Northrop Grumman is seeking a Sr Principal Cybersecurity Analyst to join our team in Roy, UT.
• The individual will be responsible for providing expert level configuration and implementation of Tenable Security Center for multiple system boundaries at SAP Program levels (SAP) using Joint Special Access Program Implementation Guide (JSIG), and DOD Collateral using DCSA Assessment and Authorization Process Manual (DAAPM) / National Industrial Security Program Operating Manual (NISPOM).
• The individual will work alongside peers to help develop and implement a full range of tools to make up a strong security architecture for fast passed and dynamic programs for Northrop Grumman.
• The individual will be responsible for ensuring their statement of work is being completed while delegating lower tasks to be completed by junior cybersecurity. The individual will also provide mentoring junior cybersecurity to raise the bar of the overall cybersecurity team.
Basic Qualifications
• Bachelor's degree with 8 years of Information Systems Security experience; OR Master’s degree with 6 years of Information Systems Security experience
• Must have a current DOD 8570 IAM Level III security certification (Examples: CISSP, GSLC, CISM)
• Front-end Tenable knowledge - Building Reports for different execution levels
• 3+ years Tenable backend experience in administration, configuration and troubleshooting
• Demonstrated expert knowledge of cybersecurity practices, network technologies, system development life-cycles understanding of information technology infrastructure management/monitoring and applications
• Experience developing cybersecurity tools for cybersecurity frameworks and industry best practices supporting National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 and DoD Risk Management Framework (RMF) for SAP systems.
• Candidates must have a current DOD Secret level security clearance with an original Investigation, or a periodic reinvestigation date, completed within the last 6 years in order to be considered
Preferred Qualifications
• Back-end Tenable experience for a large WAN with over 3000 systems a large R&D footprint and a containerized environment for software development.
• Configuration and Implementation of PyTenable Automate Reporting, Metrics and POA&M
• Strong STIG compliance using various tools like SCAP Tool and Trellix Policy Auditor
• Basic knowledge of other security tools Splunk, Trellix, Titus
• Scripting/Ansible abilities
• Configuration and Implementation of Tenable Nessus Network Manager