remote
Cybersecurity Specialist GRC - Northrop Grumman
Security Engineer
Cybersecurity Specialist focused on Governance, Risk & Compliance, driving risk assessments, policy creation, and audit readiness using ISO 27001 and NIST frameworks to protect critical defence assets.
About the role
Key Responsibilities
- Lead risk assessments and vulnerability analyses for defence systems, ensuring alignment with national security standards.
- Develop, implement, and maintain security policies, procedures, and controls across the organisation.
- Coordinate internal and external audits, preparing documentation and remediation plans to meet ISO 27001 and NIST requirements.
- Collaborate with engineering and operations teams to embed security best practices into product development lifecycles.
- Monitor compliance posture, generate risk reports, and recommend mitigation strategies to senior leadership.
Requirements
- Strong background in GRC, risk management, and security compliance frameworks.
- Experience with ISO 27001 implementation and NIST Cybersecurity Framework.
- Excellent analytical, communication, and stakeholder‑management skills.
- Ability to work independently and as part of cross‑functional teams in a fast‑paced environment.
Skills
siemiampenetration testing