
Senior Principal Cyber Threat Analyst
Posted 19 hours ago

Posted 19 hours ago
This is a fully remote position, open to applicants in Maryland.
• Deliver counterintelligence and cyber threat protection for Northrop Grumman's intellectual property, networks, and sensitive information.
• Conduct daily comprehensive analysis of ongoing network- and host-based threat activities.
• Evaluate emerging future threat trends.
• Oversee counterintelligence portals.
• Collaborate with peers in the Defense Industrial Base and government sectors.
• Strengthen protection measures for the Northrop Grumman Managed Network.
• Process and address cyber threat activities as part of the Intelligence and Response team.
• Work alongside I&R team members and Strategic CI analysts on layered threat mitigation strategies.
• Detect and counter advanced cybersecurity and cyber threats within the managed network.
• Triage and prioritize multiple concurrent cyber incidents.
• Analyze logs from hosts and networks.
• Correlate network indicators with PCAP data.
• Create event timelines and carry out root cause analyses.
• Independently develop customized scripts to aid in analysis.
• Compile detailed written analyses of events.
• Present findings to both technical and non-technical senior management audiences.
• 8 years of relevant experience with a Bachelor of Science; OR 6 years with a Master's; OR 4 years with a PhD.
• Active U.S. Government Top Secret level security clearance, including SCI access and a recent Polygraph adjudicated within the last 5 years.
• Proficiency in preparing and analyzing data and figures.
• Experience with two or more analysis tools utilized in a CIRT or similar investigative context.
• At least 4 years of experience analyzing log data in support of intrusion analysis or cybersecurity operations.
• Minimum of 4 years of experience with Python, Perl, or another scripting language.
• Proven awareness of current endpoint and network exploits.
• Familiarity with computer network exploitation methodologies and tools.
• Understanding of network communication protocols across all layers of the OSI model.
• Experience handling large data sets, high-performance computing systems, and using artificial intelligence (AI) tools.
• Experience with endpoint detection and response technologies.
• Familiarity with cyber threat intelligence methodologies.
• Proficient in Linux/Unix and Windows, including shell (Bash, PowerShell) scripting.
• Awareness of current information security threats impacting U.S. defense contractors or the U.S. Government.
• One or more preferred technical certifications or equivalents, such as GCED, GCIH, GCIA, GCFA, GREM, or CFCE.
• Other vendor certifications may be considered, including EnCE, ACE, CCNA, or CISSP.
• U.S. Citizenship is required for positions requiring government clearance.
• Flexible work arrangements.
• Exceptional learning opportunities.
• Exposure to a diverse array of projects and clients.
• Supportive team environment.
• Health insurance coverage.
• Life and disability insurance.
• Savings plan.
• Company-paid holidays.
• Paid time off (PTO) for vacation and personal business.
• 401k matching program.
• Potential for overtime.
• Possible shift differential.
• Eligibility for discretionary bonuses.
CrowdStrike
Fortress Information Security
Kodex
Choice Hotels International
Get handpicked remote jobs straight to your inbox weekly.