Security Vulnerability Engineer (R-00224)
True Zero Technologies Mosfiloti, Cyprus, Cyprus
IT Services and IT Consulting · 51-200 employees
About the role
The Security Vulnerability Engineer will lead the design and operation of advanced vulnerability management and threat-detection capabilities across secure environments. They are responsible for configuring data pipelines, implementing predictive risk models, and integrating security solutions with existing operational systems.
What they look for
Requirements
Candidates must have a minimum of 5 years of experience in security engineering, vulnerability management, or detection engineering. U.S. citizenship is required, along with the ability to undergo a U.S. Government background investigation.
Benefits
Full description
True Zero Technologies, a veteran-owned small business, was founded on the principle that the purposeful enablement of people and technology in an organization directly ties to the quality of its outcomes. True Zero recognizes that those outcomes begin and end with our people, and that is what we have built a community of like-minded, driven, and passionate individuals and innovators who are aligned in a common goal of delivering top-tier services to our customers. Our culture and commitment have been recognized through numerous accolades, including being named one of the Best Places to Work in 2023 in two categories (“Prosperous and Thriving” ($5MM–$50MM in gross revenue) and “Mid-Atlantic Region” (DC, DE, MD, NC, VA, WV)), and again in 2025 as a Best Places to Work honoree. In addition, True Zero earned coveted spots on the Inc. 5000 list of fastest-growing companies in America in 2022, 2023, and 2025, a testament to our sustained growth driven by our people-first approach and unwavering dedication to excellence.
True Zero is seeking a Security Vulnerability Engineer to lead the design, development, and operation of advanced vulnerability management and threat-detection capabilities across secure, mission-critical environments. This is a senior technical role for an engineer who pairs hands-on expertise in security analytics, detection engineering, and predictive risk modeling with the judgment to guide teams, engage clients, and deliver production-grade, responsibly governed security solutions.
The ideal candidate brings a track record of directing security and analytics initiatives across national security and highly regulated environments — combining technical depth in threat detection and predictive modeling with the strategic acumen to reduce operational risk, minimize exposure, and enable data-driven decision-making at the command level. This engineer will configure data pipelines, establish security telemetry ingestion processes, and implement predictive components that analyze five or more years of historical incident and vulnerability data to generate time- and location-based risk forecasts that are operationally meaningful to command staff and field leadership
\n
Job Responsibilities
- Vulnerability Management: Identify, assess, and prioritize vulnerabilities across
enterprise systems; develop and tune detection logic and analytics that meet defined performance and coverage standards.
- Threat Detection Engineering: Design, develop, and implement detection and
enrichment systems that analyze large volumes of unstructured security telemetry, logs, and threat-intelligence data.
- Technical Leadership: Lead security engineering projects with a focus on detection,
vulnerability analytics, and emerging defensive technologies.
- Predictive Risk Modeling & Forecasting: Configure data pipelines and telemetry
ingestion processes and implement predictive components that analyze five or more years of historical incident and vulnerability data to generate time- and location-based risk forecasts.
- Systems Integration: Integrate detection and vulnerability-management solutions with
existing SIEM, ticketing, and operational systems to ensure seamless data flow and usability within current workflows; collaborate with cross-functional teams, including work within the STRIDE platform.
- Validation & Accuracy: Validate data integrity, detection performance, and system
reliability across security tooling; assess detection and forecast accuracy, ensure alignment between predicted and observed threat patterns, and verify outputs are operationally meaningful for command staff and field leadership.
- Performance Management: Monitor, evaluate, and continuously improve detection and
vulnerability-analytics performance; identify optimization opportunities and tune for scale, efficiency, and low false-positive rates in cloud environments.
- Tool Utilization: Leverage common security and analytics tooling (SIEM, vulnerability
scanners, AWS security services, TensorFlow, PyTorch) and custom frameworks for specialized detection applications.
- Governance & Risk: Assess model and detection risks, biases, and coverage gaps in accordance with responsible-use guidelines and regulatory requirements.
- Detection Operations (DetOps/MLOps): Implement practices to automate deployment,
monitoring, and lifecycle management of detections, analytics, and models.
Job Qualifications
- Experience: Minimum of 5 years in security engineering, vulnerability management, or
detection engineering, spanning design, evaluation, and deployment.
- Citizenship: U.S. citizenship required; must be willing to undergo a U.S. Government
background investigation.
- Technical Proficiency: Hands-on experience with security analytics and detection
frameworks, scripting/automation (Python), and major cloud platforms; familiarity with PyTorch, TensorFlow, Keras, Hugging Face, LangChain, and API-driven tooling for analytics is a strong plus.
- Data Management: Experience with large-scale data stores, search/vector databases
(Pinecone, Weaviate, Qdrant, Chroma), and retrieval-based analysis architectures for security use cases.
- Advanced Analytics: Advanced query and detection engineering, model/detection tuning,
and hands-on experience with analytics and automation tooling.
- Evaluation: Experience in detection and model evaluation, monitoring, validation,
benchmarking, and deployment
\nWe’re actively searching for talented security and technology practitioners who are ready to experience the True Zero difference. As a True Zero team member, you'll enjoy:
- Competitive salary, paid twice per month
- Best in class medical coverage
- 100% of medical premiums covered by True Zero
- Company wide new business incentive programs
- Contribution Incentives (i.e. white papers, blog posts, internal webinars, etc.)
- 3 weeks of PTO starting + 11 Paid Holidays Annually
- 401k Program with 100% company match on the first 4%
- Monthly reimbursement of Cell Phone and Home Internet costs
- Paternity/Maternity Leave
- Investment in training and certifications to broaden and deepen your technical skills