Cyber Threat Emulation & Analyst

STS Systems Support, LLC

San Antonio (TX)

On-site

USD 80,000 - 110,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Paid holidays
Paid time off
Medical insurance
401(k) with company match

Job summary

STS Systems Support, LLC is seeking a Cyber Threat Emulation & Analyst for Lackland AFB in San Antonio, TX. The position involves conducting detailed vulnerability assessments, developing security measures, and providing cyber threat intelligence.

Ideal candidates will have at least five years of penetration testing experience and demonstrate strong knowledge of cyber security operations. Competitive benefits include medical, dental, vision insurance, and more.

Qualifications

  • Five years of penetration testing experience.
  • Demonstrated advanced knowledge of cyber security operations.
  • Strong understanding of Linux Operating System.

Responsibilities

  • Conduct vulnerability assessments and Cyber Threat Emulation operations.
  • Develop mitigations and policies to strengthen security posture.
  • Generate threat intelligence indicators during Cyber Threat Emulation operations.

Skills

Penetration Testing
Cyber Security Operations
PowerShell
BASH
Python
MITRE ATT&CK Framework
Linux Operating System

Education

BA/BS or MA/MS in relevant field

Job description

Lackland Air Force Base, San Antonio, TX, USA •

Job Description

Posted Wednesday, July 1, 2026 at 5:00 AM

STS Systems Support, LLC (SSS) is a government consulting and contracting firm supporting federal agencies and military installations across the U.S. We areseeking a Cyber Threat Emulation & Analyst at Lackland AFB in San Antonio, TX.

What You'll Do:

  • Conduct both automated and manual enterprise vulnerability assessments, including conducting regular patch & configuration vulnerability assessments as directed by operational flight leads.
  • Conduct Cyber Threat Emulation operations, and coordinate with security teams to strengthen the overall security posture of the AFNet and AFIN various tools and capabilities.
  • Test for real‑time security vulnerabilities, conduct assessments, and assess vulnerability risk and impact.
  • Continuously develop and maintain safe and valid procedures to actively test Enterprise defensive measures. (CDRL A007 & A008)
  • Develop mitigations, policies, and procedures to coordinate with internal teams. (CDRL A007)
  • Work with incident response team to develop response policies and procedures.
  • Generate threat intelligence indicators during the course of Cyber Threat Emulation operations and provide reports back to operators. (CDRL A008)
  • Coordinate with internal and external intelligence teams in order to replicate threat actor (TA) Techniques, Tactics, and Procedures (TTPs).
  • Research & Evaluate threats and vulnerabilities to assist in the prioritization of remediation actions.
  • Utilize knowledge and understanding of the Cyber Threat Framework (ODNI) and production of Threat Emulation findings.
  • Utilize the MITRE ATT&CK framework to perform cyber security operations testing, and develop improvements based upon adversary behavior.
  • Formulate, lead and persuade individuals, large teams and communities on ideas, concepts, and opportunities.
  • Leverage research, frameworks, and best practices on the latest exploits and security trends and currency on industry trends and provide operational reports/assessments for development of tactics, techniques, and procedures. (CDRL A002)
  • Provide OJT to other contractor employees, military, and/or civilian personnel, and ensure continuity folders/working aids are updated at least once per quarter in order to ensure efficient transition when personnel rotate.
  • Create, document, and report metrics for analysis to improve weapon system processes and mission execution. (CDRL A009).
  • Provide information to operational leaderships tasking as required as it relates to CTE actions

What You Bring:

Requirements:

  • Active TS/SCI
  • Five years' of penetration testing experience. BA/BS or MA/MS
  • Five (5) years of penetration testing experience.
  • Demonstrated advanced knowledge of cyber security operations with master of two or more of the following: attack surface management, Security Operations Center (SOC) operations, Intrusion Detection/Intrusion Prevention Systems (IDS/IPS), Security Information and Event Management (SIEM) use, threats (including Advanced Persistent Threat (APT), insider), vulnerabilities, and exploits; incident response, investigations and remediation.
  • Experience with PowerShell, BASH or Python scripting/programming language.
  • Must have a strong understanding of Linux Operating System.
  • Extensive knowledge of MITRE ATT&CK framework, and its uses within the cybersecurity community (e.g., Open Source projects)

What We Offer:

STS Systems Support, LLC (SSS) offers a competitive benefits package to include paid holidays, paid time off including sick and vacation leave, medical, dental and vision insurance, flexible spending accounts, short and long term disability, company paid life insurance, 401(k) with a company match and discretionary profit sharing and tuition reimbursement.

SSS is an Equal Opportunity Employer. Employment decisions are made without regard to any protected category. Hiring preference will be given to BBNC shareholders, their spouses and descendants and Alaska Natives in accordance with Public Law 93-638

Lackland Air Force Base, San Antonio, TX, USA,

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Emerging Threats Analyst
Emerging Threats Analyst

STS Systems Support, LLC • San Antonio (TX)

On-site
USD 85,000 - 110,000
Medical, dental and vision insurance
401(k) with company match
Paid holidays and time off
Cyber Data Engineer
Cyber Data Engineer

Ssd Anc • San Antonio (TX)

On-site
USD 120,000 - 160,000
Tuition reimbursement
Medical and vision insurance
Paid holidays and PTO
Senior Cyber Threat Emulation Analyst
Senior Cyber Threat Emulation Analyst

STS Systems Support, LLC • San Antonio (TX)

On-site
USD 80,000 - 110,000
Paid holidays
Paid time off
Medical insurance
+1
Signature Writer – Intermediate – Cyber Security
Signature Writer – Intermediate – Cyber Security

Ssd Anc • San Antonio (TX)

On-site
USD 120,000 - 180,000
Paid holidays
401(k) with company match
Tuition reimbursement
Senior Cyber Threat Emulation & Analysis Specialist
Senior Cyber Threat Emulation & Analysis Specialist

Bristol Bay Native Corporation • San Antonio (TX)

On-site
USD 80,000 - 120,000
Paid holidays
Medical insurance
401(k) with company match
Incident Response Officer (Intermediate)
Incident Response Officer (Intermediate)

Ssd Anc • San Antonio (TX)

On-site
USD 110,000 - 150,000
Health insurance
Paid time off
401(k) with company match
+1
Content Developer (SIEM Cyber Security)
Content Developer (SIEM Cyber Security)

STS Systems Support, LLC • San Antonio (TX)

On-site
USD 90,000 - 120,000
Paid holidays
Medical, dental, and vision insurance
401(k) with company match
Cyber Defense Operator (Intermediate)
Cyber Defense Operator (Intermediate)

Ssd Anc • San Antonio (TX), Northern (KY)

Hybrid
USD 120,000 - 160,000
Paid holidays
Medical insurance
401(k) with company match
Cyber Vulnerability Test Engineer
Cyber Vulnerability Test Engineer

IPSecure • Chicago (IL)

On-site
USD 95,000 - 120,000
Medical, Dental, Vision
Unlimited Vacation
401(k) with employer match
+1
System Administrator & Technical Support
System Administrator & Technical Support

Bristol Bay Native Corporation • San Antonio (TX)

On-site
USD 75,000 - 90,000
Paid holidays
Medical, dental, and vision insurance
401(k) with company match
+1