Join Northrop Grumman on our continued mission to push the boundaries of possible across land, sea, air, space, and cyberspace. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world’s biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today.
At the heart of Defining Possible is our commitment to missions. In rapidly changing global security environments, Northrop Grumman brings informed insights and software-secure technology to enable strategic planning. We’re looking for innovators who can help us keep building on our wide portfolio of secure, affordable, integrated, and multi-domain systems and technologies that fuel those missions. By joining in our shared mission, we’ll support you, expanding your personal network and developing skills, whether you are new to the field, or an industry thought leader. At Northrop Grumman, you’ll have the resources, support, and team to do some of the best work of your career.
We are seeking experienced Cybersecurity Analysts to work on-site at our Tampa, FL location.
Note: Due to the classified nature of the work being performed, this position does not offer any virtual or telecommute working options. Applicants are encouraged to apply, only if they are willing to work on-site.
This position follows a Panama schedule that includes working 12-hour shifts. This schedule allows for employees to have a three-day weekend every other week and rotates from days to nights approximately every 12 weeks. Employees are compensated with a pay differential during their night shift rotations.
What You’ll get to Do
Essential Duties:
Utilize your experience with a Security Information and Event Management (SIEM) tool. Splunk is preferred, but experience with an equivalent SIEM would be acceptable.
Develop and Implement Splunk Queries: Create and optimize complex Splunk queries to extract, analyze, and visualize security data from diverse sources. Utilize Splunk Search Processing Language (SPL) to generate actionable insights for proactive threat detection and response.
Design Splunk Dashboards and Reports: Design user-friendly Splunk dashboards and reports tailored to different stakeholders, such as security operations teams, management, and auditors. Provide real-time visibility into security events, trends, and key performance indicators.
Configure and Maintain Splunk Infrastructure: Configure and fine-tune Splunk deployments, including data inputs, data parsing, field extractions, and data enrichment pipelines. Ensure the continuous availability and optimal performance of Splunk indexes, search heads, and forwarders.
Utilize Splunk Enterprise Security: Leverage Splunk Enterprise Security to develop and implement security use cases, correlation searches, and notable events for threat detection and analysis. Monitor security-related alerts and incidents to identify and prioritize security threats.
Utilize Trellix/Endpoint Security Solutions (ESS), formally Host Based Security System (HBSS) to detect and counter known threats.
Collaborate with Cross-Functional Teams: Collaborate with cross-functional teams, including IT, network, and application teams, to integrate Splunk with various platforms and systems. Provide technical expertise in advising security on best practices and designing effective security controls.
Investigate Security Incidents: Conduct in-depth investigations into security incidents, anomalies, and breaches using Splunk's forensic capabilities. Perform root cause analysis, incident triage, and post-incident reviews to identify gaps in security controls and recommend remediation actions.
Documentation and Reporting: Document Splunk configuration, operational procedures, and security findings. Prepare comprehensive reports detailing security events, trends, and mitigation strategies. Communicate technical information effectively to non-technical stakeholders.
Stay current with Industry Trends: Stay abreast of the latest cybersecurity threats, vulnerabilities, and industry best practices. Continuously enhance your knowledge of Splunk features and capabilities through self-study, professional training, and certifications.
Individual must have a solid understanding of security information and event management (SIEM) concepts and best practices to include proficiency in troubleshooting Splunk configurations and performance issues.
Ability to collaborate with other teams to investigate security incidents and provide insights for improving security posture.
This requisition may be filled as a Cybersecurity Analyst or Principal Cybersecurity Analyst.
This position is contingent upon Funding/Contract Award
Basic Qualifications for Cybersecurity Analyst:
Bachelor’s degree with 2 years of experience OR a Master’s degree with 0 years of experience.
U.S. Citizenship required
A current/active DoD TS/SCI clearance
Must possess DoD 8570 Certification for IAT Level II or higher prior to start date.
Experience with a Security Information and Event Management (SIEM) tool.
Ability to collaborate with other teams to investigate security incidents and provide insights for improving security posture.
Working knowledge of network security controls such as routers, switches, firewalls and network access controls.
Working Knowledge of Linux and Windows Operating Systems.
Knowledge of vulnerabilities, threat detection, encryption, and security audits.
Must be willing to work a Panama schedule that includes working 12-hour shifts.
Basic Qualifications for Principal Cybersecurity Analyst:
Bachelor’s degree with 5 years of experience; OR a Master’s degree with 3 years of experience; OR a PhD with 1 year of experience
U.S. Citizenship required
A current/active DoD TS/SCI clearance
Must possess DoD 8570 Certification for IAT Level II or higher prior to start date.
Experience with a Security Information and Event Management (SIEM) tool.
Ability to collaborate with other teams to investigate security incidents and provide insights for improving security posture.
Working knowledge of network security controls such as routers, switches, firewalls and network access controls.
Working Knowledge of Linux and Windows Operating Systems.
Knowledge of vulnerabilities, threat detection, encryption, and security audits.
Must be willing to work a Panama schedule that includes working 12-hour shifts.
Preferred Qualifications for Principal Cybersecurity Analyst:
DoD 8570 Certification for IAT Level III.
Proven experience with Splunk (or equivalent SIEM) front-end and/or back-end functionalities.
Experience with Trellix/Endpoint Security Solutions (ESS), formally Host Based Security System (HBSS).
Familiarity with scripting languages such as Python, PowerShell, or Bash.
Relevant certifications (e.g., Splunk Core Certified Power User, Splunk Enterprise Certified Admin).
Proven knowledge of network security controls such as routers, switches, firewalls, network access controls, and related solutions.
Proven knowledge of Linux and Windows operating systems and applications.
Excellent analytical and problem-solving skills.
Skills Required
- Bachelor's degree with 2 years of experience OR Master's degree with 0 years of experience (Cybersecurity Analyst)
- Bachelor's degree with 5 years of experience OR Master's degree with 3 years of experience OR PhD with 1 year of experience (Principal Cybersecurity Analyst)
- U.S. Citizenship required
- Current/active DoD TS/SCI clearance
- DoD 8570 Certification for IAT Level II or higher prior to start date
- Experience with a Security Information and Event Management (SIEM) tool (Splunk preferred)
- Proficiency with Splunk Search Processing Language (SPL) and Splunk query/dashboard/report development
- Working knowledge of network security controls such as routers, switches, firewalls, and network access controls
- Working knowledge of Linux and Windows operating systems
- Knowledge of vulnerabilities, threat detection, encryption, and security audits
- Ability to collaborate with other teams to investigate security incidents and provide remediation insights
- Willingness to work a Panama schedule (12-hour shifts, rotating days/nights)
- Willingness to work on-site at Tampa, FL (no remote/telecommute options)
- Must possess an active DoD 8570 certification prior to start date
- Must be able to pass/maintain required security clearance and classified work requirements
Northrop Grumman Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Northrop Grumman and has not been reviewed or approved by Northrop Grumman.
-
Retirement Support — 401(k) matching is considered strong, with additional defined-benefit coverage for certain cohorts and options like catch-up contributions. Retirement programs are repeatedly highlighted as a core strength of the total rewards.
-
Leave & Time Off Breadth — PTO, company-paid holidays, and compressed work schedules (such as 9/80) provide meaningful time away and flexibility. These scheduling options are cited as a major quality-of-life benefit across many locations.
-
Parental & Family Support — Paid parental leave alongside caregiver leave, adoption assistance, and back-up care supports a range of family needs. These programs have been expanded recently, signaling continued investment in family support.
Northrop Grumman Insights
What We Do
We are a close-knit community of big thinkers collaborating to keep the world safe. Our passion, creativity and expertise bring next-level technology solutions to life in autonomous systems, cyber, C4ISR, strike, space, and logistics and modernization for our customers around the globe. On the Northrop Grumman team, you’ll join our pursuit of excellence immersed in a dynamic culture of innovation and respect. Your unique perspective will help achieve our shared vision for the future of global security. Every step of the way, you'll be supported by world-class training, employee resource groups and a comprehensive benefits package that enables greater health and happiness for you and your family. Worldwide and across disciplines, we’re challenging what’s possible for technology to protect people and places from undersea to outer space and into cyberspace. And we see the impact of our performance every day. We are Northrop Grumman, and we work on what matters—now, you too can make a difference. Explore opportunities in engineering, IT, manufacturing, business management, cybersecurity and more with us. Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer.






