> Markdown version of [/jobs/ext/2299302-classified-cybersecurity-analyst](https://www.wearedevelopers.com/jobs/ext/2299302-classified-cybersecurity-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Classified Cybersecurity Analyst - **Company:** Northrop Grumman - **Location:** Baltimore, MD, United States - **Experience:** Starter - **Salary:** $87,600.0 - $131,400.0 - **Contract:** Permanent contract - **Skills:** Configuration Management, Cyber Security, Package Development Process, Security Content Automation Protocol, Information Security Management System, Nessus, Splunk, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 29, 2026 - **Apply:** https://www.juju.com/job/00000000gpn88q ## About the Role + Associate's degree with 4 years of relevant experience, or a Bachelor's degree with 2 years of relevant experience, or a Master's degree with 0 years of experience; a High School diploma or equivalent with 6 years of relevant experience may be considered in lieu of a completed degree. + Applicants must have a current U.S. Government Secret level security clearance (at a minimum), to include a closed investigation date completed within the last 6 years, or must be enrolled in the DoD Continuous Evaluation Program (CEP), in order to be considered; the required security clearance must be maintained as a condition of continued employment. + The selected candidate will be required to obtain and maintain access to Special Programs as condition of continued employment. + A current Security+CE certification; the required certification must be maintained as a condition of continued employment. + The ability to apply knowledge, insights, and understanding of business and cybersecurity concepts, tools, and processes to the benefit of program decisions, actions, and performance. + The ability to manage communications with stakeholders through organized processes to ensure that program information is defined, collected, shared, understood, stored, and retrieved in a manner that effectively meets program and stakeholder needs that are within Cybersecurity risk tolerance. + The ability to identify and address cybersecurity program impacts through a systematic proactive approach that identifies, communicates, monitors, and promptly resolves conflicts across all levels of the program. Preferred Qualifications: + Bachelor's degree in Cyber Security, Information Security, or a similar STEM related discipline. + Diverse classified information systems security/information assurance background. + Knowledge of ACAS, NESSUS, SPLUNK, SCAP, POA&Ms, NIST, JSIG, system audits, vulnerability scanning, and/or RMF package development. + Prior experience communicating with customers and program leadership. + Current U.S. Government Top Secret/SCI security clearance. ## Description + Perform assessments of systems and networks within the networking environment or enclave and identify where those systems and networks deviate from acceptable configurations, enclave policy, or local policy; this is achieved through passive evaluations such as compliance audits and active evaluations such as vulnerability assessments. + Establish strict program control processes to ensure mitigation of risks and support obtaining certification and accreditation of systems; this will include support of process, analysis, coordination, security certification test, security documentation, as well as investigations, software research, hardware introduction and release, emerging technology research inspections, and periodic audits. + Assist in the implementation of the required government policy (i.e. RMF, DAAPM, NIST), make recommendations on process tailoring, and participate in and document process activities. + Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards. + Support the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports. + Complete all associated Assessment and Authorization activities, which include all RMF Body Of Evidence (BOE) documentation: System Security Plan (SSP), Security Controls Traceability Matrix (SCTM), Control Family Security Operating Plans (SOPs), Continuous Monitoring (ConMon) Plan, Plan of Actions and Milestones (POA&M), etc. + Perform recurring cybersecurity SOW to include auditing, configuration management, user training, POA&M updates, ConMon checklists, Self-Inspections, etc., We offer flexible work arrangements, phenomenal learning opportunities, exposure to a wide variety of projects and customers, and a very friendly team environment. Our diverse portfolio of programs means there are endless paths to cultivate your career. We also offer exceptional benefits/healthcare, a 9/80 work schedule, and a great 401k matching program. Come join us! ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)