> Markdown version of [/jobs/ext/2481374-cyber-analyst-aht](https://www.wearedevelopers.com/jobs/ext/2481374-cyber-analyst-aht). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Analyst (AHT) - **Company:** Northrop Grumman - **Location:** Colorado Springs, CO, United States - **Experience:** Experienced - **Salary:** $83,400.0 - $125,200.0 - **Contract:** Permanent contract - **Skills:** Proxy Servers, Antivirus Softwares, JIRA, Command-Line Interface, Software Documentation, CompTIA Security+, Information Systems, Hyper-V, Intrusion Detection and Prevention, Windows PowerShell, Red Hat Enterprise Linux, Release Management, Security Software, Security Information and Event Management, Privacy Controls, Cisco Discovery Protocol, Firewalls (Computer Science), Tenable Nessus, Splunk, Devsecops, Vulnerability Analysis, Vmware - **Published:** August 3, 2026 - **Apply:** https://dejobs.org/x/x/8678A576DF9A4359A9C2038426357B54/job/ ## About the Role * 2 years relevant cybersecurity experience with Bachelor's degree in cybersecurity or related STEM field * Active IAT Level II (ie. CompTIA Security+) certification or DOD 8140 Foundational Qualification * Active Secret security clearance * Basic proficiency in RHEL OS command line and/or Windows PowerShell * Ability to apply basic technical expertise and skillset under general supervision to work cybersecurity projects and tasks IAW required DoD security and cybersecurity instructions, policies, frameworks, etc., including: * Scanning and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool (Tenable Security Center and Tenable NESSUS Scanner) * Performing STIG compliance scans using Xylok or other STIG scanning tools * Identifying & applying DISA STIGs/hardening systems * Understanding of and experience with NIST SP 800-37 RMF for DoD Systems, including IAW NIST/DoD RMF processes, SP 800-53 security and privacy controls Preferred Qualifications * Basic knowledge of security risks & strategies, SIEM, antivirus, proxies, firewalls, and intrusion detection concepts, tools, and processes * Experience in creating, editing, and updating program CDRLs * Beginner skillset and/or familiarity with Trellix Endpoint Security Solutions (ESS) * Experience with Hyper-V and/or VMware * Working knowledge of Splunk * Experience implementing DevSecOps practices and principles for release management * Working knowledge and/or experience with JIRA for task assignment, status track ## Description Northrop Grumman Defense Systems is seeking a multi-skilled, self-motivated, energetic individual to work at our Colorado Springs, CO location as a Cyber Analyst supporting the JTAGS program. As a cyber team member you should excel in interpersonal, business, and technical domains. Be able to perform comprehensive security assessments, including compliance audits and vulnerability scanning, to pinpoint security weaknesses and policy inconsistencies. You'll identify and support in the addressing of system vulnerabilities and collaborate with system administrators to implement secure configurations aligned with NIST SP800-53 security and privacy controls and customer standards. Strong collaboration and communication skills, both written and verbal, are essential for engaging with internal and external stakeholders., * Contribute to the development and enforcement of strong program controls aimed at effectively mitigating identified security risks * Assist in the preparation and upkeep of essential documentation for system certification and accreditation processes * Support the planning, coordination, and documentation of security certification testing activities * Conduct research on emerging technologies and their potential impact on the program's security landscape * Participate in regular security inspections and audits * Support in the development of technical standard operating processes and procedures as needed * Provide analysis, design, development, implementation and security assessments to ensure compliance with National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53, CNSSI 1253, and DoD RMF Knowledge Service guidance * Hardening and securing information systems and network gear while understanding the operational and security impacts of various security configurations * Troubleshooting, identifying, and resolving system failures in a timely manner * Participating in technical interchange meetings * Providing support for development and enhancement of security engineering inputs to program documentation, security authorization packages, CDRLs, and research & development reports ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Generating code with Angular schematics](https://www.wearedevelopers.com/videos/129-generating-code-with-angular-schematics) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Top 6 Hackathons for Developers in 2023](https://www.wearedevelopers.com/magazine/263-top-6-hackathons-for-developers-in-2023)