At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
Northrop Grumman Aeronautics Systems is currently seeking a Principal Cyber Systems Engineer / Sr. Principal Cyber Systems Engineer for a new and exciting effort located at Palmdale, CA.
This role will be supporting the development of virtual reality training solutions, Virtual Maintenance Trainer (VMT) and Virtual Reality (VR) Development. These solutions entail creating and conducting training programs using virtual or computer-based simulations to train maintenance personnel.
We're looking for a highly motivated, team oriented, individual that understands security and the importance to our mission. The candidate will be responsible for the secure operations of cloud infrastructure, platforms, and software, including the installation, maintenance, and improvement of cloud computing environments. They will also help develop new designs and security strategies across cloud-based applications and Infrastructure as Code (IaC). The candidate will act as a Cyber Subject Matter Expert (SME) and ensure compliance with the Risk Management Framework.
Responsibilities: Design, plan, implement, and perform assessment of security controls, polices, and processes compliance with National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53, CNSSI 1253, and DoD RMF Knowledge Service guidance. Participate in assessment of systems security controls to validate control implementation and identify weaknesses. Document the results of Certification and Accreditation activities, technical or coordination activity, prepare the system Security Plans, and update the POA&M. Periodically conduct a complete review of each system's audits and monitor corrective actions until all actions are closed- Implementation, automation, configuration and maintenance of security tools, centralized authentication solutions, IDS/IPS, and compliance baselines. Provide advanced technical analyses of cyber infrastructure challenges and problems; develop/identify technical solutions responsive to customer needs. Participate in team reviews of technical requirements, design and implementation plans prior to deployment. Recommend and implement system enhancements that will improve the performance, reliability, and security of the system including installing, upgrading, monitoring, problem resolution, and configuration. Serve as a Cyber Security engineer (ISSE) supporting high-level technical and practical expertise. Assures the implementation of Cyber Security disciplines, including COMSEC, COMPUSEC, EMSEC, OPSEC, digital communications systems, network protocols and architectures, and penetration tools and techniques. Support the continuous assessment of IA Control compliance for systems within their responsibility. This position may be filled at a Level 3 or a Level 4 based on the qualifications outlined below.
*Pending program win*
Basic Qualifications for a Principal Cyber Systems Engineer: Bachelor's degree in Science, Technology, Engineering and/or Mathematics (STEM) with 5 years experience; 3 Years experience with Master's; 0 Years experience with PhD. Ability to obtain and maintain a DOD Secret level clearance to include Special Program Access within a reasonable period, as defined by the company to meet its business needs. Must have at minimum a current DoD 8570 IAT Level II Certification (Security+CE). Ability to travel 10% of the time. Basic Qualifications for a Sr. Principal Cyber Systems Engineer: Bachelor's degree in Science, Technology, Engineering and/or Mathematics (STEM) with 9 Years experience; 7 Years experience with Master's; 4 Years experience with PhD. Ability to obtain and maintain a DOD Secret level clearance to include Special Program Access within a reasonable period, as defined by the company to meet its business needs. Must have at minimum a current DoD 8570 IAT Level II Certification (Security+CE). Ability to travel 10% of the time. Preferred Qualifications: DoD 8570 IAM II/III Certification (CAP, GLSC, CISSP, CASP CE). DoD 8500-series and 8510.01 IA policy directives, approaches to cyber security, knowledge of security procedures, IATT and ATO requirements. Excellent communication (written and oral), negotiation and interpersonal skills necessary to support known ISSE activities/challenges working with engineering teams, management, customers, partners and government. Experience with Dell, Cisco, Palo Alto and other next generation switches and firewalls. Experience with SDLC and DOORs application. Experience with cloud solutions like Azure and AWS. Experience translating technical concepts and program information to others. Solid understanding of planning, design, and implementation necessary to support a large enterprise system. Working knowledge of NIST 800-37 RMF body of evidence artifacts such as SSP, SCTM, PoA&M's, SAR, RAR, RAL, ConOps, ISA, etc. Experience with configuring Security Incident Event Monitoring and IDS/IPS tools such as ACAS, ESS (HBSS), and Splunk on Linux RedHat and Windows environments. Experience with vulnerability and compliance scanners such as Tenable.SC and SCAP. Experience with CDS technology, security, and compliance requirements. Experience with cloud environments supporting the configuration design, integration, sustainment, and retirement of systems. Experience in preparing and/or reviewing technical and programmatic documentation. Working experience deploying and configuring Linux and Windows systems in accordance with DoD STIG requirements. Experience scripting security processes in efforts to establish redundant, consistent and automate baselines across multiple systems. Experience scripting/automating system installation and configuration to establish redundant, consistent and automate baselines across multiple systems (Ansible, GPO, package files) Salary Range: $95,900 - $143,900
Salary Range 2: $118,000 - $177,000
The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.
Employees may be eligible for a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.
Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO/AA and Pay Transparency statement, please visit http://www.northropgrumman.com/EEO . U.S. Citizenship is required for most positions.