Principal / Senior Principal Cybersecurity Systems Engineer
TXSA03, United States
Full Time Senior-level / Expert Clearance required USD 110K - 165K
Northrop Grumman
Northrop Grumman solves the toughest problems in space, aeronautics, defense and cyberspace to meet the ever evolving needs of our customers worldwide. Our 95,000 employees define possible every day using science, technology and engineering to...Description
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.This position description does not represent a current opening but may be used to identify candidates with skills and experience for positions within Northrop Grumman that frequently become available. Candidates who express an interest may be considered for future positions at Northrop Grumman.Northrop Grumman Mission Systems Mission Defense Cyber Team has an opening for a Principal Cybersecurity Systems Engineer or Senior Principal Cybersecurity Systems Engineer (CSSE) supporting the Sentinel program supporting the Sentinel program from one of our various Northrop Grumman locations. A Cybersecurity Systems Engineer (CSSE) assess/evaluates the customers’/stakeholders’ cybersecurity requirements to decompose, derive, and refine with clarity the system’s cybersecurity requirements to drive the built-in cybersecurity protections to the architecture and design. The CSSE also guides/supports the security layout / architecture and influences the security tools selection and development. The CSSE evaluates/assess the proposed and realized implementation to identify security risks and verify the cybersecurity protections from the design are realized and integrated. The CSSE guides/supports the development of verification efforts to ensure the cybersecurity protections / capabilities are functional, effective, and complete. A CSSE supports the definition of security governance, and risk management.
As a Principal Cybersecurity Systems Engineer or Senior Principal Cybersecurity Systems Engineer on this team, you will have the following responsibilities:
Implement and review requirement decomposition, derivation, and flow down
Implement and review traceability of requirements throughout a spec tree architecture
Support the architecture and design of baked in cybersecurity requirements and protections
Implement and review traceability of requirements to the design & its models
Implement and review the application of cybersecurity profile stereotypes to a Model Based System Engineering (MBSE) Architecture
Provide cybersecurity system engineering implementation guidance and oversight to technical teams/implementers
Review and Assess stakeholder security objectives, protection needs and concerns, security requirements, and associated verification/validation methods
Implement, review and assess cybersecurity system requirements verification/validation methods
Identify and/or assess vulnerabilities and susceptibility to life cycle disruptions, hazards, and threats
Provide security considerations to inform systems engineering efforts with the objective to reduce errors, flaws, and weakness that may constitute security vulnerability leading to unacceptable asset loss and consequences
Identify, quantify, and evaluate the costs/benefits of security functions and considerations to inform analysis of alternatives, engineering trade-offs, and risk treatment decisions
Author, support and maintain cybersecurity program documentation & RMF package documentation: Cybersecurity Strategies, System Security Plans, Continuous Monitoring Plans, Risk Assessment Report, Security Control Traceability Matrix, Plan Of Actions & Milestones, etc.
Perform other duties and directed.
This requisition may be filled as a Principal Cybersecurity Systems Engineer or Senior Principal Cybersecurity Systems Engineer.
Basic Qualifications for a Principal Cyber Systems Engineer
Bachelor’s degree with 5 years of experience, Master’s degree with 3 years of experience, or a PhD with 0 years of experience in: Systems Engineering, Cybersecurity Engineering, Computer Engineering, Computer Science. Will consider 9 years of applied experience in lieu of degree requirement.
Direct Experience utilizing NIST 800-160 system security engineer and/or the system development life cycle.
Direct experience in one or more of the following Systems Engineering activities: system requirements decomposition/derivation/flow down/traceability, architecture, high-level/detail design, implementation, integration and test, and/or verification & validation.
Direct experience developing RMF assessment and authorization artifacts in accordance with NIST SP 800-37.
A current/active DoD Secret clearance.
The ability to obtain and maintain a DoD Top Secret clearance is required.
Must be able to obtain Special Access (SAP) to the program.
In possession of a current IASAE II certification (CISSP preferred) in accordance with DoD 8570 or able to obtain within six months of hire.
Basic Qualifications for a Senior Principal Cyber Systems Engineer
Bachelor’s degree with 8 years of experience, Master’s degree with 6 years of experience, or a PhD with 4 years of experience in: Systems Engineering, Cybersecurity Engineering, Computer Engineering, Computer Science. Will consider 12 years of applied experience in lieu of degree requirement.
Direct Experience utilizing NIST 800-160 system security engineer and/or the system development life cycle.
Direct experience in one or more of the following Systems Engineering activities: system requirements decomposition/derivation/flow down/traceability, architecture, high-level/detail design, implementation, integration and test, and/or verification & validation.
Direct experience developing RMF assessment and authorization artifacts in accordance with NIST SP 800-37.
A current/active DoD Secret clearance.
The ability to obtain and maintain a DoD Top Secret clearance is required.
Must be able to obtain Special Access (SAP) to the program.
In possession of a current IASAE II certification (CISSP preferred) in accordance with DoD 8570 or able to obtain within six months of hire.
Preferred Qualifications
System security architecture experience
Experience working systems engineering activities utilizing tools such as IBM DOORS© and No Magic© CAMEO
Familiarity with Systems Security Engineering (SSE) documentation (e.g. Cybersecurity Strategies, Information Support Plans, Program Protection Plans (PPPs)
Familiarity with Anti-Tamper Plans, Counterintelligence Support Plans, Integrated Threat Assessment Reports, Operations Security Plans, Continuous Monitoring Plans, Defensive Cyberspace Operations Plans, Cybersecurity Strategies, Information Support Plans, Enterprise Architecture Views and NIST SP 800-160
DoDI 8140 certification for IASAE III (ISSEP, ISSAP)
Experience with Agile methodologies
Active TS/SCI clearance
Previous experience in Software Assurance and/or Software Quality Assurance.
Tags: Agile CISSP Clearance Computer Science DoD DoDD 8140 DoDD 8570 Governance Monitoring NIST PhD Risk assessment Risk Assessment Report Risk management RMF SAP Sentinel System Security Plan Top Secret Top Secret Clearance TS/SCI Vulnerabilities
Perks/benefits: Career development Health care Insurance Relocation support Salary bonus
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.