vulnerability assessments using industry-standard scanning tools across networks, systems ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Vulnerability Assessment Analyst

Albuquerque, NM ยท On-site

  • Medical

  • Retirement

  • PTO

Manage and input vulnerability data, asset information and scanning results into enterprise ... contract requirements. Beneficial to have: * Active DOE Q or equivalent DoD Top Secret clearance.

Risk and Vulnerability Analyst

Washington, DC ยท On-site

$80K - $128K/yr

Execute vulnerability assessments using industry-standard scanning tools across networks, systems ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Risk and Vulnerability Analyst

Chandler, AZ ยท On-site

$80K - $128K/yr

Execute vulnerability assessments using industry-standard scanning tools across networks, systems ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Risk and Vulnerability Analyst

Chandler, AZ ยท On-site

$80K - $128K/yr

Execute vulnerability assessments using industry-standard scanning tools across networks, systems ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Execute vulnerability assessments using industry-standard scanning tools across networks, systems ... and contract considerations. Depending on the position, employees may be eligible for overtime ...

Showing results 21-40

Contract Vulnerability Scanning information

See salary details

$12

$17

$22

How much do contract vulnerability scanning jobs pay per hour?

As of Aug 16, 2026, the average hourly pay for contract vulnerability scanning in the United States is $17.25, according to ZipRecruiter salary data. Most workers in this role earn between $15.38 and $18.51 per hour, depending on experience, location, and employer.

What is contract vulnerability scanning?

Contract vulnerability scanning refers to the process of hiring third-party professionals or firms to assess and identify security weaknesses in an organization's systems, networks, or applications. The scanning is typically performed on a contractual basis, often as part of compliance requirements or routine security practices. These experts use automated tools and manual techniques to detect vulnerabilities that could be exploited by attackers, providing detailed reports and recommendations for remediation. This approach allows organizations to benefit from specialized expertise without maintaining a full-time, in-house vulnerability scanning team.

What are some common challenges faced by professionals in contract vulnerability scanning roles?

Professionals in Contract Vulnerability Scanning often encounter challenges such as managing tight deadlines, adapting to varied client environments, and ensuring clear communication of technical findings to non-technical stakeholders. They must stay updated with the latest vulnerabilities and scanning tools, as threats and technologies evolve rapidly. Additionally, balancing thoroughness with efficiency is crucial, as clients expect comprehensive reports without significant delays. Collaboration with IT, security, and management teams is also key to ensure that identified vulnerabilities are properly addressed.

What is the difference between Contract Vulnerability Scanning vs Penetration Tester?

AspectContract Vulnerability ScanningPenetration Tester
Primary FocusAutomated identification of security vulnerabilities in systemsManual and automated testing to exploit vulnerabilities and assess security
Tools & TechniquesVulnerability scanners, automated toolsCustom scripts, penetration tools, manual testing
Work EnvironmentTypically performed remotely or on client sites, within security teamsOften on-site, conducting simulated attacks
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN

Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.

What are the key skills and qualifications needed to thrive as a contract vulnerability scanning specialist, and why are they important?

To thrive as a Contract Vulnerability Scanning Specialist, you need expertise in network security, vulnerability assessment methodologies, and a solid understanding of operating systems and protocols, often supported by certifications like CompTIA Security+ or CEH. Proficiency with vulnerability scanning tools such as Nessus, OpenVAS, or Qualys, and familiarity with ticketing and reporting systems are typically required. Attention to detail, analytical thinking, and clear communication are essential soft skills for identifying risks and conveying findings to non-technical stakeholders. These capabilities ensure the accurate detection of security weaknesses and effective risk mitigation for clients or organizations.
More about Contract Vulnerability Scanning jobs

What cities are hiring for Contract Vulnerability Scanning jobs?

Cities with the most Contract Vulnerability Scanning job openings:

What are the most commonly searched types of Vulnerability Scanning jobs?

The most popular types of Vulnerability Scanning jobs are:

What states have the most Contract Vulnerability Scanning jobs?

States with the most job openings for Contract Vulnerability Scanning jobs include:

What job categories do people searching Contract Vulnerability Scanning jobs look for?

The top searched job categories for Contract Vulnerability Scanning jobs are:

Infographic showing various Contract Vulnerability Scanning job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 75% Full Time, 16% Part Time, 1% Temporary, and 7% Contract. Highlights an 97% Physical, 1% Hybrid, and 2% Remote job distribution, with an average salary of $35,880 per year, or $17.2 per hour.

Security Engineer, Vulnerability Management (ACAS/Tenable.sc) - Secret clearance

PGTEK

Montgomery, AL โ€ข On-site

$130K - $160K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 6 days ago


Job description

Security Engineer, Vulnerability Management (ACAS/Tenable.sc)
About the Role
PGTEK is seeking a Security Engineer, Vulnerability Management with a Secret clearance (or higher) to administer and optimize our Tenable.sc/ACAS environment, drive vulnerability remediation across enterprise systems, and support compliance with DoD STIG and RMF requirements.
This is a hands-on role that combines deep Tenable platform expertise with Windows/Linux administration, vulnerability analysis, system hardening, and cross-team collaboration. The ideal candidate will have experience working in a DoD or federal environment and be comfortable managing vulnerability scanning and remediation across complex enterprise environments.
Key Responsibilities
Tenable Security Center / ACAS
  • Administer and optimize Tenable.sc and Nessus, including scan policies, scan zones, repositories, credentials, and audit files.
  • Perform credentialed vulnerability scans, STIG compliance scans, discovery scans, and port scans.
  • Analyze and interpret STIGs, CKLs, ACAS/Tenable findings, and vulnerability results to support compliance and risk reduction.
  • Leverage Windows and Linux administration skills to support and troubleshoot authenticated vulnerability scanning.
  • Conduct false-positive analysis and validation to ensure accurate vulnerability reporting.
  • Collaborate with Cloud, Network, Platform, Security, and Engineering teams to drive vulnerability remediation and system hardening.
Vulnerability Coverage & Asset Discovery
  • Identify and close gaps in vulnerability scan coverage to ensure comprehensive visibility across the environment.
  • Perform asset discovery and maintain accurate inventories to ensure all in-scope systems are included in scanning cycles.
  • Analyze scan results to identify coverage gaps, unscanned assets, and compliance blind spots.
  • Recommend corrective actions to improve vulnerability visibility, scanning effectiveness, and overall security posture

Requirements
  • 5+ years of experience in vulnerability management, information assurance, or systems security, preferably within a DoD or federal environment.
  • Hands-on experience administering Tenable.sc, Nessus, and ACAS in a DoD or federal environment.
  • Working knowledge of DoD STIGs, CKLs, and RMF processes.
  • Strong Windows and Linux administration experience.
  • Active DoD Secret clearance required; clearance must be current and verifiable.
  • DoD 8570/8140 IAT Level II baseline certification required, such as:
    • CompTIA Security+ CE
    • CySA+
    • GSEC
    • SSCP
    • CCNA-Security
  • Strong written and verbal communication skills with the ability to collaborate effectively across technical teams.
Work Location & Travel
This is a hybrid position. Candidates must live within approximately 90 minutes of one of the following locations:
  • Mechanicsburg, PA
  • Ogden, UT
  • Oklahoma City, OK
  • Montgomery, AL
  • Fort Meade, MD

Approximately 25% travel may be required to DISA locations.
Compensation & Benefits
Salary Range: $130,000-$160,000
PGTEK offers the opportunity to work on long-term federal technology programs while supporting mission-critical cybersecurity and infrastructure initiatives.
Contract Length: 10 years
Start Date: ASAP
Benefits
Our comprehensive benefits package for full-time salaried employees is effective immediately upon the start date. Benefits include comprehensive PPO medical coverage with access to a Health Savings Account (HSA) option, a vision plan, and dental insurance with the base dental plan option paid for by PGTEK. Life Insurance, Short and Long-Term disability, and Critical Illness insurance have premiums covered. Additionally, PGTEK offers a matching 401(k) plan and a discount on pet insurance through ASPCA Pet Insurance. An Employee Assistance Program is available at no cost to all employees. PGTEK offers a generous amount of PTO and Holidays, and an Education Assistance Program is available after 12 months of employment.
ABOUT PGTEK
PGTEK is a true consulting organization dedicated to helping clients achieve their business and technology objectives utilizing our decades of experience and business relationships. PGTEK invests in the educational advancements of our staff by providing the necessary resources to complete Professional and Business Certifications. Our company is our people, and we treat them like family.
EOE, including disability/veterans