Skip to main contentA logo with &quat;the muse&quat; in dark blue text.
Northrop Grumman

Computer Systems Security Analyst 3/4

Northrop Grumman is seeking a Computer Systems Security Analyst (CSSA) to join the Information Systems Security (ISS) team in Hampton, VA. The ISS team consists of Information Systems Security Officers (ISSOs) and Information Systems Security Managers (ISSMs), Information Systems Security Engineers (ISSEs). The selected candidate will perform one or more of these roles. The ISS organization has overall responsibility for providing security oversight to all Northrop Grumman classified systems under their respective purview.

This position will perform assessments of systems and networks within the networking environment or enclave and identify where those systems and networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations such as compliance audits and active evaluations such as vulnerability assessments. Establishes strict program control processes to ensure mitigation of risks and supports obtaining certification and accreditation of systems. Includes support of process, analysis, coordination, security certification test, security documentation, as well as investigations, software research, hardware introduction and release, emerging technology research inspections and periodic audits. Ensures the implementation of the Risk Management Framework (RMF), through the required government policy (i.e., NISPOM, JSIG, ICD etc…), make recommendations on process tailoring, participate in and document process activities. Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards. Support the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results and preparation of required reports. Document the results of Assessment and Authorization activities and technical or coordination activity and prepare the System Security Plans and update the Plan of Actions and Milestones POA&M. Periodically conduct a complete review of each system’s audits and monitor corrective actions until all actions are closed.

Want more jobs like this?

Get jobs delivered to your inbox every week.

By signing up, you agree to our Terms of Service & Privacy Policy.

A strong candidate will have great customer service skills, familiarity with DoD STIG’s, security compliance tools, auditing tools and performing system security audits and assessments. The position requires critical thinking/analytical skills, creativity, with a focus on ethics, integrity, quality, and good oral and written communication skills.

Specific duties will include, but are not limited:

  • Examine potential security violations to determine if the Network Environment (NE) has been breached, assess the impact, and preserve evidence.
  • Support, monitor, test, and troubleshoot hardware and software IA problems pertaining to the NE.
  • Perform IA related support functions including troubleshooting, assistance, and/or training, in response to agency requirements for the NE.
  • Analyze patterns of non-compliance and take appropriate administrative or programmatic actions to minimize security risks and insider threats.
  • Analyze system performance for potential security problems. Assess the performance of IA security controls within the NE.
  • Identify IA vulnerabilities resulting from a departure from the implementation plan or that were not apparent during testing.
  • Test network servers, hubs, routers, and switches to ensure they comply with security policy, procedures, and technical requirements.
  • With the assistance of the ISSM, ensures systems are accredited under the implementation of the Risk Management Framework (RMF) as directed by the Joint SAP Implementation Guide (JSIG).
  • Evaluate potential IA security risks and take appropriate corrective and recovery action.
  • Ensure that hardware, software, data, and facility resources are archived, sanitized, or disposed of in a manner consistent with system security plans and requirements.
  • Perform system audits to assess security related factors within the NE.
  • Assess access control lists on routers, firewalls, and other network devices.
  • Assess that applicable patches including IAVAs, IAVBs, and TAs have been applied for their NE.
  • Adhere to IS security laws and regulations to support functional operations for the NE. Implement response actions in reaction to security incidents.
  • Support Security Test and Evaluations (Part of C&A Process).
  • Review weekly information systems security audits.
  • Security configuration management.
  • Security account administration.
  • Evaluate system security plan documentation.
  • Continuous security monitoring.

This requisition may be filled at a higher grade based on qualifications listed below.

ESCSO

This requisition may be filled at either a level 3 or a level 4.

Basic Qualifications for a level 3:

  • Bachelor’s degree with 5 years of relevant experience; 3 years of relevant experience with a master’s degree.
  • 8570 IAM Level-1 Certification (CAP, GSLC or Security CE).
  • Current Secret Clearance required.

Basic Qualifications for a level 4:

  • Bachelor’s degree with 9 years of relevant experience; 7 years of relevant experience with a master’s degree.
  • 8570 IAM Level-1 Certification (CAP, GSLC or Security CE).
  • Current Secret Clearance required.

Preferred Qualifications:

  • Bachelors or master’s degree with a technical emphasis (e.g. Information Systems, Information Technology, Computer Science, EE). Experience with security hardening, assessment and reporting tools (SCAP, ACAS, HBSS, Nessus, XACTA).
  • CISSP or an IAM Level II certification (CISSP, CISM, GSLC, CASP CE, CAP).
  • MCSE/RHSA and/or System Administration experience.

Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO/AA and Pay Transparency statement, please visit www.northropgrumman.com/EEO. U.S. Citizenship is required for most positions.

Job ID: 69194822c52f2fa4d0956e77eb9e0b27
Employment Type: Other

Perks and Benefits

  • Health and Wellness

    • Health Insurance
    • Dental Insurance
    • Vision Insurance
    • Life Insurance
    • Short-Term Disability
    • Long-Term Disability
    • HSA
    • HSA With Employer Contribution
    • On-Site Gym
    • Pet Insurance
    • Mental Health Benefits
    • Virtual Fitness Classes
  • Parental Benefits

    • Birth Parent or Maternity Leave
    • Non-Birth Parent or Paternity Leave
    • Fertility Benefits
    • Adoption Assistance Program
    • Family Support Resources
    • Adoption Leave
  • Work Flexibility

    • Flexible Work Hours
    • Remote Work Opportunities
    • Hybrid Work Opportunities
    • Four-Day Work Week
  • Office Life and Perks

    • Commuter Benefits Program
    • Company Outings
    • On-Site Cafeteria
    • Holiday Events
  • Vacation and Time Off

    • Paid Vacation
    • Paid Holidays
    • Sabbatical
    • Leave of Absence
  • Financial and Retirement

    • 401(K)
    • 401(K) With Company Matching
    • Performance Bonus
    • Relocation Assistance
    • Financial Counseling
    • Profit Sharing
  • Professional Development

    • Tuition Reimbursement
    • Promote From Within
    • Mentor Program
    • Shadowing Opportunities
    • Access to Online Courses
    • Lunch and Learns
    • Internship Program
    • Leadership Training Program
    • Associate or Rotational Training Program
  • Diversity and Inclusion

    • Diversity, Equity, and Inclusion Program
    • Employee Resource Groups (ERG)
    • Woman founded/led

Company Videos

Hear directly from employees about what it is like to work at Northrop Grumman.

This job is no longer available.

Search all jobs