Amentum

Cybersecurity Analyst

Amentum$130K — $160K *
Education, Government & Non-Profit
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of cyber security expertise, focusing on policy and processes like RMF and NIST 800-53
  • Experience in developing A&A documentation and assessments from scratch
  • Familiarity with NIST publications, especially RMF and NIST controls
  • Certifications like Security+, CAP, CISSP, or CISM preferred
  • DoD 8570 IAM level II required
  • Hands-on experience in A&A processes
  • Top-Secret Clearance with polygraph is essential

Responsibilities

  • Conduct A&A efforts under NIST RMF for a federal agency
  • Develop critical cybersecurity documentation including SSPs and SARs
  • Identify and mitigate potential risks in system configurations
  • Facilitate A&A meetings and communicate status updates
  • Perform thorough reviews of vulnerabilities and report findings
  • Ensure continuous monitoring of systems to maintain authorization
  • Collaborate with team members to enhance cybersecurity processes

Benefits

  • Health, dental, and vision insurance
  • Paid time off and holidays
  • 401(k) matching retirement benefits
  • Educational reimbursement
  • Parental leave
  • Employee stock purchase plan
  • Tax-saving options
  • Disability and life insurance
  • Pet insurance
Full Job Description

Amentum is seeking a Cybersecurity Analyst to join our team and support our McLean, VA customer. We are looking for team members who are passionate about making a difference by working on critical efforts we manage as a premier government contractor. 

Purpose / Scope:

The Cybersecurity Analyst will perform assessment and authorization (A&A) efforts under the NIST Risk Management Framework (RMF) on behalf of a federal civilian agency as a contractor. The role will conduct cybersecurity analysis in preparation for A&A reviewing and validation of all associated cybersecurity documentation and technical controls.

The role will work within a team that conducts A&A activities. This individual will develop System Security Plans (SSP), Contingency Plans, Business Impact Analyses (BIA), Plan of Action and Milestones (POA&Ms), Security Assessment Report (SARs), Security Assessment Plan (SAPs), and other RMF documentation.

This position covers all cybersecurity aspects including, but not limited to, identifying risks, validating the mitigation of plans of action, analyzing system designs, and assisting with A&A issues that may prevent a system from receiving authorization. It supports the implementation of RMF by developing documentation and updating policies, procedures, and processes as assigned.

The Cybersecurity Analyst will assess and mitigates system security threats/risks throughout the program life cycle. Contribute to the security planning, assessment, risk analysis, risk management, certification and awareness activities for system and networking operations. Create and review A&A Body of Evidence documentation, providing feedback on completeness and compliance of its content. Develop and execute Security Test Plan (STP) in close cooperation with team members. Manage and ensure Continuous Monitoring (CONMON) to maintain system authorization.

Essential Responsibilities:

  • Identify key stakeholders in A&A efforts and ensure system documentation reflects current system security configurations to include hardware and software components, data flow, interconnections, and ports, protocols, and services, etc.
  • Identify potential risks associated with system configurations and advise on mitigation strategies
  • Participate in A&A status meetings and facilitate moving systems toward a successful A&A effort
  • Assist to estimate Level of Effort (LOE) involved in performing A&A activities
  • Assist customer program offices in interpreting and applying mitigation strategies
  • Conduct thorough reviews of all vulnerabilities, architecture, and defense in depth strategies and report findings in POA&Ms document
  • Document residual risks and provide the cybersecurity risk analysis and mitigation determination results
  • Maintain cybersecurity policy and processes as assigned
  • Able to analyze, interpret, and apply Federal cybersecurity guidance to customer needs
  • Communicate the security posture of systems through designated reporting mechanism
  • Collaborate with other team members in cybersecurity

Minimum Requirements:

  • 5+ years of experience in the following areas: Cybersecurity policy, procedures, and processes, including RMF and NIST 800-53 and A&A's
  • Experience developing A&A documentation from scratch and performing assessments; RMF step 1 through 4
  • Familiar with NIST publications, specifically RMF and NIST controls
  • One or more of the following certifications preferred (Security+, CAP, CISSP, CISM, GSEC, GCIH, or GSLC)
  • Minimum DoD 8570 Information Assurance Management Technology (IAM) level II
  • Familiar with dealing with defense-in-depth, and other information security and assurance principles and associated supporting technologies
  • Hands on experience and detailed familiarity with the A&A processes
  • Experience working in Xacta, Greenlight/Roadrunner
  • Excellent customer service and organization skills
  • Must demonstrate proficiency in the following areas: multi-tasking, critical thinking; and the ability to work quickly, efficiently and accurately in a dynamic and fluid environment
  • Must have a Top-Secret Clearance with polygraph
  • Must be able to read, speak, write, and understand the English language

Preferred Qualifications:

  • BA/BS Degree
  • Excellent oral and written communication skills
  • Ability to interact and relay security technical requirements at all levels of leadership and work force
  • Ability to work both independently and as a member of a team

Work Environment, Physical Demands, and Mental Demands:

Typical office environment with no unusual hazards, occasional lifting to 20 pounds, constant sitting while using the computer terminal, constant use of sight abilities while reviewing documents, constant use of speech/hearing abilities for communication, constant mental alertness, must possess planning/organizing skills, and must be able to work under deadlines.

Other Responsibilities:

Safety - Amentum enforces a safety culture whereby all employees have the responsibility for continuously developing and maintaining a safe work environment. As appropriate, each employee is responsible for completing all training requirements and fulfilling all self-aid/buddy aid responsibilities, participating in emergency response tasks and serving on safety committees and teams.

 Quality - Quality is the foundation for the management of our business and the keystone to our goal of customer satisfaction. It is our policy to consistently provide services that meet customer expectations. Accordingly, each employee must conform to the Amentum Quality Policy and carry out job activities in compliance with applicable Amentum Quality System documents and customer contracts. Each employee must read and understand his/her Quality Management and Customer Satisfaction responsibilities

Procedure Compliance - Each employee must read, understand and implement the general and specific operational, safety, quality and environmental requirements of all plans, procedures and policies pertaining to his/her job.

Compensation Details:

$130,000 - $160,000

       

The compensation range or hourly rate listed for this position is provided as a good-faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws.

 

Benefits Overview:

Our health and welfare benefits are designed to support you and your priorities. Offerings include:

  • Health, dental, and vision insurance

  • Paid time off and holidays

  • Retirement benefits (including 401(k) matching)

  • Educational reimbursement

  • Parental leave

  • Employee stock purchase plan

  • Tax-saving options

  • Disability and life insurance

  • Pet insurance

 

Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.

       

Original Posting:

07/21/2026 - Until Filled

Amentum anticipates this job requisition will remain open for at least three days, with a closing date no earlier than three days after the original posting. This timeline may change based on business needs.

       

About Amentum

Amentum is a leading provider of engineering and technical services to the U.S. government and commercial customers worldwide. The company offers a wide range of services, including environmental remediation, facilities management, and logistics and supply chain management, among others. Amentum has a global presence, with operations in over 20 countries, and serves a diverse range of customers, including the Department of Defense, the Department of Energy, and the Department of State. The company is committed to providing high-quality services and has a strong reputation for technical expertise, innovation, and customer satisfaction.
Learn more about Amentum
Size
20,000 employees
Industry
Net Income
$200 million
Founded
2014
Revenue
$5 billion

Similar Jobs

More Jobs at Amentum

More Education, Government & Non-Profit Jobs

Find similar Cybersecurity Analyst jobs: