Action Officer

Sentar

Charleston (SC)

On-site

USD 120,000 - 180,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Employee ownership
Health benefits
401(k) match
Paid time off

Job summary

Sentar in Charleston, SC seeks an Action Officer in the Cyber Operations Center to support the Defense Health Agency by enabling proactive cybersecurity operations across DoD health systems. The role embeds with NIWC Atlantic's DCO IPT, triages RFIs, conducts threat analysis, and delivers actionable intelligence to DHA subscribers.

Candidates must hold a TS/SCI clearance with DoD 8140 baseline certifications (Security+, CISSP/CISM).

Qualifications

  • 5+ years in cybersecurity or threat intelligence supporting DoD/federal agencies
  • Strong knowledge of DoD cybersecurity policies and RMF
  • 5+ years threat research, analysis, and reporting for SOC/IR teams
  • Proficiency with MITRE ATT&CK threat modeling and IOCs
  • Experience with SIEM tools (Splunk/ELK/QRadar) and OSINT research
  • Familiarity with malware analysis, DDoS patterns, phishing forensics
  • Strong written and verbal communication for technical reports
  • Ability to manage multiple RFIs in a high-tempo environment
  • Knowledge of network protocols (TCP/IP, DNS, HTTP/S) and standard intrusion methods
  • Proven collaboration across cross-functional teams

Responsibilities

  • Receive, triage and respond to RFIs from DHA subscribers
  • Conduct threat research on cyber incidents, indicators and adversary activity
  • Develop concise, actionable intelligence reports for subscribers
  • Collaborate with internal analysts and incident responders
  • Maintain situational awareness of current threats and attack techniques
  • Refine RFI processing workflows and SOPs
  • Provide guidance on threat mitigation and security best practices
  • Track RFI status and trends for operational reporting

Skills

Threat intelligence
DoD policy
SOC/IR
MITRE ATT&CK
OSINT tools
JIRA/Confluence
Networking (TCP/IP)
Threat reporting
Communication
RFIs management

Education

Security+ / DoD 8570 baseline
CISM / CISSP

Tools

Splunk
ELK
QRadar
TIPs
OSINT tools
JIRA
Confluence
MS Teams
SharePoint

Job description

Current job opportunities are posted here as they become available.

Subscribe to our RSS feeds to receive instant updates as new positions become available.

Sentar is proud to be an employee-owned company, fostering a culture of empowerment, collaboration, and innovation. Sentar is dedicated to developing the critical talent that the connected world demands to create solutions to address the convergence of cybersecurity, intelligence, analytics, and systems engineering. We invite you to join the team where you can build, innovate, and secure your career.

Sentar is seeking an Action Officer in Charleston, SC!

The Cyber Operations Center (CyOC) Action Officer will support the mission-critical efforts of the Defense Health Agency (DHA) by enabling proactive cybersecurity operations that protect sensitive healthcare systems across the Department of Defense (DoD). This role is embedded within the Naval Information Warfare Center (NIWC) Atlantic's Defensive Cyberspace Operations (DCO) Integrated Product Team (IPT), which is tasked with safeguarding DHA’s global infrastructure against cyber threats, unauthorized access, and emerging vulnerabilities.

As part of the CyOC team, the Action Officer serves as a key operational resource, working directly with DHA subscribers to receive, triage, and respond to Requests for Information (RFIs) related to cybersecurity threats and incidents. This includes performing detailed threat analysis, coordinating with cross-functional intelligence teams, and delivering actionable intelligence reports to bolster the defense posture of supported entities.

Analysts in this role serve on the front lines of cyber defense, translating raw threat data and subscriber inquiries into strategic insights. By supporting frontline military medical operations and critical DoD health IT systems, the RFI Analyst plays a direct role in ensuring mission continuity, data protection, and the safety of warfighters and beneficiaries alike.

This position requires a Top Secret/SCI clearance, strong knowledge of DoD cyber policy, and a proven ability to analyze and communicate complex threat intelligence. Candidates will be part of a dynamic, fast-paced environment where analytical precision, rapid response, and interagency collaboration are essential to mission success.

Role Description:

The CyOC Action Officer will support the Defensive Cyberspace Operations mission by delivering actionable intelligence and analytical support to DHA stakeholders. Specific responsibilities include:

  • Receive, assess, and triage incoming Requests for Information (RFIs) from DHA subscribers.
  • Conduct detailed research and threat analysis on cyber incidents, indicators, and adversary activity.
  • Develop and deliver concise, accurate, and actionable intelligence reports tailored to subscriber needs.
  • Collaborate with internal CyOC analysts, incident responders, and threat intelligence teams to ensure comprehensive RFI responses.
  • Maintain situational awareness of current and emerging cyber threats, vulnerabilities, and attack techniques.
  • Support the development, documentation, and refinement of RFI processing workflows and standard operating procedures (SOPs).
  • Provide technical guidance to subscribers regarding cyber threat mitigation and security best practices.
  • Track RFI status, metrics, and trends to support operational reporting and performance improvement.
  • Coordinate with NIWC Atlantic and DHA stakeholders to ensure mission alignment and timely response to critical intelligence needs.
  • Operate in a high-tempo environment with competing priorities and rapidly evolving threat landscapes.
Qualifications:

Clearance Level: TS/SCI required

Certifications: Candidate must meet DoD 8140 (Formerly 8570) baseline certification at the time of hire. The following are commonly accepted: Security+, CISM, or CISSP

Experience:

  • 5+ years of experience in cybersecurity, threat intelligence analysis, or related cyber defense roles supporting DoD or federal agencies
  • Strong understanding of DoD cybersecurity policies, including DoD 8500-series, DoDI 8510.01 (RMF), and CJCSM 6510.01 (Cyber Incident Handling)
  • 5+ years of experience conducting cyber threat research, analysis, and reporting in support of SOC, IR, or cyber threat intel teams
  • Proficiency in analyzing cyber threats across the MITRE ATT&CK framework, including TTPs and IOCs
  • Experience with threat intelligence platforms (TIPs), SIEM tools (e.g., Splunk, ELK, QRadar), and open-source intelligence (OSINT) research tools
  • Familiarity with malware analysis, DDoS patterns, phishing campaign forensics, and adversarial behavior
  • Strong written and verbal communication skills, including the ability to draft and present technical intelligence reports to varied audience.
  • Ability to manage and prioritize multiple concurrent RFIs in a high-tempo operations environment
  • Working knowledge of network architecture and protocols, including TCP/IP, DNS, HTTP/S, SMTP, and common intrusion methods
  • Hands-on experience with collaboration and tracking tools such as JIRA, Confluence, MS Teams, and SharePoint
  • Demonstrated ability to work collaboratively in a cross-functional environment under minimal supervision
Benefits at Sentar:

Our unique ownership model attracts top talent, giving employees the freedom to take initiative and drive meaningful improvements. In addition to cultivating a thriving and inclusive work environment, Sentar offers an extensive benefits package designed to support the well-being of employees and their families. Employee ownership is the foundation of our culture, promoting participation, teamwork, and accountability while ensuring long-term financial security and a commitment to excellence.

  • Voluntary Medical, Dental, Vision, with Health Savings or Flexible Spending Plan options
  • Voluntary Life, Critical Illness, Accident, and Long Term Care insurance options
  • Group Term Life, Short-Term and Long-Term Disability is provided by Sentar to all qualifying employees
  • Generous 401(k) match
  • Competitive PTO plan that graduates quickly with years of service
  • Other leave programs; holiday schedule along with bereavement, maternity, jury and military duty
Sentar is an affirmative Action and Equal Opportunity Employer M/F/Vets/Persons with Disabilities

We want you to build your career at Sentar, so if you are an individual with a disability and require a reasonable workplace accommodation applying for a job or at any point in the employment process, contact the Recruiting Manager at recruiting@sentar.com . Please indicate the specifics of the assistance needed. Thank you for considering Sentar in your employment search.

Build, Innovate, Secure Your Career at Sentar.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Action Officer
Action Officer

Sentar Inc. • Charleston (SC)

On-site
USD 110,000 - 170,000
Medical, Dental, Vision
401(k) match
Paid time off
+2
Battle Watch Captain
Battle Watch Captain

Sentar Inc. • Pearl City (HI)

On-site
USD 80,000 - 120,000
Voluntary Medical, Dental, Vision options
Generous 401(k) match
Tuition reimbursement
+1
Red Team Adversary Emulation Tech Lead
Red Team Adversary Emulation Tech Lead

Sentar • Quantico (VA)

On-site
USD 180,000 - 240,000
Employee ownership
401(k) match
PTO
+4
Red Team Adversary Emulation Tech Lead
Red Team Adversary Emulation Tech Lead

Sentar Inc. • Quantico (VA)

On-site
USD 140,000 - 230,000
Medical coverage
Dental coverage
Vision coverage
+4
Cyber Threat Intelligence (CTI) Analyst
Cyber Threat Intelligence (CTI) Analyst

Sentar Inc. • Fort Bragg (NC)

On-site
USD 95,000 - 130,000
Voluntary Medical, Dental, Vision
401(k) match
Paid time off
+3
Red Team Operator (Hybrid)
Red Team Operator (Hybrid)

Sentar Inc. • Quantico (VA)

On-site
USD 120,000 - 180,000
Voluntary Medical, Dental, Vision
Health Savings or Flexible Spending
Group Term Life & Disability
+4
Cyber Network Defense Analyst (CNDA)
Cyber Network Defense Analyst (CNDA)

Sentar Inc. • Fort Meade (MD)

On-site
USD 90,000 - 130,000
Health insurance options
Generous 401(k) match
Tuition reimbursement
+2
Cyber Threat Intelligence (CTI) Analyst
Cyber Threat Intelligence (CTI) Analyst

Sentar • Fort Bragg (NC)

On-site
USD 90,000 - 130,000
Employee ownership
401(k) match
Paid time off
+1
Blue Team Lead / Sr Cyber Defense Analyst
Blue Team Lead / Sr Cyber Defense Analyst

Sentar • Fort Bragg (NC)

On-site
USD 110,000 - 140,000
Medical/Dental/Vision
Life & Disability Insurance
Group Term Life
+3
Digital Network Exploitation Analyst (DNEA): Level 1-4
Digital Network Exploitation Analyst (DNEA): Level 1-4

Sentar Inc. • Nevada (IA)

On-site
USD 70,000 - 100,000
Cigna Health Insurance
Guardian Vision and Dental Insurance
Mutual of Omaha Life/Accident/Disability insurance
+2