Classified Cybersecurity Analyst

Northrop Grumman
Baltimore, MD, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
0 years minimum
Compensation
$87,600.0 - $131,400.0
Working hours
Regular working hours

Tech stack

Configuration Management Cyber Security Package Development Process Security Content Automation Protocol Information Security Management System Nessus Splunk Vulnerability Analysis

Job description

  • Perform assessments of systems and networks within the networking environment or enclave and identify where those systems and networks deviate from acceptable configurations, enclave policy, or local policy; this is achieved through passive evaluations such as compliance audits and active evaluations such as vulnerability assessments.
  • Establish strict program control processes to ensure mitigation of risks and support obtaining certification and accreditation of systems; this will include support of process, analysis, coordination, security certification test, security documentation, as well as investigations, software research, hardware introduction and release, emerging technology research inspections, and periodic audits.
  • Assist in the implementation of the required government policy (i.e. RMF, DAAPM, NIST), make recommendations on process tailoring, and participate in and document process activities.
  • Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards.
  • Support the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports.
  • Complete all associated Assessment and Authorization activities, which include all RMF Body Of Evidence (BOE) documentation: System Security Plan (SSP), Security Controls Traceability Matrix (SCTM), Control Family Security Operating Plans (SOPs), Continuous Monitoring (ConMon) Plan, Plan of Actions and Milestones (POA&M), etc.
  • Perform recurring cybersecurity SOW to include auditing, configuration management, user training, POA&M updates, ConMon checklists, Self-Inspections, etc., We offer flexible work arrangements, phenomenal learning opportunities, exposure to a wide variety of projects and customers, and a very friendly team environment. Our diverse portfolio of programs means there are endless paths to cultivate your career. We also offer exceptional benefits/healthcare, a 9/80 work schedule, and a great 401k matching program. Come join us!

Requirements

  • Associate’s degree with 4 years of relevant experience, or a Bachelor’s degree with 2 years of relevant experience, or a Master’s degree with 0 years of experience; a High School diploma or equivalent with 6 years of relevant experience may be considered in lieu of a completed degree.
  • Applicants must have a current U.S. Government Secret level security clearance (at a minimum), to include a closed investigation date completed within the last 6 years, or must be enrolled in the DoD Continuous Evaluation Program (CEP), in order to be considered; the required security clearance must be maintained as a condition of continued employment.
  • The selected candidate will be required to obtain and maintain access to Special Programs as condition of continued employment.
  • A current Security+CE certification; the required certification must be maintained as a condition of continued employment.
  • The ability to apply knowledge, insights, and understanding of business and cybersecurity concepts, tools, and processes to the benefit of program decisions, actions, and performance.
  • The ability to manage communications with stakeholders through organized processes to ensure that program information is defined, collected, shared, understood, stored, and retrieved in a manner that effectively meets program and stakeholder needs that are within Cybersecurity risk tolerance.
  • The ability to identify and address cybersecurity program impacts through a systematic proactive approach that identifies, communicates, monitors, and promptly resolves conflicts across all levels of the program., * Bachelor’s degree in Cyber Security, Information Security, or a similar STEM related discipline.
  • Diverse classified information systems security/information assurance background.
  • Knowledge of ACAS, NESSUS, SPLUNK, SCAP, POA&Ms, NIST, JSIG, system audits, vulnerability scanning, and/or RMF package development.
  • Prior experience communicating with customers and program leadership.
  • Current U.S. Government Top Secret/SCI security clearance.

Benefits & conditions

Primary Level Salary Range: $87,600.00 - $131,400.00

The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate’s experience, education, skills and current market conditions.

Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.

About the company

At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people’s lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation’s history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they’re making history.

At the heart of Defining Possible is our commitment to missions. In rapidly changing global security environments, Northrop Grumman brings informed insights and secure technological solutions to enable strategic objectives. We’re looking for innovators who can help us keep building on our wide portfolio of secure, affordable, integrated, and multi-domain systems and technologies that fuel those missions. By joining in our shared mission, we will support yours of expanding your personal network and developing skills, whether you are new to the field or an industry thought leader. At Northrop Grumman, you will have the resources, support, and team to do some of the best work of your career.

Northrop Grumman’s Mission Systems sector is seeking a Junior ISSO to join its Classified Solutions team in Baltimore, MD; please note that due to the classified nature of this position, the selected candidate will be required to work on-site, full-time, at our Baltimore/Linthicum, MD campus, and that this is not a remote work opportunity.

Responsibilities will include but not be limited to the following

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all