Purpose and Impact:
As a Cyber Defense Analyst, you will provide strategic guidance and technical analysis to detect incident response of adversarial cyber activity.
Work Schedule:
Day shift – 5 days per week, 8 hours per day
Essential Responsibilities:
- Monitors and ensures proper functionality of network security devices across the enterprise, responding to Tiered alerts and escalating incidents as necessary.
- Conducts network traffic analysis using raw packet data, net flow, IDS/IPS, custom sensor output, and other tools to detect and mitigate cybersecurity threats in communications networks.
- Identifies and assesses security risks/exposures, analyzes root causes of security violations, and develops strategies/procedures to prevent future incidents.
- Develops and maintains documentation for processes and procedures to ensure effective and repeatable incident response activities.
- Creates comprehensive incident reports and post-incident briefs that provide in-depth technical details and situational analysis for investigations and decision-makers.
- Collaborates with DoD/Government Leaders and cross-functional teams to develop, maintain, and improve Cybersecurity Defense and Incident Response strategies.
- Monitors and analyzes intrusion detection and defense appliances using security tools like Splunk, Elastic, and related platforms, generating actionable intelligence and trends.
- Researches, evaluates, and tracks emerging threats, vulnerabilities, and advanced threat actor tactics, techniques, and procedures (TTP) to strengthen the network's overall security posture.
- Provides expertise in the analysis of packet captures, software exploits, and obfuscated code to support incident handling/response activities.
- Develops insights based on cybersecurity frameworks such as MITRE ATT&CK and the Cyber Kill Chain for operational improvement.
Work Environment, Physical Demands, and Mental Demands:
- Typical office environment with no unusual hazards, occasional lifting to 10kgs, kneeling, standing and walking, routinely sitting and constant use of speech/hearing abilities for communication, constant mental alertness, and must be able to work under deadlines.
Minimum Requirements (Knowledge, Skills and Abilities)
- Network security appliances (Firewalls, IDS/IPS devices)
- Proficient understanding of network security protocols and architectures, such as TCP/IP, DNS, HTTP, ICMP, SSL/TLS, and how they relate to risks like DNS spoofing, DDoS attacks, or Man-in-the-Middle attacks.
- Experience with large-scale data processing hardware for cybersecurity applications, such as threat analytics, anomaly detection, and data correlation.
- Hands-on experience with tools like Snort, Suricata, or proprietary IDS/IPS solutions to monitor, analyze, and mitigate malicious traffic.
- Proficient in tools such as Wireshark and tcpdump for deep analysis of network traffic and identification of anomalies, misconfigurations, or malicious activities.
- Strong communication skills and the ability to engage with varied stakeholders along with presenting incident response briefing
- Experience with MS Officer operating system
Minimum Essential:
- Bachelor’s Degree 8-10 years’ experience or a Master’s with 6-8 years’ experience
- Undergraduate degree
- Equivalent demonstrated experience
- GCIH or any relevant incident response DoD 8140 certification
- Field: Relevant or related discipline
Desirable:
- DHS/CBP suitability clearance
- Equivalent demonstrated experience
Security Clearance Required:
It is a condition of employment that employees obtain and retain the appropriate level of security clearance and medical clearance applicable to each role. The employee will require a Top-Secret Positive Vetting (TSPV) Department of Defence Security Clearance (Australian) or TS/SCI (U.S.) clearance w/ Poly
Tickets and Licenses:
Minimum Essential:
- Current Drivers License
Desirable:
- CPR
- White Card
- First Aid
Statement of Work Requirements:
All personnel assigned to work shall be:
- At least 18 years of age
- Able to fluently read, write, and speak the English language
This position is designated as a safety sensitive position.
As part of our commitment to maintaining a safe and compliant work environment, Amentum is a drug-free workplace and requires all personnel to comply with company drug and alcohol policies as a condition of employment. Employment is contingent upon successful completion of the drug screening process. Please note that this may include pre-hire screening for marijuana, as well as other federally controlled substances due to Amentum’s role as a federal contractor and trusted partner to the US Government.
Other Responsibilities:
Safety - Amentum enforces a safety culture whereby all employees have the responsibility for continuously developing and maintaining a safe work environment. As appropriate, each employee is responsible for completing all training requirements and fulfilling all self-aid/buddy aid responsibilities, participating in emergency response tasks and serving on safety committees and teams.
Quality - Quality is the foundation for the management of our business and the keystone to our goal of customer satisfaction. It is our policy to consistently provide services that meet customer expectations. Accordingly, each employee must conform to the Amentum Quality Policy and carry out job activities in compliance with applicable Amentum Quality System documents and customer contracts. Each employee must read and understand his/her Quality Management and Customer Satisfaction responsibilities.
Procedure Compliance - Each employee must read, understand and implement the general and specific operational, safety, quality and environmental requirements of all plans, procedures and policies pertaining to his/her job.
Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.
#javelin
Skills Required
- Bachelor's degree and 8-10 years of experience, or master's degree and 6-8 years of experience
- Undergraduate degree in a relevant or related discipline
- Equivalent demonstrated experience
- GCIH or relevant incident response DoD 8140 certification
- Top Secret Positive Vetting Department of Defence Security Clearance or U.S. TS/SCI clearance with polygraph
- Current driver's licence
- DHS/CBP suitability clearance
- CPR certification
- White Card
- First Aid certification
- Fluent written and spoken English
- At least 18 years of age
Amentum Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Amentum and has not been reviewed or approved by Amentum.
-
Healthcare Strength — Healthcare offerings are described as comprehensive, with medical, dental, and vision plans and multiple PPO/HSA options. Mental health support via an employee assistance program and other wellness resources is also included in the benefits mix.
-
Retirement Support — Retirement support is positioned as a meaningful part of total rewards through a 401(k) plan with employer matching. Profit-sharing contributions and immediate or near-term vesting in some cases further strengthen the retirement value proposition.
-
Leave & Time Off Breadth — Time-off benefits are presented as solid for the sector, including tiered PTO accrual by tenure and a set of paid holidays. Role-dependent flexible or remote work options and leave programs add to perceived work-life support.
Amentum Insights
What We Do
Amentum is a premier global technical and engineering services partner supporting critical programs of national significance across defense, security, intelligence, energy, and environment. We draw from a century-old heritage of operational excellence, mission focus, and successful execution underpinned by a strong culture of safety and ethics. Headquartered in Germantown, Md., we employ more than 20,000 people in 48 states and 28 foreign countries and territories. Visit us at amentum.com to explore how we deliver excellence for our customers’ most vital missions.








