Full-Time

Lead Cybersecurity Engineer

Vulnerability & Configuration Management

True Zero Technologies

True Zero Technologies

11-50 employees

Splunk-based security and tech-management solutions

No salary listed

Washington, DC, USA

Remote

Category
IT & Security (1)
Required Skills
PowerShell
Bash
Dynamodb
Agile
Python
MySQL
ServiceNow
Postgres
Docker
Vulnerability Analysis
AWS
Cryptography
MongoDB
SCRUM
DevOps
Splunk
Oracle
Linux/Unix
Requirements
  • Bachelor’s degree in Information Technology, Information Systems, Computer Science, Computer Engineering, Electrical Engineering, or related technical field; or equivalent additional experience
  • 7+ years of total professional experience
  • 5+ years of technical experience in vulnerability management, configuration management, database hardening, or related security operations
  • Experience leading technical teams or workstreams in dynamic environments
  • Strong experience managing vulnerability remediation efforts across enterprise environments
  • Experience using vulnerability scanning tools such as Tenable/Nessus
  • Strong experience establishing, maintaining, and enforcing configuration baselines
  • Familiarity with remediation practices across Windows, Linux, network devices, containers, and cloud platforms
  • Strong knowledge of CVE, CVSS, NVD, and the CISA KEV catalog
  • Strong knowledge of configuration management principles and secure baseline enforcement
  • Familiarity with DISA STIGs, CIS Benchmarks, and secure hardening practices
  • Experience with enterprise dashboards, reporting, and ticketing workflows
  • Experience with scripting and automation using tools such as Python, PowerShell, Bash, or similar
  • Experience with a wide range of database technologies including: Relational databases: Oracle, PostgreSQL, MySQL, MS SQL; NoSQL Databases: MongoDB; Cloud-native databases: AmazonRDS, Azure SQL, DynamoDB; Familiarity with DevSecOps and CI/CD pipeline concepts
  • Ability to assess and secure on-premises and cloud-hosted database environments
  • Experience with audit logging, encryption, masking, and technical evidence generation for compliance needs
  • Strong written and verbal communication skills
  • Required Certifications
  • One active certification such as CASP, GSEC, GSLC, CISSP, CEH, CISM, CISA, or comparable
  • One active Agile certification such as PMI-ACP, SAFe Agilist, CSM, or comparable
Responsibilities
  • Oversee RBAM projects, schedules, milestones, and team execution
  • Facilitate meetings and brief leadership on status, risks, priorities, and progress
  • Lead and coordinate vulnerability management activities across enterprise systems, including vulnerability identification, prioritization, remediation tracking, and validation
  • Oversee remediation efforts by working with system owners, engineers, administrators, database teams, and other stakeholders to ensure timely and risk-informed mitigation
  • Apply knowledge of CVE, CVSS, NVD, and the CISA KEV catalog to support risk-based vulnerability prioritization and remediation sequencing
  • Establish, manage, and enforce configuration baselines across Windows, Linux, network, cloud, containerized, and database environments
  • Incorporate security configuration baselines into configuration management processes, including operating system image hardening, automation, audit, and compliance validation
  • Support configuration management practices aligned with NIST SP 800-128 and other applicable federal guidance
  • Coordinate database hardening activities across relational, NoSQL, and cloud-native database environments
  • Apply DISA STIGs, CIS Benchmarks, and hardening best practices to support secure database configuration and compliance
  • Assess on-premises and cloud-hosted database environments for security posture, hardening compliance, logging, encryption, data masking, and audit readiness.
  • Use scanning and validation tools to verify database hardening compliance and identify configuration gaps
  • Translate audit requirements into actionable technical configurations, remediation tasks, dashboards, reports, and evidence artifacts
  • Develop, modify, and maintain dashboards and reports in Splunk or similar SIEM platforms to support leadership visibility, operational tracking, and program performance.
  • Use enterprise ticketing systems such as ServiceNow to document findings, assign remediation actions, track progress, and support auditability
  • Support automation through scripting, Splunk searches, and repeatable workflows using tools such as Python, PowerShell, Bash, or similar technologies
  • Support DevSecOps and CI/CD pipeline activities by helping integrate vulnerability management, configuration validation, and hardening requirements into development and deployment processes.
  • Coordinate with technical teams to ensure remediation, configuration, and database security activities are properly documented and supported by evidence
  • Provide technical guidance to stakeholders on remediation priorities, configuration risk, database hardening, and cyber hygiene improvement.
  • Support recurring reporting on vulnerability trends, remediation progress, configuration compliance, database hardening status, operational gaps, and risk reduction.
  • Help mature the risk-based asset management program by improving processes, automation, reporting, evidence generation, and stakeholder coordination
  • Direct and support enterprise vulnerability scanning, analysis, remediation prioritization, and reporting
  • Guide the development and enforcement of secure configuration baselines across systems and platforms
  • Coordinate database hardening, patching, scanning, and compliance activities with stakeholders
  • Review cyber hygiene findings and translate results into actionable remediation plans
  • Support evaluation of new technologies and products through security review and software approval processes
  • Develop or enhance dashboards, reporting, and metrics to improve visibility into risk and remediation progress
  • Support process improvement, automation, and operational maturity efforts across the RBAM function
  • Ensure work products, reporting, and technical activities align with DHS, client, and federal cybersecurity expectations
  • Lead and coordinate vulnerability management, configuration management, and database hardening activities
Desired Qualifications
  • One active certification such as CASP, GSEC, GSLC, CISSP, CEH, CISM, CISA, or comparable
  • One active Agile certification such as PMI-ACP, SAFe Agilist, CSM, or comparable
True Zero Technologies

True Zero Technologies

View

True Zero Technologies provides security and technology management services by implementing Splunk-based data analytics for organizations in sectors like healthcare, finance, and government. These solutions work by collecting and analyzing large amounts of machine data to help clients monitor their IT systems and detect cybersecurity threats in real-time. As a veteran-owned business, the company differentiates itself by using a team of seasoned industry experts to deliver repeatable, standardized service models rather than one-off custom fixes. Their goal is to ensure long-term customer success through managed services while actively supporting the veteran community through educational scholarships.

Company Size

11-50

Company Stage

N/A

Total Funding

N/A

Headquarters

Fair Oaks, Virginia

Founded

2016

Simplify Jobs

Simplify's Take

What believers are saying

  • ServiceNow partnership unites AI-driven platforms for enhanced cybersecurity operations.
  • Wiz integration strengthens client cloud security postures via managed services.
  • September 26, 2025 federal award expands government cybersecurity contracts.

What critics are saying

  • Splunk's Q2 2026 agentless pivot obsoletes agent-heavy professional services.
  • Tanium commoditization by Splunk's Terminus acquisition erodes hybrid demand.
  • Booz Allen's January 2026 DoD contract captures public sector Tanium deals.

What makes True Zero Technologies unique

  • True Zero delivers Splunk-based solutions for mission-critical security across sectors.
  • Veteran-owned status secures federal MAS contract worth $571,354 through 2030.
  • Partners with ServiceNow, Wiz, and Tanium for AI-driven cybersecurity services.

Help us improve and share your feedback! Did you find this helpful?

Your Connections

People at True Zero Technologies who can refer or advise you

Benefits

Health Insurance

Paid Vacation

Paid Holidays

401(k) Retirement Plan

401(k) Company Match

Phone/Internet Stipend

Parental Leave