Full-Time

SIEM Engineer

Posted on 4/4/2025

Northrop Grumman

Northrop Grumman

10,001+ employees

Aerospace and defense technology solutions provider

Compensation Overview

$101.9k - $152.9k/yr

+ Overtime + Shift Differential + Discretionary Bonus

Mid, Senior

No H1B Sponsorship

Tampa, FL, USA

Relocation assistance may be available

US Citizenship, US Top Secret Clearance Required

Category
Cybersecurity
IT & Security
Required Skills
Computer Networking
Splunk
Data Analysis
Connection
Connection
Connection
logo

Get referrals →

You have ways to get a Northrop Grumman referral from your network.

đź’ˇ

Applications through a referral are 3x more likely to get an interview!

Requirements
  • US Citizenship is required with an active DoD Top Secret/SCI security clearance which was active in the last 24 months.
  • Must possess or be able to obtain DoD 8570 Certification for IAT Level II or higher.
  • Minimum 3 years of proven experience with Splunk (or equivalent SIEM) front-end and back-end functionalities.
Responsibilities
  • Develop and Implement Splunk Queries: Create and optimize complex Splunk queries to extract, analyze, and visualize security data from diverse sources.
  • Design Splunk Dashboards and Reports: Design user-friendly Splunk dashboards and reports tailored to different stakeholders, such as security operations teams, management, and auditors.
  • Configure and Maintain Splunk Infrastructure: Configure and fine-tune Splunk deployments, including data inputs, data parsing, field extractions, and data enrichment pipelines.
  • Utilize Splunk Enterprise Security: Leverage Splunk Enterprise Security to develop and implement security use cases, correlation searches, and notable events for threat detection and analysis.
  • Investigate Security Incidents: Conduct in-depth investigations into security incidents, anomalies, and breaches using Splunk's forensic capabilities.
  • Collaborate with Cross-Functional Teams: Collaborate with cross-functional teams, including IT, network, and application teams, to integrate Splunk with various platforms and systems.
  • Documentation and Reporting: Document Splunk configuration, operational procedures, and security findings.
  • Collaborate with network engineering teams to strategically deploy network Test Access Points (TAPS) and aggregators to ensure data accuracy, completeness, and compliance.
  • Implement, configure, and manage network TAPs to passively monitor network traffic.
  • Utilize network aggregators to collect, aggregate, and filter data from multiple network sources for effective monitoring and analysis.
  • Help design and engineer Out-of-Band (OOB) SOC infrastructure.
Desired Qualifications
  • Familiarity with scripting languages such as Python, PowerShell, or Bash.
  • Relevant certifications (e.g., Splunk Core Certified Power User, Splunk Enterprise Certified Admin, Splunk Certified Architect).
  • Working knowledge of network security controls such as routers, switches, firewalls, network access controls, and related solutions.
  • Working knowledge of Linux and Windows operating systems and applications.
  • Excellent analytical and proactive problem-solving skills.

Northrop Grumman provides advanced aerospace and defense technology solutions, focusing on areas such as autonomous systems, cybersecurity, and space operations. The company develops and manufactures systems that enhance command, control, communications, intelligence, surveillance, and reconnaissance (C4ISR) capabilities for government and commercial clients. Its products work by integrating cutting-edge technologies into comprehensive solutions that meet the specific needs of its customers, particularly in the defense sector. Unlike many competitors, Northrop Grumman emphasizes long-term contracts and a strong commitment to research and development, which helps secure its position in a highly competitive market. The company's goal is to deliver innovative solutions that support national security and enhance operational effectiveness for its clients.

Company Size

10,001+

Company Stage

IPO

Headquarters

Falls Church, Virginia

Founded

1939

Simplify Jobs

Simplify's Take

What believers are saying

  • Collaboration with Firefly Aerospace opens new revenue streams in space exploration.
  • Increased IBCS production capacity aligns with global missile defense investment trends.
  • Additive manufacturing partnerships promise cost savings and enhanced performance in defense.

What critics are saying

  • Exit from NGAD competition may impact future stealth fighter market positioning.
  • New Alabama facilities require capital investment, risking financial strain if demand falters.
  • Complex engineering in JetZero Z4 project could lead to cost overruns and delays.

What makes Northrop Grumman unique

  • Northrop Grumman excels in autonomous systems and cyber technologies for defense.
  • The company is a leader in C4ISR, providing advanced intelligence and surveillance solutions.
  • Northrop Grumman's diversified segments ensure a stable revenue base across aerospace and defense.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Life Insurance

Disability Insurance

Paid Vacation

Paid Holidays

Relocation Assistance

Performance Bonus

Company News

Plant Services
May 1st, 2025
Northrop Grumman invests $20M to open air and missile defense integration manufacturing facility in Alabama

Northrop Grumman invests $20M to open air and missile defense integration manufacturing facility in Alabama.

Journal of Cyber Policy
Apr 17th, 2025
Titomic Collaborates with Major Aerospace & Defense Prime for Additive Manufacturing with Titomic Kinetic Fusion(TM)

HUNTSVILLE, AL, UNITED STATES, April 16, 2025 /EINPresswire.com/ - Titomic Limited (ASX: TTT) ('Titomic' or 'Company'), a global leader in Titomic Kinetic Fusion(TM) cold spray additive manufacturing, is excited to announce its collaboration with Northrop Grumman to develop and manufacture high-performance pressure vessels.

The Aviationist
Apr 15th, 2025
B-21 Raider Expected to Arrive at Ellsworth AFB in 'Mid 2020s'

Speaking at the Black Hills Defense & Industry Symposium, U.S. Air Force and Northrop Grumman officials said their next generation bomber is 'close' to being ready to enter service.

Australian Manufacturing
Apr 15th, 2025
Titomic partners with Northrop Grumman to advance pressure vessel manufacturing

Titomic has announced a collaboration with aerospace and defence contractor Northrop Grumman to develop and manufacture high-performance pressure vessels using its proprietary cold spray additive manufacturing technology.

Defense Daily
Apr 14th, 2025
Northrop Grumman Opens Facility To Expand IBCS Production Capacity

Northrop Grumman [NOC] announced Monday it has opened a new 175,500-square foot facility in Madison, Alabama to increase production capacity for the Army's Integrated Air and Missile Defense Battle Command System (IBCS).

INACTIVE