Introduction for Northrop Grumman
Join Northrop Grumman on our continued mission to push the boundaries of possible across land, sea, air, space, and cyberspace. Enjoy a culture where your voice is valued. Start contributing to our team of passionate professionals providing real-life solutions to our world’s biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today.
Introduction for Mission Systems
At the heart of Defining Possible is our commitment to missions. In rapidly changing global security environments, Northrop Grumman brings informed insights and software-secure technology to enable strategic planning. We’re looking for innovators who can help us keep building on our wide portfolio of secure, affordable, integrated, and multi-domain systems and technologies that fuel those missions. By joining in our shared mission, we’ll support yours of expanding your personal network and developing skills, whether you are new to the field, or an industry thought leader. At Northrop Grumman, you’ll have the resources, support, and team to do some of the best work of your career.
We are looking for you to join our team as a Senior Principal SIEM Engineer based out of Tampa, FL.
Please Note: Due to the classified nature of the work being performed, this position does not offer any virtual or telecommute working options. Applicants are encouraged to apply, only if they are willing to work on-site.
What You’ll get to Do
Job Responsibilities:
Individual must have experience with Splunk tool. Splunk is the preferred, but experience with an equivalent SIEM would be considered.Develop and Implement Splunk Queries: Create and optimize complex Splunk queries to extract, analyze, and visualize security data from diverse sources. Utilize Splunk Search Processing Language (SPL) to generate actionable insights for proactive threat detection and response.Design Splunk Dashboards and Reports: Design user-friendly Splunk dashboards and reports tailored to different stakeholders, such as security operations teams, management, and auditors. Provide real-time visibility into security events, trends, and key performance indicators.Configure and Maintain Splunk Infrastructure: Configure and fine-tune Splunk deployments, including data inputs, data parsing, field extractions, and data enrichment pipelines. Ensure the continuous availability and optimal performance of Splunk indexes, search heads, and forwarders.Utilize Splunk Enterprise Security: Leverage Splunk Enterprise Security to develop and implement security use cases, correlation searches, and notable events for threat detection and analysis. Monitor security-related alerts and incidents to identify and prioritize security threats.Investigate Security Incidents: Conduct in-depth investigations into security incidents, anomalies, and breaches using Splunk's forensic capabilities. Perform root cause analysis, incident triage, and post-incident reviews to identify gaps in security controls and recommend remediation actions.Collaborate with Cross-Functional Teams: Collaborate with cross-functional teams, including IT, network, and application teams, to integrate Splunk with various platforms and systems. Provide technical expertise in advising on security best practices and designing effective security controls.Documentation and Reporting: Document Splunk configuration, operational procedures, and security findings. Prepare comprehensive reports detailing security events, trends, and mitigation strategies. Communicate technical information effectively to non-technical stakeholders.Collaborate with network engineering teams to strategically deploy network Test Access Points (TAPS) and aggregators to ensure data accuracy, completeness, and compliance.Implement, configure, and manage network TAPs to passively monitor network traffic.Utilize network aggregators to collect, aggregate, and filter data from multiple network sources for effective monitoring and analysis.Help design and engineer Out-of-Band (OOB) SOC infrastructure.Basic Qualifications:
Minimum Education / Experience for Senior Principal SIEM Engineer: Master's Degree with 6 years of experience; OR a Bachelor's Degree with 8 years of experience; OR an Associate's Degree with 10 years of experience; OR a High School Diploma (or equivalent) with 12 years of IT experience is required.US CitizenshipActive Top Secret / SCI security clearance to be considered. TS/SCI eligibility must be in place by the start date and must stay in place through employment.Must possess or be able to obtain DoD 8570 Certification for IAT Level II or higher.Minimum 3 years of proven experience with Splunk (or equivalent SIEM) front-end and back-end functionalities.Preferred Qualifications:
Familiarity with scripting languages such as Python, PowerShell, or Bash.Relevant certifications (e.g., Splunk Core Certified Power User, Splunk Enterprise Certified Admin, Splunk Certified Architect).Working knowledge of network security controls such as routers, switches, firewalls, network access controls, and related solutions.Working knowledge of Linux and Windows operating systems and applications.Excellent analytical and proactive problem-solving skills.What We Can Offer You:
Northrop Grumman provides a comprehensive benefits package and a work environment which encourages your growth and supports the mutual success of our people and our company. Northrop Grumman benefits give you the flexibility and control to choose the benefits that make the most sense for you and your family.
Your benefits will include the following: Health Plan, Savings Plan, Paid Time Off and Additional Benefits including Education Assistance, Training and Development, 9/80 Work Schedule (where available), and much more!
Additional Northrop Grumman Information:
Northrop Grumman has approximately 90,000 employees in all 50 states and in more than 27 countries. We strive to attract and retain the best employees by providing an inclusive work environment wherein employees are receptive to diverse ideas, perspectives, and talents to help solve our toughest customer challenges: to develop and maintain some of the most technically sophisticated products, programs, and services in the world.
Our Values. The women and men of Northrop Grumman Corporation are guided by Our Values. They describe our company as we want it to be. We want our decisions and actions to demonstrate these Values. We believe that putting Our Values into practice creates long-term benefits for shareholders, customers, employees, suppliers, and the communities we serve.
Our Responsibility. At Northrop Grumman, we are committed to maintaining the highest of ethical standards, embracing diversity and inclusion, protecting the environment, and striving to be an ideal corporate citizen in the community and in the world.
#SEWCYBERFLA
#NGFeaturedjobs