1

Cyber Security Contract Jobs in Santa Rosa, CA (NOW HIRING)

The role is accountable for risk management, cybersecurity posture, regulatory compliance, and ... contracts and services, ensuring cost-effectiveness and access to best-in-class capabilities.

The role is accountable for risk management, cybersecurity posture, regulatory compliance, and ... contracts and services, ensuring cost-effectiveness and access to best-in-class capabilities.

Director of I.T.

Sonoma, CA · On-site

$133K - $313K/yr

The role is accountable for risk management, cybersecurity posture, regulatory compliance, and ... contracts and services, ensuring cost-effectiveness and access to best-in-class capabilities.

Cyber Security Contract information

See Santa Rosa, CA salary details

$62.3K

$145.4K

$203.4K

How much do cyber security contract jobs pay per year?

As of Aug 7, 2026, the average yearly pay for cyber security contract in Santa Rosa, CA is $145,372.00, according to ZipRecruiter salary data. Most workers in this role earn between $121,400.00 and $164,000.00 per year, depending on experience, location, and employer.

What is the difference between Cyber Security Contract vs Cyber Security Analyst?

AspectCyber Security ContractCyber Security Analyst
CredentialsCertifications like CISSP, CEH, CompTIA Security+Same certifications often required
Work EnvironmentProject-based, temporary roles, often freelance or consultingFull-time, in-house or remote positions within organizations
Employer & Industry UsageUsed by companies hiring for specific projects or short-term needsEmployed by organizations to monitor and improve security posture

Cyber Security Contract roles are typically short-term, project-focused positions requiring similar certifications as Cyber Security Analysts. While contracts offer flexibility and diverse experience, analysts usually hold permanent roles with ongoing responsibilities in maintaining security systems. Both roles demand relevant certifications and industry knowledge, but differ mainly in employment type and duration.

What are the key skills and qualifications needed to thrive as a cyber security contractor, and why are they important?

To thrive as a Cyber Security Contractor, you need expertise in network security, threat analysis, and risk management, usually backed by a degree in computer science or a related field and relevant work experience. Familiarity with security tools such as firewalls, SIEM platforms, penetration testing software, and certifications like CISSP or CEH are typically required. Strong analytical thinking, problem-solving, and clear communication skills help contractors collaborate with clients and respond quickly to incidents. These skills and qualifications are crucial for protecting organizations from evolving cyber threats and ensuring compliance with security standards.

What is a cyber security contract?

A cyber security contract is a legally binding agreement between an organization and a cyber security professional or firm to provide specific security services over a set period of time. These services can include risk assessments, penetration testing, incident response, security audits, and more. The contract outlines the scope of work, deliverables, timelines, confidentiality requirements, and payment terms. Cyber security contracts are common for companies that need specialized expertise to protect their digital assets but do not require or cannot afford full-time staff. They help ensure that both parties understand their responsibilities and expectations regarding protecting sensitive information.

What are cybersecurity contract jobs?

If you have extensive experience in cybersecurity, you can work as a freelance information security consultant. In a cybersecurity contract job, you consult with the technical and operational leaders of a company to provide an in-depth analysis of existing information security practices. Once you have established what the organization needs to secure its system, you plan and implement appropriate measures to protect the company’s network, servers, and data assets from viruses, malicious attacks, and other threats. In some roles, you also respond to ongoing security incidents and help the company minimize their impact. As a cybersecurity contractor, you may work with one company at a time or manage several clients at once.

What are some common challenges faced by cyber security contractors, and how can they be addressed?

Cyber security contractors often face challenges such as adapting quickly to new organizational environments, keeping up with rapidly evolving threats, and ensuring compliance with diverse security frameworks. They must be able to integrate seamlessly with in-house IT teams, communicate technical concepts to non-technical stakeholders, and manage multiple priorities within tight deadlines. Building strong relationships with key personnel, staying current with industry certifications, and maintaining a proactive approach to learning new technologies can help contractors overcome these challenges and deliver effective security solutions.
What are the most commonly searched types of Cyber Security jobs in Santa Rosa, CA? The most popular types of Cyber Security jobs in Santa Rosa, CA are:
What job categories do people searching Cyber Security Contract jobs in Santa Rosa, CA look for? The top searched job categories for Cyber Security Contract jobs in Santa Rosa, CA are:
What cities near Santa Rosa, CA are hiring for Cyber Security Contract jobs? Cities near Santa Rosa, CA with the most Cyber Security Contract job openings:
Infographic showing various Cyber Security Contract job openings in Santa Rosa, CA as of August 2026, with employment types broken down into 70% Full Time, 7% Part Time, 2% Temporary, and 21% Contract. Highlights an 90% In-person, 5% Hybrid, and 5% Remote job distribution, with an average salary of $145,372 per year, or $69.9 per hour.

Senior Information Security Analyst

Goldbelt, Inc.

Petaluma, CA • On-site

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 2 days ago


Job description

Overview

Please note that this position is contingent upon the successful award of a contract currently under bid.

Peregrine is a pioneer within the cybersecurity industrial control systems and the Internet of Things, supporting many federal and commercial customers. Peregrine's experienced staff knows the cybersecurity and operational technology environment and provides these capabilities for our customers daily. 

Summary:

The Senior Information Security Analyst is responsible for the overall cybersecurity of assigned networks and devices.  They must have intimate knowledge of federal government, Department of Defense, and U.S. Coast Guard cybersecurity requirements.

Responsibilities

Essential Job Functions:

  • Aggressively manage Cyber security accreditation requirements by working closely with the Program Manager, system administrators, database administrators and other key personnel to ensure all system accreditations remain current.
  • Ensure that all initial and recurring certification and accreditation activities are completed in accordance with DoDI 8500.01, Cyber Security, and DoDI 8510.01, Risk Management Framework (RMF) for assigned information systems, as well as maintaining compliance with the Federal Information Security Management Act (FISMA) of 2002 and other applicable directives for the assigned information systems
  • Working directly with leadership, developers, engineers, system and database administrators to track changes to the system configurations and software, conducting regular reviews, updates and maintenance of certification and accreditation plans, topology drawings, and associated documents, and uploading completed documents to eMASS.
  • Schedule, oversee and document information system compliance testing, to include weekly Assured Compliance Assessment Solution (ACAS) scans and annual execution and testing of the Contingency Plans.
  • Manage accreditation and annual compliance actions using eMASS and the U.S. Coast Guard tracking tools to ensure annual reviews, control tests and contingency plan tests are completed on schedule to comply with FSMA requirements and keep the Program Manager informed of compliance and status of ATO efforts via updates to the PM's Drumbeat and Metrics products.
  • Conduct a continuous review of all applications and database tools that make up the family of systems to ensure all software versions are registered and approved for use by the U.S. Coast Guard.
  • Conduct an annual review and update of all parent and child system profiles in the DHS approved repository system to ensure system's registrations are complete and accurate, and that essential waivers for Data-At-Rest (DAR) and unsupported Commercial-Off-The-Shelf (COTS) software are documented and approved by U.S. Coast Guard CIO so that accreditations are not adversely affected.
  • Serve as Information Assurance Officer (IAO)/Information Systems Security Officer (ISSO), directly advising and assisting the Program Manager, developers, engineers, system and database administrators and staff on all cyber security policy, configuration and compliance matters.
    • This includes all aspects of cyber security that may affect the system security posture, to include emerging threats published in Cyber Alerts, Communication Tasking Orders, and vulnerability alerts and bulletins issued under the Information Assurance Vulnerability Management program.
  • As IAO/ISSO, advise the team on ports, protocols and services (PPS) approved for use by the U.S. Coast Guard, and register new PPS in the U.S. Coast Guard PPS Management Registry.
  • Prior to testing, identify Security Technical Implementation Guides (STIGs) to be applied to systems under development and test, and identify appropriate vulnerability scanning tools to be used during testing, to include the ACAS and Security Content Automation Protocol (SCAP) Compliance Checker automated scanning tools.
  • The IAO/ISSO will assist during scanning and advise the team on the remediation of findings identified during testing.
  • Following testing, the IAO will collect, collate, review and validate all test results and prepare supporting documentation, reports and artifacts to support the certification and accreditation of the system. Following accreditation, the IAO/ISSO will track and manage open findings in the Risk Assessment Report until mitigated or closed.
  • Provide expert advice in support of special projects, to include the development of an automated Cross Domain Solution (CDS) for use by the program and closely coordinate actions with the U.S. Coast Guard Cross Domain Solutions Office (USCGCDSO) and the Department of Homeland Security Unified Cross Domain Management Office (UCDMO).
    • This support includes authoring and submitting detailed system documentation and architectural drawings and working closely with both USCGCDSO and UCDMO personnel to navigate through a complex and highly technical approval process.
  • On a daily and weekly basis, provide authoritative cyber security advice during Internal Review Boards and make recommendations on open Configuration Change Requests (CCRs); Application Change Requests (ACRs), Database Change Requests (DBCRs), QA Trouble Reports (QTRs), Problem Reports (PRs), and Program Trouble Reports (PTRs).
Qualifications

Necessary Skills and Knowledge:

  • Proven record of honesty and integrity in all relationships.
  • Demonstrated leadership and organizational skills.
  • Excellent interpersonal skills and a collaborative management style.
  • Excellent communication skills, both verbal and written.
  • Excellent computer skills and proficient in Excel, Word, PowerPoint, Outlook, Visio, and Access.

Minimum Qualifications:

  • Minimum of five (5) years relevant experience.
  • Detailed knowledge of DoD Risk Management Framework
  • Experience in an IAO/ISSO or Information Assurance Manager (IAM)/Information Systems Security Manager (ISSM) position.
  • Appropriate professional certifications per DoD 8570.01 (CISSP, GSLC or equivalent).
  • Must be eligible for a federal Public Trust clearance.

Preferred Qualifications:

  • Bachelors degree in cybersecurity or related degree
  • CISSP Certification

Pay and Benefits

The annual salary range for this position is $100,000 to $140,000.

At Goldbelt, we value and reward our team's dedication and hard work. We provide a competitive base salary commensurate with your qualifications and experience. As an employee, you'll enjoy a comprehensive benefits package, including medical, dental, and vision insurance, a 401(k) plan with company matching, tax-deferred savings options, supplementary benefits, paid time off, and professional development opportunities.

Employment Type: FULL_TIME