Northrop Grumman - Colorado Springs, CO

posted 4 days ago

Full-time - Senior
Colorado Springs, CO
Computer and Electronic Product Manufacturing

About the position

The Principal Cybersecurity Analyst - Cybersecurity Engineer position at Northrop Grumman involves working on the Command and Control, Battle Management, and Communications (C2BMC) program, which integrates the Missile Defense System. This role is critical for enabling high-level defense operations and ensuring the security and compliance of systems and networks. The position requires a strong background in cybersecurity, risk management, and technical implementation, with responsibilities that include account management, system assessments, compliance audits, and supporting program test milestones.

Responsibilities

  • Process and track DD Form 2875 user account forms and required training for privileged and non-privileged accounts.
  • Assess systems and networks within a virtual environment and identify deviations from acceptable configurations.
  • Conduct compliance audits and vulnerability assessments using tools like STIG Viewer and ACAS.
  • Perform STIG assessments and hardening for Windows, RHEL systems, and networking equipment.
  • Develop test plans for STIG checks and document expected outcomes.
  • Update RMF artifact documentation to track non-compliant system hardening.
  • Establish program control processes for risk mitigation and system assessment.
  • Support compliance documentation, investigations, and audits.
  • Assist in implementing government policy and document process activities.
  • Perform analyses to validate cybersecurity controls and recommend safeguards.
  • Prepare artifacts for program test milestones and maintain POA&M.
  • Review program audits and monitor corrective actions until closure.
  • Coordinate across the program to address deficiencies during RMF assessments.

Requirements

  • An active Top Secret clearance is required to start.
  • Bachelor's Degree in a STEM discipline preferred and 5 years of related experience, or a Master's degree and 3 years of experience, or a PhD and 1 year of experience, or 9 years of related experience in lieu of a degree.
  • DoD 8140 certification at IAT Level II / IAM - Level I or higher is required.
  • Security engineering skills with knowledge of cybersecurity technology and DoD/Federal cybersecurity policy.
  • Understanding of Risk Management Framework (RMF) Cybersecurity Lifecycle.

Nice-to-haves

  • Windows and Red Hat Enterprise Linux (RHEL) system administration skills.
  • Previous experience working in a virtual environment.
  • Experience with dockers and containers.
  • Administering ACAS and ESS (formally HBSS).
  • Previous experience with ConfigOS.

Benefits

  • Health insurance coverage
  • Life and disability insurance
  • Savings plan
  • Company paid holidays
  • Paid time off (PTO) for vacation and/or personal business
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service