Company Details
amentumcorp
34,277
169,581
336414
amentum.com
0
AME_1000274
In-progress

Amentum Company CyberSecurity Posture
amentum.comAmentum is a global leader in advanced engineering and innovative technology solutions, trusted by the United States and its allies to address their most significant and complex challenges in science, security and sustainability. Our people apply undaunted curiosity, relentless ambition and boundless imagination to challenge convention and drive progress. Our commitments are underpinned by the belief that safety, inclusion and well-being are integral to success. Headquartered in Chantilly, Virginia, we have more than 53,000 employees in approximately 80 countries across all 7 continents.
Company Details
amentumcorp
34,277
169,581
336414
amentum.com
0
AME_1000274
In-progress
Between 750 and 799

Amentum Global Score (TPRM)XXXX



No incidents recorded for Amentum in 2025.
No incidents recorded for Amentum in 2025.
No incidents recorded for Amentum in 2025.
Amentum cyber incidents detection timeline including parent company and subsidiaries

Amentum is a global leader in advanced engineering and innovative technology solutions, trusted by the United States and its allies to address their most significant and complex challenges in science, security and sustainability. Our people apply undaunted curiosity, relentless ambition and boundless imagination to challenge convention and drive progress. Our commitments are underpinned by the belief that safety, inclusion and well-being are integral to success. Headquartered in Chantilly, Virginia, we have more than 53,000 employees in approximately 80 countries across all 7 continents.

Sandia National Laboratories is the nation’s premier DOE science and engineering lab for national security and technology innovation. Our team of scientists, engineers, researchers, and business specialists apply their knowledge and skill toward delivering cutting-edge technology in an array of area

Babcock is a FTSE 100 defence company operating in our focus countries of the UK, Australasia, Canada, France and South Africa, with exports to additional markets. Our Purpose, to create a safe and secure world, together, defines our strategy. We support and enhance our customers’ defence and secu

From Gulfstream business jets and combat vehicles to nuclear-powered submarines and communications systems, people around the world depend on our products and services for their safety and security. General Dynamics is headquartered in Reston, Virginia, and employs over 100,000 people in 43 countri

The Republic of Korea Air Force (ROKAF; Korean: 대한민국 공군; Hanja: 大韓民國 空軍; Revised Romanization: Daehanminguk Gong-gun), also known as the ROK Air Force, is the aerial warfare service branch of South Korea, operating under the South Korean Ministry of National Defense. The ROKAF has about 450 combat

The mission of the United States Air Force is to fly, fight and win … in air, space and cyberspace. To achieve that mission, the Air Force has a vision of Global Vigilance, Reach and Power. That vision orbits around three core competencies: developing Airmen, technology to war fighting and integr

We protect the security, independence and interests of the United Kingdom at home and abroad. We work with our allies and partners whenever possible. Our aim is to ensure that the UK’s Armed Forces have the training, equipment and support necessary for their work, and that we keep within budget.

Leonardo is a global security company that realises multi-domain technological capabilities in AD&S. With over 53,000 employees worldwide, the company has a significant industrial presence in Italy, the UK, Poland, and the US. It also has a commercial presence in 150 countries through subsidiaries

We are NAVSEA. The Force Behind the Fleet. Join us and become part of a mission-driven team, at one of the best places to work in the federal government. This NAVSEA LinkedIn page is all about connecting with talented individuals ready to make a difference through a rewarding career with us. We shar

The world relies on what we do. Headquartered in Bethesda, Maryland, with offices across the U.S. and around the globe, our team delivers solutions that strengthen national security, shape industries and push engineering and technology to new levels. We collaborate to win. We put our customers fi
.png)
Luis German, Amentum Luis German CIO, Amentum Luis German's biggest recent achievement was playing a role in the successful integration of...
Travis Johnson, Amentum Travis Johnson CFO, Amentum Travis Johnson's biggest recent achievement was celebrating Amentum's first anniversary...
Just after market close on Monday, Amentum Holdings (AMTM +0.04%) posted its latest set of quarterly figures. This led to a bull stampede...
Gwen Clavon, Amentum Gwen Clavon is senior vice president of cybersecurity & threat mitigation at Amentum, overseeing a team tasked with...
As drones become more capable and deadlier, counter-drone technology and strategy must adapt to stay effective.
WASHINGTON. The Defense Threat Reduction Agency -- a U.S. Department of Defense (DoD) agency -- awarded the Cooperative Threat Reduction Integrating...
Before Amentum, Randy Lycans was SVP and general manager of space solutions at Jacobs.
Amentum, through its wholly owned subsidiary Jacobs Technology Inc, has been awarded a United States Space Force contract worth up to US$4...
Amentum, through its wholly owned subsidiary Jacobs Technology Inc., has been awarded the Space Force Range Contract (SFRC) by the United...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Amentum is http://www.amentum.com.
According to Rankiteo, Amentum’s AI-generated cybersecurity score is 769, reflecting their Fair security posture.
According to Rankiteo, Amentum currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Amentum is not certified under SOC 2 Type 1.
According to Rankiteo, Amentum does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Amentum is not listed as GDPR compliant.
According to Rankiteo, Amentum does not currently maintain PCI DSS compliance.
According to Rankiteo, Amentum is not compliant with HIPAA regulations.
According to Rankiteo,Amentum is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Amentum operates primarily in the Defense and Space Manufacturing industry.
Amentum employs approximately 34,277 people worldwide.
Amentum presently has no subsidiaries across any sectors.
Amentum’s official LinkedIn profile has approximately 169,581 followers.
Amentum is classified under the NAICS code 336414, which corresponds to Guided Missile and Space Vehicle Manufacturing.
Yes, Amentum has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/amentum.
Yes, Amentum maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/amentumcorp.
As of December 11, 2025, Rankiteo reports that Amentum has not experienced any cybersecurity incidents.
Amentum has an estimated 2,330 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Amentum has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. Versions prior to 16.0.96 and 17.0.1 through 17.0.9 have a weak default password. By default, this is a 6 digit numeric value which can be brute forced. (This is the app_password parameter). Depending on local configuration, this password could be the extension, voicemail, user manager, DPMA or EPM phone admin password. This issue is fixed in versions 16.0.96 and 17.0.10.
Neuron is a PHP framework for creating and orchestrating AI Agents. In versions 2.8.11 and below, the MySQLWriteTool executes arbitrary SQL provided by the caller using PDO::prepare() + execute() without semantic restrictions. This is consistent with the name (“write tool”), but in an LLM/agent context it becomes a high-risk capability: prompt injection or indirect prompt manipulation can cause execution of destructive queries such as DROP TABLE, TRUNCATE, DELETE, ALTER, or privilege-related statements (subject to DB permissions). Deployments that expose an agent with MySQLWriteTool enabled to untrusted input and/or run the tool with a DB user that has broad privileges are impacted. This issue is fixed in version 2.8.12.
Neuron is a PHP framework for creating and orchestrating AI Agents. Versions 2.8.11 and below use MySQLSelectTool, which is vulnerable to Read-Only Bypass. MySQLSelectTool is intended to be a read-only SQL tool (e.g., for LLM agent querying, however, validation based on the first keyword (e.g., SELECT) and a forbidden-keyword list does not block file-writing constructs such as INTO OUTFILE / INTO DUMPFILE. As a result, an attacker who can influence the tool input (e.g., via prompt injection through a public agent endpoint) may write arbitrary files to the DB server if the MySQL/MariaDB account has the FILE privilege and server configuration permits writes to a useful location (e.g., a web-accessible directory). This issue is fixed in version 2.8.12.
Okta Java Management SDK facilitates interactions with the Okta management API. In versions 11.0.0 through 20.0.0, race conditions may arise from concurrent requests using the ApiClient class. This could cause a status code or response header from one request’s response to influence another request’s response. This issue is fixed in version 20.0.1.
The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. When using versions 4.11.0 through 4.11.2 and 4.12.0, simultaneous requests on the same client may result in improper lookups in the TokenRequestCache for the request results. This issue is fixed in versions 4.11.2 and 4.12.1.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.