Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Northrop Grumman

Principal Cyber Threat Analyst

Northrop Grumman

. Perform analytical triage of cyber events using commercial and custom applications, systems, and tools .

Posted 10/8/2026full-timeRemote • United StatesLead💰 $94,200 - $141,200 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in cyber threat analysis, including the ability to conduct forensic analysis, generate event timelines, and prepare detailed written reports for diverse audiences. Proficient in utilizing various analysis tools and scripting languages to enhance cybersecurity operations and threat mitigation strategies.

Highest-signal resume keywords
Cyber Threat Intelligence MethodologiesForensic Analysis of System ImagesPython ScriptingEndpoint Detection and Response TechnologiesLog Data Analysis

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Forensic AnalysisLog Data AnalysisPythonPowerShellData Preparation and AnalysisNetwork Communication ProtocolsCyber Threat AnalysisHigh-Performance ComputingArtificial Intelligence ToolsComputer Network Exploitation
Soft Skills
Written CommunicationBriefing Technical FindingsCollaboration
Tools & Technologies
SOC/CIRT Analysis ToolsEndpoint Detection and Response TechnologiesCustom ApplicationsCommercial Applications
Certifications & Qualifications
GCEDGCIHGCIAGCFAGREMCFCEEnCEACECCNACISSP
Industry Keywords
CybersecurityIntrusion AnalysisAPTThreat MitigationU.S. Government ClearanceCyber Threat ActorsNetwork ExploitsVulnerabilitiesTactics, Techniques, and ProceduresSituational Awareness

Tech Stack

Tools & technologies
Cyber SecurityLinuxPythonUnix

About the role

Key responsibilities & impact
  • Perform analytical triage of cyber events using commercial and custom applications, systems, and tools
  • Analyze host- and network-based logs
  • Correlate network indicators and PCAP data
  • Conduct forensic analysis of system images
  • Generate event timelines and perform root cause analysis
  • Prepare detailed written event analyses
  • Brief findings to technical and non-technical audiences
  • Conduct all-source research on cyber threat actors and intrusion sets, including APTs
  • Evaluate technical and intelligence reporting for cyber threat activities
  • Support informational and analytic products that increase situational awareness and provide advanced warning of current and emerging cyber threats and risks
  • Analyze incidents, threats, risks, impacts, consequences, vulnerabilities, tactics, techniques and procedures, and other indicators
  • Collaborate daily with I&R team members and Strategic CI analysts to coordinate threat mitigation
  • Identify and counter sophisticated cybersecurity and cyber threats across the Northrop Grumman Managed Network (NGMN)

Requirements

What you’ll need
  • 5 Years of relevant experience with a Bachelors in Science; OR 3 Years with Masters; OR 1 Years with PhD.
  • Ability to obtain and maintain a U.S. Government Top Secret level security clearance as a condition of continued employment
  • U.S. Citizenship is required for positions with a government clearance
  • Ability to prepare and analyze data and figures
  • Experience with two or more analysis tools used in a SOC/CIRT or similar investigative environment
  • Minimum of 2 years of experience conducting analysis of log data in support of intrusion analysis or cybersecurity operations
  • Minimum of 4 years of experience with Python, PowerShell or other scripting language
  • Ability to prepare detailed written analyses and briefings for technical and non-technical audiences
  • Demonstrated awareness of current endpoint and network exploits
  • Familiarity with computer network exploitation methodologies and tools
  • Understanding of network communication protocols at all layers of the OSI model
  • Experience with large data sets, high-performance computing systems, and artificial intelligence (AI) tools
  • Experience with endpoint detection and response technologies
  • Experience with cyber threat intelligence methodologies
  • Linux/Unix and Windows proficiency, including shell (Bash, PowerShell) scripting
  • Familiarity with current cybersecurity threats facing U.S. defense contractors or the U.S. Government
  • One or more preferred technical certifications or equivalent: GCED, GCIH, GCIA, GCFA, GREM, CFCE, EnCE, ACE, CCNA, CISSP, etc.

Benefits

Comp & perks
  • Flexible work arrangements
  • Phenomenal learning opportunities
  • Exposure to a wide variety of projects and customers
  • Friendly team environment
  • Exceptional benefits/healthcare
  • Life and disability insurance
  • Savings plan
  • Company paid holidays
  • Paid time off (PTO) for vacation and/or personal business
  • 9/80 work schedule
  • 401k matching program
  • Potential eligibility for overtime
  • Potential eligibility for shift differential
  • Potential eligibility for discretionary bonus
  • Potential eligibility for long-term incentives for Vice President or Director positions