Sr Principal Cyber Systems Engineer - NG Space Systems - Secret Clearance
CARBR4, United States
Full Time Senior-level / Expert Clearance required USD 151K - 226K
Northrop Grumman
Northrop Grumman solves the toughest problems in space, aeronautics, defense and cyberspace to meet the ever evolving needs of our customers worldwide. Our 95,000 employees define possible every day using science, technology and engineering to...Description
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.The Payload and Ground Systems organization within the Northrop Grumman Space Systems pushes the boundaries of innovation, redefines engineering capabilities, and drives advances in various sciences. Our team is chartered with providing the skills, innovative technologies to develop, design, produce and sustain optimized product lines across the sector while providing a decisive advantage to the warfighter. Come be a part of our mission!
We offer phenomenal learning opportunities, exposure to a wide variety of projects and customers, and a very friendly collaborative workplace. We are looking for self-motivated, proactive, and goal-oriented people to help us grow our services and become even better at what we do. Does this sound like you?
Our Employee Resource Groups (ERGs) provide benefits for the member, our leaders and the company. Our ERGs offer opportunities to be a friend, be active, be a volunteer, be a leader, to be recognized and to be yourself! Every ERG is inclusive of all employees!
Our diverse portfolio of programs means there are endless paths to cultivate your career. We are well-known for our inclusive environment, as well as our excellent work/life balance. We also offer exceptional benefits/healthcare, a 9/80 schedule, and a great 401K matching program.
We are seeking a highly skilled and motivated Senior Principal Cyber Systems Engineer to join our talented team in support of the Ground Segment for the Evolved Strategic SATCOM In-Band Command and Control (ESS IBC2) program. The position will be on site in Redondo Beach, CA.
The ideal candidate will be responsible for understanding functional system requirements and deriving security controls to provide technical implementation solutions to various engineering teams to comply with system requirements; identify system design and operational vulnerabilities and make recommendations to address deficient areas; work with system administrators to securely configure systems per customer security standards, community best practices and benchmarks. You will play a crucial role in planning, designing, implementing, and maintaining the security and integrity of the system.
This position is contingent upon program award and/or customer funding.
Responsibilities include, but not limited to:
- Perform customer requirements elicitation leading to cybersecurity requirements development
- Review and assess stakeholder security objectives, protection needs and concerns, system security requirements, and associated verification methods per Risk Management Framework (RMF) standards
- Define, allocate and control Ground Segment cybersecurity requirements to satisfy RMF compliance
- Identify, quantify, and evaluate the costs/benefits of security functions and considerations to inform analysis of alternatives, engineering trade-offs, and risk treatment decisions
- Coordinate and collaborate with diverse engineering design teams to assist in managing the technical baseline
- Define, document, build plan, and manage Information Assurance (IA) or Cybersecurity engineering including security controls traceability and decomposition, security architecture and design, analysis of Security Technical Implementation Guidelines (STIG) mapping
- Identify and/or assess vulnerabilities and susceptibility to life cycle disruptions, hazards, and threats
- Implement, review, upgrade, and document STIGs and security controls
- Create, mature, and present comprehensive and cohesive technical charts representative of the appropriate level of maturation for any given milestone meeting and demonstrate team readiness in relation to achieving the milestone entrance and exit criteria
- Identify required contractual deliverables and non-contractual documentation and drive corresponding updates to closure
- Support the design and implementation of automated tools to configure, integrate and test, and deploy hardened environment to meet security controls
- Assist the program to gain certification of systems, drafting and updating security artifacts
Basic Qualifications:
- Senior Principal Cyber Systems Engineer: 8 Years of relevant experience with Bachelor’s degree; 6 Years of relevant experience with Masters; 4 Years of relevant experience with PhD
- Active DoD Secret clearance required at the time of application
- Experience in systems engineering and/or system security engineering
- Proven experience with DoDI 8500 RMF and NIST800-53 and developing RMF assessment and authorization documentation
- Experience in developing and maintaining security documentation, including SSPs, SECONOPS, CONMON, and POA&Ms
- Familiarity with Systems Security Engineering (SSE) documentation (e.g. Cybersecurity Strategies, Information Support Plans, Program Protection Plans (PPPs)
- Familiarity with Anti-Tamper Plans, Counterintelligence Support Plans, Integrated Threat Assessment Reports, Operations Security Plans, Continuous Monitoring Plans, Defensive Cyberspace Operations Plans, IT/Cybersecurity Strategies, Information Support Plans, Enterprise Architecture Views and related documentation IAW DoDI 5000.02, DoDI 5200.39, DODI 5200.44, DODD 5200.47E, DoDI 8500.01, DoDI 8510.01, and NIST SP 800-160
- Experience with obtaining and maintaining a system level Authorization to Operate (ATO) and Interim Authorization to Test (IATT)
- Ability to work will with other engineers on a high pressure, schedule driven program
- Familiarity with system architectures, networking, and operating systems (e.g., Linux, Windows)
- Excellent communication (written and oral), negotiation and interpersonal skills necessary to support known Information Systems Security Engineering type activities/challenges working with engineering teams, management, customers, partners and government
- Active IAT Level II certification (e.g. Security+), or higher
- DoD 8570 certification for IAM-III (CISSP, CISM, GSLC, CCISO) or IAT-III (GCIH, CISSP, CASP+, CCNP Security, CISA, GCED)
- Excellent interpersonal skills with the ability to work both independently and within a team environment
Preferred Qualifications:
- Understands methods for hardening and maintaining secure architectures
- Experience with continuous monitoring tools and processes
- Experience with Agile development
- Experience with Ground and Space systems and/or Command and Control systems
- Knowledge of DevSecOps practices and secure software development lifecycle (SDLC)
- Experience working with eMASS and/or Xacta
- Python and shell scripting ability
- Experience working with federal agencies or Department of Defense (DoD) systems
- Basic understanding of IPv4 networking fundamentals
- Possesses knowledge of External/Internal System Security Tools
- Basic /Advanced Systems Administration in major COTS SW platforms
Tags: Agile CASP+ CCNP CISA CISM CISSP Clearance Clearance Required Compliance DevSecOps DoD DoDD 8570 eMASS GCED GCIH GSLC IAM ISSE Linux Monitoring NIST PhD Python Risk management RMF Scripting SDLC STIGs System Security Plan Vulnerabilities Windows
Perks/benefits: 401(k) matching Career development Health care Insurance Salary bonus
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.