Principal Cybersecurity Analyst
Description
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.Cybersecurity Analyst – T95002
Principal Cybersecurity Analyst – T95003
Introduction for Northrop Grumman
Join Northrop Grumman on our continued mission to push the boundaries of possible across land, sea, air, space, and cyberspace. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world’s biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today.
Introduction for Mission Systems
At the heart of Defining Possible is our commitment to missions. In rapidly changing global security environments, Northrop Grumman brings informed insights and software-secure technology to enable strategic planning. We’re looking for innovators who can help us keep building on our wide portfolio of secure, affordable, integrated, and multi-domain systems and technologies that fuel those missions. By joining in our shared mission, we’ll support you, expanding your personal network and developing skills, whether you are new to the field, or an industry thought leader. At Northrop Grumman, you’ll have the resources, support, and team to do some of the best work of your career.
We are seeking experienced Cybersecurity Analysts to work on-site at our Tampa, FL location.
Note: Due to the classified nature of the work being performed, this position does not offer any virtual or telecommute working options. Applicants are encouraged to apply, only if they are willing to work on-site.
What You’ll get to Do
Essential Duties:
· Utilize your experience with a Security Information and Event Management (SIEM) tool. Splunk is preferred, but experience with an equivalent SIEM would be acceptable.
· Develop and Implement Splunk Queries: Create and optimize complex Splunk queries to extract, analyze, and visualize security data from diverse sources. Utilize Splunk Search Processing Language (SPL) to generate actionable insights for proactive threat detection and response.
· Design Splunk Dashboards and Reports: Design user-friendly Splunk dashboards and reports tailored to different stakeholders, such as security operations teams, management, and auditors. Provide real-time visibility into security events, trends, and key performance indicators.
· Configure and Maintain Splunk Infrastructure: Configure and fine-tune Splunk deployments, including data inputs, data parsing, field extractions, and data enrichment pipelines. Ensure the continuous availability and optimal performance of Splunk indexes, search heads, and forwarders.
· Utilize Splunk Enterprise Security: Leverage Splunk Enterprise Security to develop and implement security use cases, correlation searches, and notable events for threat detection and analysis. Monitor security-related alerts and incidents to identify and prioritize security threats.
· Utilize Trellix/Endpoint Security Solutions (ESS), formally Host Based Security System (HBSS) to detect and counter known threats.
· Collaborate with Cross-Functional Teams: Collaborate with cross-functional teams, including IT, network, and application teams, to integrate Splunk with various platforms and systems. Provide technical expertise in advising security on best practices and designing effective security controls.
· Investigate Security Incidents: Conduct in-depth investigations into security incidents, anomalies, and breaches using Splunk's forensic capabilities. Perform root cause analysis, incident triage, and post-incident reviews to identify gaps in security controls and recommend remediation actions.
· Documentation and Reporting: Document Splunk configuration, operational procedures, and security findings. Prepare comprehensive reports detailing security events, trends, and mitigation strategies. Communicate technical information effectively to non-technical stakeholders.
· Stay current with Industry Trends: Stay abreast of the latest cybersecurity threats, vulnerabilities, and industry best practices. Continuously enhance your knowledge of Splunk features and capabilities through self-study, professional training, and certifications.
· Individual must have a solid understanding of security information and event management (SIEM) concepts and best practices to include proficiency in troubleshooting Splunk configurations and performance issues.
· Ability to collaborate with other teams to investigate security incidents and provide insights for improving security posture.
These positions can be filled at the Cybersecurity Analyst or Principal Cybersecurity Analyst level
Basic Qualifications for Cybersecurity Analyst level:
Bachelor’s degree with 2 years of experience OR a Master’s degree with 0 years of experience.
US Citizenship is required with an active DoD Top Secret/SCI security clearance.
Must possess DoD 8570 Certification for IAT Level II or higher prior to start date.
Experience with a Security Information and Event Management (SIEM) tool.
Working knowledge of network security controls such as routers, switches, firewalls and network access controls.
Proficiency with both Linux and Windows Operating Systems.
Knowledge of vulnerabilities, threat detection, encryption, and security audits.
Preferred Qualifications for Cybersecurity Analyst level:
DoD 8570 Certification for IAT Level III.
Proven experience with Splunk (or equivalent SIEM) front-end and/or back-end functionalities.
Experience with Trellix/Endpoint Security Solutions (ESS), formally Host Based Security System (HBSS).
Familiarity with scripting languages such as Python, PowerShell, or Bash.
Relevant certifications (e.g., Splunk Core Certified Power User, Splunk Enterprise Certified Admin).
Proven knowledge of network security controls such as routers, switches, firewalls, network access controls, and related solutions.
Proven knowledge of Linux and Windows operating systems and applications.
Excellent analytical and problem-solving skills.
Basic Qualifications for Principal Cybersecurity Analyst level:
Bachelor’s degree with 5 years of experience; OR a Master’s degree with 3 years of experience; OR a PhD with 1 year of experience
US Citizenship is required with an active DoD Top Secret/SCI security
Must possess DoD 8570 Certification for IAT Level II or higher prior to start date.
Experience with a Security Information and Event Management (SIEM) tool.
Ability to collaborate with other teams to investigate security incidents and provide insights for improving security posture.
Working knowledge of network security controls such as routers, switches, firewalls and network access controls.
Working knowledge of Linux and Windows Operating Systems.
Preferred Qualifications for Principal Cybersecurity Analyst level:
DoD 8570 Certification for IAT Level III.
Proven experience with Splunk (or equivalent SIEM) front-end and/or back-end functionalities.
Experience with Trellix/Endpoint Security Solutions (ESS), formally Host Based Security System (HBSS).
Familiarity with scripting languages such as Python, PowerShell, or Bash.
Relevant certifications (e.g., Splunk Core Certified Power User, Splunk Enterprise Certified Admin).
Proven knowledge of network security controls such as routers, switches, firewalls, network access controls, and related solutions.
Proven knowledge of Linux and Windows operating systems and applications.
Excellent analytical and problem-solving skills.
Recommended Jobs
Commercial Flooring Careers
QuestMark Flooring - Orlando, FL - Full Time *Salaried and hourly positions available - SIGNING BONUS* **QuestMark is looking for local experienced employees** Join our fast-growing service di…
X-Ray Tech (Eastport Care Center)
About The Villages Health The Villages Health is a patient-centered primary care driven, multi-specialty medical group with over 800 team members. Our unique care model gives us both the time and …
Quality Receiving Inspector NOW HIRING
ACTIVELY HIRING A RECEIVING QUALITY INSPECTOR ON FIRST SHIFT IN KENDALL, FL! If you have 3+ years of experience working as a receiving quality inspector in either the medical field or aerospace fie…
Speech Language Pathologist - Dan Marino Ctr. (Full Time, Days)
Description Job Summary Provides clinical and professional services within the Department. Responsible for the evaluation, reevaluation, development, and implementation of a plan of care. Jo…
Lead Sterile Processing Technician - Nights - SPD
Why Mayo Clinic Mayo Clinic is top-ranked in more specialties than any other care provider according to U.S. News & World Report. As we work together to put the needs of the patient first, we ar…
Sales Center Shipper
Responsible for a variety of Distribution Operations of baked goods and other products in our Sales Centers. The Sales Center Shipper is accountable for the proper count and verification of all incom…
Administrative Assistant, Single Billing Office, San Marco East, Baptist Health
Job Summary Baptist Health is hiring an Administrative Assistant for the Single Billing Office. This is a hybrid opportunity located on the San Marco East campus (Metro Square) of Baptist Health. …
Audit Senior- CPA Advisory and Business Entities
A top local CPA and advisory services firm in beautiful Coral Gables, FL has engaged with us to find a Audit Senior / Senior Audit Associate with experience in various business entities and high net…
Per Diem Pediatric RN
Atria is a membership-based preventive health care practice delivering cutting-edge primary and specialty care from the comfort of your home, at our practices in Palm Beach and New York, or wherever …
Part-time Veterinarian
Life is HAPPIER at Lap of Love Veterinary Hospice! Join Lap of Love as an In-Home, Associate Veterinarian in Sarasota Can you imagine working for a company that truly values its veterinarians an…