We are seeking a Cyber Threat Emulation & Analyst at Lackland AFB in San Antonio, TX. What You'll Do: * Conduct both automated and manual enterprise vulnerability assessments, including conducting ...
We are seeking a Cyber Threat Emulation & Analyst at Lackland AFB in San Antonio, TX. What You'll Do: * Conduct both automated and manual enterprise vulnerability assessments, including conducting ...
We are seeking a Cyber Threat Emulation & Analyst at Lackland AFB in San Antonio, TX. What You'll Do: * Conduct both automated and manual enterprise vulnerability assessments, including conducting ...
We are seeking a Cyber Threat Emulation & Analyst at Lackland AFB in San Antonio, TX. What You'll Do: * Conduct both automated and manual enterprise vulnerability assessments, including conducting ...
We are seeking a Cyber Threat Emulation & Analyst at Lackland AFB in San Antonio, TX. What You'll Do: * Conduct both automated and manual enterprise vulnerability assessments, including conducting ...
We are seeking a Cyber Threat Emulation & Analyst at Lackland AFB in San Antonio, TX. What You'll Do: * Conduct both automated and manual enterprise vulnerability assessments, including conducting ...
Mid-Level Cyber Threat Emulation Analyst Location: Schriever Space Force Base, Colorado Springs, CO Relocation Assistance: None available at this time Remote/Telework: NO - Not available for this ...
Mid-Level Cyber Threat Emulation Analyst Location: Schriever Space Force Base, Colorado Springs, CO Relocation Assistance: None available at this time Remote/Telework: NO - Not available for this ...
Mid-Level Cyber Threat Emulation Analyst Location: Schriever Space Force Base, Colorado Springs, CO Relocation Assistance: None available at this time Remote/Telework: NO - Not available for this ...
Mid-Level Cyber Threat Emulation Analyst Location: Schriever Space Force Base, Colorado Springs, CO Relocation Assistance: None available at this time Remote/Telework: NO - Not available for this ...
Mid-Level Cyber Threat Emulation Analyst IRES - SSFB with Security Clearance
Colorado Springs, CO · On-site
Mid-Level Cyber Threat Emulation Analyst Location: Schriever Space Force Base, Colorado Springs, CO Relocation Assistance: None available at this time Remote/Telework: NO - Not available for this ...
Mid-Level Cyber Threat Emulation Analyst IRES - SSFB with Security Clearance
Colorado Springs, CO · On-site
Mid-Level Cyber Threat Emulation Analyst Location: Schriever Space Force Base, Colorado Springs, CO Relocation Assistance: None available at this time Remote/Telework: NO - Not available for this ...
Engineer, configure, and implement cyber threat systems, defensive cyber controls, and supporting security mechanisms within threat emulation environments. * Translate threat intelligence, threat ...
Engineer, configure, and implement cyber threat systems, defensive cyber controls, and supporting security mechanisms within threat emulation environments. * Translate threat intelligence, threat ...
Threat Systems Engineer
Huntsville, AL · On-site
Engineer, configure, and implement cyber threat systems, defensive cyber controls, and supporting security mechanisms within threat emulation environments. * Translate threat intelligence, threat ...
Threat Systems Engineer
Huntsville, AL · On-site
Engineer, configure, and implement cyber threat systems, defensive cyber controls, and supporting security mechanisms within threat emulation environments. * Translate threat intelligence, threat ...
Engineer, configure, and implement cyber threat systems, defensive cyber controls, and supporting security mechanisms within threat emulation environments. * Translate threat intelligence, threat ...
Engineer, configure, and implement cyber threat systems, defensive cyber controls, and supporting security mechanisms within threat emulation environments. * Translate threat intelligence, threat ...
Engineer, configure, and implement cyber threat systems, defensive cyber controls, and supporting security mechanisms within threat emulation environments. * Translate threat intelligence, threat ...
Engineer, configure, and implement cyber threat systems, defensive cyber controls, and supporting security mechanisms within threat emulation environments. * Translate threat intelligence, threat ...
... emulation capability and the actual threat Develop briefings and analytic products to define threat environments Coordinate with intelligence, acquisition and industry communities
... emulation capability and the actual threat Develop briefings and analytic products to define threat environments Coordinate with intelligence, acquisition and industry communities
Cyber Intelligence Analyst
Quantico, VA · On-site
... threat emulation capability and the actual threat Develop briefings and analytic products to define threat environments Coordinate with intelligence, acquisition and industry communities
Quick apply
Cyber Intelligence Analyst
Quantico, VA · On-site
... threat emulation capability and the actual threat Develop briefings and analytic products to define threat environments Coordinate with intelligence, acquisition and industry communities
Cyber Intelligence Analyst
Quantico, VA · On-site
... threat emulation capability and the actual threat Develop briefings and analytic products to define threat environments Coordinate with intelligence, acquisition and industry communities
Cyber Intelligence Analyst
Quantico, VA · On-site
... threat emulation capability and the actual threat Develop briefings and analytic products to define threat environments Coordinate with intelligence, acquisition and industry communities
... cyber threat emulation capability and the actual threat • Perform as part of a local or distributed team to develop intelligence briefings and analytic products to define operational threat ...
... cyber threat emulation capability and the actual threat • Perform as part of a local or distributed team to develop intelligence briefings and analytic products to define operational threat ...
Determine cyber threat resource requirements, availability, adequacy, and define gap between cyber threat emulation capability and the actual threat * Perform as part of a local or distributed team ...
Quick apply
Determine cyber threat resource requirements, availability, adequacy, and define gap between cyber threat emulation capability and the actual threat * Perform as part of a local or distributed team ...
Determine cyber threat resource requirements, availability, adequacy, and define gap between cyber threat emulation capability and the actual threat * Perform as part of a local or distributed team ...
Determine cyber threat resource requirements, availability, adequacy, and define gap between cyber threat emulation capability and the actual threat * Perform as part of a local or distributed team ...
Support cyber threat intelligence and adversary analysis activities to identify, assess, and ... Experience supporting penetration testing, red team operations, adversary emulation, vulnerability ...
Support cyber threat intelligence and adversary analysis activities to identify, assess, and ... Experience supporting penetration testing, red team operations, adversary emulation, vulnerability ...
Support cyber threat intelligence and adversary analysis activities to identify, assess, and ... Experience supporting penetration testing, red team operations, adversary emulation, vulnerability ...
Support cyber threat intelligence and adversary analysis activities to identify, assess, and ... Experience supporting penetration testing, red team operations, adversary emulation, vulnerability ...
Support cyber threat intelligence and adversary analysis activities to identify, assess, and ... Experience supporting penetration testing, red team operations, adversary emulation, vulnerability ...
Support cyber threat intelligence and adversary analysis activities to identify, assess, and ... Experience supporting penetration testing, red team operations, adversary emulation, vulnerability ...
Support cyber threat intelligence and adversary analysis activities to identify, assess, and ... Experience supporting penetration testing, red team operations, adversary emulation, vulnerability ...
Support cyber threat intelligence and adversary analysis activities to identify, assess, and ... Experience supporting penetration testing, red team operations, adversary emulation, vulnerability ...
Cyber Threat Emulation information
See salary details
$34K - $46.9K
4% of jobs
$46.9K - $59.8K
0% of jobs
$59.8K - $72.7K
4% of jobs
$72.7K - $85.6K
7% of jobs
$96.2K is the 25th percentile. Wages below this are outliers.
$85.6K - $98.5K
11% of jobs
$98.5K - $111.5K
5% of jobs
The median wage is $116.7K / yr.
$111.5K - $124.4K
44% of jobs
$124.4K - $137.3K
10% of jobs
$137.3K - $150.2K
11% of jobs
$150.2K - $163.1K
2% of jobs
$163.1K - $176K
0% of jobs
$34K
$112.9K
$176K
How much do cyber threat emulation jobs pay per year?
What are the most common challenges faced by professionals in Cyber Threat Emulation roles?
What is cyber threat emulation?
What are the key skills and qualifications needed to thrive as a Cyber Threat Emulation specialist, and why are they important?
What is the difference between Cyber Threat Emulation vs Penetration Tester?
| Aspect | Cyber Threat Emulation | Penetration Tester |
|---|---|---|
| Certifications | CEH, OSCP, CISSP | CEH, OSCP, CPT |
| Work Environment | Simulates real-world attack scenarios to test defenses | Identifies vulnerabilities by attempting to exploit them |
| Employer & Industry Usage | Used by security teams to assess security posture | Hired by organizations to find security weaknesses |
| Search & Comparison Intent | Often compared for security testing roles | Related but focuses more on vulnerability discovery |
Cyber Threat Emulation and Penetration Testing both involve security assessments, but emulation focuses on mimicking real-world attack scenarios to evaluate defenses, while penetration testing aims to find and exploit vulnerabilities. Both roles require similar certifications and are used within security teams to strengthen organizational security.

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 24 days ago
Job description
What You'll Do:
- Conduct both automated and manual enterprise vulnerability assessments, including conducting regular patch & configuration vulnerability assessments as directed by operational flight leads.
- Conduct Cyber Threat Emulation operations, and coordinate with security teams to strengthen the overall security posture of the AFNet and AFIN various tools and capabilities.
- Test for real-time security vulnerabilities, conduct assessments, and assess vulnerability risk and impact.
- Continuously develop and maintain safe and valid procedures to actively test Enterprise defensive measures. (CDRL A007 & A008)
- Develop mitigations, policies, and procedures to coordinate with internal teams. (CDRL A007)
- Work with incident response team to develop response policies and procedures.
- Generate threat intelligence indicators during the course of Cyber Threat Emulation operations and provide reports back to operators. (CDRL A008)
- Coordinate with internal and external intelligence teams in order to replicate threat actor (TA) Techniques, Tactics, and Procedures (TTPs).
- Research & Evaluate threats and vulnerabilities to assist in the prioritization of remediation actions.
- Utilize knowledge and understanding of the Cyber Threat Framework (ODNI) and production of Threat Emulation findings.
- Utilize the MITRE ATT&CK framework to perform cyber security operations testing, and develop improvements based upon adversary behavior.
- Formulate, lead and persuade individuals, large teams and communities on ideas, concepts, and opportunities.
- Leverage research, frameworks, and best practices on the latest exploits and security trends and currency on industry trends and provide operational reports/assessments for development of tactics, techniques, and procedures. (CDRL A002)
- Provide OJT to other contractor employees, military, and/or civilian personnel, and ensure continuity folders/working aids are updated at least once per quarter in order to ensure efficient transition when personnel rotate.
- Create, document, and report metrics for analysis to improve weapon system processes and mission execution. (CDRL A009).
- Provide information to operational leaderships tasking as required as it relates to CTE actions
What You Bring:
Requirements:
- DoDD 8570.01-M/8140.01 I AT Level III CND
- Active TS/SCI
- Five years' of penetration testing experience. BA/BS or MA/MS
- Five (5) years of penetration testing experience.
- Demonstrated advanced knowledge of cyber security operations with master of two or more of the following: attack surface management, Security Operations Center (SOC) operations, Intrusion Detection/Intrusion Prevention Systems (IDS/IPS), Security Information and Event Management (SIEM) use, threats (including Advanced Persistent Threat (APT), insider), vulnerabilities, and exploits; incident response, investigations and remediation.
- Experience with PowerShell, BASH or Python scripting/programming language.
- Must have a strong understanding of Linux Operating System.
- Extensive knowledge of MITRE ATT&CK framework, and its uses within the cybersecurity community (e.g., Open Source projects)
What We Offer:
STS Systems Support, LLC (SSS) offers a competitive benefits package to include paid holidays, paid time off including sick and vacation leave, medical, dental and vision insurance, flexible spending accounts, short and long term disability, company paid life insurance, 401(k) with a company match and discretionary profit sharing and tuition reimbursement.
SSS is an Equal Opportunity Employer. Employment decisions are made without regard to any protected category. Hiring preference will be given to BBNC shareholders, their spouses and descendants and Alaska Natives in accordance with Public Law 93-638
About Bristol Bay Native
Sourced by ZipRecruiter
Industry
Executive offices
Company size
1,001 - 5,000 Employees
Headquarters location
Anchorage, AK, US
Year founded
1971