Jobs · Information Technology · Colorado

Mid-Level Cyber Threat Emulation Analyst IRES - SSFB

Amentum · Colorado Springs, CO · 1 mo ago
On-siteInformation TechnologyFull-time

Description of Duties

We are seeking a highly motivated and experienced Mid-Level Cyber Threat Emulation (CTE) Analyst. The CTE Analyst supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. The CTE Analyst will be responsible for operating the Department of War Cyber Defense Command Information Network’s (DCDC-IN) Cyber Threat Emulation (CTE) toolset. This role requires a deep understanding of cybersecurity vulnerabilities in a DoD environment and the ability to correlate threat and vulnerability data against known adversary exploits and techniques.

Key Responsibilities

  • Perform Defensive Cyber Operations (DCO) as it pertains to a DoD Cybersecurity Service Provider (CSSP)
  • Measure effectiveness of defense-in-depth architecture against known vulnerabilities
  • Support Incident Response across the enterprise IAW DoD regulations and instructions
  • Develop an Exploitation Analyst training plan by instructing, evaluating, and mentoring junior, mid, and senior analysts
  • Execute HHQ directed and custom CTE actions with specific adversary tactics, techniques, and procedures (TTPs) to assess toolset detection and alerting
  • Collaborate with the Vulnerability Assessment and Cyber Defense Teams to develop evaluation criteria and methodologies aligned with HHQ inspection requirements and industry best practices
  • Evaluate personnel training and effectiveness in incident response processes and procedures to detect, respond, and mitigate simulated and real-world threats to recognize the need for additional training

Basic Requirements

  • Must have 4, or more, years of general (full-time) work experience
  • May be reduced with completion of advanced education
  • Must have 2, or more, years of combined experience with any of the following:
    • Performing manual or automated penetration testing in an enterprise environment
    • Practical experience with vulnerability assessment, cybersecurity frameworks, or conducting risk assessments
    • Experience performing the full life cycle of incident response and enterprise-level monitoring
  • Must have 6, or more, months of experience working in a management or leadership role
  • Must have prior MDA experience
  • Must be familiar with the Common Vulnerabilities and Exposures (CVE) database
  • Must be familiar with the role of a CSSP in the DoD’s tiered cybersecurity structure
  • Must be familiar with Information Assurance Vulnerability Bulletins (IAVBs) and Alerts (IAVAs)
  • Must have a strong understanding of cyber threat emulation tools, policies, and procedures
  • Must have an understanding of security, audit, and compliance principles
  • Must have an understanding of defense in depth principles and defensive cyber operations
  • Must have an understanding of defensive cyber operations common toolsets to include:
    • Next Generation Firewalls (Palo Alto experience)
    • Intrusion Prevention / Detections Systems
    • Email Security Gateways
    • Network Proxies
    • Reverse Proxies and Web Application Firewalls
    • Security Information and Event Management systems
    • Endpoint Detection and Response
    • Vulnerability Scanning and Assessment tools

Preferred Certifications

  • CompTIA Security+
  • CompTIA Cybersecurity Analyst (CySA+)
  • ICS2 Systems Security Certified Practitioner (SSCP)
  • GIAC Industry Cyber Security Certification (GICSP)
  • GIAC Security Essentials (GSEC)
  • CompTIA PenTest+

Compensation Details

$128,000 – $136,000

Benefits Overview

  • Health, dental, and vision insurance
  • Paid time off and holidays
  • Retailment benefits (including 401(k) matching)
  • Education reimbursement
  • Parental leave
  • Employee stock purchase plan
  • Tax-saving options
  • Disability and life insurance
  • Pet insurance

Similar jobs