- Salary
- $79k – $119k
- Location
- AZGI04, United States of America
- Workplace
- Onsite
- Type
- Full-time
- Department
- IT
- Education
- High School
- Clearance
- Required
- Closing date
- Today
- Source
- Workday
Description
Description
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.At the heart of Defining Possible is our commitment to missions. In rapidly changing global security environments, Northrop Grumman brings informed insights and secure technological solutions to enable strategic objectives. We’re looking for innovators who can help us keep building on our wide portfolio of secure, affordable, integrated, and multi-domain systems and technologies that fuel those missions. By joining in our shared mission, we will support yours by expanding your personal network and developing skills, whether you are new to the field or an industry thought leader. At Northrop Grumman, you will have the resources, support, and team to do some of the best work of your career.
The Northrop Grumman CIDO Operations team is seeking a Cyber Governance Analyst to support information system lifecycle activities. The selected candidate will be required to work on-site, full-time at our Gilbert, AZ location.
The responsibilities of this role include, but are not limited to, the following:
- Write and update Information Systems Security Plans (ISSPs) in compliance with NIST 800-171 current versions and in support of Cyber Maturity Model Certification (CMMC) working in close coordination with Environment Owners and IT.
- Conduct and support system audits and continuous monitoring activities, covering all security controls, configurations, and operational processes to evaluate the security posture of the information systems.
- Perform assessments of systems and networks within the networking environment or enclave and identify where those systems and networks deviate from acceptable configurations, enclave policy, or local policy.
- Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards.
- Assist in the implementation of the required government policy, make recommendations on process tailoring, and participate in and document process activities.
- Develop training materials including SOPs, templates, and support development and integration of industry and corporate best practices.
Note: Due to the classified nature of the work being performed, this position does not offer any virtual or telecommute working options. Applicants are encouraged to apply only if they are willing to work on-site.
Basic Qualifications:
- Master’s degree with 0 years of technical experience; OR Bachelor’s degree with 2 years of technical experience; OR an Associate’s degree with 4 years of technical experience; OR a High School Diploma/GED with 6 years of technical experience
- Must have a Security+ certification to be considered
- Basic knowledge of security risks & strategies, SIEM, antivirus, proxies, firewalls, and intrusion detection concepts, tools, security plans, vulnerability remediation, and/or cybersecurity processes
- Candidates must have the ability to obtain, and maintain, a U.S. Government Top Secret level security clearance and an SCI access level, as a condition of continued employment
Preferred Qualifications:
- Bachelor’s degree in Cybersecurity or related field
- CAP, or CASP+
- Knowledge of vulnerability management tools such as Tenable, Qualys, etc.
- Knowledge of SIEM security tools such as Splunk, Wazah, etc.
- Knowledge of security frameworks and documentation such as NIST, CMMC, and POA&Ms
- Excellent verbal and written communication skills, including the ability to explain technical concepts to non-technical customers, detail-oriented, with strong decision-making skills
- Ability to apply basic technical expertise and skillset under general supervision to work cybersecurity projects and tasks in accordance with required DoD security and cybersecurity instructions, policies, frameworks, etc.
- Top Secret Clearance preferred
We offer flexible work arrangements, phenomenal learning opportunities, exposure to a wide variety of projects and customers, and a very friendly team environment. At Northrop Grumman, we are on the cutting edge of innovation. Our diverse portfolio of programs means there are endless paths to cultivate your career. We also offer exceptional benefits/healthcare, a 9/80 work schedule, and a great 401k matching program. Come join us!