Cyber Intelligence Analyst
MDAJ04, United States
Full Time Mid-level / Intermediate Clearance required USD 77K - 115K
Northrop Grumman
Northrop Grumman solves the toughest problems in space, aeronautics, defense and cyberspace to meet the ever evolving needs of our customers worldwide. Our 95,000 employees define possible every day using science, technology and engineering to...Description
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.Northrop Grumman CIDO - Global Secure Solutions is seeking a Cyber Intelligence Analyst to join our World Class Cyber Security Operations Center (CSOC). The Cyber Intelligence Analyst serves as a major contributor in the areas of Intrusion Detection and Prevention and serves as key component to our Network Threat detection activities in support of the corporation. The qualified applicant will become part of the CSOC's Security Monitoring Team within the Northrop Grumman CSOC.
*This is a 3rd shift, over-night onsite role.
Job Duties:
- Respond to computer security incidents in compliance with Information Security Policies and Industry Best Practices. Coordinate the efforts of and provide timely updates to multiple sectors and business units during incident response. Additionally, the candidate will provide security related recommendations to the team as threat events unfold.
- Perform basic network security analysis in support of Intrusion detection operations including the development and enrichment of indicators used to enhance the network security posture.
- Contribute to a team of information security professionals analyzing threat data, writing reports, briefing event details to leadership, and coordinating remediation activities across multiple Northrop Grumman organizations.
- Ensures technical security improvements are effective and maintained within configuration management structures.
- Ensures technology employed by the Security Monitoring Team compliments operational processes.
- On occasion, provide extended shift coverage with minimal travel required.
- The incumbent will regularly monitor various information security related web sites (SANS Internet Storm Center, Krebs on Scty etc.) and mailing lists to stay up to date on current network threats, attack methodologies and trends.
- Analyze the potential impact of new threats and exploits and communicate risks to relevant business units.
- Monitor the Northrop Grumman US Network to find anomalous or malicious activity using various analytical methods and Security Event and Incident Monitoring (SEIM) tools in a high paced operational environment.
Basic Qualifications:
- Bachelors Degree in Computer Science/Computer Engineering, Information/Network Security, Cyber Security or related field with 2 years of related work experience; OR equivalent experience in lieu of degree.
- Coursework and previous experience directly related to Cyber Operations environment
- Ability to obtain and maintain a security clearance
Preferred Qualifications:
- Ability to work in a team environment ability to taking initiative to understand and master new operating systems, security applications and open source tools.
- Knowledge with Windows and Linux operating systems and common applications, working knowledge of and experience in detecting malicious code.
- Knowledge of information systems security concepts and technologies; network architecture and tools; general database concepts; document management; hardware and software troubleshooting; intrusion tools; and open source alternatives.
Tags: Clearance Compliance Computer Science CSOC Exploits Incident response Intrusion detection Linux Monitoring Network security Open Source SANS Security analysis Security Clearance SOC Threat detection Windows
Perks/benefits: Health care Insurance Salary bonus Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.