Cyber Security Analyst 3/4
Company: Northrop Grumman
Location: Boulder
Posted on: August 4, 2022
Job Description:
At Northrop Grumman, our employees have incredible opportunities
to work on revolutionary systems that impact people's lives around
the world today, and for generations to come. Our pioneering and
inventive spirit has enabled us to be at the forefront of many
technological advancements in our nation's history - from the first
flight across the Atlantic Ocean, to stealth bombers, to landing on
the moon. We look for people who have bold new ideas, courage and a
pioneering spirit to join forces to invent the future, and have fun
along the way. Our culture thrives on intellectual curiosity,
cognitive diversity and bringing your whole self to work - and we
have an insatiable drive to do what others think is impossible. Our
employees are not only part of history, they're making history.The
Specialized Warfighter Development Contract (SWDC) is seeking a
Cyber Security Analyst 3/4 to support their team at the Boulder,
Colorado location.Duties include:
- Perform assessments of systems and networks within the
networking environment or enclave and identify where those systems
and networks deviate from acceptable configurations, enclave
policy, or local policy.
- This is achieved through passive evaluations such as compliance
audits and active evaluations such as vulnerability
assessments.
- Establishes strict program control processes to ensure
mitigation of risks and supports obtaining certification and
accreditation of systems. Includes support of process, analysis,
coordination, security certification test, security documentation,
as well as investigations, software research, hardware introduction
and release, emerging technology research inspections and periodic
audits.
- Assist in the implementation of the required government policy
(i.e., NISPOM, DCID 6-3), make recommendations on process
tailoring, participate in and document process activities.
- Perform analyses to validate established security requirements
and to recommend additional security requirements and
safeguards.
- Support the formal Security Test and Evaluation (ST&E)
required by each government accrediting authority through pre-test
preparations, participation in the tests, analysis of the results
and preparation of required reports.
- Document the results of Certification and Accreditation
activities and technical or coordination activity and prepare the
system Security Plans and update the Plan of Actions and Milestones
POA&M.
- Periodically conduct a complete review of each system's audits
and monitor corrective actions until all actions are closed.This
requisition may be filled at a higher grade based on qualifications
listed below.Basic Qualifications:
- An active Secret clearance with eligibility for TS/SCI & CI
Poly
- Level 3 - 9 years of relevant experience with a High School
Diploma; 5 Years with Bachelors in Science; 3 Years with
Masters
- Level 4 - 13 Years of relevant experience with a High School
Diploma; 9 Years of relevant experience with Bachelor's degree; 7
years with Master's
- A DoD 8570 certification at IAT Level II or higher
(Security+)
- Hands-on analysis of vulnerability scan data and ability to
write/evaluate technical mitigations & write POA&MsPreferred
Qualifications:
- Demonstrated Cybersecurity Analyst foundation with strong
working knowledge and understanding of Cyber technologies, Risk
Management Framework (RMF) process and NIST SP 800-53
- Cybersecurity foundation with working knowledge of cyber
technologies, Risk Management Framework (RMF) process, NIST SP
800-53 - Familiarity with the configuration and operation of one or
more of the following:
- ACAS Tenable Security Center/Nessus, Endpoint Security
Solutions (ESS/HBSS) and McAfee Endpoint tools, Splunk SIEM, SCAP
Compliance Checker, and SNOW/Xacta or eMASS
- Strong foundation and working knowledge with the configuration
and operation of one or more of the following: ACAS, Tenable
Security Center/Nessus, Endpoint Security Solutions (ESS/HBSS) and
McAfee Endpoint tools, Splunk SIEM, SCAP Compliance Checker, and
SNOW/Xacta or eMASS
- Experience as a Unix System Administrator or Cisco Network
Administrator Salary Range: $101,400 USD - $152,200 USD Salary
Range 2: $125,800 USD - $188,600 USD Employees may be eligible for
a discretionary bonus in addition to base pay. Annual bonuses are
designed to reward individual contributions as well as allow
employees to share in company results. Employees in Vice President
or Director positions may be eligible for Long Term Incentives. In
addition, Northrop Grumman provides a variety of benefits including
health insurance coverage, life and disability insurance, savings
plan, Company paid holidays and paid time off (PTO) for vacation
and/or personal business. The health and safety of our employees
and their families is a top priority. The company encourages
employees to remain up-to-date on their COVID-19 vaccinations. U.S.
Northrop Grumman employees may be required, in the future, to be
vaccinated or have an approved disability/medical or religious
accommodation, pursuant to future court decisions and/or government
action on the currently stayed federal contractor vaccine mandate
under Executive Order 14042
https://www.saferfederalworkforce.gov/contractors/ .Northrop
Grumman is committed to hiring and retaining a diverse workforce.
We are proud to be an Equal Opportunity/Affirmative Action
Employer, making decisions without regard to race, color, religion,
creed, sex, sexual orientation, gender identity, marital status,
national origin, age, veteran status, disability, or any other
protected class. For our complete EEO/AA and Pay Transparency
statement, please visit http://www.northropgrumman.com/EEO . U.S.
Citizenship is required for most positions.
Keywords: Northrop Grumman, Boulder , Cyber Security Analyst 3/4, Professions , Boulder, Colorado
Didn't find what you're looking for? Search again!
Loading more jobs...