CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ • Knowledge of Incident Response Handling Procedures (NIST SP 800-61) • Familiarity with cyber adversary tactics and ...
CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ • Knowledge of Incident Response Handling Procedures (NIST SP 800-61) • Familiarity with cyber adversary tactics and ...
Relevant certifications (e.g., Azure Security Engineer, Azure Administrator, CISSP, GCFA, GCIH). Familiarity with conducting forensic analysis of virtual machines, containers, and serverless ...
Relevant certifications (e.g., Azure Security Engineer, Azure Administrator, CISSP, GCFA, GCIH). Familiarity with conducting forensic analysis of virtual machines, containers, and serverless ...
SOC Watch Officer
Chandler, AZ · On-site
Any one of CASP, CCSP, SSCP, GMON, GCIH, GCIA, or GCED plus a DoD 8570/8140 CSSP Analyst, Infrastructure Support, or Incident Responder certification. * Active TS/SCI clearance * 6 years equivalent ...
Quick apply
SOC Watch Officer
Chandler, AZ · On-site
Any one of CASP, CCSP, SSCP, GMON, GCIH, GCIA, or GCED plus a DoD 8570/8140 CSSP Analyst, Infrastructure Support, or Incident Responder certification. * Active TS/SCI clearance * 6 years equivalent ...
Security+, CySA+, CASP+, GSEC, GCIH, or SSCP * Computing Environment (one required): RHCSA, RHCE, RHCA, MCSA, MCSE, MCTS, VMware VCP/VCAP/VCDX Additional Requirements * Resume and certification ...
Quick apply
Security+, CySA+, CASP+, GSEC, GCIH, or SSCP * Computing Environment (one required): RHCSA, RHCE, RHCA, MCSA, MCSE, MCTS, VMware VCP/VCAP/VCDX Additional Requirements * Resume and certification ...
Sr. Cybersecurity Operations Engineer
Washington, DC · On-site
$155K/yr
CISSP, GCIA, GCIH, or equivalent * Experience with CDM tools * Scripting (PowerShell, Python)
Sr. Cybersecurity Operations Engineer
Washington, DC · On-site
$155K/yr
CISSP, GCIA, GCIH, or equivalent * Experience with CDM tools * Scripting (PowerShell, Python)
GCIH, GREM, GCED, GCDA. * Exposure to scripting or automation (e.g., Python, PowerShell) to improve SOC workflows. Eligibility Requirement: * Must hold an Active Secret clearance * Must be a US ...
GCIH, GREM, GCED, GCDA. * Exposure to scripting or automation (e.g., Python, PowerShell) to improve SOC workflows. Eligibility Requirement: * Must hold an Active Secret clearance * Must be a US ...
Infrastructure Architect III
Colorado Springs, CO · On-site
$65 - $83.25/hr
CASP+ or CCNP Security or CCSP or GCIA or GCED or GCIH or Legacy Cisco Certified Network Associate (CCNA) * TS/SCI Clearance What We Offer: SGS offers a competitive benefits package to include: paid ...
Infrastructure Architect III
Colorado Springs, CO · On-site
$65 - $83.25/hr
CASP+ or CCNP Security or CCSP or GCIA or GCED or GCIH or Legacy Cisco Certified Network Associate (CCNA) * TS/SCI Clearance What We Offer: SGS offers a competitive benefits package to include: paid ...
CISSP, GCIA, GCIH, or equivalent * Experience with CDM tools * Scripting (PowerShell, Python)
Quick apply
CISSP, GCIA, GCIH, or equivalent * Experience with CDM tools * Scripting (PowerShell, Python)
Senior Information Security Engineer - DOWIN Ops
Seaside, CA · On-site
$117K - $159K/yr
CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ * 7+ years in Information Technology or Information Security with 5+ years performing Cybersecurity Operations and Incident ...
Senior Information Security Engineer - DOWIN Ops
Seaside, CA · On-site
$117K - $159K/yr
CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ * 7+ years in Information Technology or Information Security with 5+ years performing Cybersecurity Operations and Incident ...
System Administrator with Security Clearance
Fort Belvoir, VA · On-site
$100K - $135K/yr
CASP CE, CISSP, CISSP-ISSAP, CISSP-ISSEP, CSSLP, CISA, CISM, GCED, or GCIH. Compensation for the System Administrator: * Salary range: $100,000 - $135,000 *depending on experience* * Comprehensive ...
System Administrator with Security Clearance
Fort Belvoir, VA · On-site
$100K - $135K/yr
CASP CE, CISSP, CISSP-ISSAP, CISSP-ISSEP, CSSLP, CISA, CISM, GCED, or GCIH. Compensation for the System Administrator: * Salary range: $100,000 - $135,000 *depending on experience* * Comprehensive ...
Infrastructure Architect III
San Antonio, TX · On-site
$59.50 - $76.25/hr
CASP+ or CCNP Security or CCSP or GCIA or GCED or GCIH or Legacy Cisco Certified Network Associate (CCNA) * TS/SCI Clearance What We Offer: SGS offers a competitive benefits package to include: paid ...
Infrastructure Architect III
San Antonio, TX · On-site
$59.50 - $76.25/hr
CASP+ or CCNP Security or CCSP or GCIA or GCED or GCIH or Legacy Cisco Certified Network Associate (CCNA) * TS/SCI Clearance What We Offer: SGS offers a competitive benefits package to include: paid ...
Preferred: • Relevant certifications (e.g., Azure Security Engineer, Azure Administrator, CISSP, GCFA, GCIH). • Familiarity with conducting forensic analysis of virtual machines, containers, and ...
Preferred: • Relevant certifications (e.g., Azure Security Engineer, Azure Administrator, CISSP, GCFA, GCIH). • Familiarity with conducting forensic analysis of virtual machines, containers, and ...
Senior Information Security Engineer - DOWIN Ops
Alexandria, VA · On-site
$114K - $154K/yr
CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ * 7+ years in Information Technology or Information Security with 5+ years performing Cybersecurity Operations and Incident ...
Senior Information Security Engineer - DOWIN Ops
Alexandria, VA · On-site
$114K - $154K/yr
CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ * 7+ years in Information Technology or Information Security with 5+ years performing Cybersecurity Operations and Incident ...
Cyber Security Specialist with Security Clearance
Quantico, VA · On-site
$11K/mo
CCNP Sec, CASP CE, CISA, CISSP, GCED, GCIH, or equivalent/higher • Experience with HBSS, endpoint security, ACAS, Tanium, etc. Compensation for the Cyber Security Specialist include: • Salary ...
Cyber Security Specialist with Security Clearance
Quantico, VA · On-site
$11K/mo
CCNP Sec, CASP CE, CISA, CISSP, GCED, GCIH, or equivalent/higher • Experience with HBSS, endpoint security, ACAS, Tanium, etc. Compensation for the Cyber Security Specialist include: • Salary ...
SOC Lead (Top Secret) with Security Clearance
Manassas, VA · On-site
$150K - $170K/yr
CISSP, CISM, GCIH, GCIA, or equivalent are highly preferred * Experience in network defense, incident response, threat detection, vulnerability management, and security operations * Experience ...
SOC Lead (Top Secret) with Security Clearance
Manassas, VA · On-site
$150K - $170K/yr
CISSP, CISM, GCIH, GCIA, or equivalent are highly preferred * Experience in network defense, incident response, threat detection, vulnerability management, and security operations * Experience ...
Senior Security Engineer
Annapolis Junction, MD · On-site
$117K - $160K/yr
Security+, GSEC, SSCP, CCNA-Security, CISA, CISSP (or Associate), CASP, GCIH, or GCED * Required Education & Experience: High School/GED (+12) years of relevant experience * AD (+10) years of ...
Quick apply
Senior Security Engineer
Annapolis Junction, MD · On-site
$117K - $160K/yr
Security+, GSEC, SSCP, CCNA-Security, CISA, CISSP (or Associate), CASP, GCIH, or GCED * Required Education & Experience: High School/GED (+12) years of relevant experience * AD (+10) years of ...
CIOCC Tier 1 Analyst with Security Clearance
Rockville, MD · On-site
$30 - $33/hr
... GCIH, GCIA, GPEN. - One or more preferred • IDS Log analysis skills • Packet Capture tools and analysis • Knowledge of well-known protocols and services (FTP, HTTP, SSH, SMB, DAP) • Target ...
CIOCC Tier 1 Analyst with Security Clearance
Rockville, MD · On-site
$30 - $33/hr
... GCIH, GCIA, GPEN. - One or more preferred • IDS Log analysis skills • Packet Capture tools and analysis • Knowledge of well-known protocols and services (FTP, HTTP, SSH, SMB, DAP) • Target ...
Cyber Instructor Developer Level II with Security Clearance
Biloxi, MS · On-site
$42K - $57K/yr
GNFA, GCIH, GSEC, CISSP, CASP, Sec+. • We maintain a drug-free workplace and perform post offer, pre-employment substance abuse testing.
Cyber Instructor Developer Level II with Security Clearance
Biloxi, MS · On-site
$42K - $57K/yr
GNFA, GCIH, GSEC, CISSP, CASP, Sec+. • We maintain a drug-free workplace and perform post offer, pre-employment substance abuse testing.
Senior Detection & Response Analyst
Plano, TX · Remote
$102K - $132K/yr
... GCIH or CASP is a plus. · Tines (or other automation) experience is highly valued · Proficient with Microsoft Office & documentation skills (Word, Excel, PowerPoint)
Quick apply
Senior Detection & Response Analyst
Plano, TX · Remote
$102K - $132K/yr
... GCIH or CASP is a plus. · Tines (or other automation) experience is highly valued · Proficient with Microsoft Office & documentation skills (Word, Excel, PowerPoint)
Be Seen First
Excellent communication and documentation skills Required Certifications (One Required) Security+, SSCP, GSEC, GCIH, GICSP, Cloud+, EH Advanced Certifications Preferred: SecurityX (CASP+), CCNA, CCNP ...
Quick apply
Be Seen First
Excellent communication and documentation skills Required Certifications (One Required) Security+, SSCP, GSEC, GCIH, GICSP, Cloud+, EH Advanced Certifications Preferred: SecurityX (CASP+), CCNA, CCNP ...
Gcih information
See salary details
$8.89 - $13.70
16% of jobs
$15.17 is the 25th percentile. Wages below this are outliers.
$13.70 - $18.51
29% of jobs
The median wage is $19.71 / hr.
$18.51 - $23.32
19% of jobs
$27.58 is the 75th percentile. Wages above this are outliers.
$23.32 - $28.13
12% of jobs
$28.13 - $32.93
8% of jobs
$32.93 - $37.74
5% of jobs
$37.74 - $42.55
4% of jobs
$42.55 - $47.36
2% of jobs
$47.36 - $52.16
2% of jobs
$52.16 - $56.97
1% of jobs
$56.97 - $61.78
1% of jobs
$8
$26
$61
How much do gcih jobs pay per hour?
What does a GCIH do?
A typical day for someone in a GCIH-certified incident response position often involves monitoring security alerts, analyzing potential threats, investigating security incidents, and coordinating response efforts across IT and security teams. You may perform forensic analysis, create incident reports, and contribute to post-incident reviews to strengthen organizational defenses. Collaboration with other cybersecurity professionals and regular communication with stakeholders are common, ensuring everyone is informed and that processes are consistently improved. The work environment can be dynamic and may require prioritizing tasks quickly, especially during active cybersecurity incidents. This hands-on, investigative role provides opportunities for ongoing learning and advancement within the cybersecurity field.
What are the key skills and qualifications needed to thrive in the GCIH position?
To thrive as a GIAC Certified Incident Handler (GCIH), you need a strong understanding of cybersecurity principles, incident response processes, and threat analysis, usually supported by relevant IT or cybersecurity degrees and holding the GCIH certification. Familiarity with tools like SIEM platforms, network analyzers, malware analysis suites, and forensic software is standard in this role. Outstanding analytical thinking, problem-solving abilities, communication, and teamwork help set professionals apart. These skills are crucial to identify, mitigate, and recover from cybersecurity incidents effectively in fast-paced and high-stakes environments.
What is a GCIH?
A GCIH (GIAC Certified Incident Handler) job involves identifying, responding to, and mitigating cybersecurity incidents. Professionals in this role analyze security breaches, contain threats, and implement measures to prevent future attacks. They often work in incident response teams within cybersecurity or IT departments. Their expertise includes threat intelligence, malware analysis, and digital forensics. A GCIH certification validates their skills in handling cyber threats effectively.

Full-time
Re-posted 17 days ago
Job description
True Zero Technologies is a veteran-owned small business focused on enabling people and technology for better outcomes. They are seeking a Cybersecurity Operations Analyst II to lead incident response activities, conduct forensic investigations, and provide guidance on cybersecurity policies to enhance the organization's defense posture.
Responsibilities:
• Lead response activities for USCYBERCOM and DCDC directives, managing the lifecycle of Situational Awareness Reports (SAR) and ensuring all assets remain compliant with OPORDs, TASKORDs, IAVM notifications, and STIG requirements by published deadlines.
• Conduct deep-dive forensic investigations into cybersecurity events (data loss, unauthorized access, network exploits) to determine nature and scope; identify corrective actions for containment, eradication, and recovery.
• Perform thorough post-incident reviews to derive lessons learned, identify security gaps, and implement preventive measures to strengthen the program’s long-term defense posture.
• Provide expert guidance on cybersecurity directives and risk management policies; review POA&Ms for technical clarity and sound judgment to ensure acceptable remediation timeframes for security controls.
• Oversee enterprise-wide monitoring and logging across network infrastructure and endpoints to ensure the rapid detection and response to cyber incidents.
• Maintain and evolve IR SOPs in strict accordance with CJCSM 6510.01B, NIST SP 800-61R2, and DOW regulations to ensure procedural alignment with industry best practices.
• Translate technical findings into regular status reports for program leadership, DOW officials, and USCYBERCOM /DCDC repositories, detailing incident impact, effectiveness of response strategies, and lessons learned.
• Drive the evolution of incident response capabilities by identifying weaknesses, recommending advanced technologies, and implementing enhanced processes to stay ahead of evolving cyber threats.
• Support DOW CIO data collection by reviewing PPSM, CAP, SNAP, and GIAP requests against DISA guidelines; cross-train team members on emerging defense techniques and provide after-hours investigative support for critical incidents.
Qualifications:
Required:
• Bachelor’s degree in computer science or related field
• U.S. Citizenship and an active Secret Clearance (required) with the ability to obtain and maintain a Top-Secret Clearance.
• Active DoD 8570 IAT Level II certification or greater, including at least one of the following certifications in good standing: CCNA Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP, CASP+CE, CCNP Security, CISSP (or Associate), GCED, GCIH, or CCSP.
• Great communication skills and attention to detail.
• 8+ years in Information Technology or Information Security with 5+ years performing Cybersecurity Operations and Incident Response
• Required to work onsite daily at our DoD customer office location in Alexandria, VA or Seaside, California.
Preferred:
• Active DoD 8570 CSSP Incident Responder certification a plus, including at least one of the following certifications in good standing: CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+
• Knowledge of Incident Response Handling Procedures (NIST SP 800-61)
• Familiarity with cyber adversary tactics and frameworks (such as ATT&CK and D3FEND)
• Knowledge of one or more of the following cybersecurity tools: Trellix/ESS, Tanium, Microsoft Defender Endpoint, BeyondTrust, Splunk
Company:
True Zero Technologies, a veteran-owned small business. Founded in 2016, the company is headquartered in Annandale, USA, with a team of 51-200 employees. The company is currently Growth Stage.
About True Zero Technologies
Sourced by ZipRecruiter
Industry
It services
Company size
11 - 50 Employees
Headquarters location
Fairfax, VA, US
Year founded
2016