Amentum Logo

Amentum

Cybersecurity Risk Analyst

Posted 9 Days Ago
Remote
Hiring Remotely in US
Senior level
Remote
Hiring Remotely in US
Senior level
The Cybersecurity Risk Analyst develops compliance assessments, oversees change management, and evaluates cybersecurity controls, providing expertise to teams on risk management and compliance.
The summary above was generated by AI

Amentum seeks a Cybersecurity Risk Analyst.

Amentum is a global leader in advanced engineering and innovative technology solutions, trusted by the United States and its allies to address their most significant and complex challenges in science, security and sustainability. Headquartered in Virginia, we have more than 53,000 employees in approximately 80 countries across all 7 continents.

The Cybersecurity Risk Analyst role is a remote-telework position that supports our governance, risk, information assurance. and compliance (R&C) arm of the cybersecurity team.  This role supports Amentum’s data protection requirements through the assessment of controls and working with teams through the mitigation process. Qualified candidates will need a versatile skill set that emphasizes regulatory comprehension, technology, effective collaboration, critical thinking, analytical prowess, risk management, and strong communications skills. US Citizenship is required to apply. This is a remote-telework role.

Essential Responsibilities:

  • Develop Assessment and Authorization (A&A) packages for various systems.
  • Oversee cybersecurity change management and end user support for compliance and risk.
  • Craft, validate, and document necessary cybersecurity information such as System Security Plan (SSP), Privacy Impact Assessment (PIA), Configuration Management Plan (CMP), Plan of Action and Milestones (POA&M), and Standard Operating Procedures (SOP) as necessary.
  • Perform cyber assessments and audits as directed.
  • Lead discussions with various teams, both internal and external, around data compliance and risk efforts.
  • Provide expertise to system administrators, engineers, and Information System Security Manager (ISSM) to create or update system/site policies, procedures, and process guides.
  • Consult with and brief executive management on compliance and risk matters.
  • Create, maintain, and provide metrics and status reports to cybersecurity leadership.
  • Travel up to 25%.
  • Perform all other position related duties as assigned or requested.

Knowledge, Skills, and Abilities:

  • Demonstrated experience in technology assessments, handling multiple assignments and finding mutually acceptable solutions to security problems, preferably within the defense or government contracting industry
  • Demonstrated experience recommending and devising cybersecurity controls to mitigate risk
  • Demonstrated experience in policy research and applying it to developing policies and procedures related to cybersecurity technology
  • Knowledge of DFARS and NIST publications and their relevancy to compliance and risk.
  • Demonstrable strong written and verbal communications.

Minimum Qualifications:

  • Must be a U.S. Citizen
  • Bachelor’s degree in IT, Cybersecurity, or a related field. Two years in related field can be substituted for each year of the four years of college.
  • Minimum of five (5) years of experience in performing cybersecurity assessments to include three years of hands-on experience in IT risk management or three years of cybersecurity in Federal Government environments
  • Certification of one of the following:
  • CompTIA Network+, Security+ certified or equivalent
  • CISSP
  • Microsoft Azure Security Engineer Associate certified or equivalent
  • Experience with common cybersecurity tools and platforms such as Nessus, Microsoft GCCH / O365, Microsoft Azure Gov, Microsoft Defender, Fireeye products, email protection platforms, and Palo Alto products.
  • Ability to read, understand, and document network infrastructure in logical diagrams, data flow diagrams, security boundaries.

       

Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, religion, color, sex, gender, national origin, age, United States military veteran’s status, ancestry, sexual orientation, gender identity, marital status, family structure, medical condition including genetic characteristics or information, veteran status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal EEO laws and supplemental language at EEO including Disability/Protected Veterans and Labor Laws Posters.

Top Skills

Email Protection Platforms
Fireeye Products
Microsoft Azure Gov
Microsoft Defender
Microsoft Gcch
Microsoft O365
Nessus
Palo Alto Products

Similar Jobs

An Hour Ago
Remote
Hybrid
Los Angeles, CA, USA
103K-129K Annually
Mid level
103K-129K Annually
Mid level
Cloud • Fintech • Information Technology • Machine Learning • Software • App development • Generative AI
The GRC Analyst will support Information Security Governance, Risk Management, and Compliance workflows, manage compliance projects, and maintain standards and policies.
Top Skills: CasbCobitCsaDlpFedrampIds/IpsIso 27001Iso 27017Iso 27018Iso 27701Microsoft Office SuiteNist 800-53PciSIEMSoc 1Soc 2
8 Hours Ago
Easy Apply
Remote
2 Locations
Easy Apply
163K-226K Annually
Senior level
163K-226K Annually
Senior level
Artificial Intelligence • Fintech • Machine Learning • Social Impact • Software
The Senior Application Security Automation Engineer will enhance security measures by collaborating with engineering teams, managing vulnerabilities, and advocating best practices across the organization.
Top Skills: AWSDastJavaK8SPythonRubySast
10 Hours Ago
Remote
Hybrid
Addison, IL, USA
Senior level
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The Director of Digital Technology GRC will lead the development of a comprehensive Governance, Risk, and Compliance program and oversee IT, Security, and compliance initiatives.
Top Skills: AIEu Ai ActFedrampIntegrated Risk ManagementIso StandardsNist Ai RmfNist-CsfSox-404

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account