> Markdown version of [/jobs/ext/3077592-cybersecurity-analyst-19971](https://www.wearedevelopers.com/jobs/ext/3077592-cybersecurity-analyst-19971). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Analyst-19971 - **Company:** Northrop Grumman - **Location:** Roy, UT, United States - **Salary:** $79,300.0 - $118,900.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Agile Methodology, Amazon Web Services, Systems Engineering, Microsoft Azure, Cyber Security, Linux, Identity and Access Management, Python (Programming Language), Windows Servers, OpenShift, Windows PowerShell, Ansible, SAP (Applications), Security Content Automation Protocol, Cloud Platform System, Containerization, Kubernetes, Infrastructure Automation Frameworks, Tenable Nessus, Nessus, Terraform, Devsecops, Docker, Plan of Action and Milestones, Vulnerability Analysis - **Published:** September 25, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9194909/cybersecurity-analyst-19971 ## About the Role Bachelor's degree with 2 years of experience, or Master's degree; 4 additional years of experience may be considered in lieu of a completed degree. Must be a US Citizen and have an active U.S. Government DoD Secret security clearance at time of application, current and within scope, with an ability to obtain and maintain Special Access Program (SAP) approval within a reasonable period of time, as determined by the company to meet its business need. DoD 8570/8140 Certification: Active IAM Level I or IAT Level II certification (e.g., Security+ CE, CySA+, CCNA Security, GICSP, or SSCP). Demonstrated, hands-on experience applying NIST SP 800-53 and NIST SP 800-37 (RMF) frameworks in a DoD or Intelligence Community (IC) environment. Direct experience with DISA STIG implementation, auditing, and hardening practices. Proficiency in executing vulnerability scans with tools like ACAS, Nessus, or Rapid7 Preferred Qualifications: * Advanced certifications such as CISSP, CASP+ CE, CISM, or AWS/Azure Security Specialty. * Experience with Systems Security Engineering frameworks defined in NIST SP 800-160. * Working knowledge of cross-domain solutions, cryptographic equipment, or space/ground segment defense systems. * Experience with scripting and automation tools (e.g., Python, PowerShell, Ansible, or Terraform) to automate compliance verification. * Familiarity with container security (e.g., Docker, Kubernetes, OpenShift) and hardening within DoD Iron Bank or similar repositories. ## Description * RMF Accreditation & Compliance: Execute the Risk Management Framework (NIST SP 800-37 / DoDI 8510.01) steps from categorization through Authorization to Operate (ATO) and continuous monitoring. * Systems Security Engineering: Apply NIST SP 800-160 principles to design, implement, and maintain system security architectures for defense applications. * Control Evaluation & Hardening: Implement and tailor security controls based on NIST SP 800-53 rev 5 and NIST SP 800-171. Apply DISA Security Technical Implementation Guides (STIGs) across Linux, Windows Server, and cloud environments. * Vulnerability & Compliance Scanning: Utilize tools such as ACAS (Tenable Nessus), DISA Security Content Automation Protocol (SCAP), and Trellix/HBSS/ESS to execute automated vulnerability scans, document deviations, and oversee remediation. * Artifact Authoring: Draft, review, and maintain system accreditation artifacts including System Security Plans (SSP), Security Assessment Reports (SAR), Plan of Action & Milestones (POA&M), and Security Control Traceability Matrices (SCTM). * Cross-Functional Support: Partner with software, systems engineering, and program teams to integrate security into the Agile software development lifecycle (DevSecOps) and containerized workloads ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)