Sr Principal Cyber Systems Engineer

FLME229, United States

Northrop Grumman

Northrop Grumman solves the toughest problems in space, aeronautics, defense and cyberspace to meet the ever evolving needs of our customers worldwide. Our 95,000 employees define possible every day using science, technology and engineering to...

View all jobs at Northrop Grumman

Apply now Apply later

RELOCATION ASSISTANCE: Relocation assistance may be available

CLEARANCE TYPE: Secret

TRAVEL: Yes, 10% of the Time

Description

At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.

Northrop Grumman Aeronautics Systems is currently seeking a Senior Principal Cyber Systems Engineer for a new and exciting effort located in Melbourne, FL.

We are looking for a highly motivated and team oriented individual that understands cybersecurity and the importance to our mission. In this role, you will be responsible for the secure operations of cloud infrastructure, platforms, and software, including the installation, maintenance, and improvement of cloud computing environments. You will also help develop new designs and security strategies across cloud-based applications and Infrastructure as Code (IaC). Additionally, you will act as a Cyber Subject Matter Expert (SME) and ensure compliance with the Risk Management Framework. 

 

Responsibilities: 

  • Design, plan, implement, and perform assessment of security controls, polices, and processes compliance with National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53, CNSSI 1253, and DoD RMF Knowledge Service guidance. 

  • Participate in assessment of systems security controls to validate control implementation and identify weaknesses. 

  • Document the results of Certification and Accreditation activities, technical or coordination activity, prepare the system Security Plans, and update the POA&M. 

  • Periodically conduct a complete review of each system's audits and monitor corrective actions until all actions are closed- Implementation, automation, configuration and maintenance of security tools, centralized authentication solutions, IDS/IPS, and compliance baselines 

  • Provide advanced technical analyses of cyber infrastructure challenges and problems; develop/identify technical solutions responsive to customer needs. 

  • Participate in team reviews of technical requirements, design and implementation plans prior to deployment. 

  • Recommend and implement system enhancements that will improve the performance, reliability, and security of the system including installing, upgrading, monitoring, problem resolution, and configuration. 

  • Serve as a Cyber Security engineer (ISSE) supporting high-level technical and practical expertise.

  • Assures the implementation of Cyber Security disciplines, including COMSEC, COMPUSEC, EMSEC, OPSEC, digital communications systems, network protocols and architectures, and penetration tools and techniques. 

  • Support the continuous assessment of IA Control compliance for systems within their responsibility.

  • Experience in preparing and/or reviewing technical and programmatic documentation.

  • Experience translating technical concepts and program information to others. 

Basic Qualifications: 

  • Must have High School Diploma or equivalent (GED) and at least 12 years of related professional / military experience OR a Bachelor's degree and at least 8 years of related professional / military experience OR a Master's degree and at least 6 years of related professional / military experience OR a PhD and at least 4 years of related professional / military experience

  • Must have an active DoD Secret or higher clearance (with a background investigation completed within the last 6 years or currently enrolled into Continuous Evaluation).

  • Must have the ability to obtain and maintain Special Access Program (SAP) clearance

  • Must have at minimum a current DoD 8570 IAT Level II Certification (Security+ CE). 

 

Preferred Qualifications: 

  • Experience in preparing and/or reviewing technical and programmatic documentation.

  • Experience translating technical concepts and program information to others. 

  • Solid understanding of planning, design, and implementation necessary to support a large enterprise system. 

  • ​Experience with configuring Security Incident Event Monitoring and IDS/IPS tools such as ACAS, ESS (HBSS), and Splunk on Linux RedHat and Windows environments.  

  • Experience with vulnerability and compliance scanners such as Tenable.SC and SCAP. 

  • Experience with CDS technology, security, and compliance requirements. 

  • Experience with cloud environments supporting the configuration design, integration, sustainment, and retirement of systems.  

  • Experience scripting security processes in efforts to establish redundant, consistent and automate baselines across multiple systems. 

  • Working knowledge of NIST 800-37 RMF body of evidence artifacts such as SSP, SCTM, PoA&M’s, SAR, RAR, RAL, ConOps, ISA, etc.  

  • Working experience deploying and configuring Linux and Windows systems in accordance with DoD STIG requirements. 

  • DoD 8570 IAM II/III Certification (CAP, GLSC, CISSP, CASP CE).

  • DoD 8500-series and 8510.01 IA policy directives, approaches to cyber security, knowledge of security procedures, IATT and ATO requirements. 

  • Excellent communication (written and oral), negotiation and interpersonal skills necessary to support known ISSE activities/challenges working with engineering teams, management, customers, partners and government. 

  • Experience with Dell, Cisco, Palo Alto and other next generation switches and firewalls. 

  • Experience with SDLC and DOORs application. 

  • Experience with cloud solutions like Azure and AWS. 

 

Salary Range: $130,500.00 - $195,700.00

The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.

Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.

The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.

Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit http://www.northropgrumman.com/EEO. U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
Apply now Apply later
Job stats:  2  0  0

Tags: ACAS Aeronautics Audits Automation AWS Azure CASP+ CISSP Clearance Cloud Compliance ConOps DoD DoDD 8570 DoD RMF Firewalls IAM IDS IPS ISSE Linux Monitoring NIST NIST 800-53 PhD POA&M Risk Assessment Report Risk management RMF SAP SCAP Scripting SCTM SDLC Security Assessment Report Splunk System Security Plan Windows

Perks/benefits: Health care Insurance Relocation support Salary bonus

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.