> Markdown version of [/jobs/ext/2581439-principal-classified-cybersecurity-analyst-top-secret](https://www.wearedevelopers.com/jobs/ext/2581439-principal-classified-cybersecurity-analyst-top-secret). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Classified Cybersecurity Analyst - Top Secret - **Company:** Northrop Grumman - **Location:** Edwards Air Force Base, CA, United States (Remote available) - **Experience:** Expert - **Salary:** $114,000.0 - $171,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems, SAP (Applications), Security Content Automation Protocol, Nessus, Splunk - **Published:** August 10, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=1a5a1c880b470f87 ## About the Role * Master's degree with 3 years of relevant experience; OR a Bachelor's degree with 5 years of relevant experience; OR an Associates degree with 7 years of relevant experience; OR a High School Diploma/GED with 9 years of relevant experience is required * Must have a security certification in CAP, SecurityX, CCISO, HCISPP, CISM, GSLC, CISSP-Associate, or CISSP to be considered * Candidates must have a current US Government Top Secret level security clearance (at a minimum) in order to be considered * Candidates must have the ability to obtain, and maintain, access to Special Programs as a condition of employment, * Bachelor's degree in Cybersecurity or related field * Top Secret/SCI, SAP/SAR access, and/or a Polygraph * Experience in cybersecurity compliance (ex. Assessment & Authorization under RMF) * Top Secret, SAP/SAR access, SCI access, and/or a Polygraph * Knowledge of security tools such as ACAS, Nessus, Splunk, Trellix, and SCAP * Knowledge of security frameworks and documentation such as NIST, JSIG, DAAG, SSPs, POA&Ms, and SCTMs ## Description * Conduct system audits and continuous monitoring activities, covering all security controls, configurations, and operational processes to evaluate the security posture of the information systems. * Perform assessments of systems and networks within the networking environment or enclave and identify where those systems and networks deviate from acceptable configurations, enclave policy, or local policy. * Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards. * Assist in the implementation of the required government policy, make recommendations on process tailoring, participate in and document process activities. * Establish strict program control processes to ensure mitigation of risks and support the Assessment and Authorization (A&A) of systems. This includes process support, analysis, coordination, security certification testing, security documentation, investigations, software research, hardware introduction and release, emerging technology research, inspections, and periodic audits. * Support the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results and preparation of required reports. * Document the results of A&A activities, and technical or coordination activities, and prepare the Risk Management Framework body of evidence., We offer flexible work arrangements, phenomenal learning opportunities, exposure to a wide variety of projects and customers, and a very friendly team environment. At Northrop Grumman, we are on the cutting edge of innovation. Our diverse portfolio of programs means there are endless paths to cultivate your career. We also offer exceptional benefits/healthcare, a 9/80 work schedule, and a great 401k matching program. Come join us! ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)