Sr. Cybersecurity Analyst / Information Systems Security Engineer (ISSE) jobs in United States
cer-icon
Apply on Employer Site
company-logo

Northrop Grumman · 3 weeks ago

Sr. Cybersecurity Analyst / Information Systems Security Engineer (ISSE)

Northrop Grumman is a leading technology company that provides innovative solutions for global security challenges. The Sr. Cybersecurity Analyst / Information Systems Security Engineer will monitor and maintain mission-critical network infrastructure, perform assessments, and support certification and accreditation processes.

AerospaceData IntegrationManufacturingRemote SensingSecurity
check
Growth Opportunities
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Perform assessments of systems and networks within the networking environment or enclave and identify where those systems and networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations such as compliance audits and active evaluations such as vulnerability assessments
Establishes strict program control processes to ensure mitigation of risks and supports obtaining certification and accreditation of systems
Includes support of process, analysis, coordination, security certification test, security documentation, as well as investigations, software research, hardware introduction and release, emerging technology research inspections and periodic audits
Assist in the implementation of the required government policy (i.e., NISPOM, DCID 6-3), make recommendations on process tailoring, participate in and document process activities
Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards
Support the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results and preparation of required reports
Document the results of Certification and Accreditation activities and technical or coordination activity and prepare the system Security Plans and update the Plan of Actions and Milestones POA&M
Periodically conduct a complete review of each system's audits and monitor corrective actions until all actions are closed

Qualification

Risk Management FrameworkNIST 800.53Vulnerability AssessmentsSecurity TestEvaluationCISSP CertificationMicrosoft WindowsCloud ComputingNetwork Monitoring ToolsTechnical WritingCollaboration Skills

Required

US citizenship with an active TS/SCI with Polygraph is required
Bachelors degree with 8 years of experience; Masters degree with 6 years of experience; PhD with 4 years of experience or 12 years of experience with High School diploma
Experience reviewing technical security assessments of computing environments that identify points of vulnerability or non-compliance
Experience implementing the Risk Management Framework Process (RMF) and ability to support and document certification and accreditation artifacts
Must have experience supporting the A&A process for system accreditation
Applicant needs to be familiar with the Risk Management Framework (RMF) and the process of accrediting a system through it as well as the nuances present in applying RMF
Applicant needs to be familiar with NIST800.53rev4, CNSS-1253, National Security Memorandum 8 (NSM-8), and the Zero Trust Architecture/Networking (ZTA/N) high-level concepts and possible implementations
Applicant should be familiar with both initial accreditation activities as well as continuous monitoring tasks and be willing to adapt to rapidly changing toolsets and controls requirements
Applicant should have familiarity with network monitoring and vulnerability detection tools such as Nessus, Rapid7, Splunk, Xacta as well as strong competency with Microsoft Office suite of products (Excel, PowerPoint, and Word)

Preferred

CISSP, CASP, or other information technology security related certifications
Experience using Rapid 7 or Tenable Nessus applications
Background in Technical Writing or Instructional Systems Design would be helpful
Privileged/Power-user level of knowledge is strongly suggested in at least one of the following – Microsoft Windows, Enterprise Linux variants, Cloud computing infrastructure like AWS or Microsoft Azure

Benefits

Health Plan
Savings Plan
Paid Time Off
Education Assistance
Training and Development
9/80 Work Schedule (where available)

Company

Northrop Grumman

company-logo
Northrop Grumman is an aerospace, defense and security company that provides training and satellite ground network communications software.

Funding

Current Stage
Public Company
Total Funding
$3.7B
Key Investors
U.S. Department of DefenseNASA
2025-05-27Post Ipo Debt· $1B
2024-01-29Post Ipo Debt· $2.5B
2023-12-20Grant· $72M

Leadership Team

leader-logo
Kenneth Crews
Corporate Vice President and Chief Financial Officer
linkedin
leader-logo
Tom Wilson
Corporate Vice President, Enterprise Business Development
linkedin
Company data provided by crunchbase