Cybersecurity Systems Analyst Intermediate

Amentum company

Town "n" Country (FL)

On-site

USD 75,000 - 91,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Health insurance
401(k) matching
Paid time off

Job summary

Amentum is seeking a Cybersecurity Systems Analyst to support USSOCOM with RMF-based assessments, A&A packaging, and cybersecurity risk mitigation. The role includes coordinating with DoD and IC stakeholders, performing vulnerability assessments with ACAS/Nessus, and ensuring STIG compliance across networks and cloud environments.

The ideal candidate has 5+ years in cybersecurity, strong RMF knowledge, and an active TS/SCI clearance. Travel and multi-system coordination may be required.

Qualifications

  • Experience with US Combatant Commands is desired.
  • Technical background in system administration, architecture and engineering.
  • Networking, identity management, Microsoft and Linux operating systems, database, and mobility.
  • Working knowledge of the RMF.
  • Knowledge of Telos Xacta or eMASS.
  • Strong communications skills and DoD IA knowledge.
  • Active TS/SCI clearance required.

Responsibilities

  • Performs assessment and authorization coordination per RMF and ICD 503.
  • Assesses network compliance against NIST 800-53 and creates A&A packages.
  • Executes risk and vulnerability assessments and documents results for cybersecurity programs.
  • Advise on risk mitigation and action plans for USSOCOM and components.
  • Liaises with SIF to ensure DISA STIG compliance and certification.

Skills

RMF expertise
Cybersecurity assessment
NIST 800-53
ACAS/Nessus/SCAP
DoD/DIA/DISA regulations
TS/SCI clearance

Education

BA/BS

Tools

eMASS
Telos Xacta
Nessus
SIEM
DISA STIG

Job description

Amentum is a global leader in advanced engineering and innovative technology solutions, trusted by the United States and its allies to address their most significant and complex challenges in science, security and sustainability. Our people apply undaunted curiosity, relentless ambition and boundless imagination to challenge convention and drive progress. Our commitments are underpinned by the belief that safety, collaboration and well-being are integral to success.Headquartered in Chantilly, Virginia, we have approximately 50,000employees in more than 70 countriesacross all 7 continents.

The Contractor shall provide Assessment and Authorization (A&A) assistance within the Risk Management Framework (RMF) concept in support of the defense in depth program for networks, systems, services and devices at USSOCOM, its Component Commands, TSOCs, and deployed forces. This shall include a complete and thorough risk assessment of information systems (IS) to ensure that systems maintain the appropriate level of confidentiality, integrity, and availability based on national, DoD, DIA, and NSA security regulations and directives. The Contractor shall follow the DoD RMF and Intelligence Community Directive (ICD) 503 when providing A&A support and recommendations. A&A includes the processing of Connection Approval Packages (CAPs) for the Defense Information Systems Network (DISN) and the Defense Intelligence Agency (DIA) Approval Authorities and Commercial Solutions for Classified capability package for National Security Agency (NSA) registration.

Typical duties include
  • Performs assessment and authorization coordination. Advises and assists the customer with Risk Management Framework (RMF) and develops a Plan of Action and Milestones for resolving network deficiencies in accordance with DODI 8510.01 and ICD 503.
  • The duties of this task include assessing network compliance against controls listed in NIST 800-53 and creating A&A packages. Performs assessment, compliance, and validation of IT systems to support the Cybersecurity program at USSOCOM, its Component Commands, TSOCs, and deployed forces.
  • The Contractor shall execute a comprehensive assessment, compliance and validation of customer networks to ensure compliance with regulations and security and standards.
  • The end goal is to ensure the integrity of customer systems by identifying and mitigating potential shortcomings and vulnerabilities.
  • Advise USSOCOM, its Component Commands, TSOCs, and deployed forces on network and system risks, risk mitigation courses of action, and operational.
  • Additionally, the Cybersecurity Systems Analyst should be able to perform security evaluations and vulnerability assessments using the DOD Assured Compliance Assessment Solution (ACAS), Nessus vulnerability scanning tool and Security Content Automation Protocol tool.
  • Identify applicable STIGs and perform assessments using the Security Content Automation Protocol tool. The Cybersecurity Systems Analyst will liaison with network and system administrators to correct identified deficiencies.
  • The Cybersecurity Systems Analyst will also scan (or review scans) for new systems and applications being introduced into the SOF environment, identify issues, and draft certification letters for the government. The contractor will liaison with the Site Integration Facility (SIF) to ensure systems and application meet the standards in the DISA Security Technical Implementation Guides (STIG).
  • The Cybersecurity Systems analyst should be knowledgeable of cyber network defense tools such as end point security, SIEM, comply to connect, etc.
  • Tracks A&A status of SIE governed ISs. Ensures artifacts and documentation are available in the USSOCOM-chosen automated tool for cybersecurity
  • Provide DoD & IC RMF subject matter expertise to USSOCOM, its Component Commands, TSOCs, deployed forces and their delegates, including other Contractors, and assist with the development and execution of the RMF program at USSOCOM, its Component Commands, TSOCs, and deployed forces.
  • Maintain, track, and validate DISN, cloud and DIA connection approval packages, including those from USSOCOM, its Component Commands, TSOCs, and other subordinate organizations.
  • Develop and maintain supporting documentation for new and existing networks, cloud environments, information systems and technologies as they are introduced into the SIE
  • Develop and review the A&A of SIE networks, cloud environments, systems, services, telecommunication circuits, mobile devices, portable electronic devices, hardware, and software using the DoD & IC RMF to obtain an Authority to Operate (ATO), Interim Authority to Test (IATT), or Authority to Connect (ATC).
  • Perform risk and vulnerability assessments of IT and IS for authorization; prepare risk assessment reports for submission to the SCA and Authorizing Official/Designated Authorizing Official/Designated Accrediting Authority (AO/DAO/DAA) in accordance with DoD, DIA, USCYBERCOM, USSOCOM, Component Command, TSOC, and deployed forces’ policies, procedures, and regulations.
  • Assist USSOCOM, its Component Commands, TSOCs and deployed forces with the enforcement of A&A, as well as DoD, DIA, USSOCOM, Component Command, TSOC, and deployed forces’ connection standards for networks and systems.
  • Track and maintain A&A databases, web sites and tools to ensure that networks, systems and devices are properly documented and managed from a cybersecurity perspective.
  • Track and report to higher headquarters organizations (e.g. USCYBERCOM, DIA) compliance with applicable Cybersecurity regulations and directives.
  • Ensure timely notifications are made to responsible individuals and organizations in order to prevent lapses in accreditations (e.g., 30, 60, and 90 day notices).
  • Develop and maintain an Information Security Continuous Monitoring (ISCM) Plan. This plan shall address ongoing awareness of information security, vulnerabilities, security controls, and threats to support organizational risk management decisions.
  • Identify, assess, and advise on cybersecurity control compliance and associated risks.
  • Coordinate with USCYBERCOM, DoD, DIA, NSA, DISA, and subordinate organizations to support the resolution of issues with security, A&A, connection approvals, and waiver requests.
  • Perform network, cloud, information systems, hardware, software and device security authorization and assessments, as well as the application and execution of policy, including project management support services.
  • Validate the patching of systems, perform validation scanning, develop Plans of Action & Milestone (POA&Ms), and report as directed by applicable policies, procedures, and regulations.
  • Provide subject matter expertise for COA development and the implementation of Cybersecurity mitigation strategies.
  • Develop and implement required processes, procedures, and capabilities to mitigate vulnerabilities and weaknesses for software and hardware deployment. Identify, implement and validate continued effectiveness of key performance parameters and applied security measures
  • Perform analytics on cybersecurity posture and provide reports to the AO/DAO and applicable stakeholders as required per ISCM and AO/DAO direction.
Other Essential Functions:
  • Must demonstrate professional behavior at all times when dealing with customers,management, and co-workers. Must have clear, concise and accurate communications skills in English, both verbal andwritten.
  • Grooming and dress must be appropriate for the position and must not impose a safety risk to employees orothers.
  • Must maintain a positive work atmosphere by behaving and communicating in a professional manner.
  • Independentpersonal transportation to office or work site is required. Travel (up to 10%) to and from customer locations and testlocations (government and vendor) may be required to support projects. This may involve airline travel. In some cases,accommodations can possibly be made for POV, if necessary.
  • When operating any vehicle for work purposes, must wear seat belt and in addition, no cellular devicesare to be used when vehicle is in motion.
Minimum Requirements:
Knowledge, Skills and Abilities:
  • Experience with the US Combatant Commands (USCENTCOM/USSOCOM) is desired
  • Technical background with system administration experience, architecture and engineering preferred
  • Technical background in networking, identity management, Microsoft and Linux operating systems, database, and mobility
  • Working knowledge of the RMF.
  • Knowledge of the Telos Xacta or Enterprise Mission Assurance Support Services (eMASS) system is desired.
  • Must have excellent communications skill (written and oral) and interpersonal skills.
  • Knowledge and experience with DoD IA processes and policies (e.g., DODI 8510.01, NIST, CNSS and other cybersecurity policies, Chairman of the Joint Chiefs of Staff Manual (CJCSM) 65101.01, Incident Response and other IA policies).
  • Active TS/SCI clearance required. (Note: US Citizenship is required to obtain a security clearance)
Experience, Education, & Certification Requirements:
  • Years of Experience Required:5+ yrs
  • Education Required:BA/BS
  • Certification Required:CurrentDoD8570.01- M,IAT-LevelIIIorIAM Level III. Example Certs: CISSP (or Associate), CASP+CE, SecurityX CE, CISA, CISM, CCISO, GCED, GCIH, CCSP, or GSLC
  • Physical Requirements: May include lifting of weight up to forty (20) pounds as necessary
  • Work Environment: An inside environment may be a cubicle (considerations: close quarters, low to moderate noise, bright or dim lighting). Needs to be able to work well with co-workers and all levels of management. No hazards on job or unusual environmental conditions.
  • Equipment and Machines: Ability to operate office equipment such as a personal computer, printer, copy machine, telephone, fax machine and other equipment including desk supplies and other work-related tools as required.
  • Attendance: Normal hours are Monday – Friday between 6:00am to 4:00pm. With the exception of STD/LTD/FMLA & approved time off, attendance is considered essential.
Compensation Details:

$83,000

The compensation range or hourly rate listed for this position is provided as a good-faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws.

Benefits Overview:
  • Health, dental, and vision insurance
  • Paid time off and holidays
  • Retirement benefits (including 401(k) matching)
  • Educational reimbursement
  • Parental leave
  • Employee stock purchase plan
  • Tax-saving options
  • Disability and life insurance
  • Pet insurance

Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.

Original Posting:

09/30/2026 - Until Filled

Amentum anticipates this job requisition will remain open for at least three days, with a closing date no earlier than three days after the original posting. This timeline may change based on business needs.

Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed, marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Analyst (Intermediate)
Cybersecurity Analyst (Intermediate)

Amentum company • Town "n" Country (FL)

On-site
USD 83,000 - 103,000
Health insurance
Dental insurance
Vision insurance
+9
Cybersecurity Analyst
Cybersecurity Analyst

Amentum company • McLean (VA)

On-site
USD 130,000 - 160,000
Health insurance
401(k) matching
Educational reimbursement
+5
Cyber Systems Engineer/ Information System Security Engineer (ISSE)
Cyber Systems Engineer/ Information System Security Engineer (ISSE)

Amentum company • Washington

On-site
USD 180,000 - 220,000
Health insurance
401(k) matching
Educational reimbursement
+1
Cybersecurity Systems Analyst, Associate
Cybersecurity Systems Analyst, Associate

TJ Consulting Group • Tampa (FL)

On-site
USD 70,000 - 100,000
PTO
Holiday Pay
401K with a 4% Match
+13
Expert Cyber Security Engineer
Expert Cyber Security Engineer

Amentum • Arlington (VA)

On-site
USD 185,000 - 200,000
Cybersecurity Systems Analyst, Intermediate
Cybersecurity Systems Analyst, Intermediate

TJ Consulting Group • Tampa (FL)

On-site
USD 90,000 - 130,000
PTO
Holiday Pay
401K Match
+11
CYBER SECURITY ANALYST 3
CYBER SECURITY ANALYST 3

Amentum • Waimea/Kamuela (HI)

On-site
USD 110,000 - 135,000
Health, dental, and vision insurance
Paid time off and holidays
Retirement benefits (401(k) matching)
+6
Network and Cybersecurity Engineer
Network and Cybersecurity Engineer

Amentum • Chantilly (VA)

On-site
USD 183,000 - 203,000
Health Insurance
401(k) Matching
Educational reimbursement
+1
Information Systems Manager
Information Systems Manager

Amentum company • McLean (VA)

On-site
USD 150,000 - 170,000
Health insurance
Paid time off
401(k) matching
+6
Cybersecurity Systems Analyst, Expert
Cybersecurity Systems Analyst, Expert

TJ Consulting Group • Smith (PA)

On-site
USD 145,000 - 150,000
PTO
Holiday Pay
401K
+6