Security Vulnerability Engineer (R-00224)

    ~$99,260 - $184,340Market Estimate
    Remote/Telework
    Full-Time
    Mid (3-6 yrs)
    Engineering & Development
    Posted on August 27, 2026
    True Zero Technologies, a veteran-owned small business, was founded on the principle that the purposeful enablement of people and technology in an organization directly ties to the quality of its outcomes. True Zero recognizes that those outcomes begin and end with our people, and that is what we have built a community of like-minded, driven, and passionate individuals and innovators who are aligned in a common goal of delivering top-tier services to our customers. Our culture and commitment have been recognized through numerous accolades, including being named one of the Best Places to Work in 2023 in two categories (“Prosperous and Thriving” ($5MM–$50MM in gross revenue) and “Mid-Atlantic Region” (DC, DE, MD, NC, VA, WV)), and again in 2025 as a Best Places to Work honoree. In addition, True Zero earned coveted spots on the Inc. 5000 list of fastest-growing companies in America in 2022, 2023, and 2025, a testament to our sustained growth driven by our people-first approach and unwavering dedication to excellence.

    True Zero is seeking a Security Vulnerability Engineer to lead the design, development, and
    operation of advanced vulnerability management and threat-detection capabilities across
    secure, mission-critical environments. This is a senior technical role for an engineer who pairs
    hands-on expertise in security analytics, detection engineering, and predictive risk modeling
    with the judgment to guide teams, engage clients, and deliver production-grade, responsibly
    governed security solutions.


    The ideal candidate brings a track record of directing security and analytics initiatives across
    national security and highly regulated environments — combining technical depth in threat
    detection and predictive modeling with the strategic acumen to reduce operational risk, minimize
    exposure, and enable data-driven decision-making at the command level. This engineer will
    configure data pipelines, establish security telemetry ingestion processes, and implement
    predictive components that analyze five or more years of historical incident and vulnerability
    data to generate time- and location-based risk forecasts that are operationally meaningful to
    command staff and field leadership

    Job Responsibilities
  1. Vulnerability Management: Identify, assess, and prioritize vulnerabilities across
    enterprise systems; develop and tune detection logic and analytics that meet defined
    performance and coverage standards.
  2. Threat Detection Engineering: Design, develop, and implement detection and
    enrichment systems that analyze large volumes of unstructured security telemetry, logs,
    and threat-intelligence data.
  3. Technical Leadership: Lead security engineering projects with a focus on detection,
    vulnerability analytics, and emerging defensive technologies.
  4. Predictive Risk Modeling & Forecasting: Configure data pipelines and telemetry
    ingestion processes and implement predictive components that analyze five or more years
    of historical incident and vulnerability data to generate time- and location-based risk
    forecasts.
  5. Systems Integration: Integrate detection and vulnerability-management solutions with
    existing SIEM, ticketing, and operational systems to ensure seamless data flow and
    usability within current workflows; collaborate with cross-functional teams, including work
    within the STRIDE platform.
  6. Validation & Accuracy: Validate data integrity, detection performance, and system
    reliability across security tooling; assess detection and forecast accuracy, ensure
    alignment between predicted and observed threat patterns, and verify outputs are
    operationally meaningful for command staff and field leadership.
  7. Performance Management: Monitor, evaluate, and continuously improve detection and
    vulnerability-analytics performance; identify optimization opportunities and tune for scale,
    efficiency, and low false-positive rates in cloud environments.
  8. Tool Utilization: Leverage common security and analytics tooling (SIEM, vulnerability
    scanners, AWS security services, TensorFlow, PyTorch) and custom frameworks for
    specialized detection applications.
  9. Governance & Risk: Assess model and detection risks, biases, and coverage gaps in accordance with responsible-use guidelines and regulatory requirements.
  10. Detection Operations (DetOps/MLOps): Implement practices to automate deployment,
    monitoring, and lifecycle management of detections, analytics, and models.
  11. Job Qualifications
  12. Experience: Minimum of 5 years in security engineering, vulnerability management, or
    detection engineering, spanning design, evaluation, and deployment.
  13. Citizenship: U.S. citizenship required; must be willing to undergo a U.S. Government
    background investigation.
  14. Technical Proficiency: Hands-on experience with security analytics and detection
    frameworks, scripting/automation (Python), and major cloud platforms; familiarity with
    PyTorch, TensorFlow, Keras, Hugging Face, LangChain, and API-driven tooling for
    analytics is a strong plus.
  15. Data Management: Experience with large-scale data stores, search/vector databases
    (Pinecone, Weaviate, Qdrant, Chroma), and retrieval-based analysis architectures for
    security use cases.
  16. Advanced Analytics: Advanced query and detection engineering, model/detection tuning,
    and hands-on experience with analytics and automation tooling.
  17. Evaluation: Experience in detection and model evaluation, monitoring, validation,
    benchmarking, and deployment
  18. Designs, implements, and operates cybersecurity services and solutions for federal, state, and commercial organizations.
    51-200 employees
    Cybersecurity
    HQ: United States