1

Gcih Jobs (NOW HIRING)

Any one of CASP, CCSP, SSCP, GMON, GCIH, GCIA, or GCED plus a DoD 8570/8140 CSSP Analyst, Infrastructure Support, or Incident Responder certification. * Active TS/SCI clearance * 6 years equivalent ...

Be Seen First

Excellent communication and documentation skills Required Certifications (One Required) Security+, SSCP, GSEC, GCIH, GICSP, Cloud+, EH Advanced Certifications Preferred: SecurityX (CASP+), CCNA, CCNP ...

Showing results 41-60

Gcih information

See salary details

$8

$26

$61

How much do gcih jobs pay per hour?

As of Aug 12, 2026, the average hourly pay for gcih in the United States is $26.34, according to ZipRecruiter salary data. Most workers in this role earn between $15.14 and $30.77 per hour, depending on experience, location, and employer.

What does a GCIH do?

A typical day for someone in a GCIH-certified incident response position often involves monitoring security alerts, analyzing potential threats, investigating security incidents, and coordinating response efforts across IT and security teams. You may perform forensic analysis, create incident reports, and contribute to post-incident reviews to strengthen organizational defenses. Collaboration with other cybersecurity professionals and regular communication with stakeholders are common, ensuring everyone is informed and that processes are consistently improved. The work environment can be dynamic and may require prioritizing tasks quickly, especially during active cybersecurity incidents. This hands-on, investigative role provides opportunities for ongoing learning and advancement within the cybersecurity field.

What are the key skills and qualifications needed to thrive in the GCIH position?

To thrive as a GIAC Certified Incident Handler (GCIH), you need a strong understanding of cybersecurity principles, incident response processes, and threat analysis, usually supported by relevant IT or cybersecurity degrees and holding the GCIH certification. Familiarity with tools like SIEM platforms, network analyzers, malware analysis suites, and forensic software is standard in this role. Outstanding analytical thinking, problem-solving abilities, communication, and teamwork help set professionals apart. These skills are crucial to identify, mitigate, and recover from cybersecurity incidents effectively in fast-paced and high-stakes environments.

What is a GCIH?

A GCIH (GIAC Certified Incident Handler) job involves identifying, responding to, and mitigating cybersecurity incidents. Professionals in this role analyze security breaches, contain threats, and implement measures to prevent future attacks. They often work in incident response teams within cybersecurity or IT departments. Their expertise includes threat intelligence, malware analysis, and digital forensics. A GCIH certification validates their skills in handling cyber threats effectively.

More about Gcih jobs
What cities are hiring for Gcih jobs? Cities with the most Gcih job openings:
What are the most commonly searched types of Gcih jobs? The most popular types of Gcih jobs are:
What states have the most Gcih jobs? States with the most job openings for Gcih jobs include:
Infographic showing various Gcih job openings in the United States as of August 2026, with employment types broken down into 92% Full Time, 2% Part Time, 5% Contract, and 1% Nights. Highlights an 77% Physical, 11% Hybrid, and 12% Remote job distribution, with an average salary of $54,791 per year, or $26.3 per hour.

Cybersecurity Operations Analyst II (R-00170)

True Zero Technologies

Salinas, CA • On-site

Full-time

Re-posted 17 days ago


Job description

Job Summary:
True Zero Technologies is a veteran-owned small business focused on enabling people and technology for better outcomes. They are seeking a Cybersecurity Operations Analyst II to lead incident response activities, conduct forensic investigations, and provide guidance on cybersecurity policies to enhance the organization's defense posture.
Responsibilities:
• Lead response activities for USCYBERCOM and DCDC directives, managing the lifecycle of Situational Awareness Reports (SAR) and ensuring all assets remain compliant with OPORDs, TASKORDs, IAVM notifications, and STIG requirements by published deadlines.
• Conduct deep-dive forensic investigations into cybersecurity events (data loss, unauthorized access, network exploits) to determine nature and scope; identify corrective actions for containment, eradication, and recovery.
• Perform thorough post-incident reviews to derive lessons learned, identify security gaps, and implement preventive measures to strengthen the program’s long-term defense posture.
• Provide expert guidance on cybersecurity directives and risk management policies; review POA&Ms for technical clarity and sound judgment to ensure acceptable remediation timeframes for security controls.
• Oversee enterprise-wide monitoring and logging across network infrastructure and endpoints to ensure the rapid detection and response to cyber incidents.
• Maintain and evolve IR SOPs in strict accordance with CJCSM 6510.01B, NIST SP 800-61R2, and DOW regulations to ensure procedural alignment with industry best practices.
• Translate technical findings into regular status reports for program leadership, DOW officials, and USCYBERCOM /DCDC repositories, detailing incident impact, effectiveness of response strategies, and lessons learned.
• Drive the evolution of incident response capabilities by identifying weaknesses, recommending advanced technologies, and implementing enhanced processes to stay ahead of evolving cyber threats.
• Support DOW CIO data collection by reviewing PPSM, CAP, SNAP, and GIAP requests against DISA guidelines; cross-train team members on emerging defense techniques and provide after-hours investigative support for critical incidents.
Qualifications:
Required:
• Bachelor’s degree in computer science or related field
• U.S. Citizenship and an active Secret Clearance (required) with the ability to obtain and maintain a Top-Secret Clearance.
• Active DoD 8570 IAT Level II certification or greater, including at least one of the following certifications in good standing: CCNA Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP, CASP+CE, CCNP Security, CISSP (or Associate), GCED, GCIH, or CCSP.
• Great communication skills and attention to detail.
• 8+ years in Information Technology or Information Security with 5+ years performing Cybersecurity Operations and Incident Response
• Required to work onsite daily at our DoD customer office location in Alexandria, VA or Seaside, California.
Preferred:
• Active DoD 8570 CSSP Incident Responder certification a plus, including at least one of the following certifications in good standing: CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+
• Knowledge of Incident Response Handling Procedures (NIST SP 800-61)
• Familiarity with cyber adversary tactics and frameworks (such as ATT&CK and D3FEND)
• Knowledge of one or more of the following cybersecurity tools: Trellix/ESS, Tanium, Microsoft Defender Endpoint, BeyondTrust, Splunk
Company:
True Zero Technologies, a veteran-owned small business. Founded in 2016, the company is headquartered in Annandale, USA, with a team of 51-200 employees. The company is currently Growth Stage.