Amentum is seeking a Cybersecurity Analyst to provide onsite cybersecurity technical support to the Navy in Portsmouth, VA. The Analyst will provide Cybersecurity analysis in support of unclassified and classified Assessment & Authorization (A&A) requirements. The ideal candidate will have general knowledge across cyber-related functional areas including CND (Computer Network Defense), Incident handling, Cybersecurity Tools, Risk Assessments, PKI, Analysis and Reporting, A&A, System/Software cybersecurity engineering and Cybersecurity Configuration Management. Tasking will include: • Provide Subject Matter Expertise to aid Program Managers in the development of A&A documentation. • Perform a technical review of A&A documentation for compliance with applicable DoD cybersecurity policies. • Perform system Information Assurance Vulnerability Management (IAVM) • Perform Security Technical Implementation Guidance (STIG) compliance audits. • Perform risk analyses and recommend mitigating controls. • Assess security compliance, support program security reviews, and coordinate and compile security-related documentation. • Assist with the preparation and revision of cybersecurity policy and guidance documents for specific cybersecurity related technologies. • Provide critical written and oral analysis of security architecture documentation and vulnerability and risk assessments. • Assist in the development of plan of actions and milestones (POA&M) and tracking of milestones within POA&Ms directly related to cybersecurity requirements. • Perform validation of cyber security controls in support of A&A efforts. • Coordinate with system owners to ensure the appropriate A&A artifacts are developed to support system authorization. • Develop IT sustainment documents and actions and renewal documentation. • Provide security incident reports as required outlining the specific security issue, critical concerns, and remediation actions required to resolve or mitigate the vulnerabilities. • Serve as security advisor to the Government in all aspects of Cybersecurity and Risk Management Framework (RMF) • Identify attempted and successful penetrations and information attacks and develop Courses Of Action (COAs).
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Entry Level