Cybersecurity Operations Analyst II (R-00170)

Truezerotech

Washington (District of Columbia)

On-site

USD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary, paid twice per month
100% medical premiums covered
3 weeks of PTO and 11 Paid Holidays

Job summary

True Zero Technologies in Washington, DC is seeking a seasoned cybersecurity professional to lead incident response efforts as part of our commitment to quality outcomes. You will manage reports, conduct forensic investigations, and support compliance.

The ideal candidate has a bachelor's in computer science, an active Secret Clearance, and extensive experience in cybersecurity operations. Join us and be part of a community dedicated to excellence in the field.

Qualifications

  • U.S. Citizenship and an active Secret Clearance required.
  • 8+ years in IT or Information Security with 5+ years in Cybersecurity Operations.
  • Great communication skills and attention to detail.

Responsibilities

  • Lead response activities for USCYBERCOM directives.
  • Conduct deep-dive forensic investigations into cybersecurity events.
  • Perform thorough post-incident reviews.

Skills

Incident Response Handling Procedures (NIST SP 800-61)
Cybersecurity Tools (Trellix/ESS, Tanium, etc.)
Communication skills

Education

Bachelor’s degree in computer science or related field

Tools

Trellix/ESS
Tanium
Microsoft Defender Endpoint
BeyondTrust
Splunk

Job description

True Zero Technologies, a veteran-owned small business, was founded on the principle that the purposeful enablement of people and technology in an organization directly ties to the quality of its outcomes. True Zero recognizes that those outcomes begin and end with our people, and that is what we have built a community of like-minded, driven, and passionate individuals and innovators who are aligned in a common goal of delivering top-tier services to our customers. Our culture and commitment have been recognized through numerous accolades, including being named one of the Best Places to Work in 2023 in two categories (‘Prosperous and Thriving’ ($5MM–$50MM in gross revenue) and ‘Mid-Atlantic Region’ (DC, DE, MD, NC, VA, WV)), and again in 2025 as a Best Places to Work honoree. In addition, True Zero earned coveted spots on the Inc. 5000 list of fastest-growing companies in America in 2022, 2023, and 2025, a testament to our sustained growth driven by our people-first approach and unwavering dedication to excellence.

Responsibilities
  • Lead response activities for USCYBERCOM and DCDC directives, managing the lifecycle of Situational Awareness Reports and ensuring all assets remain compliant with OPORDs, TASKORDs, IAVM notifications, and STIG requirements by published deadlines.
  • Conduct deep-dive forensic investigations into cybersecurity events (data loss, unauthorized access, network exploits) to determine nature and scope; identify corrective actions for containment, eradication, and recovery.
  • Perform thorough post-incident reviews to derive lessons learned, identify security gaps, and implement preventive measures to strengthen the program’s long-term defense posture.
  • Provide expert guidance on cybersecurity directives and risk management policies; review POA&Ms for technical clarity and sound judgment to ensure acceptable remediation timeframes for security controls.
  • Oversee enterprise-wide monitoring and logging across network infrastructure and endpoints to ensure the rapid detection and response to cyber incidents.
  • Maintain and evolve IR SOPs in strict accordance with CJCSM 6510.01B, NIST SP 800-61R2, and DOW regulations to ensure procedural alignment with industry best practices.
  • Translate technical findings into regular status reports for program leadership, DOW officials, and USCYBERCOM /DCDC repositories, detailing incident impact, effectiveness of response strategies, and lessons learned.
  • Drive the evolution of incident response capabilities by identifying weaknesses, recommending advanced technologies, and implementing enhanced processes to stay ahead of evolving cyber threats.
  • Support DOW CIO data collection by reviewing PPSM, CAP, SNAP, and GIAP requests against DISA guidelines; cross-train team members on emerging defense techniques and provide after-hours investigative support for critical incidents.
Qualifications
  • Bachelor’s degree in computer science or related field
  • U.S. Citizenship and an active Secret Clearance (required) with the ability to obtain and maintain a Top-Secret Clearance.
  • Active DoD 8570 IAT Level II certification or greater, including at least one of the following certifications in good standing: CCNA Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP, CASP+CE, CCNP Security, CISSP (or Associate), GCED, GCIH, or CCSP.
  • Active DoD 8570 CSSP Incident Responder certification a plus, including at least one of the following certifications in good standing: CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+
  • Knowledge of Incident Response Handling Procedures (NIST SP 800-61)
  • Familiarity with cyber adversary tactics and frameworks (such as ATT&CK and D3FEND)
  • Knowledge of one or more of the following cybersecurity tools:
    • Trellix/ESS
    • Tanium
    • Microsoft Defender Endpoint
    • BeyondTrust
    • Splunk
  • Great communication skills and attention to detail.
  • 8+ years in Information Technology or Information Security with 5+ years performing Cybersecurity Operations and Incident Response
  • Required to work onsite daily at our DoD customer office location in Alexandria, VA or Seaside, California.

We’re actively searching for talented and experienced professionals who are ready to experience the True Zero difference.

Benefits
  • Competitive salary, paid twice per month
  • Best in class medical coverage
  • 100% of medical premiums covered by True Zero
  • Company wide new business incentive programs
  • Contribution Incentives (i.e. white papers, blog posts, internal webinars, etc.)
  • 3 weeks of PTO starting + 11 Paid Holidays Annually
  • 401k Program with 100% company match on the first 4%
  • Monthly reimbursement of Cell Phone and Home Internet costs
  • Paternity/Maternity Leave
  • Investment in training and certifications to broaden and deepen your technical skills
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Operations Analyst II (R-00170)
Cybersecurity Operations Analyst II (R-00170)

True Zero Technologies • Seaside (CA)

On-site
USD 90,000 - 120,000
Best in class medical coverage
Company-wide new business incentive programs
Investment in training and certifications
Cybersecurity Operations Analyst II (R-00170)
Cybersecurity Operations Analyst II (R-00170)

True Zero Technologies • Salinas (CA)

On-site
USD 140,000 - 190,000
Competitive salary
Healthcare coverage
Junior Cyber Security Analyst (R-00168)
Junior Cyber Security Analyst (R-00168)

Truezerotech • Virginia (MN)

On-site
USD 65,000 - 85,000
Competitive salary
Excellent medical coverage
PTO and holidays
+2
Cybersecurity IT Senior Program Manager (R-00148)
Cybersecurity IT Senior Program Manager (R-00148)

Truezerotech • Washington

On-site
USD 110,000 - 160,000
Competitive salary
Best in class medical coverage
PTO and holidays
+2
Security Engineer – Lead (R-00161)
Security Engineer – Lead (R-00161)

True Zero Technologies • Arlington (VA)

On-site
USD 100,000 - 140,000
Competitive salary
Best in class medical coverage
100% of medical premiums covered
+3
Cyber Security Engineer (R-00120)
Cyber Security Engineer (R-00120)

True Zero Technologies • United States

Remote
USD 90,000 - 130,000
Competitive salary, paid twice per month
Best in class medical coverage
100% of medical premiums covered
+3
Business Management Intern (R-00176)
Business Management Intern (R-00176)

Truezerotech • United States

On-site
USD 45,000 - 70,000
Competitive salary
Medical coverage
Medical premiums covered
+6
Risk and Vulnerability Analyst II (R-00140)
Risk and Vulnerability Analyst II (R-00140)

True Zero Technologies • Arizona

On-site
USD 70,000 - 90,000
Competitive salary
Best in class medical coverage
100% of medical premiums covered
+3
SOC Analyst- Shift Lead (R-00124)
SOC Analyst- Shift Lead (R-00124)

Truezerotech • Topeka (KS)

On-site
USD 90,000 - 120,000
Competitive salary
Best in class medical coverage
401(k) program with company match
+2
Senior Cloud / DevSecOps Engineer (R-00200)
Senior Cloud / DevSecOps Engineer (R-00200)

Socket.dev • United States

Remote
USD 140,000 - 210,000
Competitive salary
Medical coverage
401k match
+3