Northrop Grumman logo
Northrop GrummanPosted 3 weeks ago
EXPIRED

Cyber Analyst (AHT)

$83,400–$125,200 year

On-siteColorado Springs, Colorado, United States

Full TimeEnterprise

Job Summary

Conduct comprehensive security assessments, including compliance audits and vulnerability scanning, to pinpoint security weaknesses and policy inconsistencies. Identify and support the addressing of system vulnerabilities while collaborating with system administrators to implement secure configurations aligned with NIST SP800-53 controls. Perform regular security inspections and audits, and contribute to the development of technical standard operating processes. Assist in the preparation and upkeep of essential documentation for system certification and accreditation processes, including security authorization packages and CDRLs. Provide analysis and design for security assessments to ensure compliance with NIST SP 800-53, CNSSI 1253, and DoD RMF guidance. Troubleshoot and resolve system failures in a timely manner while hardening information systems and network gear.

Required Qualifications

  • 2 years relevant cybersecurity experience
  • Bachelor's degree in cybersecurity or related STEM field
  • Active IAT Level II (ie. CompTIA Security+) certification or DOD 8140 Foundational Qualification
  • Active Secret security clearance
  • Basic proficiency in RHEL OS command line and/or Windows PowerShell
  • Ability to apply basic technical expertise and skillset under general supervision to work cybersecurity projects and tasks IAW required DoD security and cybersecurity instructions, policies, frameworks, etc.
  • Scanning and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool (Tenable Security Center and Tenable NESSUS Scanner)
  • Performing STIG compliance scans using Xylok or other STIG scanning tools
  • Identifying & applying DISA STIGs/hardening systems
  • Understanding of and experience with NIST SP 800-37 RMF for DoD Systems, including IAW NIST/DoD RMF processes, SP 800-53 security and privacy controls
  • U.S. Citizenship

Desired Qualifications

  • Basic knowledge of security risks & strategies, SIEM, antivirus, proxies, firewalls, and intrusion detection concepts, tools, and processes
  • Experience in creating, editing, and updating program CDRLs
  • Beginner skillset and/or familiarity with Trellix Endpoint Security Solutions (ESS)
  • Experience with Hyper-V and/or VMware
  • Working knowledge of Splunk
  • Experience implementing DevSecOps practices and principles for release management
  • Working knowledge and/or experience with JIRA for task assignment, status track

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Find similar roles