Threat Intel & SOC Analyst (Incident Response)

Amentum

Washington (District of Columbia)

On-site

USD 90,000 - 120,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Amentum seeks a SOC / Incident Response Analyst to support a U.S. Department of Energy contract in the Washington, DC area. The role focuses on delivering timely threat intelligence and rapid incident response across critical energy sector partners.

Qualified candidates have 3–4+ years in SOC/IR, experience with SIEM/EDR, threat hunting, malware analysis, and forensics, and knowledge of MITRE ATT&CK and NIST CSF. Active TS/SCI or DOE Q clearance is required.

Qualifications

  • 3–4+ years supporting Security Operations Centers or Incident Response teams.
  • Experience with SIEM platforms, EDR tools, threat hunting, malware analysis, and digital forensics.
  • Knowledge of MITRE ATT&CK, NIST Cybersecurity Framework, and cyber kill chain methodologies.
  • Security+, GCIH, GCFA, GCFE, or equivalent certifications preferred.

Responsibilities

  • Provide a wide range of Cyber Intelligence (CI) services to deliver timely, actionable, and relevant threat intelligence on hostile nation‑states, cyber adversaries, and criminals seeking to conduct malicious cyber activities against U.S. energy sector partners.
  • Support safety, quality, and procedural compliance within program operations.
  • Assist in maintaining secure operations and incident response readiness across projects.

Skills

SOC operations
Incident response
Threat hunting
Malware analysis
Digital forensics
SIEM
EDR Tools

Tools

SIEM platforms
EDR tools
Threat intelligence tooling
Forensics tooling

Job description

Amentum seeks a SOC / Incident Response Analyst to support a U.S. Department of Energy contract in the Washington, DC area. The role focuses on delivering timely threat intelligence and rapid incident response across critical energy sector partners.

Qualified candidates have 3–4+ years in SOC/IR, experience with SIEM/EDR, threat hunting, malware analysis, and forensics, and knowledge of MITRE ATT&CK and NIST CSF. Active TS/SCI or DOE Q clearance is required.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Junior Cyber Intelligence Analyst | TS/SCI/DOE-Q
Junior Cyber Intelligence Analyst | TS/SCI/DOE-Q

Amentum • Washington

On-site
USD 70,000 - 100,000
Junior Cyber Intelligence Analyst - Energy Threat Intel
Junior Cyber Intelligence Analyst - Energy Threat Intel

Amentum • Washington

On-site
USD 65,000 - 90,000
SOC / Incident Response Analyst
SOC / Incident Response Analyst

Amentum • Washington

On-site
USD 90,000 - 120,000
Senior Cyber Threat Intelligence Lead
Senior Cyber Threat Intelligence Lead

Amentum • Washington

On-site
USD 120,000 - 150,000
Cybersecurity Engineer: Threat Intel & Cloud Security
Cybersecurity Engineer: Threat Intel & Cloud Security

Amentum • Washington

On-site
USD 126,000 - 200,000
Vacation days
Paid holidays
Floating holidays
+3
Strategic SOC Analyst: Threat Hunting & Incident Response
Strategic SOC Analyst: Threat Hunting & Incident Response

Everwatch • Corridor North (MD)

On-site
USD 79,000 - 93,000
Cyber Intelligence Analyst – Senior
Cyber Intelligence Analyst – Senior

Amentum • Washington

On-site
USD 120,000 - 150,000
SOC Threat Hunter & Incident Response Engineer
SOC Threat Hunter & Incident Response Engineer

Cyberdata Technologies, Inc. • Herndon (VA)

On-site
USD 80,000 - 120,000
Senior Insider Threat Investigator & Analyst
Senior Insider Threat Investigator & Analyst

Amentum • Chantilly (VA), Northern (KY)

Hybrid
USD 130,000 - 145,000
Health, dental, and vision insurance
Paid time off and holidays
401(k) matching
+6
Security Operations Analyst – Senior
Security Operations Analyst – Senior

C3EL • Washington

On-site
USD 95,000 - 125,000