Job Description
True Zero Technologies, a veteran-owned small business, was founded on the principle that the purposeful enablement of people and technology in an organization directly ties to the quality of its outcomes. True Zero recognizes that those outcomes begin and end with our people, and that is what we have built a community of like-minded, driven, and passionate individuals and innovators who are aligned in a common goal of delivering top-tier services to our customers. Our culture and commitment have been recognized through numerous accolades, including being named one of the Best Places to Work in 2023 in two categories (“Prosperous and Thriving” ($5MM–$50MM in gross revenue) and “Mid-Atlantic Region” (DC, DE, MD, NC, VA, WV)), and again in 2025 as a Best Places to Work honoree. In addition, True Zero earned coveted spots on the Inc. 5000 list of fastest-growing companies in America in 2022, 2023, and 2025, a testament to our sustained growth driven by our people-first approach and unwavering dedication to excellence.
True Zero is seeking a Security Vulnerability Engineer to lead the design, development, and
operation of advanced vulnerability management and threat-detection capabilities across
secure, mission-critical environments. This is a senior technical role for an engineer who pairs
hands-on expertise in security analytics, detection engineering, and predictive risk modeling
with the judgment to guide teams, engage clients, and deliver production-grade, responsibly
governed security solutions.
The ideal candidate brings a track record of directing security and analytics initiatives across
national security and highly regulated environments — combining technical depth in threat
detection and predictive modeling with the strategic acumen to reduce operational risk, minimize
exposure, and enable data-driven decision-making at the command level. This engineer will
configure data pipelines, establish security telemetry ingestion processes, and implement
predictive components that analyze five or more years of historical incident and vulnerability
data to generate time- and location-based risk forecasts that are operationally meaningful to
command staff and field leadership
Job Responsibilities
- Vulnerability Management: Identify, assess, and prioritize vulnerabilities across
enterprise systems; develop and tune detection logic and analytics that meet defined
performance and coverage standards.
- Threat Detection Engineering: Design, develop, and implement detection and
enrichment systems that analyze large volumes of unstructured security telemetry, logs,
and threat-intelligence data.
- Technical Leadership: Lead security engineering projects with a focus on detection,
vulnerability analytics, and emerging defensive technologies.
- Predictive Risk Modeling & Forecasting: Configure data pipelines and telemetry
ingestion processes and implement predictive components that analyze five or more years
of historical incident and vulnerability data to generate time- and location-based risk
forecasts.
- Systems Integration: Integrate detection and vulnerability-management solutions with
existing SIEM, ticketing, and operational systems to ensure seamless data flow and
usability within current workflows; collaborate with cross-functional teams, including work
within the STRIDE platform.
- Validation & Accuracy: Validate data integrity, detection performance, and system
reliability across security tooling; assess detection and forecast accuracy, ensure
alignment between predicted and observed threat patterns, and verify outputs are
operationally meaningful for command staff and field leadership.
- Performance Management: Monitor, evaluate, and continuously improve detection and
vulnerability-analytics performance; identify optimization opportunities and tune for scale,
efficiency, and low false-positive rates in cloud environments.
- Tool Utilization: Leverage common security and analytics tooling (SIEM, vulnerability
scanners, AWS security services, TensorFlow, PyTorch) and custom frameworks for
specialized detection applications.
Governance & Risk: Assess model and detection risks, biases, and coverage gaps in accordance with responsible-use guidelines and regulatory requirements.
Detection Operations (DetOps/MLOps): Implement practices to automate deployment,
monitoring, and lifecycle management of detections, analytics, and models.
Job Qualifications
- Experience: Minimum of 5 years in security engineering, vulnerability management, or
detection engineering, spanning design, evaluation, and deployment.
- Citizenship: U.S. citizenship required; must be willing to undergo a U.S. Government
background investigation.
- Technical Proficiency: Hands-on experience with security analytics and detection
frameworks, scripting/automation (Python), and major cloud platforms; familiarity with
PyTorch, TensorFlow, Keras, Hugging Face, LangChain, and API-driven tooling for
analytics is a strong plus.
- Data Management: Experience with large-scale data stores, search/vector databases
(Pinecone, Weaviate, Qdrant, Chroma), and retrieval-based analysis architectures for
security use cases.
- Advanced Analytics: Advanced query and detection engineering, model/detection tuning,
and hands-on experience with analytics and automation tooling.
- Evaluation: Experience in detection and model evaluation, monitoring, validation,
benchmarking, and deployment
We’re actively searching for talented security and technology practitioners who are ready to experience the True Zero difference. As a True Zero team member, you’ll enjoy:
- Competitive salary, paid twice per month
- Best in class medical coverage
- 100% of medical premiums covered by True Zero
- Company wide new business incentive programs
- Contribution Incentives (i.e. white papers, blog posts, internal webinars, etc.)
- 3 weeks of PTO starting + 11 Paid Holidays Annually
- 401k Program with 100% company match on the first 4%
- Monthly reimbursement of Cell Phone and Home Internet costs
- Paternity/Maternity Leave
- Investment in training and certifications to broaden and deepen your technical skills
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.






