Senior Cyber Defense Analyst / Incident Responder IRES - SSFB/HSV
AmentumAbout the role
Your Impact:
Position Title: Senior Cyber Defense Analyst / Incident Responder
Location: Schriever Space Force Base, Colorado Springs, CO or Redstone Arsenal, Huntsville, AL
Relocation Assistance: None available at this time
Remote/Telework: NO - Not available for this position
Clearance Type: DoD Secret
Shift: Day shift (Mon-Fri)
Travel Required: Up to 25% of the time
#cjpost
Description of Duties:
The Senior Cyber Defense Analyst / Incident Responder supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. The candidate will:
· Provide oversight and guidance on the MDA Cybersecurity Service Provider - Computer Emergency Response Team’s (MDA CSSP-CERT’s) Cyber Defense and Incident Response program and serve as the primary POC for Jr and Mid Cyber Defense Analyst.
· Perform Defensive Cyber Operations (DCO)/Cyber Security Service Provider (CSSP) duties outlined in Evaluator Scoring Metrics (ESM).
· Perform cybersecurity duties on customer networks (proactively and reactively) to improve enterprise-wide security posture.
· Perform preliminary analysis, identification, and response actions to detect, characterize, and respond to cyber incidents IAW CJCSM 6510.01B.
· Lead event/incident investigations from start to conclusion, to include gathering data, analysis, and reporting.
· Properly document all steps in the incident response process while taking care to preserve and protect incident artifacts, evidence, and chain of custody.
· Analyze correlated assets, threat, and vulnerability data against known adversary exploits and techniques to determine impact and improve network defensive posture.
· Support a Cyber Defense Analyst and Cyber Defense Incident Responder training plan by instructing, evaluating, and mentoring Junior and Mid Cyber Defense Analyst and Cyber Defense Incident Responders.
· Support the development, establishment, review and update of DCO procedures, processes, manuals, and other documentation.
· Leverage actionable Cyber Threat Intelligence data to search for indicators of compromise and develop SIEM content/signatures to detect known attack patterns and make recommendations for improvements.
· Coordinate with CSSP-CERT subscribers to develop current configurations, rules, and signatures for cyber security related toolsets.
· Coordinate with CSSP-CERT subscribers to notify, investigate, and remediate discrepancies in security logging and CSSP-CERT alignment.
· Provide standardized and targeted training in support of CSSP-CERT subscriber cyber defense and incident response programs.
· Review data of ongoing intrusions or cybersecurity incidents and report, analyze, and document/report the findings in accordance with CJCSM 6510.01B guidelines.
· Provide support to internal and external Insider threat and law enforcement / counterin
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s