Home > Washington jobs > Washington trades & labor jobs

Posted: Saturday, February 17, 2018 8:09 AM

Are you interested in the opportunity to work for an industry-leading company whose work with cutting-edge technology is driven by something human: the lives our technology protects? If so, Northrop Grumman may be the place for you. It’s not the systems that drive us: it’s the soldier our systems bring home. It’s not just the equipment that motivates us: it’s the people our equipment protects. It’s not the innovation that gets us up in the morning: it’s whom those innovations serve. We’re united by our work to help people and protect the world. And that mission makes our team even stronger.
When you join Northrop Grumman, you’ll have the opportunity to connect with coworkers in an environment that’s uniquely caring, diverse, and respectful. Employees share experiences, insights, perspectives, and creative solutions with some of the best minds in the industry. We collaborate through integrated product teams, cross-functional teams, and employee resource groups, while thriving through the support of training and development, mentors and every day coaching, along with extensive health and work/life benefits. We’re committed to our employees’ professional and personal development and success.
Northrop Grumman recruits top talent with traditional and non-traditional backgrounds in order to ensure our team is united, connected, skilled, focused and innovative. An inclusive workplace of people with diverse backgrounds, experiences, and perspectives is the key to our performance. At Northrop Grumman, we want our employees to bring their whole self to work. All your different sides are welcome here, as we believe they make our team, our products and our services, that much better.

Roles and Responsibilities:
The successful applicant will provide IT Security support to Defense Health Agency (DHA) information systems and serve as an IT Security consultant and advisor to system stakeholders on matters related to regulatory compliance, security controls, threats and vulnerabilities.
• Develop and maintain a solid working knowledge of DHA, Military Health Systems (MHS), Department of Defense (DoD), and Federal security regulations, policies, laws, and requirements.
• Work extensively with multiple senior-level stakeholders (system owners, mission leads, IT Governance, and the Information Systems Security Officer (ISSO)) in the conduct of system compliance and protection activities covering both domestic and international projects.
• Work with mission / technical teams to perform security analysis on in-development technical solutions and provide security compliance and guidance input as required
• Formally evaluate systems (either in development or in production) for compliance with Federal security requirements and develop corresponding documentation
• Assist system owners with identifying and utilizing relevant enterprise shared services and solutions to enable compliance and security activities
• Develop System Security Authorization (SSA) packages and manage the end-to-end SSA process for assigned systems including development of NIST-compliant System Security Plans, Rules of Behavior, Continuity of Operations and Disaster Recovery Plans, Risk Assessments, Interconnection Security Agreements, Incident Response Plans, Privacy Impact Assessments, Data Sharing / Use Agreements, etc.
• Develop and maintain system risk assessments and, as/if needed, remediation and mitigation plans
• Following formal approval, maintain system authorizations through proactive monitoring of system compliance, formal change management, corrective actions, and package updates.
• Become a trusted security subject matter expert supporting various mission leaders and activities
• Work with key management stakeholders to standardize, document, and (where possible) automate repeatable processes, develop Standard Operating Procedures, and identify opportunities for process improvement
• Perform technical IT system security/vulnerability assessments using provided tools – interpret results and manage remediation as needed
• Support various other security-related activities including facilitation of change control processes and data call responses; management of encrypted / secure data storage devices; and the evaluation, justification, and management of software and third party website approvals
• Some level of remote work and schedule flexibility (due to international project teams) is anticipated and will be determined on a case-by-case basis. No on-call requirements.
• Light national / international travel may be required
This requisition may be filled at a higher grade based on qualifications listed below.

Click here for more info:

• Location: District Of Columbia, McLean

• Post ID: 42822167 washingtondc is an interactive computer service that enables access by multiple users and should not be treated as the publisher or speaker of any information provided by another information content provider. © 2018