1

Contract Vulnerability Scanning Jobs (NOW HIRING)

Hourly Contract * Location : Remote * Commitment : 10-40 hours/week What You'll Do * Analyze ... Familiar with CVEs, vulnerability scanners, patching workflows, and risk prioritization frameworks ...

SOC Vulnerability Management Manager - Senior

Fairfax, VA · On-site

$105.70K - $143.40K/yr

This position is contingent upon contract award. Responsibilities * Lead enterprise vulnerability management activities across supported ARNG environments, including scanning execution, finding ...

Hourly Contract * Location : Remote * Commitment : 10-40 hours/week What You'll Do * Analyze ... Solid familiarity with CVEs, vulnerability scanners, patching workflows, and risk prioritization ...

Hourly Contract * Location : Remote * Commitment : 10-40 hours/week What You'll Do * Analyze ... Familiar with CVE databases, vulnerability scanners, patching workflows, and risk prioritization ...

Hi We have an immediate Openings with Our Direct Client for a Long-term contract position Job Title: Senior Full Stack + DevSecOps Platform Engineer SBOM / CBOM Inventory, Vulnerability Scanning & AI ...

next page

Showing results 1-20

Contract Vulnerability Scanning information

See salary details

$12

$17

$22

How much do contract vulnerability scanning jobs pay per hour?

As of Jun 2, 2026, the average hourly pay for contract vulnerability scanning in the United States is $17.25, according to ZipRecruiter salary data. Most workers in this role earn between $15.38 and $18.51 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Contract Vulnerability Scanning Specialist, and why are they important?

To thrive as a Contract Vulnerability Scanning Specialist, you need expertise in network security, vulnerability assessment methodologies, and a solid understanding of operating systems and protocols, often supported by certifications like CompTIA Security+ or CEH. Proficiency with vulnerability scanning tools such as Nessus, OpenVAS, or Qualys, and familiarity with ticketing and reporting systems are typically required. Attention to detail, analytical thinking, and clear communication are essential soft skills for identifying risks and conveying findings to non-technical stakeholders. These capabilities ensure the accurate detection of security weaknesses and effective risk mitigation for clients or organizations.

What are some common challenges faced by professionals in Contract Vulnerability Scanning roles?

Professionals in Contract Vulnerability Scanning often encounter challenges such as managing tight deadlines, adapting to varied client environments, and ensuring clear communication of technical findings to non-technical stakeholders. They must stay updated with the latest vulnerabilities and scanning tools, as threats and technologies evolve rapidly. Additionally, balancing thoroughness with efficiency is crucial, as clients expect comprehensive reports without significant delays. Collaboration with IT, security, and management teams is also key to ensure that identified vulnerabilities are properly addressed.

What is contract vulnerability scanning?

Contract vulnerability scanning refers to the process of hiring third-party professionals or firms to assess and identify security weaknesses in an organization's systems, networks, or applications. The scanning is typically performed on a contractual basis, often as part of compliance requirements or routine security practices. These experts use automated tools and manual techniques to detect vulnerabilities that could be exploited by attackers, providing detailed reports and recommendations for remediation. This approach allows organizations to benefit from specialized expertise without maintaining a full-time, in-house vulnerability scanning team.

What is the difference between Contract Vulnerability Scanning vs Penetration Tester?

AspectContract Vulnerability ScanningPenetration Tester
Primary FocusAutomated identification of security vulnerabilities in systemsManual and automated testing to exploit vulnerabilities and assess security
Tools & TechniquesVulnerability scanners, automated toolsCustom scripts, penetration tools, manual testing
Work EnvironmentTypically performed remotely or on client sites, within security teamsOften on-site, conducting simulated attacks
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN

Contract Vulnerability Scanning involves automated tools to identify security weaknesses, while Penetration Testers perform manual and automated testing to exploit vulnerabilities. Both roles require security certifications but differ in approach and scope, with vulnerability scanning being more automated and penetration testing more hands-on.

More about Contract Vulnerability Scanning jobs
What cities are hiring for Contract Vulnerability Scanning jobs? Cities with the most Contract Vulnerability Scanning job openings:
What are the most commonly searched types of Vulnerability Scanning jobs? The most popular types of Vulnerability Scanning jobs are:
What states have the most Contract Vulnerability Scanning jobs? States with the most job openings for Contract Vulnerability Scanning jobs include:
What job categories do people searching Contract Vulnerability Scanning jobs look for? The top searched job categories for Contract Vulnerability Scanning jobs are:

Vulnerability Management Analyst

Alignerr

Chicago, IL • Remote

Other

Posted 19 days ago


Job description

Vulnerability Management Analyst (AI Training)
About the Role
We're looking for experienced security professionals to help train and evaluate cutting-edge AI systems using real-world vulnerability management knowledge. At Alignerr, we partner with the world's leading AI research labs - and we need practitioners who understand how risk actually works in production environments.
This is your opportunity to go beyond the day-to-day of patch cycles and scanner outputs and directly influence how the next generation of AI reasons about security.
  • Organization
    : Alignerr
  • Type
    : Hourly Contract
  • Location
    : Remote
  • Commitment
    : 10-40 hours/week
What You'll Do
  • Analyze vulnerability reports, CVEs, and exposure scenarios across infrastructure and applications
  • Classify severity, impact, exploitability, and appropriate remediation strategies
  • Review and evaluate patching, mitigation, and remediation decision-making scenarios
  • Generate, label, and validate realistic security-reasoning data used to train and benchmark AI systems
  • Apply your real-world judgment to help AI distinguish between theoretical risk and what actually matters in production
Who You Are
  • 2+ years of experience in vulnerability management, security operations, or infrastructure security
  • Familiar with CVEs, vulnerability scanners, patching workflows, and risk prioritization frameworks (e.g., CVSS, EPSS, DREAD)
  • Comfortable making judgment calls on risk tradeoffs in complex, real-world environments
  • A structured, analytical thinker who can communicate reasoning clearly in writing
  • Self-motivated and reliable when working independently on asynchronous tasks
Nice to Have
  • Experience with tools like Tenable, Qualys, Rapid7, or similar platforms
  • Background in threat intelligence, red teaming, or cloud security
  • Familiarity with compliance frameworks such as NIST, CIS, or SOC 2
  • Prior experience contributing to AI training, data labeling, or security research
Why Join Us
  • Work directly on frontier AI systems alongside top research labs
  • Fully remote and flexible - work on your own schedule
  • Freelance perks: autonomy, variety, and global collaboration
  • Apply your specialized security expertise in a high-impact, intellectually stimulating environment
  • Potential for ongoing work and contract extension