Cybersecurity Analyst
Listed on 2026-07-30
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Amentum is seeking a Cybersecurity Analyst to join our team and support our McLean, VA customer. We are looking for team members who are passionate about making a difference by working on critical efforts we manage as a premier government contractor.
Here at Amentum, we are purpose-driven with a fierce commitment to deliver on our promises. We create trailblazing solutions, have unwavering integrity, and embrace inclusion and collaboration. Our team is excited to help customers solve todays and tomorrow’s problems, giving confidence and reassurance that together we’ll accomplish mission success.
Purpose / ScopeThe Cybersecurity Analyst will perform assessment and authorization (A&A) efforts under the NIST Risk Management Framework (RMF) on behalf of a federal civilian agency as a contractor. The role will conduct cybersecurity analysis in preparation for A&A reviewing and validation of all associated cybersecurity documentation and technical controls.
The role will work within a team that conducts A&A activities. This individual will develop System Security Plans (SSP), Contingency Plans, Business Impact Analyses (BIA), Plan of Action and Milestones (POA&Ms), Security Assessment Report (SARs), Security Assessment Plan (SAPs), and other RMF documentation.
This position covers all cybersecurity aspects including, but not limited to, identifying risks, validating the mitigation of plans of action, analyzing system designs, and assisting with A&A issues that may prevent a system from receiving authorization. It supports the implementation of RMF by developing documentation and updating policies, procedures, and processes as assigned.
The Cybersecurity Analyst will assess and mitigate system security threats/risks throughout the program life cycle. Contribute to the security planning, assessment, risk analysis, risk management, certification and awareness activities for system and networking operations. Create and review A&A Body of Evidence documentation, providing feedback on completeness and compliance of its content. Develop and execute Security Test Plan (STP) in close cooperation with team members.
Manage and ensure Continuous Monitoring (CONMON) to maintain system authorization.
- Identify key stakeholders in A&A efforts and ensure system documentation reflects current system security configurations to include hardware and software components, data flow, interconnections, and ports, protocols, and services, etc.
- Identify potential risks associated with system configurations and advise on mitigation strategies
- Participate in A&A status meetings and facilitate moving systems toward a successful A&A effort
- Assist to estimate Level of Effort (LOE) involved in performing A&A activities
- Assist customer program offices in interpreting and applying mitigation strategies
- Conduct thorough reviews of all vulnerabilities, architecture, and defense in depth strategies and report findings in POA&Ms document
- Document residual risks and provide the cybersecurity risk analysis and mitigation determination results
- Maintain cybersecurity policy and processes as assigned
- Able to analyze, interpret, and apply Federal cybersecurity guidance to customer needs
- Communicate the security posture of systems through designated reporting mechanism
- Collaborate with other team members in cybersecurity
- 5+ years of experience in the following areas:
Cybersecurity policy, procedures, and processes, including RMF and NIST 800-53 and A&A's - Experience developing A&A documentation from scratch and performing assessments; RMF step 1 through 4
- Familiar with NIST publications, specifically RMF and NIST controls
- One or more of the following certifications preferred (Security+, CAP, CISSP, CISM, GSEC, GCIH, or GSLC)
- Minimum DoD 8570 Information Assurance Management Technology (IAM) level II
- Familiar with dealing with defense-in-depth, and other information security and assurance principles and associated supporting technologies
- Hands on experience and detailed familiarity with the A&A processes
- Experience working in Xacta, Greenlight/Roadrunner
- Excellent customer service and organization skills
- Must demonstrate proficiency in the following areas: multi-tasking, critical thinking; and the ability to work quickly, efficiently and accurately in a dynamic and fluid environment
- Must have a Top-Secret Clearance with polygraph
- Must be able to read, speak, write, and understand the English language
- BA/BS Degree
- Excellent oral and written communication skills
- Ability to interact and relay security technical requirements at all levels of leadership and work force
- Ability to work both independently and as a member of a team
Typical office environment with no unusual hazards, occasional lifting to 20 pounds, constant sitting while using the computer terminal, constant use of sight abilities while reviewing documents, constant use of speech/hearing abilities for…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).