Defense Industrial Base Cyber Triage Analyst

SAICLinthicum, MD
Onsite

About The Position

SAIC is seeking a Defense Industrial Base Cyber Triage Analyst to support the Office of the Under Secretary of War for Research and Engineering (OUSW (R&E)) Damage Assessment Management Office (DAMO) Defense Industrial Base (DIB) Cyber Security Program. This role involves leading a team of analysts to develop a holistic approach for protecting the DIB technical advantage and safeguarding Controlled Technical Information (CTI) supporting OUSW (R&E) Critical Technology Areas (CTAs). Members of the OSW DAMO Triage Team are responsible for assessing Defense Industrial Base organization cyber incidents for DoD Critical Technology Areas (CTAs) and Controlled Technical Information (CTI) compromised data. The analysts review mandatory cyber incident reports submitted under DFARS 252.204-7012, review supporting intelligence community cyber reports, update keywords to support triage of critical programs and technology lists, programs, weapons systems, and technologies, and collaborate with subject matter experts to draft damage assessment reports. This position is located in Linthicum, MD.

Requirements

  • Experience leading a team of analysts.
  • Experience performing triage analysis.
  • Experience drafting damage assessment reports.
  • Experience reviewing compromised data sets for CTAs and CTI.
  • Experience reviewing intelligence community cyber intrusion reports.
  • Experience collaborating with appropriate agencies.
  • Experience developing keyword strings of interest for CTAs and CTI using Boolean logic.
  • Experience overseeing and coordinating subject matter expert participation.
  • Experience developing processes for damage assessment capabilities (discovery, reporting, network, and analytic tools).

Responsibilities

  • Lead a team of analysts to perform triage analysis and draft damage assessment reports from a review of compromised data sets for CTAs and CTI that could provide an adversary with the capability to develop countermeasures to the system, platform, or technology, provide potentially damaging insight into defense plans and operations, or shorten development of similar adversary systems, platforms, or technologies.
  • Review intelligence community cyber intrusion reports to collaborate with the appropriate agencies and improve cyber incident damage assessment reports.
  • Develop keyword strings of interest for CTAs and CTI to review compromised data sets using Boolean logic.
  • Oversee and coordinate for subject matter expert participation in cyber incident damage assessment reports.
  • Develop processes to effectively and efficiently grow damage assessment capabilities to include, but not limited to, discovery, reporting, network, and analytic tools to assist development of damage assessment reports.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service