About this role
RELOCATION ASSISTANCE: No relocation assistance available
CLEARANCE REQUIRED FOR START: Yes
CLEARANCE TYPE: Secret
TRAVEL: Yes, 10% of the Time
## Description
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
Northrop Grumman Space Systems—Missile Defense Integration offers an excellent opportunity for a Cyber Incident Analyst Responder – Regional CNDA (26-457) to join our team of skilled and diverse professionals. Based at Schriever Space Force Base, CO, this role is essential to supporting the U.S. President, the Secretary of Defense, and combatant commanders at the strategic, regional, and operational levels.
This position does not provide relocation assistance and requires on-site work with no remote options.
Position Overview:
The Command and Control, Battle Management, and Communications (C2BMC) program is a key component of the Missile Defense System. It is a vital operational system that enables the U.S. president, the Secretary of Defense, and combatant commanders at strategic, regional, and operational levels to plan ballistic missile defense operations systematically, collectively monitor the battle, and dynamically control networked sensors and weapon systems to achieve global and regional mission goals. C2BMC supports layered missile defense capabilities that enable an optimized response to threats across all ranges and flight phases. It serves as a force multiplier by networking, integrating, and synchronizing autonomous sensor and weapon systems and operations, both globally and regionally, to improve performance. C2BMC is essential for all ground and flight tests that verify and demonstrate the current and future capabilities of missile defense systems.
The Regional Computer Network Defense Analyst (CNDA) is responsible for implementing and enforcing national, DoD (e.g., 8500.01, 6510), and MDA security directives and guidance to protect the C2BMC component of the Ballistic Missile Defense Communications Network (BMD COMNET) and the C2BMC mission systems and services.
Essential Functions:
- Performing continuous network security monitoring, intrusion detection, and incident response across BMD COMNET and C2BMC mission systems and services
- Developing and maintaining a network defense visibility display and directing and executing time-sensitive adjustments to the network security posture to minimize or counter operational risk
- Collecting, storing, correlating, and presenting network security data and metrics to senior leaders to support Operational Risk Management (ORM) decisions regarding network security posture
- Performing proactive security functions to assist BMD organizations in deterring, detecting, isolating, containing, and recovering from information system (IS) and network security intrusions, and in mitigating known network vulnerabilities
- Operating and administering BMD‑provided computer network defense (CND) tools and capabilities (e.g., firewalls, correlated log analysis, intrusion alerts, host‑based security tools) to protect BMD COMNET infrastructure and information services from internal and external cyber threats
- Coordinating with other cybersecurity, network, and systems engineering teams to implement defensive measures, resolve security incidents, and enhance security architecture and monitoring capabilities
- Documenting security events, incident response actions, and lessons learned, and contributing to process improvement and playbook refinement
- Performing other related duties and assignments as required to support 24x7 C2BMC operations
- This position requires rotating 24x7 shifts . The candidate will be assigned to a shift based on mission requirements. Some substitute shifts during off‑shifts, including nights and weekends, will be required
Basic Qualifications:
Please list your current security clearance and IAT or relevant certifications on your resume, if applicable.
- A Bachelor’s Degree in Computer Science, Software Engineering, Engineering, Mathematics, Physics, or a related field from an accredited university, along with 2 years of experience; or a Master’s degree in a related field; or 9 years of relevant work experience may be considered as an alternative to a degree
- Applicants must have a current, active Government-Issued 8140 certification at IAT Level II or higher (such as Security+ CE, CCNA Security, CySA+**, GICSP, GSEC, SSCP, CASP+ CE, CISSP, etc.) at the time of application, which is required to start. The candidate is responsible for maintaining their 8140 certification throughout the entire contract period
- Applicants must have a current, active in-scope Government-issued Secret security clearance at the time of application, which is required to start, with the ability to obtain Top Secret/SCI clearance
- Demonstrated ability to identify known worms and viruses using signatures and behavioral indicators
- Demonstrated ability to recognize network intrusion events and differentiate false positives from real incidents
- Demonstrated ability to identify successful intrusions and compromises by reviewing and analyzing relevant event logs and other detailed technical information
- Knowledge of and practical experience with a range of network and information security tools (e.g., intrusion detection systems, firewalls, log aggregation and correlation tools, vulnerability scanners )
- Knowledge of modern computer systems and architectures, including client/server, LAN/WAN , and network concepts , as well as modern network management and monitoring
- Knowledge of network hardware configuration and troubleshooting, including routers, CSU/DSU, bridges, multiplexers, servers , and switches
- Previous experience monitoring and managing intrusion detection systems and firewall devices, including tools such as SideWinder, ArcSight, HBSS, and/or Tripwire
- Experience securing network gear against known vulnerabilities through configuration hardening, patching, and application of security best practices
Preferred Qualifications:
- Applicants with a current, active in-scope Government-issued Top Secret/SCI security clearance at the time of application are highly desired
- Certified Ethical Hacker (CEH) certification or equivalent offensive/penetration‑testing credential
- Formal training and/or hands‑on experience with Unix and/or Microsoft operating systems (administration, security configuration, and troubleshooting)
- Prior experience supporting missile defense, C2BMC, or similar DoD operational networks in a 24x7 environment
What We Can Offer You:
Northrop Grumman provides a comprehensive benefits package and a supportive work environment that encourages your growth, benefiting both employees and the company. The benefits are flexible and customizable, enabling you to choose options that suit your individual and family needs. Your benefits will include the following:
- Health Plan
- Savings Plan
- Paid Time Off
- Education Assistance
- Training and Development
- Flexible Work Arrangements
https://benefits.northropgrumman.com/us/en2/BenefitsOverview/Pages/default.aspx
#NGSpace
#COSpace
#NGFeaturedJobs
#C2BMC
#Network
#Cybersecurity
Primary Level Salary Range: $75,800.00 - $113,800.00
The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.
Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.
The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.
Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit http://www.northropgrumman.com/EEO. U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.