Sr Principal Classified Cybersecurity Analyst - TS/SCI
This position requires on-site work at our Dulles, VA location and does not offer relocation assistance. A current U.S. Government Top Secret security clearance with SCI access eligibility is required to start. Travel is expected at 10% of the time.
About the role
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history. We look for people who have bold new ideas, courage, and a pioneering spirit to join forces to invent the future, and have fun along the way.
Our culture thrives on intellectual curiosity, cognitive diversity, and bringing your whole self to work. We have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. The Northrop Grumman CIDO Classified Solutions team is seeking a Sr. Principal Classified Cybersecurity Analyst to support information systems lifecycle activities.
Responsibilities
- Manage the cybersecurity program of all assigned information systems and execute all cybersecurity-related tasks.
- Conduct and lead regular reviews of system audits and continuous monitoring activities, covering all security controls and configurations, to enhance operational efficiencies of the information system security posture.
- Perform assessments of systems and networks within the networking environment or enclave and identify where those systems and networks deviate from acceptable configurations, enclave policy, or local policy.
- Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards.
- Drive the implementation of the required government policy, make recommendations on process tailoring, participate in and document process activities.
- Establish and oversee strict program control processes that mitigate risk and support system Assessment and Authorization (A&A). This includes process support, analysis, coordination, security certification testing, security documentation, investigations, software research, hardware introduction and release, emerging technology research, inspections, and periodic audits.
- Lead the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports.
- Document the results of A&A activities and inspection activities, along with any technical or corrective actions, and work collectively with the security team to submit responses to the appropriate cognizant authority.
- Prepare, review, and submit A&A documentation (System Security Plan, Risk Acceptance Report, Security Controls Traceability Matrix, Plan of Action and Milestones, etc.) for review and approval.
Due to the classified nature of the work being performed, this position does not offer any virtual or telecommute working options.
Requirements
- Master's degree with 6 years of relevant technical experience; OR a Bachelor's degree with 8 years of relevant technical experience; OR an Associate's degree with 10 years of relevant technical experience; OR a High School Diploma/GED with 12 years of relevant technical experience.
- U.S. Government 8140 (8570 equivalent) IAM level III certification at a minimum (e.g., CISM, CISSP, GSLC, CCISO).
- Current U.S. Government Top Secret security clearance (at a minimum), including SCI access level eligibility based on a closed investigation date completed within the last 6 years, or enrollment in the U.S. Government Continuous Evaluation (CE) Program.
- Ability to obtain and maintain access to Special Access Programs as a condition of continued employment.
Preferred Qualifications
- Bachelor’s degree in Cybersecurity or related field with 10 years of ISSO/ISSM experience in a classified environment.
- CISSP certification.
- Experience in cybersecurity compliance (e.g., Assessment & Authorization under RMF).
- Knowledge of security tools such as ACAS, Nessus, Splunk, Trellix, and SCAP.
- Knowledge of security frameworks and documentation such as NIST, JSIG, DAAG, SSPs, POA&Ms, and SCTMs.
- Current TS/SCI with SAP access and a CI-Polygraph.
Benefits
- Flexible work arrangements.
- Phenomenal learning opportunities and exposure to a wide variety of projects and customers.
- Friendly team environment.
- Exceptional benefits and healthcare coverage.
- 9/80 work schedule.
- Great 401k matching program.
- Health insurance coverage, life and disability insurance, savings plan.
- Company-paid holidays and paid time off (PTO) for vacation and/or personal business.
- Annual bonuses designed to reward individual contributions and allow employees to share in company results.
- Eligibility for overtime, shift differential, and discretionary bonus in addition to base pay (depending on the position).
- Long Term Incentives for employees in Vice President or Director positions.
Pay
Primary level salary range: $142,200.00 - $213,400.00. The above salary range represents a general guideline; Northrop Grumman considers a number of factors when determining base salary offers, such as the scope and responsibilities of the position and the candidate's experience, education, skills, and current market conditions.