Principal Cybersecurity Analyst-19970

Northrop Grumman

United States

On-site

USD 110,000 - 170,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Medical coverage
Dental & Vision coverage
401k
Educational Assistance
Life Insurance
Employee Assistance Programs
Paid Time Off
Health & Wellness Resources
Employee Discounts

Job summary

Northrop Grumman Defense Systems is seeking a Principal Cybersecurity Analyst in Roy, UT to lead implementation, system hardening, and continuous monitoring of complex cybersecurity baselines across classified and unclassified environments.

You will specialize in NIST SP 800-53 controls, CNSSI overlays, and OD controls, translating agency requirements into technical safeguards, audits, and RMF artifacts while coordinating with AO, SCA, and other teams.

Qualifications

  • Bachelor's degree plus 5 years of experience, or Master's with 3 years.
  • US Citizen with DoD Secret clearance and ability to obtain SAP approval.
  • DoD 8570/8140 IAM Level II or IASAE Level I/II certification (e.g., Security+ CE, CySA+, CASP+, CISSP).
  • Hands-on RMF experience applying NIST SP 800-53 security controls and OD parameters in DoD/Intel environments.

Responsibilities

  • Implement, assess, and tailor NIST SP 800-53 Rev 4/5 controls across classified and unclassified networks.
  • Define and validate OD values to satisfy AO and SCA expectations.
  • Lead RMF lifecycle steps and prepare SAP, SCTM, and SSP artifacts.
  • Drive system hardening across Windows Server, RHEL, and storage using DISA STIGs and SCAP tools.

Skills

US Citizenship
Security clearance
RMF implementation
NIST SP 800-53

Education

Bachelor's degree in a related field

Tools

PowerShell
Python
Ansible
Tenable Nessus
Splunk SIEM
DISA STIG Viewer
SCAP

Job description

RELOCATION ASSISTANCE: Relocation assistance may be available
CLEARANCE REQUIRED FOR START: Yes
CLEARANCE TYPE: Secret
TRAVEL: Yes, 10% of the Time Description

At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.

Northrop Grumman Defense Systems is seeking a Principal Cybersecurity Analyst - 19970 and technical compliance lead within our Cyber Security & Infrastructure Engineering group. This position is located in Roy, UT and supports the Sentinel program.

In this mid-to-senior individual contributor role, you will lead the implementation, system hardening, and continuous monitoring of complex cybersecurity baselines across enterprise, mission, and classified environments. You will specialize in analyzing NIST SP 800-53 (Rev 4/5) security controls, CNSSI 1253 overlays, and Organization-Defined Parameters (ODPs / OD controls), translating agency-specific security requirements into technical system controls, automated audits, and Risk Management Framework (RMF) artifacts.

Key Responsibilities
  • Implement, assess, and tailor NIST SP 800-53 Rev 4/5 security controls, CNSSI 1253 overlays, and agency-specific Organization-Defined Parameters (ODPs) across classified and unclassified networks.
  • Define, document, and validate Organization-Defined (OD) values (e.g., password complexities, audit log retention thresholds, session timeouts, and continuous monitoring metrics) to satisfy Authorizing Official (AO) and Security Control Assessor (SCA) expectations.
  • Lead the technical execution of the Risk Management Framework (RMF) lifecycle (Steps 1-6), preparing baseline Security Assessment Plans (SAP), Security Landscaping/Controls Traceability Matrices (SCTM), and System Security Plans (SSP).
  • Drive system hardening across heterogeneous OS platforms (Windows Server, Red Hat Enterprise Linux), storage architectures (SAN/NAS), and virtualized infrastructures using DISA STIGs and SCAP compliance tools.
Technical Execution & Automation
  • Execute vulnerability scanning, assessment, and remediation tracking utilizing enterprise cybersecurity tools (Tenable ACAS/Nessus, Trellix/HBSS, Splunk SIEM, and DISA STIG Viewer).
  • Develop automated scripts (PowerShell, Python, Ansible) to continuously monitor, audit, and remediate system configurations against NIST/STIG baselines and prevent configuration drift.
  • Identify technical vulnerabilities, author detailed Plans of Action and Milestones (POA&M), and partner with Systems Engineering and Network IPTs to execute risk mitigations.
  • Support government customer inspections, Security Test & Evaluation (ST&E) events, and technical interchange meetings (TIMs) to maintain program Authorizations to Operate (ATO).
Position Benefits:
  • Medical, Dental & Vision coverage
  • 401k
  • Educational Assistance
  • Life Insurance
  • Employee Assistance Programs & Work/Life Solutions
  • Paid Time Off
  • Health & Wellness Resources
  • Employee Discounts

This position's standard work schedule is a 9/80. The 9/80 schedule allows employees who work a nine-hour day Monday through Thursday to take every other Friday off. This role may offer a competitive relocation assistance package.

Basic Qualifications :
  • Bachelor's degree with 5 years of experience, or 3 years with Master's, 1 with PHD; 4 additional years of experience may be considered in lieu of a completed degree.
  • Must be a US Citizen and have an active U.S. Government DoD Secret security clearance at time of application, current and within scope, with an ability to obtain and maintain Special Access Program (SAP) approval within a reasonable period of time, as determined by the company to meet its business need.
  • DoD 8570/8140 Certification: Active DoD 8140/8570 compliant IAM Level II or IASAE Level I/II baseline certification (e.g., Security+ CE, CySA+, CASP+ / SecurityX, or CISSP).
  • Demonstrated, hands-on experience executing RMF processes and applying NIST SP 800-53 security controls and Organization-Defined Parameters (ODPs) within DoD or Intel
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Staff Cybersecurity Analyst-19969
Staff Cybersecurity Analyst-19969

Northrop Grumman • United States

On-site
USD 120,000 - 160,000
Medical, Dental & Vision coverage
401k
Educational Assistance
+2
Cybersecurity Analyst-19971
Cybersecurity Analyst-19971

Northrop Grumman • United States

On-site
USD 79,000 - 119,000
Medical, Dental & Vision coverage
401k
Educational Assistance
+2
Principal Cybersecurity Analyst-19970
Principal Cybersecurity Analyst-19970

Northrop Grumman Corp. • Roy (UT)

On-site
USD 109,000 - 163,000
Health insurance
401k
Educational Assistance
+4
Cybersecurity Analyst-19971
Cybersecurity Analyst-19971

Northrop Grumman Corp. • Roy (UT)

On-site
USD 79,000 - 119,000
Medical, Dental & Vision
401k
Educational Assistance
+5
Staff Cybersecurity Analyst-19969
Staff Cybersecurity Analyst-19969

Northrop Grumman Corp. • Roy (UT)

On-site
USD 153,000 - 229,000
Medical, Dental & Vision coverage
401k
Educational Assistance
+5
Staff Cybersecurity Analyst-19969 Northrop Grumman · Roy, UT Full-time · On-site $152,900–229,300 3 hours ago
Staff Cybersecurity Analyst-19969 Northrop Grumman · Roy, UT Full-time · On-site $152,900–229,300 3 hours ago

Emploive • Roy (UT), Northern (KY)

Hybrid
USD 153,000 - 229,000
Medical, Dental & Vision coverage
401k
Educational Assistance
+5
Principal / Cybersecurity Analyst - 19085 - Roy Utah
Principal / Cybersecurity Analyst - 19085 - Roy Utah

Northrop Grumman Corp. • Roy (UT)

On-site
USD 79,000 - 119,000
Flexible work arrangements
Excellent benefits
9/80 schedule
+1
Sr / Principal Cybersecurity Analyst - 19364 - Roy Utah
Sr / Principal Cybersecurity Analyst - 19364 - Roy Utah

Northrop Grumman Corp. • Roy (UT)

On-site
USD 98,000 - 184,000
9/80 work schedule
Health insurance
401k matching
Principal / Cybersecurity Analyst - 19085 - Roy Utah
Principal / Cybersecurity Analyst - 19085 - Roy Utah

Northrop Grumman • Roy (UT)

On-site
USD 79,000 - 119,000
Sr. Principal/Principal Cybersecurity Analyst - 19061 - Roy Utah
Sr. Principal/Principal Cybersecurity Analyst - 19061 - Roy Utah

Northrop Grumman Corp. • Roy (UT)

On-site
USD 98,000 - 184,000
Flexible work arrangements
Learning opportunities
Health insurance
+2