Cyber Incident Analyst Responder

Northrop Grumman

Confirmed live today High trust

Quick summary

Work type
On-site
Location
Schriever AFB, CO
Salary
$75,800–$113,800 / yr
Employment
Full-time
Posted
3 days ago
Freshness
Confirmed live today

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $147k
This role $95k
$62k $201k
below market most similar roles pay here above market

This role pays less than 99% of similar roles. Most pay $122,275–$172,300 — the blue band above. At the midpoint, this role pays about $95k versus about $147k for comparable roles.

Based on 240 similar postings.

Employer

About Northrop Grumman

Northrop Grumman is a leading global aerospace and defense technology company providing systems in autonomous systems, cyber, C4ISR, space, strike, and logistics. Industry: Aerospace & Defense

Northrop Grumman currently has 506 open roles on FindRole.

Listed pay typically runs $119,600–$184,200 across 289 roles with salary data.

Most-posted roles

View all roles at Northrop Grumman

At a glance

TL;DR · Cyber Incident Analyst Responder

The Cyber Incident Analyst Responder – Regional CNDA (26-457) Space AHT joins the Missile Defense Integration team to support the Command and Control, Battle Management, and Communications program. This role involves implementing and enforcing national and DoD security directives to protect the Ballistic Missile Defense Communications Network. Key responsibilities include continuous network security monitoring, intrusion detection, and incident response across mission systems. You will develop network defense visibility displays, correlate security metrics for senior leadership, and perform proactive functions to deter or contain cyber threats. Required skills include operating firewalls, correlated log analysis, and host-based security tools like SideWinder, ArcSight, HBSS, and Tripwire. You must possess a Secret clearance, IAT Level II certification, and experience with network hardware, routers, switches, and vulnerability scanning to secure critical missile defense infrastructure.

What you'll do

  • Perform continuous network security monitoring, intrusion detection, and incident response across BMD COMNET and C2BMC systems.
  • Develop and maintain a network defense visibility display to execute time-sensitive adjustments to the security posture.
  • Collect, correlate, and present network security data and metrics to senior leaders to support risk management decisions.
  • Execute proactive security functions to deter, detect, isolate, contain, and recover from information system and network intrusions.
  • Operate and administer computer network defense tools including firewalls, correlated log analysis, and host-based security tools.
  • Coordinate with cybersecurity and systems engineering teams to implement defensive measures and enhance security architecture.
  • Document security events, incident response actions, and lessons learned to refine process playbooks.
  • Support 24x7 C2BMC operations by working rotating shifts including nights and weekends.

What we're looking for

  • Must have a Bachelor’s degree in a related field with 2 years of experience, a Master’s degree, or 9 years of relevant work experience.
  • Must possess a current, active Government-issued Secret security clearance at the time of application.
  • Must possess a current, active Government-issued 8140 certification at IAT Level II or higher.
  • Must be able to obtain a Top Secret/SCI security clearance.
  • Must be a U.S. citizen.
  • Must have experience monitoring and managing intrusion detection systems and firewall devices like SideWinder, ArcSight, HBSS, and Tripwire.
  • Must have knowledge of network hardware configuration, troubleshooting, and modern computer architectures.
  • Must have a current, active Top Secret/SCI security clearance (preferred).
  • Must have a Certified Ethical Hacker (CEH) certification or equivalent (preferred).
  • Must have formal training or hands-on experience with Unix and/or Microsoft operating systems (preferred).

More like this

Similar roles

Cyber Systems Administrator

Northrop Grumman

Schriever AFB, CO 45 days ago
UNIX Linux Windows Cisco Juniper Network Administration Cybersecurity Software Installation Microsoft Word Excel PowerPoint C2BMC Missile Defense Systems
2+ yrs exp

Cyber Threat Detection & Response Analyst

McKesson Corporation

Richmond, VA 13 days ago $98,900–$164,900
SIEM EDR XDR SOAR Python PowerShell Bash KQL SPL AWS Azure GCP MITRE ATT&CK IDS/IPS Firewalls Windows Linux NIST CIS Benchmarks
4+ yrs exp

Senior Incident Responder, Global CSIRT

Salesforce

McLean, VA +1 37 days ago $148,500–$223,900
Incident Response SOAR MITRE ATT&CK AWS Azure GCP CI/CD Malware Analysis Detection Engineering Forensics Linux Windows macOS AI LLM Salesforce Platform SaaS
5+ yrs exp Hybrid

Cyber Defense Response Analyst II

CME Group

Chicago, IL 45 days ago $93,900–$156,500
DFIR Malware Analysis Python REST APIs AWS GCP Azure Q Radar Sentinel Splunk Chronicle ArcSight KAPE EnCase Cellebrite FTK Magnet Axiom Autopsy Ghidra Ida Pro PEStudio x64dbg Pandas Networking Operating Systems SIEM

Incident Response Analyst, Mid

Booz Allen Hamilton

Bethesda, MD 37 days ago $62,000–$141,000
Splunk SIEM EDR IDS/IPS SOAR Digital Forensics Threat Hunting Packet Analysis Malware Triage Vulnerability Management Firewalls Identity and Access Management API Security Container Security Log Analysis Behavioral Analytics Threat Intelligence
2+ yrs exp

Senior Cyber Threat Detection and Response Analyst

McKesson Corporation

Richmond, VA 3 days ago $122,500–$204,100
SIEM EDR XDR SOAR Python PowerShell Bash KQL SPL AWS Azure GCP MITRE ATT&CK IDS/IPS Firewalls Windows Linux NIST CIS Benchmarks Incident Response
4+ yrs exp Hybrid