user avatar

Mid-Level Cyber Threat Emulation Analyst IRES - SSFB

Amentum

Posted today

Job Requirements

Colorado Springs, CO
Secret Polygraph None
Career Level not specified
$128,000 - $136,000

Job Description



Schriever Space Force Base, Colorado Springs, CO

None available at this time

NO - Not available for this position

DoW Secret

Day shift

Up to 10% of the time



We are seeking a highly motivated and experienced . The CTE Analyst supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. The CTE Analyst will be responsible for operating the Department of War Cyber Defense Command Information Network's (DCDC-IN) Cyber Threat Emulation (CTE) toolset. This role requires a deep understanding of cybersecurity vulnerabilities in a DoD environment and the ability to correlate threat and vulnerability data against known adversary exploits and techniques. The ideal candidate will be a customer-focused individual with excellent communication skills and the ability to work both independently and as part of a team.


  • Perform Defensive Cyber Operations (DCO) as it pertains to a DoD Cybersecurity Service Provider (CSSP)
  • Measures effectiveness of defense-in-depth architecture against known vulnerabilities.
  • Support Incident Response across the enterprise IAW DoD regulations and instructions.
  • Develop an Exploitation Analyst training plan by instructing, evaluating, and mentoring junior, mid, and senior analysts.
  • Execute HHQ directed and custom CTE actions with specific adversary tactics, techniques, and procedures (TTPs) to assess toolset detection and alerting.
  • Collaborate with the Vulnerability Assessment and Cyber Defense Teams to develop evaluation criteria and methodologies aligned with HHQ inspection requirements and industry best practices.
  • Evaluate personnel training and effectiveness in incident response processes and procedures to detect, respond, and mitigate simulated and real-world threats to recognize the need for additional training



  • Have strong initiative, attention to detail, and communication skills (written and verbal).
  • Have a customer-focused approach to problem-solving.





  • Must have , or more, years of general (full-time) work experience
  • May be reduced with completion of advanced education
  • Must have , or more, years of combined experience with any of the following:
    • Performing manual or automated penetration testing in an enterprise environment
    • Practical experience with vulnerability assessment, cybersecurity frameworks, or conducting risk assessments
    • Experience performing the full life cycle of incident response and enterprise-level monitoring
  • Must have 6, or more, months of experience working in a management or leadership role
  • Must have prior MDA experience.
  • Must be familiar with the Common Vulnerabilities and Exposures (CVE) database.
  • Must be familiar with the role of a CSSP in the DoD's tiered cybersecurity structure.
  • Must be familiar with Information Assurance Vulnerability Bulletins (IAVBs) and Alerts (IAVAs)
  • Must have a strong understanding of cyber threat emulation tools, policies, and procedures.
  • Must have an understanding of security, audit, and compliance principles.
  • Must have an understanding of defense in depth principles and defensive cyber operations
  • Must have an understanding of defensive cyber operations common toolsets to include:
    • Next Generation Firewalls (Palo Alto experience Preferred)
    • Intrusion Prevention / Detections Systems
    • Email Security Gateways
    • Network Proxies
    • Reverse Proxies and Web Application Firewalls
    • Security Information and Event Management systems
    • Endpoint Detection and Response
    • Vulnerability Scanning and Assessment tools
  • Must have 1, or more, of the following certifications:
    • CompTIA Security+
    • CompTIA Cybersecurity Analyst (CySA+)
    • ICS2 Systems Security Certified Practitioner (SSCP)
    • GIAC Industry Cyber Security Certification (GICSP)
    • GIAC Security Essentials (GSEC)
  • Must have or obtain within 6 months of start date, the CompTIA PenTest+ certification
  • Must have an active DoW Secret Security Clearance


This position will be posted for a minimum of 3 days. If a candidate has not been selected at that time, it will continue to be posted until a suitable candidate is selected or the position is closed.


$128,000 - $136,000

The compensation range or hourly rate listed for this position is provided as a good-faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws.



Our health and welfare benefits are designed to support you and your priorities. Offerings include:
  • Health, dental, and vision insurance
  • Paid time off and holidays
  • Retirement benefits (including 401(k) matching)
  • Educational reimbursement
  • Parental leave
  • Employee stock purchase plan
  • Tax-saving options
  • Disability and life insurance
  • Pet insurance


Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.


07/21/2026 - 07/29/2026
Amentum anticipates this job requisition will remain open for at least three days, with a closing date no earlier than three days after the original posting. This timeline may change based on business needs.

Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed, marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters .
group id: 91156626
job ad image
Find Amentum on Social Media
Recruiters
user avatar
About Us
Amentum brings industry-best expertise, processes, and technology to ensure the availability and reliability of our Government and commercial clients’ vital facilities and equipment. We apply our culture of excellence to operate, maintain, and manage your global assets and complex supply chains to meet modern challenges at home and abroad
job ad2 image

Amentum Jobs


Job Category
IT - Security
Clearance Level
Secret
Employer
Amentum