Position Overview
We are seeking experienced Cybersecurity Analysts (or Principal Cybersecurity Analyst) to work on‑site at our Tampa, FL location. The role requires relocation assistance may be available, travel 10% of the time, and a Panama schedule with 12‑hour shifts. Clearance required for start: Yes. Clearance type: SCI. The position is 100% on‑site; no virtual or telecommute options are offered.
Essential Duties
- Utilize experience with a Security Information and Event Management (SIEM) tool; Splunk preferred.
- Develop and implement Splunk queries using SPL to extract, analyze, and visualize security data.
- Design user‑friendly Splunk dashboards and reports for security operations teams, management, and auditors.
- Configure and maintain Splunk infrastructure, ensuring continuous availability and optimal performance.
- Leverage Splunk Enterprise Security to develop and implement security use cases, correlation searches, and notable events.
- Monitor security alerts and incidents to identify and prioritize threats.
- Deploy Trellix/Endpoint Security Solutions (ESS) or Host Based Security System (HBSS) to detect known threats.
- Collaborate with cross‑functional IT, network, and application teams to integrate Splunk with various platforms.
- Investigate security incidents, perform root‑cause analysis, incident triage, and post‑incident reviews.
- Document Splunk configuration, operational procedures, and security findings; prepare comprehensive reports.
- Stay current with the latest cybersecurity threats, vulnerabilities, and industry best practices.
Basic Qualifications
- U.S. Citizenship required.
- Current/active DoD TS/SCI clearance.
- DoD 8570 Certification for IAT Level II or higher prior to start date.
- Bachelor’s degree with 2 years of experience or Master’s degree with 0 years of experience for Cybersecurity Analyst.
For Principal Cybersecurity Analyst: Bachelor’s degree with 5 years of experience, Master’s degree with 3 years, or PhD with 1 year of experience. - Experience with a SIEM tool (Splunk preferred).
- Working knowledge of network security controls, routers, switches, firewalls, and network access controls.
- Working knowledge of Linux and Windows operating systems.
- Knowledge of vulnerabilities, threat detection, encryption, and security audits.
- Willingness to work a Panama schedule that includes 12‑hour shifts.
Preferred Qualifications for Principal Cybersecurity Analyst
- DoD 8570 Certification for IAT Level III.
- Proven experience with Splunk front‑end or back‑end functionalities.
- Experience with Trellix/Endpoint Security Solutions or HBSS.
- Familiarity with scripting languages such as Python, PowerShell, or Bash.
- Relevant certifications (Splunk Core Certified Power User, Splunk Enterprise Certified Admin).
- Excellent analytical and problem‑solving skills.
Salary Range
Primary Level: $79,300.00 – $118,900.00. Secondary Level: $98,400.00 – $147,600.00. Salary determined by role scope, experience, education, and market conditions. Employees may be eligible for overtime, shift differential, discretionary bonus, and long‑term incentives for senior positions.
Benefits
- Health insurance coverage, life and disability insurance, savings plan.
- Company‑paid holidays and paid time off for vacation and personal business.
Equal Opportunity Employer Statement
Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, visit http://www.northropgrumman.com/EEO.